Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 01-12-2013 Ran by Paweł (administrator) on DOM-PAWEL on 01-12-2013 14:02:44 Running from C:\ Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Safe Mode (with Networking) ==================== Processes (Whitelisted) =================== (SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCore.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [GrooveMonitor] - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation) HKLM\...\Run: [Cmaudio] - RunDll32 cmicnfg.cpl,CMICtrlWnd HKLM\...\Run: [AtiPTA] - atiptaxx.exe HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2010-02-10] (Advanced Micro Devices, Inc.) HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411952 2013-09-23] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [vProt] - C:\Program Files\AVG Secure Search\vprot.exe [2420248 2013-11-11] () HKLM\...\Run: [lxczbmgr.exe] - C:\Program Files\Lexmark 1200 Series\LXCZbmgr.exe [74408 2009-04-27] (Lexmark International, Inc.) HKLM\...\Run: [Plus Internet] - C:\Program Files\Plus Internet\PlusInternetChecker.exe [497016 2012-03-13] () HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation) HKLM\...\Runonce: [Malwarebytes Anti-Malware (cleanup)] - rundll32.exe "C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL (SUPERAntiSpyware.com) Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.) HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [4600704 2011-08-12] (SUPERAntiSpyware.com) MountPoints2: {41fa4b7a-26ad-11e2-a431-00138f1f48c2} - G:\Autorun.exe MountPoints2: {a4fc1969-16fa-11e2-a41e-00138f1f48c2} - G:\AutoRun.exe MountPoints2: {bb79a1df-3354-11e2-a448-001e101fd271} - G:\autorun.exe Startup: C:\Documents and Settings\Paweł\Menu Start\Programy\Autostart\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) BootExecute: autocheck autochk * C:\PROGRA~1\AVG\AVG2013\avgrsx.exe /sync /restart ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/?utm_source=b&utm_medium=v9tb HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=v9tb SearchScopes: HKCU - DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={C1A71348-BA85-47F8-A182-39775F103569}&mid=b6945d0a090647d087a4d15ac9fba131-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pl&ds=AVG&pr=pr&d=2013-01-13 19:06:28&v=17.0.0.7&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={C1A71348-BA85-47F8-A182-39775F103569}&mid=b6945d0a090647d087a4d15ac9fba131-ad1491be2ce6c122f6b66faa90e70c2decf7d34c&lang=pl&ds=AVG&pr=pr&d=2013-01-13 19:06:28&v=17.0.0.7&pid=avg&sg=0&sap=dsp&q={searchTerms} BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.1.2.1\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - No Name - {9E131A93-EED7-4BEB-B015-A0ADB30B5646} - No File Toolbar: HKLM - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files\AVG Secure Search\17.1.2.1\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\17.1.2\ViProtocol.dll (AVG Secure Search) ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\system32\shell32.dll [8491520 2012-06-08] (Microsoft Corporation) ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\xco6oqkm.default FF user.js: detected! => C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\xco6oqkm.default\user.js FF Homepage: hxxp://www.wp.pl/ FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\17.1.2\\npsitesafety.dll (AVG Technologies) FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\xco6oqkm.default\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\babylon.xml FF SearchPlugin: C:\Program Files\mozilla firefox\searchplugins\v9.xml FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF Extension: zacz3k - C:\Documents and Settings\Paweł\Dane aplikacji\Mozilla\Firefox\Profiles\xco6oqkm.default\Extensions\zacz3k@gmail.com.xpi FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [avg@toolbar] - C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\17.1.2.1 FF Extension: AVG Security Toolbar - C:\Documents and Settings\All Users\Dane aplikacji\AVG Secure Search\FireFoxExt\17.1.2.1 FF HKCU\...\Firefox\Extensions: [{dfefbe51-ca52-484b-adf0-6b158b05262d}] - C:\Documents and Settings\All Users\Dane aplikacji\PC Performer Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension FF Extension: PC Performer Manager - C:\Documents and Settings\All Users\Dane aplikacji\PC Performer Manager\2.4.897.175\{61d8b74e-8d89-46ff-afa6-33382c54ac73}\FirefoxExtension ========================== Services (Whitelisted) ================= R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [121216 2011-08-08] (SUPERAntiSpyware.com) S2 ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [593920 2010-02-10] () S2 avgfws; C:\Program Files\AVG\AVG2013\avgfws.exe [1432080 2013-09-04] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.) S2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.) S2 lxcz_device; C:\WINDOWS\system32\lxczcoms.exe [537520 2007-04-19] ( ) S2 vToolbarUpdater17.1.2; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\17.1.2\ToolbarUpdater.exe [1734680 2013-11-11] (AVG Secure Search) S2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" S2 PC Performer Manager; ==================== Drivers (Whitelisted) ==================== S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [271360 2013-01-13] () R3 Avgfwdx; C:\Windows\System32\DRIVERS\avgfwdx.sys [30944 2012-01-12] (AVG Technologies CZ, s.r.o.) S3 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwdx.sys [30944 2012-01-12] (AVG Technologies CZ, s.r.o.) S1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.) S1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.) S1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.) R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\WINDOWS\system32\drivers\avgtpx86.sys [37664 2013-11-11] (AVG Technologies) S3 cmuda; C:\Windows\System32\drivers\cmuda.sys [821760 2004-08-23] (C-Media Inc) R3 FETNDIS; C:\Windows\System32\DRIVERS\fetnd5.sys [27165 2001-08-17] (VIA Technologies, Inc. ) S3 gameenum; C:\Windows\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation) S3 irsir; C:\Windows\System32\DRIVERS\irsir.sys [18688 2001-08-17] (Microsoft Corporation) S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [18048 2013-01-13] () S3 massfilter_lte; C:\WINDOWS\system32\drivers\massfilter_lte.sys [15896 2012-03-13] (HandSet Incorporated) S3 ms_mpu401; C:\Windows\System32\drivers\msmpu401.sys [2944 2001-08-17] (Microsoft Corporation) R3 Rasirda; C:\Windows\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation) S1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) S1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) S3 SONYPVU1; C:\Windows\System32\DRIVERS\SONYPVU1.SYS [7552 2001-08-17] (Sony Corporation) S3 zgdcat; C:\Windows\System32\DRIVERS\zgdcat.sys [114456 2012-03-13] (ZTE Incorporated) S3 zgdcdiag; C:\Windows\System32\DRIVERS\zgdcdiag.sys [114456 2012-03-13] (ZTE Incorporated) S3 zgdcmdm; C:\Windows\System32\DRIVERS\zgdcmdm.sys [114456 2012-03-13] (ZTE Incorporated) S3 zgdcnet; C:\Windows\System32\DRIVERS\zgdcnet.sys [144408 2012-03-13] (ZTE Incorporated) S3 zgdcnmea; C:\Windows\System32\DRIVERS\zgdcnmea.sys [114456 2012-03-13] (ZTE Incorporated) S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [x] S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x] S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [x] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [x] S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x] S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) S4 sptd; \SystemRoot\System32\Drivers\sptd.sys [x] U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-01 14:02 - 2013-12-01 14:03 - 00012993 _____ C:\FRST.txt 2013-12-01 13:59 - 2013-12-01 13:59 - 00000000 ____D C:\FRST 2013-12-01 13:57 - 2013-12-01 13:57 - 01092187 _____ (Farbar) C:\FRST.exe 2013-12-01 13:56 - 2013-12-01 13:56 - 00000000 __SHD C:\Documents and Settings\Paweł\PrivacIE 2013-12-01 13:56 - 2013-11-25 20:06 - 00602112 _____ (OldTimer Tools) C:\OTL.exe 2013-12-01 13:56 - 2013-04-04 09:55 - 00377856 _____ C:\gmer.exe 2013-12-01 13:44 - 2013-12-01 13:44 - 00000784 _____ C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\Paweł\Dane aplikacji\Malwarebytes 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2013-12-01 13:44 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2013-12-01 13:43 - 2013-12-01 13:43 - 00000000 ____D C:\Documents and Settings\Paweł\Pulpit\Pogrzeb Dziadzia 2013-12-01 13:39 - 2013-12-01 13:39 - 00000000 ____D C:\Documents and Settings\Paweł\Dane aplikacji\SUPERAntiSpyware.com 2013-12-01 13:38 - 2013-12-01 13:39 - 00000000 ____D C:\Program Files\SUPERAntiSpyware 2013-12-01 13:38 - 2013-12-01 13:38 - 00001678 _____ C:\Documents and Settings\All Users\Pulpit\SUPERAntiSpyware Professional.lnk 2013-12-01 13:38 - 2013-12-01 13:38 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\SUPERAntiSpyware.com 2013-12-01 13:38 - 2013-12-01 13:38 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\!SASCORE 2013-11-26 09:32 - 2013-11-26 16:16 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-25 12:53 - 2013-11-25 13:47 - 00003451 _____ C:\Documents and Settings\Paweł\Pulpit\avgrep.txt 2013-11-25 12:01 - 2013-11-25 14:50 - 00001108 _____ C:\WINDOWS\KB2888505-IE8.log 2013-11-22 10:21 - 2013-11-22 10:22 - 00003662 _____ C:\WINDOWS\KB2868626.log 2013-11-22 10:21 - 2013-11-22 10:22 - 00003611 _____ C:\WINDOWS\KB2862152.log 2013-11-22 09:16 - 2013-11-22 10:22 - 00005424 _____ C:\WINDOWS\KB2876331.log 2013-11-09 23:15 - 2013-11-09 23:15 - 00000000 ____D C:\Documents and Settings\Paweł\Pulpit\Maszyna do prostowania felg motocyklowych ==================== One Month Modified Files and Folders ======= 2013-12-01 14:03 - 2013-12-01 14:02 - 00012993 _____ C:\FRST.txt 2013-12-01 14:03 - 2012-11-10 21:45 - 00007480 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-12-01 14:02 - 2004-08-04 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl 2013-12-01 14:01 - 2012-10-15 21:32 - 00000000 ____D C:\WINDOWS\Resources 2013-12-01 14:01 - 2012-10-15 20:00 - 00000188 ___SH C:\Documents and Settings\Paweł\ntuser.ini 2013-12-01 14:01 - 2012-10-15 19:53 - 01916981 _____ C:\WINDOWS\WindowsUpdate.log 2013-12-01 13:59 - 2013-12-01 13:59 - 00000000 ____D C:\FRST 2013-12-01 13:58 - 2012-10-21 10:14 - 00000000 ____D C:\Documents and Settings\Paweł\Moje dokumenty\Pobieranie 2013-12-01 13:57 - 2013-12-01 13:57 - 01092187 _____ (Farbar) C:\FRST.exe 2013-12-01 13:56 - 2013-12-01 13:56 - 00000000 __SHD C:\Documents and Settings\Paweł\PrivacIE 2013-12-01 13:56 - 2012-10-15 20:00 - 00000000 ____D C:\Documents and Settings\Paweł 2013-12-01 13:44 - 2013-12-01 13:44 - 00000784 _____ C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\Paweł\Dane aplikacji\Malwarebytes 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes' Anti-Malware 2013-12-01 13:44 - 2013-12-01 13:44 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2013-12-01 13:44 - 2012-10-15 21:44 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-12-01 13:44 - 2012-10-15 21:44 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2013-12-01 13:44 - 2012-10-15 21:44 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-12-01 13:44 - 2012-10-15 20:00 - 00000000 __RHD C:\Documents and Settings\Paweł\Dane aplikacji 2013-12-01 13:43 - 2013-12-01 13:43 - 00000000 ____D C:\Documents and Settings\Paweł\Pulpit\Pogrzeb Dziadzia 2013-12-01 13:43 - 2012-10-15 20:00 - 00000000 ____D C:\Documents and Settings\Paweł\Pulpit 2013-12-01 13:39 - 2013-12-01 13:39 - 00000000 ____D C:\Documents and Settings\Paweł\Dane aplikacji\SUPERAntiSpyware.com 2013-12-01 13:39 - 2013-12-01 13:38 - 00000000 ____D C:\Program Files\SUPERAntiSpyware 2013-12-01 13:38 - 2013-12-01 13:38 - 00001678 _____ C:\Documents and Settings\All Users\Pulpit\SUPERAntiSpyware Professional.lnk 2013-12-01 13:38 - 2013-12-01 13:38 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\SUPERAntiSpyware.com 2013-12-01 13:38 - 2013-12-01 13:38 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\!SASCORE 2013-12-01 13:38 - 2012-10-15 21:44 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start 2013-12-01 13:37 - 2012-10-15 21:43 - 00993447 _____ C:\WINDOWS\setupapi.log 2013-11-29 23:41 - 2012-10-21 10:20 - 00000008 _____ C:\Documents and Settings\Paweł\Dane aplikacji\DofusAppId0_2 2013-11-29 23:23 - 2012-10-21 10:20 - 00000137 _____ C:\Documents and Settings\Paweł\Dane aplikacji\D2Info0 2013-11-28 23:42 - 2012-10-21 10:24 - 00000008 _____ C:\Documents and Settings\Paweł\Dane aplikacji\DofusAppId0_1 2013-11-28 17:34 - 2012-10-21 10:20 - 00000000 ____D C:\Documents and Settings\Paweł\Dane aplikacji\Dofus2 2013-11-26 16:16 - 2013-11-26 09:32 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-26 16:16 - 2012-10-21 10:00 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-11-25 20:06 - 2013-12-01 13:56 - 00602112 _____ (OldTimer Tools) C:\OTL.exe 2013-11-25 14:50 - 2013-11-25 12:01 - 00001108 _____ C:\WINDOWS\KB2888505-IE8.log 2013-11-25 14:47 - 2012-10-15 21:47 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-11-25 14:47 - 2012-10-15 21:47 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-11-25 14:46 - 2012-10-15 19:57 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-11-25 13:47 - 2013-11-25 12:53 - 00003451 _____ C:\Documents and Settings\Paweł\Pulpit\avgrep.txt 2013-11-25 12:53 - 2013-01-13 18:32 - 00000000 ____D C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji\Avg2013 2013-11-25 12:41 - 2013-01-14 20:15 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Gothic III 2013-11-25 12:31 - 2012-10-15 20:00 - 00000000 ___HD C:\Documents and Settings\Paweł\Ustawienia lokalne\Dane aplikacji 2013-11-25 12:30 - 2013-10-22 20:14 - 00000000 ____D C:\Documents and Settings\Pawe�\Moje dokumenty 2013-11-25 12:30 - 2012-11-10 00:22 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Rockstar Games 2013-11-25 12:30 - 2012-10-27 20:27 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2013-11-25 12:27 - 2012-10-15 20:00 - 00000000 ___RD C:\Documents and Settings\Paweł\Moje dokumenty 2013-11-25 12:14 - 2012-10-15 19:57 - 00032524 _____ C:\WINDOWS\SchedLgU.Txt 2013-11-25 12:01 - 2012-10-15 20:06 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\MFAData 2013-11-25 11:57 - 2012-10-21 10:38 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-11-22 10:22 - 2013-11-22 10:21 - 00003662 _____ C:\WINDOWS\KB2868626.log 2013-11-22 10:22 - 2013-11-22 10:21 - 00003611 _____ C:\WINDOWS\KB2862152.log 2013-11-22 10:22 - 2013-11-22 09:16 - 00005424 _____ C:\WINDOWS\KB2876331.log 2013-11-13 19:19 - 2012-10-15 21:44 - 01089352 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-11-13 19:19 - 2004-08-04 13:00 - 00491064 _____ C:\WINDOWS\system32\perfh015.dat 2013-11-13 19:19 - 2004-08-04 13:00 - 00084316 _____ C:\WINDOWS\system32\perfc015.dat 2013-11-11 16:33 - 2013-06-28 07:46 - 00003725 _____ C:\Program Files\Mozilla Firefoxavg-secure-search.xml 2013-11-11 16:32 - 2013-02-08 19:25 - 00000000 ____D C:\WINDOWS\system32\cache 2013-11-11 16:31 - 2013-01-13 19:06 - 00037664 _____ (AVG Technologies) C:\WINDOWS\system32\Drivers\avgtpx86.sys 2013-11-11 16:31 - 2013-01-13 19:06 - 00000000 ____D C:\Program Files\AVG Secure Search 2013-11-09 23:15 - 2013-11-09 23:15 - 00000000 ____D C:\Documents and Settings\Paweł\Pulpit\Maszyna do prostowania felg motocyklowych Some content of TEMP: ==================== C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\avguidx.dll C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\CommonInstaller.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\DataCard_Setup.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\drm_dialogs.dll C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\drm_dyndata_7380014.dll C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\HeroesIII.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\MachineIdCreator.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\ResetDevice.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\rtdrvmon.exe C:\Documents and Settings\Paweł\Ustawienia lokalne\Temp\ToolbarInstaller.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2004-08-04 13:00] - [2008-04-14 22:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2004-08-04 13:00] - [2008-04-14 22:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2004-08-04 13:00] - [2008-04-14 22:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2004-08-04 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2004-08-04 13:00] - [2008-04-14 22:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2004-08-04 13:00] - [2008-04-14 22:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2004-08-04 13:00] - [2008-04-14 21:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================