Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-11-2013 01 Ran by jadziastrzelin (administrator) on ACER on 11-11-2013 16:14:59 Running from C:\Users\jadziastrzelin\Desktop Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Kingsoft Corporation) c:\program files (x86)\kingsoft\kingsoft antivirus\kxescore.exe (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Kingsoft Corporation) C:\Program Files (x86)\kingsoft\kingsoft antivirus\kxetray.exe (Kingsoft Corporation) C:\Program Files (x86)\kingsoft\kingsoft antivirus\vulfix.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2392360 2010-10-08] (Synaptics Incorporated) HKLM\...\Run: [Power Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1796200 2011-02-23] (Acer Incorporated) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKCU\...\Run: [Google Update] - C:\Users\jadziastrzelin\AppData\Local\Google\Update\GoogleUpdate.exe [136176 2011-10-21] (Google Inc.) HKCU\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) MountPoints2: {a78eb48e-986e-11e2-887f-b870f4addb12} - E:\AutoRun.exe MountPoints2: {ced952cd-61ea-11e1-ab7c-b870f4addb12} - E:\memotropil.exe MountPoints2: {d1998f66-989f-11e2-aaf1-b870f4addb12} - E:\AutoRun.exe HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340336 2010-09-28] (Egis Technology Inc.) HKLM-x32\...\Run: [EgisTecPMMUpdate] - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-09-18] (Egis Technology Inc.) HKLM-x32\...\Run: [EgisUpdate] - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-09-18] (Egis Technology Inc.) HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-02-15] (NTI Corporation) HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [1092688 2011-03-31] (Dritek System Inc.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-01-11] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ArcadeMovieService] - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-02-19] (CyberLink Corp.) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [kxesc] - C:\Program Files (x86)\kingsoft\kingsoft antivirus\kxetray.exe [1595056 2013-02-16] (Kingsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () HKU\Default User\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-07-29] () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = https://www.google.pl/ BHO: No Name - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No File BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) BHO-x32: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - C:\Program Files\mcafee\msk\mskapbho.dll () BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: SpecialSavings - {938958E8-355C-49FF-92B0-53C1B87ACEA9} - C:\Program Files (x86)\SpecialSavings\ScriptHost.dll (SpecialSavings.com) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION / CyCom Technology Corp.) Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: HKLM {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 62.179.1.62 62.179.1.63 Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://www.google.com/" CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\jadziastrzelin\AppData\Local\Google\Chrome\Application\30.0.1599.101\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\jadziastrzelin\AppData\Local\Google\Chrome\Application\30.0.1599.101\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\jadziastrzelin\AppData\Local\Google\Chrome\Application\30.0.1599.101\gcswf32.dll No File CHR Plugin: (McAfee SiteAdvisor) - C:\Users\jadziastrzelin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.41.123.2_0\McChPlg.dll No File CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File CHR Plugin: (Windows Live\u0099 Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll No File CHR Extension: (SpecialSavings) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfcpnihmbfoaeoakalclfalkdepgiaje\2.0.0.6_0 CHR Extension: (YouTube) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Adblock Plus) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.6.1_0 CHR Extension: (Google Search) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (AdBlock) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.14_0 CHR Extension: (Smiley Bar for Facebook) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\hgojaaaiddhmiiakpejiklijbalpckih\1.0.1.1_0 CHR Extension: (Google Wallet) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0 CHR Extension: (Gmail) - C:\Users\JADZIA~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM-x32\...\Chrome\Extension: [bfcpnihmbfoaeoakalclfalkdepgiaje] - C:\Users\jadziastrzelin\AppData\Roaming\SpecialSavings\SpecialSavings.crx CHR HKLM-x32\...\Chrome\Extension: [hgojaaaiddhmiiakpejiklijbalpckih] - C:\Users\jadziastrzelin\AppData\Roaming\StatusWinks\statuswinks.crx CHR StartMenuInternet: Google Chrome - C:\Users\jadziastrzelin\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 kxescore; c:\program files (x86)\kingsoft\kingsoft antivirus\kxescore.exe [123992 2013-02-16] (Kingsoft Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [257344 2011-02-15] (NTI Corporation) S2 SwOffScheduler; C:\Program Files\Airytec\Switch Off\swoff.exe [173056 2011-05-28] (Airytec) S2 SwOffWeb; C:\Program Files\Airytec\Switch Off\swoff.exe [173056 2011-05-28] (Airytec) ==================== Drivers (Whitelisted) ==================== R0 kavbootc; C:\Windows\System32\drivers\kavbootc64.sys [31848 2013-02-16] (Kingsoft Corporation) R1 KDHacker; c:\program files (x86)\kingsoft\kingsoft antivirus\security\kxescan\kdhacker64.sys [164696 2013-02-16] (Kingsoft Corporation) R2 kisknl; C:\Windows\system32\drivers\kisknl.sys [210296 2013-02-16] (Kingsoft Corporation) R4 KUsbGuard; C:\Program Files (x86)\kingsoft\kingsoft antivirus\kusbquery64.sys [18296 2013-02-16] (Kingsoft Corporation) S2 MLPTDR_N; \??\C:\Windows\system32\ [0 ] () S2 MLPTDR_N; \??\C:\Windows\SysWow64\ [0 ] () S3 WinRing0_1_2_0; C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [14544 2010-11-01] (OpenLibSys.org) S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [x] S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [x] S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [x] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [x] S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [x] S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-11-11 15:25 - 2013-11-11 15:25 - 00065232 _____ (Malwarebytes) C:\Users\jadziastrzelin\Downloads\regassassin-setup-1.03.exe 2013-11-11 15:12 - 2013-11-11 15:12 - 00020738 _____ C:\Users\jadziastrzelin\Documents\kopia zmian rejestru 11.11.2013.reg 2013-11-11 15:05 - 2013-11-11 15:05 - 00000352 _____ C:\Windows\PFRO.log 2013-11-11 15:02 - 2013-11-11 15:02 - 00621568 _____ (Duplex Secure Ltd.) C:\Users\jadziastrzelin\Downloads\SPTDinst-v184-x64.exe 2013-11-11 14:28 - 2013-11-11 14:28 - 00035242 _____ C:\Users\jadziastrzelin\Downloads\CV.odt 2013-11-11 13:04 - 2013-11-11 13:04 - 00108462 _____ C:\Users\jadziastrzelin\Downloads\Extras.Txt 2013-11-11 13:00 - 2013-11-11 13:00 - 00115096 _____ C:\Users\jadziastrzelin\Downloads\OTL.Txt 2013-11-11 01:43 - 2013-11-11 16:13 - 00000594 _____ C:\Windows\setupact.log 2013-11-11 01:43 - 2013-11-11 01:43 - 00000000 _____ C:\Windows\setuperr.log 2013-11-11 01:08 - 2013-11-11 01:08 - 00602112 _____ (OldTimer Tools) C:\Users\jadziastrzelin\Downloads\OTL.scr 2013-11-11 01:08 - 2013-11-11 01:08 - 00602112 _____ (OldTimer Tools) C:\Users\jadziastrzelin\Downloads\OTL.exe 2013-11-11 01:05 - 2013-11-11 01:05 - 00043555 _____ C:\Users\jadziastrzelin\Downloads\FRST.txt 2013-11-11 01:02 - 2013-11-11 01:05 - 00023266 _____ C:\Users\jadziastrzelin\Downloads\Addition.txt 2013-11-11 00:48 - 2013-11-11 00:49 - 01957590 _____ (Farbar) C:\Users\jadziastrzelin\Desktop\FRST64.exe 2013-11-11 00:48 - 2013-11-11 00:48 - 00000000 ____D C:\FRST 2013-11-10 16:01 - 2013-11-10 16:01 - 00000033 _____ C:\ProgramData\PS.log 2013-11-10 15:57 - 2013-11-10 15:58 - 00050418 ____N C:\Users\jadziastrzelin\Documents\kopia zmian rejestru 10.11.2013.reg 2013-11-10 15:48 - 2013-11-10 15:48 - 00000826 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-11-10 15:44 - 2013-11-10 15:46 - 04379048 _____ (Piriform Ltd) C:\Users\jadziastrzelin\Downloads\ccsetup407.exe 2013-11-04 13:19 - 2013-11-04 13:19 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Local\{6E2F57EA-6226-4EDD-BD9C-8F5852C091DB} 2013-10-27 14:17 - 2013-10-27 14:17 - 00035968 _____ C:\Users\jadziastrzelin\Desktop\Schizofrenia - objawy osiowe.doc - Dokumenty - kamla06 - http chomikuj.pl.htm 2013-10-27 13:29 - 2013-11-10 15:48 - 00031232 ___SH C:\Users\jadziastrzelin\Downloads\Thumbs.db 2013-10-13 23:40 - 2013-10-13 23:41 - 20319852 _____ C:\Users\jadziastrzelin\Downloads\insidemyradio(dobreprogramy.pl).rar 2013-10-13 01:05 - 2013-11-10 03:46 - 00007613 _____ C:\Users\jadziastrzelin\AppData\Local\Resmon.ResmonCfg 2013-10-13 01:04 - 2013-10-13 01:09 - 00000000 ____D C:\Windows\system32\MRT 2013-10-13 00:55 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-10-13 00:55 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-10-13 00:55 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2013-10-13 00:55 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-10-13 00:55 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2013-10-13 00:55 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-10-13 00:55 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-10-13 00:55 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-10-13 00:55 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2013-10-13 00:55 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-10-13 00:55 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2013-10-13 00:55 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-10-13 00:55 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-10-13 00:55 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-10-13 00:55 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-10-13 00:55 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2013-10-13 00:55 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2013-10-13 00:54 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2013-10-13 00:54 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2013-10-13 00:54 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2013-10-13 00:54 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2013-10-13 00:54 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2013-10-13 00:54 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2013-10-13 00:54 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2013-10-13 00:54 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2013-10-13 00:54 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2013-10-13 00:53 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-10-13 00:52 - 2013-09-14 02:10 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2013-10-13 00:52 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-10-13 00:52 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2013-10-13 00:52 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2013-10-13 00:52 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2013-10-13 00:52 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-10-13 00:52 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2013-10-13 00:52 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys 2013-10-13 00:52 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2013-10-13 00:52 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2013-10-13 00:52 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2013-10-13 00:52 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-10-13 00:52 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2013-10-13 00:52 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2013-10-13 00:48 - 2013-08-28 02:21 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-10-13 00:47 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-10-13 00:47 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 29150720 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 24229376 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 19870720 ____N (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 16082944 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 13703168 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 11658752 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-10-13 00:42 - 2013-10-13 00:42 - 07233336 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 06985624 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 05944264 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 05000320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 04450264 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 03342768 ____N C:\Windows\SysWOW64\atiumdva.cap 2013-10-13 00:42 - 2013-10-13 00:42 - 03309936 _____ C:\Windows\system32\atiumd6a.cap 2013-10-13 00:42 - 2013-10-13 00:42 - 01187342 _____ C:\Windows\system32\amdocl_as64.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 01061902 _____ C:\Windows\system32\amdocl_ld64.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00995342 ____N C:\Windows\SysWOW64\amdocl_as32.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00970912 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00798734 ____N C:\Windows\SysWOW64\amdocl_ld32.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00695006 _____ C:\Windows\system32\atiicdxx.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-10-13 00:42 - 2013-10-13 00:42 - 00522872 ____N C:\Windows\SysWOW64\atiapfxx.blb 2013-10-13 00:42 - 2013-10-13 00:42 - 00522872 _____ C:\Windows\system32\atiapfxx.blb 2013-10-13 00:42 - 2013-10-13 00:42 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00430080 ____N (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00230836 _____ C:\Windows\system32\ativvaxy_cik.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00230064 _____ C:\Windows\system32\ativvaxy_cik_nd.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00222720 _____ C:\Windows\system32\clinfo.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00204952 ____N C:\Windows\SysWOW64\ativvsvl.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00204952 _____ C:\Windows\system32\ativvsvl.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00163840 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00157144 ____N C:\Windows\SysWOW64\ativvsva.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00157144 _____ C:\Windows\system32\ativvsva.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00118584 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00112440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00076800 _____ (AMD) C:\Windows\system32\coinst_12.104.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00076288 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00075600 _____ C:\Windows\system32\ativce02.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00071704 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00071704 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00065536 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00064000 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00056320 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00054784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00053248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00051200 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00050176 ____N (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00046080 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044066 _____ C:\Windows\atiogl.xml 2013-10-13 00:42 - 2013-10-13 00:42 - 00044032 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00043520 ____N (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00034816 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00017920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00014848 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00003917 ____N C:\Windows\SysWOW64\atipblag.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00003917 _____ C:\Windows\system32\atipblag.dat 2013-10-13 00:41 - 2013-10-13 00:42 - 23810560 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-10-13 00:40 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-10-13 00:40 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-10-13 00:37 - 2013-11-11 16:13 - 00000302 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-10-13 00:37 - 2013-10-13 00:37 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-10-13 00:37 - 2013-10-13 00:37 - 00002594 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-10-13 00:37 - 2013-10-13 00:37 - 00001144 _____ C:\Users\Public\Desktop\Driver Booster.lnk 2013-10-13 00:37 - 2013-10-13 00:37 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\IObit 2013-10-13 00:35 - 2013-05-13 06:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-10-13 00:35 - 2013-05-13 06:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-10-13 00:35 - 2013-05-13 06:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-10-13 00:35 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2013-10-13 00:35 - 2013-05-13 05:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-10-13 00:35 - 2013-05-13 05:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-10-13 00:35 - 2013-05-13 05:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-10-13 00:35 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2013-10-13 00:35 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-10-13 00:35 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-10-13 00:33 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll ==================== One Month Modified Files and Folders ======= 2013-11-11 16:15 - 2011-07-21 17:27 - 01609873 _____ C:\Windows\WindowsUpdate.log 2013-11-11 16:13 - 2013-11-11 01:43 - 00000594 _____ C:\Windows\setupact.log 2013-11-11 16:13 - 2013-10-13 00:37 - 00000302 _____ C:\Windows\Tasks\Driver Booster Update.job 2013-11-11 16:13 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-11-11 15:48 - 2012-04-19 10:28 - 00000930 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-11-11 15:25 - 2013-11-11 15:25 - 00065232 _____ (Malwarebytes) C:\Users\jadziastrzelin\Downloads\regassassin-setup-1.03.exe 2013-11-11 15:22 - 2011-10-21 22:12 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3277177247-80164727-4000698588-1000UA.job 2013-11-11 15:16 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-11-11 15:16 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-11-11 15:12 - 2013-11-11 15:12 - 00020738 _____ C:\Users\jadziastrzelin\Documents\kopia zmian rejestru 11.11.2013.reg 2013-11-11 15:05 - 2013-11-11 15:05 - 00000352 _____ C:\Windows\PFRO.log 2013-11-11 15:03 - 2011-11-20 18:09 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\SoftGrid Client 2013-11-11 15:02 - 2013-11-11 15:02 - 00621568 _____ (Duplex Secure Ltd.) C:\Users\jadziastrzelin\Downloads\SPTDinst-v184-x64.exe 2013-11-11 14:28 - 2013-11-11 14:28 - 00035242 _____ C:\Users\jadziastrzelin\Downloads\CV.odt 2013-11-11 13:04 - 2013-11-11 13:04 - 00108462 _____ C:\Users\jadziastrzelin\Downloads\Extras.Txt 2013-11-11 13:00 - 2013-11-11 13:00 - 00115096 _____ C:\Users\jadziastrzelin\Downloads\OTL.Txt 2013-11-11 10:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2013-11-11 02:00 - 2011-05-14 12:19 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-11-11 01:59 - 2011-07-21 17:40 - 00000000 ____D C:\ProgramData\CyberLink 2013-11-11 01:54 - 2011-05-14 13:27 - 00000000 ____D C:\Program Files (x86)\NTI 2013-11-11 01:43 - 2013-11-11 01:43 - 00000000 _____ C:\Windows\setuperr.log 2013-11-11 01:22 - 2011-10-21 22:12 - 00001042 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3277177247-80164727-4000698588-1000Core.job 2013-11-11 01:08 - 2013-11-11 01:08 - 00602112 _____ (OldTimer Tools) C:\Users\jadziastrzelin\Downloads\OTL.scr 2013-11-11 01:08 - 2013-11-11 01:08 - 00602112 _____ (OldTimer Tools) C:\Users\jadziastrzelin\Downloads\OTL.exe 2013-11-11 01:07 - 2012-02-18 14:20 - 00000000 ____D C:\Users\jadziastrzelin\Downloads\Breaking Bad - Season 4 [Bootleg] 2013-11-11 01:05 - 2013-11-11 01:05 - 00043555 _____ C:\Users\jadziastrzelin\Downloads\FRST.txt 2013-11-11 01:05 - 2013-11-11 01:02 - 00023266 _____ C:\Users\jadziastrzelin\Downloads\Addition.txt 2013-11-11 00:49 - 2013-11-11 00:48 - 01957590 _____ (Farbar) C:\Users\jadziastrzelin\Desktop\FRST64.exe 2013-11-11 00:48 - 2013-11-11 00:48 - 00000000 ____D C:\FRST 2013-11-10 19:51 - 2013-01-14 15:33 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Local\PMB Files 2013-11-10 19:51 - 2013-01-14 15:33 - 00000000 ____D C:\ProgramData\PMB Files 2013-11-10 17:50 - 2013-02-18 01:56 - 00000000 ____D C:\Users\jadziastrzelin\Downloads\PCPerformer-BitTorrent-a 2013-11-10 17:50 - 2013-02-16 18:10 - 00000000 __SHD C:\KRECYCLE 2013-11-10 16:04 - 2011-05-14 12:29 - 00000000 ____D C:\Program Files (x86)\Acer GameZone 2013-11-10 16:01 - 2013-11-10 16:01 - 00000033 _____ C:\ProgramData\PS.log 2013-11-10 15:58 - 2013-11-10 15:57 - 00050418 ____N C:\Users\jadziastrzelin\Documents\kopia zmian rejestru 10.11.2013.reg 2013-11-10 15:54 - 2012-10-29 01:02 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\Media Player Classic 2013-11-10 15:54 - 2011-11-20 17:32 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\uTorrent 2013-11-10 15:53 - 2007-07-12 02:49 - 00000000 ____D C:\Windows\Panther 2013-11-10 15:48 - 2013-11-10 15:48 - 00000826 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-11-10 15:48 - 2013-10-27 13:29 - 00031232 ___SH C:\Users\jadziastrzelin\Downloads\Thumbs.db 2013-11-10 15:48 - 2013-02-16 20:56 - 00000000 ____D C:\Program Files\CCleaner 2013-11-10 15:46 - 2013-11-10 15:44 - 04379048 _____ (Piriform Ltd) C:\Users\jadziastrzelin\Downloads\ccsetup407.exe 2013-11-10 14:47 - 2013-02-17 23:25 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\Skype 2013-11-10 03:46 - 2013-10-13 01:05 - 00007613 _____ C:\Users\jadziastrzelin\AppData\Local\Resmon.ResmonCfg 2013-11-10 03:43 - 2013-02-18 01:57 - 00000000 ____D C:\ProgramData\IBUpdaterService 2013-11-09 17:48 - 2011-07-21 18:12 - 00698590 _____ C:\Windows\system32\perfh015.dat 2013-11-09 17:48 - 2011-07-21 18:12 - 00135410 _____ C:\Windows\system32\perfc015.dat 2013-11-09 17:48 - 2009-07-14 06:13 - 01551444 _____ C:\Windows\system32\PerfStringBackup.INI 2013-11-04 13:19 - 2013-11-04 13:19 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Local\{6E2F57EA-6226-4EDD-BD9C-8F5852C091DB} 2013-11-04 13:19 - 2011-10-20 07:58 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Local\Windows Live 2013-10-27 14:17 - 2013-10-27 14:17 - 00035968 _____ C:\Users\jadziastrzelin\Desktop\Schizofrenia - objawy osiowe.doc - Dokumenty - kamla06 - http chomikuj.pl.htm 2013-10-26 11:30 - 2011-10-21 22:14 - 00002409 _____ C:\Users\jadziastrzelin\Desktop\Google Chrome.lnk 2013-10-14 10:05 - 2011-10-20 07:46 - 00000000 ___RD C:\Users\jadziastrzelin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-10-14 10:05 - 2011-10-20 07:46 - 00000000 ___RD C:\Users\jadziastrzelin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-10-14 10:04 - 2009-07-14 05:45 - 00290024 _____ C:\Windows\system32\FNTCACHE.DAT 2013-10-14 10:03 - 2013-03-13 10:28 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-10-14 10:03 - 2013-03-13 10:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-10-13 23:42 - 2013-06-03 09:53 - 00000000 ____D C:\hax 2013-10-13 23:41 - 2013-10-13 23:40 - 20319852 _____ C:\Users\jadziastrzelin\Downloads\insidemyradio(dobreprogramy.pl).rar 2013-10-13 03:32 - 2010-11-21 08:17 - 00000000 ____D C:\Program Files\Windows Journal 2013-10-13 01:09 - 2013-10-13 01:04 - 00000000 ____D C:\Windows\system32\MRT 2013-10-13 00:50 - 2012-04-19 10:28 - 00003868 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-10-13 00:48 - 2012-04-19 10:28 - 00692616 ____N (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-10-13 00:48 - 2012-04-19 10:28 - 00071048 ____N (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-10-13 00:42 - 2013-10-13 00:42 - 29150720 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 24229376 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 19870720 ____N (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 16082944 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 13703168 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 11658752 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-10-13 00:42 - 2013-10-13 00:42 - 07233336 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 06985624 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 05944264 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 05000320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 04450264 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 03342768 ____N C:\Windows\SysWOW64\atiumdva.cap 2013-10-13 00:42 - 2013-10-13 00:42 - 03309936 _____ C:\Windows\system32\atiumd6a.cap 2013-10-13 00:42 - 2013-10-13 00:42 - 01187342 _____ C:\Windows\system32\amdocl_as64.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 01061902 _____ C:\Windows\system32\amdocl_ld64.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00995342 ____N C:\Windows\SysWOW64\amdocl_as32.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00970912 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00798734 ____N C:\Windows\SysWOW64\amdocl_ld32.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00695006 _____ C:\Windows\system32\atiicdxx.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00581120 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-10-13 00:42 - 2013-10-13 00:42 - 00522872 ____N C:\Windows\SysWOW64\atiapfxx.blb 2013-10-13 00:42 - 2013-10-13 00:42 - 00522872 _____ C:\Windows\system32\atiapfxx.blb 2013-10-13 00:42 - 2013-10-13 00:42 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00430080 ____N (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00230836 _____ C:\Windows\system32\ativvaxy_cik.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00230064 _____ C:\Windows\system32\ativvaxy_cik_nd.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00222720 _____ C:\Windows\system32\clinfo.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00204952 ____N C:\Windows\SysWOW64\ativvsvl.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00204952 _____ C:\Windows\system32\ativvsvl.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00163840 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-10-13 00:42 - 2013-10-13 00:42 - 00157144 ____N C:\Windows\SysWOW64\ativvsva.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00157144 _____ C:\Windows\system32\ativvsva.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00118584 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00112440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00076800 _____ (AMD) C:\Windows\system32\coinst_12.104.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00076288 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00075600 _____ C:\Windows\system32\ativce02.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00071704 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00071704 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00065536 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00064000 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00056320 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00054784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00053248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00051200 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00050176 ____N (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00046080 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044066 _____ C:\Windows\atiogl.xml 2013-10-13 00:42 - 2013-10-13 00:42 - 00044032 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00044032 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00043520 ____N (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00034816 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00017920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00014848 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-10-13 00:42 - 2013-10-13 00:42 - 00003917 ____N C:\Windows\SysWOW64\atipblag.dat 2013-10-13 00:42 - 2013-10-13 00:42 - 00003917 _____ C:\Windows\system32\atipblag.dat 2013-10-13 00:42 - 2013-10-13 00:41 - 23810560 ____N (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-10-13 00:42 - 2011-05-14 12:59 - 08272136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2013-10-13 00:42 - 2011-05-14 12:59 - 01155264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2013-10-13 00:42 - 2011-05-14 12:59 - 00636416 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2013-10-13 00:42 - 2011-05-14 12:59 - 00562688 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-10-13 00:42 - 2011-05-14 12:59 - 00241152 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-10-13 00:42 - 2011-05-14 12:59 - 00139696 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2013-10-13 00:42 - 2011-05-14 12:59 - 00092304 ____N (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2013-10-13 00:37 - 2013-10-13 00:37 - 00003232 _____ C:\Windows\System32\Tasks\Driver Booster Scan 2013-10-13 00:37 - 2013-10-13 00:37 - 00002594 _____ C:\Windows\System32\Tasks\Driver Booster Update 2013-10-13 00:37 - 2013-10-13 00:37 - 00001144 _____ C:\Users\Public\Desktop\Driver Booster.lnk 2013-10-13 00:37 - 2013-10-13 00:37 - 00000000 ____D C:\Users\jadziastrzelin\AppData\Roaming\IObit 2013-10-13 00:37 - 2013-04-26 23:31 - 00000000 ____D C:\ProgramData\IObit 2013-10-13 00:37 - 2013-04-26 23:31 - 00000000 ____D C:\Program Files (x86)\IObit 2013-10-13 00:17 - 2011-10-21 22:12 - 00004082 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3277177247-80164727-4000698588-1000UA 2013-10-13 00:17 - 2011-10-21 22:12 - 00003686 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3277177247-80164727-4000698588-1000Core 2013-10-13 00:15 - 2013-02-17 23:25 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-10-13 00:15 - 2011-05-14 12:43 - 00000000 ____D C:\ProgramData\Skype ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-09-21 21:35 ==================== End Of Log ============================