Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-10-2013 Ran by szczepan (administrator) on SAMSUNG on 09-10-2013 23:23:57 Running from C:\Users\szczepan\Downloads Microsoft Windows 7 Home Premium Service Pack 1 (X86) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\windows\system32\srvany.exe () C:\windows\KMService.exe () C:\Program Files\CyberLink\Shared files\RichVideo.exe (Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Samsung Electronics Co., Ltd.) C:\Program Files\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe (Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Easy Display Manager\dmhkcore.exe (SAMSUNG Electronics) C:\Program Files\Samsung\Samsung Support Center\SSCKbdHk.exe (SEC) C:\Program Files\Samsung\Samsung Recovery Solution 4\WCScheduler.exe (Intel Corporation) C:\windows\system32\igfxext.exe (Intel Corporation) C:\windows\system32\igfxsrvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (CyberLink) C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe (CyberLink Corp.) C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe () C:\Program Files\DivX\DivX Update\DivXUpdate.exe (BitTorrent, Inc.) C:\Program Files\uTorrent\uTorrent.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.0.229\SSScheduler.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [8120864 2009-12-15] (Realtek Semiconductor) HKLM\...\Run: [UpdateLBPShortCut] - C:\Program Files\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.) HKLM\...\Run: [CLMLServer] - C:\Program Files\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-06-03] (CyberLink) HKLM\...\Run: [UpdatePDRShortCut] - C:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe [222504 2008-01-04] (CyberLink Corp.) HKLM\...\Run: [RemoteControl8] - C:\Program Files\CyberLink\PowerDVD8\PDVD8Serv.exe [91432 2009-04-15] (CyberLink Corp.) HKLM\...\Run: [PDVD8LanguageShortcut] - C:\Program Files\CyberLink\PowerDVD8\Language\Language.exe [50472 2009-04-15] (CyberLink Corp.) HKLM\...\Run: [UpdatePPShortCut] - C:\Program Files\CyberLink\PowerProducer\MUITransfer\MUIStartMenu.exe [218408 2008-12-03] (CyberLink Corp.) HKLM\...\Run: [UpdatePSTShortCut] - C:\Program Files\CyberLink\DVD Suite\MUITransfer\MUIStartMenu.exe [210216 2009-07-21] (CyberLink Corp.) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1713448 2010-02-26] (Synaptics Incorporated) HKLM\...\Run: [UCam_Menu] - C:\Program Files\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [222504 2009-05-19] (CyberLink Corp.) HKLM\...\Run: [NeroFilterCheck] - C:\windows\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh) HKLM\...\Run: [iPlusManager] - C:\Program Files\iPlus\iPlusChecker.exe [409600 2008-05-30] () HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [NeroCheck] - C:\windows\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh) HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [avast] - C:\Program Files\AVAST Software\Avast\avastUI.exe [4858968 2013-05-09] (AVAST Software) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM\...\Run: [DivXMediaServer] - C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-08-21] (DivX, LLC) HKLM\...\Run: [DivXUpdate] - C:\Program Files\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] () HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,userinit.exe HKCU\...\Run: [ALLUpdate] - C:\Program Files\ALLPlayer\ALLUpdate.exe [2995712 2013-07-19] (ALLPlayer Group Ltd.) HKCU\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-06-14] (Google Inc.) HKCU\...\Run: [uTorrent] - C:\Program Files\uTorrent\uTorrent.exe [896400 2012-08-12] (BitTorrent, Inc.) HKCU\...\Run: [GG] - C:\Users\szczepan\AppData\Local\GG\Application\gghub.exe [4009024 2013-09-02] (GG Network S.A.) HKCU\...\Run: [Easy Speed PC] - C:\Program Files\Probit Software\Easy Speed PC\ESPCLauncher.exe [148272 2013-03-18] (Probit Software LTD) MountPoints2: F - F:\AutoRun.exe MountPoints2: G - G:\AutoRun.exe MountPoints2: H - H:\AutoRun.exe MountPoints2: {012491d7-1ef7-11e0-bd9a-002454ada8aa} - F:\AutoRun.exe MountPoints2: {2ea4c70f-d62c-11df-a3a3-002454ada8aa} - F:\LaunchU3.exe -a MountPoints2: {51cd8ba2-1ef6-11e0-851b-002454ada8aa} - F:\AutoRun.exe MountPoints2: {72bf5979-a87f-11df-9fea-002454ada8aa} - F:\AutoRun.exe MountPoints2: {ad160924-9e32-11df-a0bc-002454ada8aa} - F:\AutoRun.exe MountPoints2: {ad16093a-9e32-11df-a0bc-002454ada8aa} - F:\AutoRun.exe MountPoints2: {ad16095b-9e32-11df-a0bc-002454ada8aa} - F:\AutoRun.exe MountPoints2: {fc5ed5c0-9e3c-11df-a4cb-002454ada8aa} - F:\AutoRun.exe Startup: C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) BootExecute: autocheck autochk * aswBoot.exe /M:5ace4c97c ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.com/ie HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie SearchScopes: HKCU - URL http://isearch.babylon.com/?q={searchTerms}&affID=119370&babsrc=SP_ss_Btisdt4&mntrId=8CC9EE39DF59DA98 SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKCU - {70BA3E6B-1059-2266-0B2C-40E4A85231B8} URL = http://www.ddlstart.com/s/?q={searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=750&product_id=872&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.5.0&install_country=PL&install_date=20120807&user_guid=47C0BF5EB06D450784CD0AC13F04F835&machine_id=f9a75c26771e596bca21e9ed38394831&browser=IE&os=win&os_version=6.1-x86-SP1&iesrc={referrer:source} BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\PROGRA~1\ALLPLA~1\Iplex\IPLEXT~1.DLL (ALLCinema Ltd.) Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU -Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://www.google.com CHR RestoreOnStartup: "hxxp://www.google.com" CHR DefaultSearchURL: (Babylon) - http://search.babylon.com/?q={searchTerms}&affID=119370&babsrc=SP_ss_gin2g&mntrId=8CC9EE39DF59DA98 CHR DefaultSuggestURL: (Babylon) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\30.0.1599.69\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (GanymedeNet.Detector) - C:\Program Files\Ganymede\Plugins\npganymedenet.dll ( ) CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Pando Web Plugin) - C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Unity Player) - C:\Users\szczepan\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) CHR Plugin: (Shockwave for Director) - C:\windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Extension: (YouTube) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (AT_MEcko) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbdglekpmmdlmdfogflhiponnndbokpk\2_0 CHR Extension: (Shopping price comparison) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjokjdicpfckeiihaniimbbmhadclefc\2.2.0_0 CHR Extension: (Coupons Malibu) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnofepcmbghfcimfbjicplikedjcnalm\2.0.1.9_0 CHR Extension: (InfoBird Pro) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\icanoneicgaahjbilcgdmnhoocddknbl\3.0.0.0_0 CHR Extension: (Chrome In-App Payments service) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (xSpeechKit) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pfkoajfaiokpnjcniepkgabjbgpjkegb\0.1_0 CHR Extension: (Gmail) - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM\...\Chrome\Extension: [gjokjdicpfckeiihaniimbbmhadclefc] - C:\Users\szczepan\AppData\Local\Google\Chrome\User Data\Default\Extensions\novo_price_comparison.crx CHR HKLM\...\Chrome\Extension: [hnofepcmbghfcimfbjicplikedjcnalm] - C:\Users\szczepan\AppData\Local\CouponsMalibu.crx CHR HKLM\...\Chrome\Extension: [icanoneicgaahjbilcgdmnhoocddknbl] - C:\Users\szczepan\AppData\Local\InfoBirdPro.crx CHR HKLM\...\Chrome\Extension: [kidmhllhjmmmnpbiaihafgchacpmokof] - C:\Program Files\Lyrmix\133.crx ========================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [46808 2013-05-09] (AVAST Software) R2 KMService; C:\windows\system32\srvany.exe [8192 2011-11-03] () S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.0.229\McCHSvc.exe [237008 2011-09-20] (McAfee, Inc.) R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [247152 2009-07-07] () ==================== Drivers (Whitelisted) ==================== R2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [29816 2013-05-09] (AVAST Software) R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21576 2013-05-09] (AVAST Software) R2 aswMonFlt; C:\windows\system32\drivers\aswMonFlt.sys [66336 2013-05-09] (AVAST Software) R1 aswRdr; C:\Windows\System32\Drivers\aswrdr2.sys [61680 2013-05-09] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49376 2013-05-09] () R1 aswSnx; C:\Windows\System32\Drivers\aswSnx.sys [770344 2013-07-17] (AVAST Software) R1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [369584 2013-07-17] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [56080 2013-05-09] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [175176 2013-07-17] () R0 CLFS; C:\Windows\System32\CLFS.sys [249408 2009-07-14] (Microsoft Corporation) S3 GVCplDrv; C:\Windows\System32\Drivers\GVCplDrv.sys [23040 2004-05-02] () S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [657408 2009-07-14] (Ralink Technology Corp.) S3 rtport; C:\windows\system32\drivers\rtport.sys [15656 2010-07-12] (Windows (R) 2003 DDK 3790 provider) R1 SABI; C:\windows\system32\Drivers\SABI.sys [10752 2010-03-31] (SAMSUNG ELECTRONICS) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [477240 2012-08-07] (Duplex Secure Ltd.) S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [181912 2013-06-04] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 ss_bbus; C:\Windows\System32\DRIVERS\ss_bbus.sys [98432 2010-12-21] (MCCI) S3 ss_bmdfl; C:\Windows\System32\DRIVERS\ss_bmdfl.sys [14848 2010-12-21] (MCCI Corporation) S3 ss_bmdm; C:\Windows\System32\DRIVERS\ss_bmdm.sys [123648 2010-12-21] (MCCI Corporation) S3 ss_bserd; C:\Windows\System32\DRIVERS\ss_bserd.sys [100224 2010-12-21] (MCCI Corporation) S3 Xponaut_WBD; C:\Windows\System32\drivers\xpntwbd.sys [13184 2007-01-19] (Xponaut) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] () S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x] S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x] S3 usbbus; system32\DRIVERS\lgusbbus.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-10-09 23:22 - 2013-10-09 23:22 - 00138910 _____ C:\Users\szczepan\Desktop\Extras.Txt 2013-10-09 23:22 - 2013-10-09 23:22 - 00109358 _____ C:\Users\szczepan\Desktop\OTL.Txt 2013-10-09 23:00 - 2013-10-09 23:00 - 00011018 _____ C:\Users\szczepan\Desktop\10092013_225529.log 2013-10-09 22:55 - 2013-10-09 22:55 - 00000000 ____D C:\_OTL 2013-10-09 22:02 - 2013-10-09 22:02 - 00030198 _____ C:\windows\PFRO.log 2013-10-09 21:59 - 2013-10-09 22:00 - 00000000 ____D C:\AdwCleaner 2013-10-09 21:58 - 2013-10-09 21:58 - 01048960 _____ C:\Users\szczepan\Downloads\adwcleaner (1).exe 2013-10-09 17:38 - 2013-10-09 17:39 - 00000000 ____D C:\Program Files\Common Files\DivX Shared 2013-10-09 17:36 - 2013-10-09 17:41 - 00000000 ____D C:\Program Files\DivX 2013-10-09 17:36 - 2013-10-09 17:36 - 00000000 ____D C:\Program Files\Xvid 2013-10-09 17:36 - 2011-05-30 15:42 - 00240640 _____ C:\windows\system32\xvidvfw.dll 2013-10-09 17:36 - 2011-05-23 11:52 - 00153088 _____ C:\windows\system32\xvid.ax 2013-10-09 17:36 - 2011-05-23 09:46 - 00645632 _____ C:\windows\system32\xvidcore.dll 2013-10-09 17:35 - 2013-10-09 17:43 - 00000000 ____D C:\ProgramData\DivX 2013-10-09 17:35 - 2013-10-09 17:36 - 00000000 ____D C:\Program Files\ffdshow 2013-10-09 17:35 - 2013-10-09 17:35 - 00715038 _____ C:\windows\unins000.exe 2013-10-09 17:35 - 2013-10-09 17:35 - 00001786 _____ C:\windows\unins000.dat 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\LavFilters 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\CDXReader 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\OpenSource Flash Video Splitter 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\Lame For Audacity 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\DSP-worx 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\DirectVobSub 2013-10-09 17:35 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\windows\system32\lagarith.dll 2013-10-09 17:34 - 2013-10-09 17:34 - 00678968 _____ C:\Users\szczepan\Downloads\UltimateCodec.exe 2013-10-09 17:16 - 2013-10-09 22:58 - 00000914 _____ C:\windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2013-10-09 17:16 - 2013-10-07 12:52 - 00837080 _____ (AnyProtect.com) C:\Users\szczepan\AppData\Local\AnyProtectScannerSetup.exe 2013-10-09 17:15 - 2013-10-09 22:00 - 00000601 _____ C:\Users\szczepan\Desktop\Search.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001239 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Help.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001239 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001229 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001224 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC on the Web.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00000000 ____D C:\Program Files\Probit Software 2013-10-09 17:12 - 2013-10-09 17:12 - 00599584 _____ C:\Users\szczepan\Downloads\VuuPC_Setup.exe 2013-10-09 16:45 - 2013-10-09 22:58 - 00000168 _____ C:\windows\setupact.log 2013-10-09 16:45 - 2013-10-09 16:45 - 00000000 _____ C:\windows\setuperr.log 2013-10-09 12:56 - 2013-10-09 23:17 - 00109358 _____ C:\Users\szczepan\Downloads\OTL.Txt 2013-10-09 12:31 - 2013-10-09 21:06 - 00025723 _____ C:\Users\szczepan\Downloads\Addition.txt 2013-10-09 12:29 - 2013-10-09 12:29 - 00000000 ____D C:\FRST 2013-10-09 12:28 - 2013-10-09 12:29 - 01087213 _____ (Farbar) C:\Users\szczepan\Downloads\FRST.exe 2013-10-09 11:02 - 2013-10-09 23:21 - 00138910 _____ C:\Users\szczepan\Downloads\Extras.Txt 2013-10-09 10:51 - 2013-10-09 10:52 - 01045226 _____ C:\Users\szczepan\Downloads\adwcleaner.exe 2013-10-09 10:39 - 2013-10-09 10:39 - 00602112 _____ (OldTimer Tools) C:\Users\szczepan\Downloads\OTL.exe 2013-10-08 09:52 - 2013-10-09 08:40 - 00000000 ____D C:\Users\szczepan\Desktop\ST 2013-10-04 10:06 - 2013-08-31 19:38 - 728217600 ____R C:\Users\szczepan\Desktop\Olympus.Has.Fallen.2013.PL.BRRip.XviD-GHW.avi 2013-10-02 16:56 - 2013-10-02 16:56 - 00001112 _____ C:\Users\szczepan\Desktop\GG.lnk 2013-10-02 16:56 - 2013-10-02 16:56 - 00000000 ___SD C:\Users\szczepan\GG dysk 2013-10-02 16:55 - 2013-10-09 23:02 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\GG 2013-10-02 16:55 - 2013-10-02 16:56 - 00000000 ____D C:\Users\szczepan\AppData\Local\GG 2013-10-02 16:55 - 2013-10-02 16:55 - 00001120 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk 2013-10-01 18:55 - 2013-10-01 18:55 - 00000000 ____D C:\Users\szczepan\AppData\Local\{CAC7AD38-70B8-4479-962F-B50B0AE35530} 2013-10-01 13:59 - 2013-10-04 10:04 - 00000000 ____D C:\Users\szczepan\Desktop\58 NSK 2013-09-24 22:14 - 2013-09-24 22:14 - 00000000 ____D C:\Users\szczepan\AppData\Local\{16D6FA02-1BE4-479B-9675-DD7828BB1C7F} 2013-09-21 01:34 - 2013-09-21 01:34 - 00001020 _____ C:\Users\Public\Desktop\ALLConverter PRO.lnk 2013-09-21 01:34 - 2013-09-21 01:34 - 00001001 _____ C:\Users\Public\Desktop\ALL Media Server.lnk 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Users\szczepan\AppData\Local\ALLMediaServer 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Users\szczepan\AppData\Local\ALLConverter 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Program Files\ALLMediaServer 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Program Files\ALLConverter PRO 2013-09-21 01:33 - 2013-04-05 21:26 - 00276992 _____ (IntelleSoft) C:\windows\system32\BugTrap.dll 2013-09-18 22:08 - 2013-09-18 22:08 - 00094208 _____ (DivX, Inc.) C:\windows\system32\dpl100.dll 2013-09-17 14:18 - 2013-09-17 14:18 - 00072123 _____ C:\Users\szczepan\AppData\Local\CouponsMalibu.crx 2013-09-17 12:31 - 2013-09-17 12:31 - 00000577 _____ C:\Users\szczepan\Desktop\umowa-regwalbrzych (10).zip 2013-09-14 22:07 - 2013-09-14 22:07 - 00000000 ____D C:\Users\szczepan\AppData\Local\avgchrome 2013-09-13 15:57 - 2013-08-10 05:59 - 01767936 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-09-13 15:57 - 2013-08-10 05:59 - 01141248 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-09-13 15:57 - 2013-08-10 05:59 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-09-13 15:57 - 2013-08-10 05:58 - 14332928 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 13761024 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 02876928 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 02048000 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00690688 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00493056 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00391168 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00109056 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00039424 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-09-13 15:57 - 2013-08-10 05:58 - 00033280 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-09-13 15:57 - 2013-08-10 05:07 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-09-13 15:57 - 2013-08-10 04:17 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-09-12 18:55 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-09-12 18:55 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-09-12 18:54 - 2013-08-08 03:03 - 02348544 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-09-12 18:54 - 2013-08-05 03:56 - 00133056 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys 2013-09-12 18:54 - 2013-08-02 03:50 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-09-12 18:54 - 2013-08-02 03:49 - 00868352 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-09-12 18:54 - 2013-08-02 03:49 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 02:52 - 00271360 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-09-12 18:54 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-09-12 18:54 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll ==================== One Month Modified Files and Folders ======= 2013-10-09 23:22 - 2013-10-09 23:22 - 00138910 _____ C:\Users\szczepan\Desktop\Extras.Txt 2013-10-09 23:22 - 2013-10-09 23:22 - 00109358 _____ C:\Users\szczepan\Desktop\OTL.Txt 2013-10-09 23:21 - 2013-10-09 11:02 - 00138910 _____ C:\Users\szczepan\Downloads\Extras.Txt 2013-10-09 23:20 - 2010-10-21 21:49 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\uTorrent 2013-10-09 23:17 - 2013-10-09 12:56 - 00109358 _____ C:\Users\szczepan\Downloads\OTL.Txt 2013-10-09 23:07 - 2009-07-14 06:34 - 00014736 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-10-09 23:07 - 2009-07-14 06:34 - 00014736 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-10-09 23:04 - 2013-04-12 14:23 - 01498600 _____ C:\windows\WindowsUpdate.log 2013-10-09 23:02 - 2013-10-02 16:55 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\GG 2013-10-09 23:00 - 2013-10-09 23:00 - 00011018 _____ C:\Users\szczepan\Desktop\10092013_225529.log 2013-10-09 23:00 - 2010-08-02 14:01 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink DVD Suite 2013-10-09 22:58 - 2013-10-09 17:16 - 00000914 _____ C:\windows\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2013-10-09 22:58 - 2013-10-09 16:45 - 00000168 _____ C:\windows\setupact.log 2013-10-09 22:58 - 2010-08-02 15:52 - 00001032 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-10-09 22:58 - 2009-07-14 06:53 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-10-09 22:55 - 2013-10-09 22:55 - 00000000 ____D C:\_OTL 2013-10-09 22:55 - 2012-08-21 15:28 - 00000000 ____D C:\Program Files\4Shared Toolbar 2013-10-09 22:54 - 2012-07-26 20:32 - 00000930 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-10-09 22:39 - 2010-08-02 15:52 - 00001036 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-10-09 22:29 - 2010-06-14 22:57 - 00737980 _____ C:\windows\system32\perfh015.dat 2013-10-09 22:29 - 2010-06-14 22:57 - 00154636 _____ C:\windows\system32\perfc015.dat 2013-10-09 22:29 - 2009-07-26 22:06 - 01662556 _____ C:\windows\system32\PerfStringBackup.INI 2013-10-09 22:10 - 2011-04-16 15:35 - 00000000 ____D C:\Users\szczepan\Desktop\muza natii 2013-10-09 22:10 - 2010-10-14 21:55 - 00000000 ___RD C:\Users\szczepan\Desktop\MUZA MONINI 2013-10-09 22:03 - 2009-07-14 06:33 - 00434984 _____ C:\windows\system32\FNTCACHE.DAT 2013-10-09 22:02 - 2013-10-09 22:02 - 00030198 _____ C:\windows\PFRO.log 2013-10-09 22:00 - 2013-10-09 21:59 - 00000000 ____D C:\AdwCleaner 2013-10-09 22:00 - 2013-10-09 17:15 - 00000601 _____ C:\Users\szczepan\Desktop\Search.lnk 2013-10-09 22:00 - 2010-08-04 00:03 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-10-09 22:00 - 2010-08-02 14:01 - 00000000 ____D C:\Users\szczepan 2013-10-09 21:58 - 2013-10-09 21:58 - 01048960 _____ C:\Users\szczepan\Downloads\adwcleaner (1).exe 2013-10-09 21:06 - 2013-10-09 12:31 - 00025723 _____ C:\Users\szczepan\Downloads\Addition.txt 2013-10-09 17:43 - 2013-10-09 17:35 - 00000000 ____D C:\ProgramData\DivX 2013-10-09 17:41 - 2013-10-09 17:36 - 00000000 ____D C:\Program Files\DivX 2013-10-09 17:39 - 2013-10-09 17:38 - 00000000 ____D C:\Program Files\Common Files\DivX Shared 2013-10-09 17:36 - 2013-10-09 17:36 - 00000000 ____D C:\Program Files\Xvid 2013-10-09 17:36 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\ffdshow 2013-10-09 17:35 - 2013-10-09 17:35 - 00715038 _____ C:\windows\unins000.exe 2013-10-09 17:35 - 2013-10-09 17:35 - 00001786 _____ C:\windows\unins000.dat 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\LavFilters 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\CDXReader 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\OpenSource Flash Video Splitter 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\Lame For Audacity 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\DSP-worx 2013-10-09 17:35 - 2013-10-09 17:35 - 00000000 ____D C:\Program Files\DirectVobSub 2013-10-09 17:34 - 2013-10-09 17:34 - 00678968 _____ C:\Users\szczepan\Downloads\UltimateCodec.exe 2013-10-09 17:15 - 2013-10-09 17:15 - 00001239 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Help.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001239 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001229 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Uninstall.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00001224 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Easy Speed PC on the Web.lnk 2013-10-09 17:15 - 2013-10-09 17:15 - 00000000 ____D C:\Program Files\Probit Software 2013-10-09 17:12 - 2013-10-09 17:12 - 00599584 _____ C:\Users\szczepan\Downloads\VuuPC_Setup.exe 2013-10-09 16:45 - 2013-10-09 16:45 - 00000000 _____ C:\windows\setuperr.log 2013-10-09 12:29 - 2013-10-09 12:29 - 00000000 ____D C:\FRST 2013-10-09 12:29 - 2013-10-09 12:28 - 01087213 _____ (Farbar) C:\Users\szczepan\Downloads\FRST.exe 2013-10-09 10:52 - 2013-10-09 10:51 - 01045226 _____ C:\Users\szczepan\Downloads\adwcleaner.exe 2013-10-09 10:39 - 2013-10-09 10:39 - 00602112 _____ (OldTimer Tools) C:\Users\szczepan\Downloads\OTL.exe 2013-10-09 08:46 - 2010-09-19 10:40 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared 2013-10-09 08:40 - 2013-10-08 09:52 - 00000000 ____D C:\Users\szczepan\Desktop\ST 2013-10-09 08:33 - 2013-08-02 12:32 - 00000006 _____ C:\Users\szczepan\AppData\Roaming\WBPU-TTL.DAT 2013-10-09 08:33 - 2013-07-31 23:32 - 00000106 _____ C:\Users\szczepan\AppData\Roaming\WB.CFG 2013-10-07 12:52 - 2013-10-09 17:16 - 00837080 _____ (AnyProtect.com) C:\Users\szczepan\AppData\Local\AnyProtectScannerSetup.exe 2013-10-04 10:04 - 2013-10-01 13:59 - 00000000 ____D C:\Users\szczepan\Desktop\58 NSK 2013-10-03 08:56 - 2010-08-04 12:37 - 00000000 ____D C:\Program Files\Gadu-Gadu 10 2013-10-02 16:56 - 2013-10-02 16:56 - 00001112 _____ C:\Users\szczepan\Desktop\GG.lnk 2013-10-02 16:56 - 2013-10-02 16:56 - 00000000 ___SD C:\Users\szczepan\GG dysk 2013-10-02 16:56 - 2013-10-02 16:55 - 00000000 ____D C:\Users\szczepan\AppData\Local\GG 2013-10-02 16:55 - 2013-10-02 16:55 - 00001120 _____ C:\Users\szczepan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GG.lnk 2013-10-01 18:55 - 2013-10-01 18:55 - 00000000 ____D C:\Users\szczepan\AppData\Local\{CAC7AD38-70B8-4479-962F-B50B0AE35530} 2013-09-28 22:25 - 2010-08-04 15:40 - 00000000 ____D C:\Users\szczepan\AppData\Roaming\Skype 2013-09-24 22:14 - 2013-09-24 22:14 - 00000000 ____D C:\Users\szczepan\AppData\Local\{16D6FA02-1BE4-479B-9675-DD7828BB1C7F} 2013-09-24 22:14 - 2010-10-24 21:13 - 00000000 ____D C:\Users\szczepan\AppData\Local\Windows Live 2013-09-21 01:34 - 2013-09-21 01:34 - 00001020 _____ C:\Users\Public\Desktop\ALLConverter PRO.lnk 2013-09-21 01:34 - 2013-09-21 01:34 - 00001001 _____ C:\Users\Public\Desktop\ALL Media Server.lnk 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Users\szczepan\AppData\Local\ALLMediaServer 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Users\szczepan\AppData\Local\ALLConverter 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Program Files\ALLMediaServer 2013-09-21 01:34 - 2013-09-21 01:34 - 00000000 ____D C:\Program Files\ALLConverter PRO 2013-09-21 01:34 - 2012-07-28 11:53 - 00000904 _____ C:\Users\szczepan\Desktop\NapiProjekt.lnk 2013-09-21 01:34 - 2012-07-28 11:53 - 00000000 ____D C:\Program Files\NapiProjekt 2013-09-21 01:33 - 2012-07-28 11:53 - 00000941 _____ C:\Users\szczepan\Desktop\ALLPlayer.lnk 2013-09-21 01:33 - 2011-04-28 19:41 - 00000000 ____D C:\Users\szczepan\AppData\Local\ALLPlayer 2013-09-21 01:33 - 2010-10-30 21:50 - 00000000 ____D C:\Program Files\ALLPlayer 2013-09-18 22:08 - 2013-09-18 22:08 - 00094208 _____ (DivX, Inc.) C:\windows\system32\dpl100.dll 2013-09-17 14:18 - 2013-09-17 14:18 - 00072123 _____ C:\Users\szczepan\AppData\Local\CouponsMalibu.crx 2013-09-17 12:31 - 2013-09-17 12:31 - 00000577 _____ C:\Users\szczepan\Desktop\umowa-regwalbrzych (10).zip 2013-09-14 22:07 - 2013-09-14 22:07 - 00000000 ____D C:\Users\szczepan\AppData\Local\avgchrome 2013-09-14 14:05 - 2009-07-14 04:37 - 00000000 ____D C:\windows\Microsoft.NET 2013-09-14 12:29 - 2009-07-14 04:37 - 00000000 ____D C:\windows\system32\pl-PL 2013-09-13 23:30 - 2011-08-23 18:00 - 00000000 ____D C:\ProgramData\Microsoft Help ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-21 17:43 ==================== End Of Log ============================