Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 28-10-2013 Ran by Joanna (administrator) on DELL on 29-10-2013 07:21:08 Running from C:\anty Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe (IDT, Inc.) C:\Program Files\SigmaTel\C-Major Audio\WDM\stsystra.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Dropbox, Inc.) C:\Documents and Settings\Joanna\Dane aplikacji\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe () C:\Program Files\IndieVolume\IndieVolume.SVC.exe (HP) C:\WINDOWS\system32\HPZipm12.exe (StarWind Software) C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\WINDOWS\system32\taskmgr.exe (Avira Operations GmbH & Co. KG) c:\program files\avira\antivir desktop\ipmGui.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SigmatelSysTrayApp] - C:\Program Files\Sigmatel\C-Major Audio\WDM\stsystra.exe [405504 2008-12-18] (IDT, Inc.) HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-09-02] (Avira Operations GmbH & Co. KG) HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [761947 2006-03-08] (Synaptics, Inc.) Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.) HKCU\...\Policies\Explorer: [NoSMMyPictures] 0x01000000 MountPoints2: {c95bb3e2-4070-11e2-be66-0019b9824836} - "E:\WD SmartWare.exe" autoplay=true Startup: C:\Documents and Settings\Joanna\Menu Start\Programy\Autostart\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Documents and Settings\Joanna\Dane aplikacji\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 ========================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-09-02] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-09-02] (Avira Operations GmbH & Co. KG) S2 AxAutoMntSrv; C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [75624 2012-01-05] (Alcohol Soft Development Team) S3 ICDSPTSV; C:\WINDOWS\system32\IcdSptSv.exe [69632 2003-04-01] (Sony Corporation) R2 IndieVolumeService; C:\Program Files\IndieVolume\IndieVolume.SVC.exe [160256 2012-06-03] () R2 StarWindServiceAE; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) S2 AVGIDSAgent; "C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe" [x] S2 avgwd; "C:\Program Files\AVG\AVG2012\avgwdsvc.exe" [x] ==================== Drivers (Whitelisted) ==================== R0 amdide; C:\Windows\System32\DRIVERS\amdide.sys [11832 2010-06-30] (Advanced Micro Devices Inc.) R1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [36864 2006-07-02] (Advanced Micro Devices) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-09-02] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-09-02] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-29] (Avira Operations GmbH & Co. KG) R3 BCM43XX; C:\Windows\System32\DRIVERS\bcmwl5.sys [3360768 2011-02-15] (Broadcom Corporation) R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [49664 2005-10-28] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2005-10-28] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21568 2005-10-28] (HP) R0 speedfan; C:\Windows\System32\speedfan.sys [25240 2011-03-18] (Almico Software) S4 sptd; C:\Windows\System32\Drivers\sptd.sys [466008 2012-12-25] (Duplex Secure Ltd.) R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH) R3 STHDA; C:\Windows\System32\drivers\sthda.sys [1229949 2009-01-05] (IDT, Inc.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-10-29 05:17 - 2013-10-29 05:17 - 103917820 _____ C:\WINDOWS\system32\鴩哬; 2013-10-28 20:47 - 2013-10-28 20:47 - 00000204 _____ C:\Documents and Settings\Joanna\defogger_reenable 2013-10-28 20:42 - 2013-10-28 20:42 - 00000000 ____D C:\FRST 2013-10-28 09:41 - 2013-10-28 23:17 - 00000000 ____D C:\anty 2013-10-25 20:51 - 2013-10-25 20:51 - 00000542 _____ C:\Documents and Settings\Joanna\Pulpit\przetarg kolejowy.lnk 2013-10-25 12:50 - 2013-10-25 12:50 - 00000012 _____ C:\Documents and Settings\Joanna\Pulpit\dylewski.txt 2013-10-24 18:15 - 2013-10-24 18:15 - 00041448 _____ C:\Documents and Settings\Joanna\Pulpit\[kickass.to]wierook.set.48.e.books.nlt.torrent 2013-10-24 17:53 - 2013-10-24 17:53 - 00000000 ____D C:\Documents and Settings\Joanna\Ustawienia lokalne\Dane aplikacji\uTorrent 2013-10-24 17:34 - 2013-10-26 08:28 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\taalpolitiek 2013-10-23 19:31 - 2013-10-23 19:31 - 00000018 _____ C:\Documents and Settings\Joanna\Pulpit\rasmussen.txt 2013-10-23 17:55 - 2013-10-23 17:55 - 00000064 _____ C:\Documents and Settings\Joanna\Pulpit\biegły sądowy.txt 2013-10-23 06:06 - 2013-10-23 06:06 - 102541796 _____ C:\WINDOWS\system32\랞㬒哬; 2013-10-21 17:46 - 2013-10-21 18:06 - 00001618 _____ C:\Documents and Settings\Joanna\Pulpit\mish.txt 2013-10-21 13:24 - 2013-10-21 13:28 - 00000085 _____ C:\Documents and Settings\Joanna\Pulpit\szklarska.txt 2013-10-20 15:13 - 2013-10-20 15:16 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\od Martyny 2013-10-19 02:26 - 2013-10-19 02:27 - 00004733 _____ C:\WINDOWS\KB961118.log 2013-10-19 02:26 - 2013-10-19 02:26 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB961118$ 2013-10-18 06:37 - 2009-01-09 20:19 - 01089883 ____C C:\WINDOWS\system32\dllcache\ntprint.cat 2013-10-17 14:35 - 2013-10-17 17:36 - 101544623 _____ C:\WINDOWS\system32\葏哬; 2013-10-17 10:05 - 2013-10-19 02:08 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-10-17 10:05 - 2013-10-17 10:05 - 00000000 ____D C:\Program Files\Reference Assemblies 2013-10-17 10:04 - 2008-07-06 13:06 - 01676288 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpssvcs.dll 2013-10-17 10:04 - 2008-07-06 13:06 - 01676288 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpssvcs.dll 2013-10-17 10:04 - 2008-07-06 13:06 - 00575488 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpsshhdr.dll 2013-10-17 10:04 - 2008-07-06 13:06 - 00575488 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpsshhdr.dll 2013-10-17 10:04 - 2008-07-06 13:06 - 00117760 ____N (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll 2013-10-17 10:04 - 2008-07-06 13:06 - 00089088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\filterpipelineprintproc.dll 2013-10-17 10:04 - 2008-07-06 11:50 - 00597504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\printfilterpipelinesvc.exe 2013-10-17 08:56 - 2013-10-26 13:03 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\więzi 2013-10-14 23:47 - 2013-10-15 06:01 - 101076544 _____ C:\WINDOWS\system32\怽䞚哬; 2013-10-14 13:19 - 2013-10-14 13:19 - 00000318 _____ C:\Documents and Settings\Joanna\Pulpit\torr.txt 2013-10-14 07:54 - 2013-10-14 07:54 - 00000522 _____ C:\Documents and Settings\Joanna\Pulpit\Niderlandzka.lnk 2013-10-14 07:54 - 2013-10-14 07:54 - 00000502 _____ C:\Documents and Settings\Joanna\Pulpit\Szwedzka.lnk 2013-10-14 04:22 - 2013-10-14 04:22 - 100838141 _____ C:\WINDOWS\system32\啔굀哬; 2013-10-13 06:04 - 2013-10-28 04:34 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\Mozilla 2013-10-13 02:21 - 2013-10-13 02:21 - 00012670 _____ C:\WINDOWS\KB2862335.log 2013-10-13 02:21 - 2013-10-13 02:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$ 2013-10-13 02:21 - 2013-10-13 02:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$ 2013-10-13 02:12 - 2013-10-13 02:12 - 00012603 _____ C:\WINDOWS\KB2868038.log 2013-10-13 02:12 - 2013-10-13 02:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$ 2013-10-13 02:11 - 2013-10-13 02:12 - 00014456 _____ C:\WINDOWS\KB2879017-IE8.log 2013-10-13 02:10 - 2013-10-13 02:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$ 2013-10-13 02:10 - 2013-10-13 02:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$ 2013-10-12 22:22 - 2013-10-13 03:52 - 100651105 _____ C:\WINDOWS\system32\㾍哬; 2013-10-12 17:17 - 2013-10-12 17:17 - 00000000 ___RD C:\Documents and Settings\Joanna\Moje dokumenty\Moje wideo 2013-10-12 16:55 - 2013-10-13 02:21 - 00018452 _____ C:\WINDOWS\KB2847311.log 2013-10-12 16:54 - 2013-07-03 03:12 - 00025088 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidparse.sys 2013-10-12 16:51 - 2013-07-17 01:58 - 00123008 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbvideo.sys 2013-10-12 16:51 - 2013-07-17 01:58 - 00060160 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbaudio.sys 2013-10-12 16:46 - 2013-08-09 01:55 - 00144128 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbport.sys 2013-10-12 16:46 - 2013-08-09 01:55 - 00005376 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbd.sys 2013-10-12 16:46 - 2009-03-18 12:02 - 00030336 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\usbehci.sys 2013-10-07 02:44 - 2013-10-07 05:56 - 99477982 _____ C:\WINDOWS\system32\꨺壙哬; 2013-10-06 11:58 - 2013-10-06 11:55 - 00001969 _____ C:\Documents and Settings\Joanna\Pulpit\Duits N-D.lnk 2013-10-06 11:55 - 2013-10-06 11:55 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\VanDale 2013-10-06 10:45 - 2013-10-06 10:45 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\dvdcss 2013-10-06 09:03 - 2013-10-06 09:03 - 00045916 _____ C:\Documents and Settings\Joanna\Pulpit\[kickass.to]dutch.nederlands.language.learning.pack.torrent 2013-10-04 21:33 - 2013-10-05 03:24 - 99288311 _____ C:\WINDOWS\system32\哬; 2013-10-02 22:12 - 2013-10-03 00:19 - 98878632 _____ C:\WINDOWS\system32\巠鄥哬; 2013-10-02 21:14 - 2013-10-02 21:34 - 00000000 ____D C:\Program Files\MP3Gain 2013-10-02 21:14 - 2013-10-02 21:14 - 00000000 ____D C:\Documents and Settings\Joanna\Menu Start\Programy\MP3Gain ==================== One Month Modified Files and Folders ======= 2013-10-29 07:03 - 2013-03-20 16:37 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-10-29 07:01 - 2012-05-23 15:22 - 00000211 _____ C:\WINDOWS\wiadebug.log 2013-10-29 07:00 - 2012-12-22 19:51 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\Dropbox 2013-10-29 05:17 - 2013-10-29 05:17 - 103917820 _____ C:\WINDOWS\system32\鴩哬; 2013-10-29 02:34 - 2012-05-23 13:34 - 01872936 _____ C:\WINDOWS\WindowsUpdate.log 2013-10-28 23:24 - 2012-12-23 09:44 - 00000000 ___RD C:\Dropbox 2013-10-28 23:17 - 2013-10-28 09:41 - 00000000 ____D C:\anty 2013-10-28 23:17 - 2012-05-23 15:19 - 01260628 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-10-28 23:17 - 2006-03-02 13:00 - 00558054 _____ C:\WINDOWS\system32\perfh015.dat 2013-10-28 23:17 - 2006-03-02 13:00 - 00105610 _____ C:\WINDOWS\system32\perfc015.dat 2013-10-28 23:13 - 2012-05-23 15:22 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-10-28 23:13 - 2012-05-23 13:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-10-28 23:13 - 2006-03-02 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl 2013-10-28 23:12 - 2012-12-07 14:12 - 00000188 ___SH C:\Documents and Settings\Joanna\ntuser.ini 2013-10-28 23:12 - 2012-12-07 14:12 - 00000000 ___RD C:\Documents and Settings\Joanna\Menu Start\Programy 2013-10-28 23:12 - 2012-12-07 14:12 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit 2013-10-28 20:47 - 2013-10-28 20:47 - 00000204 _____ C:\Documents and Settings\Joanna\defogger_reenable 2013-10-28 20:47 - 2012-12-07 14:12 - 00000000 ____D C:\Documents and Settings\Joanna 2013-10-28 20:42 - 2013-10-28 20:42 - 00000000 ____D C:\FRST 2013-10-28 20:40 - 2013-08-15 07:49 - 00040514 _____ C:\WINDOWS\setupapi.log 2013-10-28 20:11 - 2012-05-23 13:46 - 00032546 _____ C:\WINDOWS\SchedLgU.Txt 2013-10-28 09:41 - 2013-07-27 20:20 - 00000000 ____D C:\DOWNLOAD - latest 2013-10-28 09:18 - 2013-01-13 02:29 - 00000000 ____D C:\WINDOWS\system32\NtmsData 2013-10-28 09:00 - 2012-05-23 13:31 - 00000000 ____D C:\WINDOWS\Registration 2013-10-28 08:53 - 2012-05-23 15:18 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-10-28 04:34 - 2013-10-13 06:04 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\Mozilla 2013-10-27 23:10 - 2012-12-25 19:17 - 00065536 _____ C:\WINDOWS\system32\config\ODiag.evt 2013-10-27 14:10 - 2012-12-26 13:47 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\vlc 2013-10-26 13:03 - 2013-10-17 08:56 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\więzi 2013-10-26 10:38 - 2012-12-22 20:38 - 00096768 _____ C:\Documents and Settings\Joanna\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-10-26 08:28 - 2013-10-24 17:34 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\taalpolitiek 2013-10-25 20:51 - 2013-10-25 20:51 - 00000542 _____ C:\Documents and Settings\Joanna\Pulpit\przetarg kolejowy.lnk 2013-10-25 12:50 - 2013-10-25 12:50 - 00000012 _____ C:\Documents and Settings\Joanna\Pulpit\dylewski.txt 2013-10-24 18:15 - 2013-10-24 18:15 - 00041448 _____ C:\Documents and Settings\Joanna\Pulpit\[kickass.to]wierook.set.48.e.books.nlt.torrent 2013-10-24 17:53 - 2013-10-24 17:53 - 00000000 ____D C:\Documents and Settings\Joanna\Ustawienia lokalne\Dane aplikacji\uTorrent 2013-10-24 17:53 - 2012-12-07 14:12 - 00000000 ___HD C:\Documents and Settings\Joanna\Ustawienia lokalne\Dane aplikacji 2013-10-23 19:31 - 2013-10-23 19:31 - 00000018 _____ C:\Documents and Settings\Joanna\Pulpit\rasmussen.txt 2013-10-23 17:55 - 2013-10-23 17:55 - 00000064 _____ C:\Documents and Settings\Joanna\Pulpit\biegły sądowy.txt 2013-10-23 06:06 - 2013-10-23 06:06 - 102541796 _____ C:\WINDOWS\system32\랞㬒哬; 2013-10-23 00:30 - 2012-12-07 14:12 - 00000000 __RHD C:\Documents and Settings\Joanna\Dane aplikacji 2013-10-21 19:13 - 2006-03-02 13:00 - 00000625 _____ C:\WINDOWS\win.ini 2013-10-21 18:06 - 2013-10-21 17:46 - 00001618 _____ C:\Documents and Settings\Joanna\Pulpit\mish.txt 2013-10-21 13:28 - 2013-10-21 13:24 - 00000085 _____ C:\Documents and Settings\Joanna\Pulpit\szklarska.txt 2013-10-21 08:48 - 2012-12-07 14:12 - 00076776 _____ C:\Documents and Settings\Joanna\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2013-10-20 15:16 - 2013-10-20 15:13 - 00000000 ____D C:\Documents and Settings\Joanna\Pulpit\od Martyny 2013-10-19 02:48 - 2013-01-16 00:58 - 00000000 ____D C:\WINDOWS\Microsoft.NET 2013-10-19 02:27 - 2013-10-19 02:26 - 00004733 _____ C:\WINDOWS\KB961118.log 2013-10-19 02:27 - 2012-05-23 15:19 - 01571977 _____ C:\WINDOWS\FaxSetup.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00756674 _____ C:\WINDOWS\ocgen.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00603867 _____ C:\WINDOWS\tsoc.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00413173 _____ C:\WINDOWS\comsetup.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00251414 _____ C:\WINDOWS\iis6.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00248279 _____ C:\WINDOWS\ntdtcsetup.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00078583 _____ C:\WINDOWS\msgsocm.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00075588 _____ C:\WINDOWS\ocmsn.log 2013-10-19 02:27 - 2012-05-23 15:19 - 00001393 _____ C:\WINDOWS\imsins.log 2013-10-19 02:26 - 2013-10-19 02:26 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB961118$ 2013-10-19 02:08 - 2013-10-17 10:05 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2013-10-17 17:36 - 2013-10-17 14:35 - 101544623 _____ C:\WINDOWS\system32\葏哬; 2013-10-17 13:04 - 2012-05-23 15:39 - 00083693 ____C C:\WINDOWS\spupdsvc.log 2013-10-17 13:00 - 2012-05-23 15:17 - 00450088 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-10-17 10:06 - 2012-05-23 13:46 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji 2013-10-17 10:05 - 2013-10-17 10:05 - 00000000 ____D C:\Program Files\Reference Assemblies 2013-10-17 10:05 - 2012-12-25 19:16 - 00000000 ____D C:\Program Files\MSBuild 2013-10-17 10:05 - 2012-05-23 15:38 - 00229641 _____ C:\WINDOWS\updspapi.log 2013-10-17 10:05 - 2012-05-23 15:08 - 00000000 ____D C:\WINDOWS\system32\spool 2013-10-15 06:01 - 2013-10-14 23:47 - 101076544 _____ C:\WINDOWS\system32\怽䞚哬; 2013-10-14 13:19 - 2013-10-14 13:19 - 00000318 _____ C:\Documents and Settings\Joanna\Pulpit\torr.txt 2013-10-14 07:54 - 2013-10-14 07:54 - 00000522 _____ C:\Documents and Settings\Joanna\Pulpit\Niderlandzka.lnk 2013-10-14 07:54 - 2013-10-14 07:54 - 00000502 _____ C:\Documents and Settings\Joanna\Pulpit\Szwedzka.lnk 2013-10-14 04:22 - 2013-10-14 04:22 - 100838141 _____ C:\WINDOWS\system32\啔굀哬; 2013-10-13 09:21 - 2012-12-28 19:49 - 00000000 ____D C:\Documents and Settings\Joanna\Moje dokumenty\Pobieranie 2013-10-13 09:21 - 2012-12-07 14:12 - 00000000 ___RD C:\Documents and Settings\Joanna\Moje dokumenty\Moja muzyka 2013-10-13 09:21 - 2012-12-07 14:12 - 00000000 ___RD C:\Documents and Settings\Joanna\Moje dokumenty 2013-10-13 03:52 - 2013-10-12 22:22 - 100651105 _____ C:\WINDOWS\system32\㾍哬; 2013-10-13 02:21 - 2013-10-13 02:21 - 00012670 _____ C:\WINDOWS\KB2862335.log 2013-10-13 02:21 - 2013-10-13 02:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862335$ 2013-10-13 02:21 - 2013-10-13 02:21 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2847311$ 2013-10-13 02:21 - 2013-10-12 16:55 - 00018452 _____ C:\WINDOWS\KB2847311.log 2013-10-13 02:21 - 2012-05-23 15:19 - 00001393 _____ C:\WINDOWS\imsins.BAK 2013-10-13 02:17 - 2013-07-16 02:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-10-13 02:12 - 2013-10-13 02:12 - 00012603 _____ C:\WINDOWS\KB2868038.log 2013-10-13 02:12 - 2013-10-13 02:12 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868038$ 2013-10-13 02:12 - 2013-10-13 02:11 - 00014456 _____ C:\WINDOWS\KB2879017-IE8.log 2013-10-13 02:12 - 2012-05-23 15:32 - 78106760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-10-13 02:11 - 2012-05-23 15:39 - 00000000 ____D C:\WINDOWS\ie8updates 2013-10-13 02:10 - 2013-10-13 02:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2883150$ 2013-10-13 02:10 - 2013-10-13 02:10 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862330$ 2013-10-12 18:04 - 2013-03-20 16:37 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-10-12 18:04 - 2012-02-15 13:39 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-10-12 17:17 - 2013-10-12 17:17 - 00000000 ___RD C:\Documents and Settings\Joanna\Moje dokumenty\Moje wideo 2013-10-12 16:53 - 2012-12-07 14:12 - 00000000 ___RD C:\Documents and Settings\Joanna\Menu Start\Programy\Autostart 2013-10-12 16:52 - 2012-12-22 19:54 - 00001001 _____ C:\Documents and Settings\Joanna\Pulpit\Dropbox.lnk 2013-10-12 16:52 - 2012-12-22 19:52 - 00000000 ____D C:\Documents and Settings\Joanna\Menu Start\Programy\Dropbox 2013-10-07 05:56 - 2013-10-07 02:44 - 99477982 _____ C:\WINDOWS\system32\꨺壙哬; 2013-10-06 11:55 - 2013-10-06 11:58 - 00001969 _____ C:\Documents and Settings\Joanna\Pulpit\Duits N-D.lnk 2013-10-06 11:55 - 2013-10-06 11:55 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\VanDale 2013-10-06 10:45 - 2013-10-06 10:45 - 00000000 ____D C:\Documents and Settings\Joanna\Dane aplikacji\dvdcss 2013-10-06 10:07 - 2012-05-23 13:31 - 00009010 ____C C:\WINDOWS\wmsetup.log 2013-10-06 09:03 - 2013-10-06 09:03 - 00045916 _____ C:\Documents and Settings\Joanna\Pulpit\[kickass.to]dutch.nederlands.language.learning.pack.torrent 2013-10-05 03:24 - 2013-10-04 21:33 - 99288311 _____ C:\WINDOWS\system32\哬; 2013-10-03 00:19 - 2013-10-02 22:12 - 98878632 _____ C:\WINDOWS\system32\巠鄥哬; 2013-10-02 21:34 - 2013-10-02 21:14 - 00000000 ____D C:\Program Files\MP3Gain 2013-10-02 21:14 - 2013-10-02 21:14 - 00000000 ____D C:\Documents and Settings\Joanna\Menu Start\Programy\MP3Gain ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2006-03-02 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2006-03-02 13:00] - [2008-04-14 18:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 13:00] - [2008-04-14 17:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================