Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-12-2013 Ran by Kondzio (administrator) on PIOTR on 10-12-2013 08:44:45 Running from C:\Documents and Settings\Kondzio\Pulpit\kondzio Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files\WinZipper\winzipersvc.exe (Realtek Semiconductor Corp.) C:\WINDOWS\soundman.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe () C:\Program Files\Mobogenie\DaemonProcess.exe () C:\Program Files\Pando Networks\Media Booster\PMB.exe (Valve Corporation) C:\Program Files\Steam\Steam.exe (BonanzaDeals) C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Mobile Leader Co.,Ltd.) C:\WINDOWS\system32\ScsiCommandService2.exe (Skype Technologies S.A.) C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe () C:\Program Files\Mobogenie\mgusb.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SoundMan] - C:\WINDOWS\soundman.exe [577536 2007-04-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-12-01] (AVAST Software) HKLM\...\Run: [mobilegeni daemon] - C:\Program Files\Mobogenie\DaemonProcess.exe [738496 2013-10-18] () Winlogon\Notify\AtiExtEvent: C:\Windows\system32\Ati2evxx.dll (ATI Technologies Inc.) HKCU\...\Run: [Pando Media Booster] - C:\Program Files\Pando Networks\Media Booster\PMB.exe [4288048 2013-04-10] () HKCU\...\Run: [Steam] - C:\Program Files\Steam\Steam.exe [1823656 2013-12-04] (Valve Corporation) Startup: C:\Documents and Settings\Kondzio\Menu Start\Programy\Autostart\Xfire.lnk ShortcutTarget: Xfire.lnk -> D:\nedfor speed shift\Xfire\Xfire.exe (Xfire Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&from=newgdp&uid=ST3160827AS_5MT005ZSXXXX5MT005ZS&ts=1373036639 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = http://search.babylon.com/?affID=110824&tt=101012_1830_4112_7&babsrc=HP_ss_pr&mntrId=f4ff08ca000000000000008048b6ddcc HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.delta-homes.com/?utm_source=b&utm_medium=newgdp&from=newgdp&uid=ST3160827AS_5MT005ZSXXXX5MT005ZS&ts=1373036639 URLSearchHook: HKCU - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=mlv&from=mlv&uid=ST3160827AS_5MT005ZSXXXX5MT005ZS&ts=3670072 SearchScopes: HKLM - {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^HJ^xdm073^YY^pl&si=pconverter&ptb=38BB9E71-2751-42B3-B595-B7E9B11F7E08&ind=2013010411&n=77fc19eb&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://search.babylon.com/?q={searchTerms}&affID=110824&tt=101012_1830_4112_7&babsrc=SP_ss&mntrId=f4ff08ca000000000000008048b6ddcc SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.delta-homes.com/web/?utm_source=b&utm_medium=newgdp&utm_campaign=eXQ&utm_content=ds&from=newgdp&uid=ST3160827AS_5MT005ZSXXXX5MT005ZS&ts=1380436507&type=default&q={searchTerms} SearchScopes: HKCU - {8BAE2D13-B4ED-40E2-81ED-0C69BAC28151} URL = http://websearch.ask.com/redirect?client=ie&tb=FXTV5&o=101699&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=^F4&apn_dtid=^YYYYYY^YY^PL&apn_uid=a0c2bc09-0f72-4d4e-9af9-9919b5380037&apn_sauid=680C32C0-0A11-4B55-BAAE-4809BBD6C4BA SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = http://isearch.avg.com/search?cid={8F664CAC-0447-44F6-9EE3-71E381827FEB}&mid=7dbe4381a0f0434c9d772c97e091f259-34097a4fb0ee1a86a416a7d6e83b6fb184c12671&lang=pl&ds=ik011&pr=&d=2012-10-03 21:04:58&v=14.2.0.1&pid=avg&sg=&sap=dsp&q={searchTerms} SearchScopes: HKCU - {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = http://search.mywebsearch.com/mywebsearch/GGmain.jhtml?p2=^HJ^xdm073^YY^pl&si=pconverter&ptb=38BB9E71-2751-42B3-B595-B7E9B11F7E08&ind=2013010411&n=77fc19eb&psa=&st=sb&searchfor={searchTerms} BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.9012.1008\swg.dll (Google Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.4.2/jinstall-1_4_2_02-windows-i586.cab DPF: {CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.4.2/jinstall-1_4_2_02-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 194.204.152.34 194.204.159.1 Chrome: ======= CHR HomePage: hxxp://search.babylon.com/?affID=110824&tt=101012_1830_4112_7&babsrc=HP_ss&mntrId=f4ff08ca000000000000008048b6ddcc CHR RestoreOnStartup: "hxxp://search.babylon.com/?affID=110824&tt=101012_1830_4112_7&babsrc=HP_ss_pr&mntrId=f4ff08ca000000000000008048b6ddcc" CHR DefaultSearchKeyword: qvo6 CHR DefaultSearchProvider: qvo6 CHR DefaultSearchURL: http://search.qvo6.com/web/?utm_source=b&utm_medium=mlv&from=mlv&uid=ST3160827AS_5MT005ZSXXXX5MT005ZS&ts=3670072&type=default&q={searchTerms} CHR DefaultSuggestURL: "suggest_url" : "", CHR Extension: (YouTube) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0 CHR Extension: (BonanzaDeals) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ieadcoanfjloocmfafkebdnfefmohngj\3.5.0.0_0 CHR Extension: (Lightning Newtab) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo\1.1.6.4_0 CHR Extension: (Skype Click to Call) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0 CHR Extension: (Helper extension) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nchpfiddbhbdnagofhkjlaiaejmkdcla\2.0_0 CHR Extension: (Chrome In-App Payments service) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0 CHR Extension: (Gmail) - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\newtab.crx CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx ========================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-01] (AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [116776 2013-12-01] (AVAST Software) S2 bonanzadealslive; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-12-08] (BonanzaDeals) S3 bonanzadealslivem; C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe [148976 2013-12-08] (BonanzaDeals) R2 ScsiCommandService2; C:\WINDOWS\system32\ScsiCommandService2.exe [48128 2011-10-31] (Mobile Leader Co.,Ltd.) R2 Skype C2C Service; C:\Documents and Settings\All Users\Dane aplikacji\Skype\Toolbars\Skype C2C Service\c2c_service.exe [3064000 2012-10-02] (Skype Technologies S.A.) R2 winzipersvc; C:\Program Files\WinZipper\winzipersvc.exe [424104 2013-08-24] (Taiwan Shui Mu Chih Ching Technology Limited.) R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" ==================== Drivers (Whitelisted) ==================== R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [4127488 2008-01-24] (Realtek Semiconductor Corp.) S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag.sys [23168 2013-04-18] (LG Electronics Inc.) S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem.sys [27776 2013-06-28] (LG Electronics Inc.) S3 andnetndis; C:\Windows\System32\DRIVERS\lgandnetndis.sys [70656 2013-04-23] (LG Electronics Inc.) R2 aswFsBlk; C:\WINDOWS\system32\drivers\aswFsBlk.sys [35656 2013-12-01] (AVAST Software) R1 aswKbd; C:\WINDOWS\system32\drivers\aswKbd.sys [26136 2013-12-01] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2013-12-01] (AVAST Software) R0 aswNdis; C:\Windows\System32\DRIVERS\aswNdis.sys [12112 2013-09-25] (ALWIL Software) R0 aswNdis2; C:\Windows\System32\Drivers\aswNdis2.sys [247192 2013-12-01] (AVAST Software) R1 AswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [54832 2013-12-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [49944 2013-12-01] () R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [774392 2013-12-01] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [403440 2013-12-01] (AVAST Software) R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57672 2013-12-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [178304 2013-12-01] () R3 gameenum; C:\Windows\System32\DRIVERS\gameenum.sys [10624 2008-04-14] (Microsoft Corporation) S3 hamachi; C:\Windows\System32\DRIVERS\hamachi.sys [26176 2009-03-18] (LogMeIn, Inc.) R3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [30976 2013-12-10] () R3 ms_mpu401; C:\Windows\System32\drivers\msmpu401.sys [2944 2001-08-17] (Microsoft Corporation) R0 nvatabus; C:\Windows\System32\DRIVERS\nvatabus.sys [79360 2004-06-03] (NVIDIA Corporation) R3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [33536 2005-04-06] (NVIDIA Corporation) R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [12928 2005-04-06] (NVIDIA Corporation) R0 nv_agp; C:\Windows\System32\DRIVERS\nv_agp.sys [21760 2004-04-02] (NVIDIA Corporation) R0 si3114r; C:\Windows\System32\drivers\si3114r.sys [97857 2005-07-26] (Silicon Image, Inc) R0 SiFilter; C:\Windows\System32\DRIVERS\SiWinAcc.sys [10240 2005-07-26] (Silicon Image, Inc.) R0 SiWinAcc; C:\Windows\System32\drivers\SiWinAcc.sys [10240 2005-07-26] (Silicon Image, Inc.) R3 W840ND; C:\Windows\System32\DRIVERS\W840ND.sys [19528 2001-08-17] (Winbond Electronics Corporation) S3 andnetadb; System32\Drivers\lgandnetadb.sys [x] S3 catchme; \??\C:\DOCUME~1\Kondzio\USTAWI~1\Temp\catchme.sys [x] S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [x] S4 IntelIde; No ImagePath U3 TlntSvr; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-10 08:44 - 2013-12-10 08:44 - 00000000 ____D C:\FRST 2013-12-10 08:43 - 2013-12-10 08:44 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit\kondzio 2013-12-10 07:32 - 2013-12-10 07:33 - 00030976 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys 2013-12-10 07:30 - 2013-12-10 07:30 - 00001602 _____ C:\WINDOWS\system32\.crusader 2013-12-10 07:05 - 2013-12-10 07:33 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro 2013-12-10 07:05 - 2013-12-10 07:05 - 00000694 _____ C:\Documents and Settings\Kondzio\Pulpit\Hitman Pro.lnk 2013-12-10 07:05 - 2013-12-10 07:05 - 00000000 ____D C:\Program Files\HitmanPro 2013-12-10 07:05 - 2013-12-10 07:05 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Hitman Pro 2013-12-09 14:47 - 2013-12-09 15:07 - 00000000 ____D C:\ComboFix 2013-12-09 14:46 - 2013-12-09 14:47 - 05153091 ____R (Swearware) C:\Documents and Settings\Kondzio\Pulpit\ComboFix.exe 2013-12-09 14:46 - 2013-12-09 14:46 - 00000000 ___RD C:\Documents and Settings\Kondzio\Menu Start\Programy\Narzędzia administracyjne 2013-12-09 14:44 - 2013-12-09 14:44 - 05153091 _____ (Swearware) C:\Documents and Settings\Kondzio\Moje dokumenty\ComboFix (1).exe 2013-12-09 14:43 - 2013-12-09 14:44 - 05153091 _____ (Swearware) C:\Documents and Settings\Kondzio\Moje dokumenty\ComboFix.exe 2013-12-09 14:43 - 2013-12-09 14:43 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit\CrystalDiskInfoPortable 2013-12-08 13:21 - 2013-12-08 13:20 - 00094208 _____ C:\WINDOWS\Minidump\Mini120813-01.dmp 2013-12-08 11:47 - 2013-12-08 11:47 - 49097239 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft NonPremium 1.2.5.rar 2013-12-08 11:35 - 2013-12-10 08:40 - 00000916 _____ C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job 2013-12-08 11:35 - 2013-12-10 07:45 - 00001252 _____ C:\Documents and Settings\Kondzio\daemonprocess.txt 2013-12-08 11:35 - 2013-12-10 07:33 - 00000912 _____ C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2013-12-08 11:35 - 2013-12-08 11:53 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\cache 2013-12-08 11:35 - 2013-12-08 11:51 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-12-08 11:35 - 2013-12-08 11:35 - 00000694 _____ C:\Documents and Settings\Kondzio\Pulpit\Mobogenie.lnk 2013-12-08 11:35 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Moje dokumenty\Mobogenie 2013-12-08 11:35 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\Mobogenie 2013-12-08 11:34 - 2013-12-08 12:05 - 00000000 ____D C:\Program Files\Mobogenie 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Program Files\BonanzaDealsLive 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Program Files\BonanzaDeals 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\BonanzaDealsLive 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\BonanzaDeals 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\BonanzaDealsLive 2013-12-08 11:33 - 2013-12-08 11:33 - 00591536 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft 1.7.2_isdmgr.exe 2013-12-08 11:31 - 2013-12-08 11:31 - 00675988 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft.exe 2013-12-07 20:21 - 2013-12-07 20:21 - 00000000 ____D C:\Documents and Settings\Piotrek\Dane aplikacji\AVAST Software 2013-12-07 10:10 - 2013-12-07 10:10 - 00000428 _____ C:\Documents and Settings\All Users\Pulpit\Tibia.lnk 2013-12-01 18:52 - 2013-12-01 18:52 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\AVAST Software 2013-12-01 12:54 - 2013-12-01 12:54 - 00001799 _____ C:\Documents and Settings\All Users\Pulpit\avast! SafeZone.lnk 2013-12-01 12:54 - 2013-12-01 12:54 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2013-12-01 12:46 - 2013-12-01 18:52 - 00247192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswndis2.sys 2013-12-01 12:46 - 2013-10-31 07:46 - 00104752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswFW.sys 2013-12-01 12:45 - 2013-09-25 13:15 - 00012112 _____ (ALWIL Software) C:\WINDOWS\system32\Drivers\aswNdis.sys 2013-12-01 12:42 - 2013-12-01 12:54 - 00001739 _____ C:\Documents and Settings\All Users\Pulpit\avast! Internet Security.lnk 2013-11-28 20:29 - 2013-11-28 21:18 - 00065024 _____ C:\Documents and Settings\Kondzio\Pulpit\dodatek 100% listopad.xls 2013-11-25 20:14 - 2013-12-02 19:57 - 00087552 _____ C:\Documents and Settings\Kondzio\Pulpit\nadg P-2 2.12.xls 2013-11-24 17:51 - 1998-07-30 12:51 - 00305152 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2013-11-23 16:12 - 2013-11-23 16:12 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\HUGO 2013-11-23 16:12 - 2001-01-12 18:47 - 00122884 _____ C:\WINDOWS\UnGins.exe 2013-11-23 16:11 - 2013-11-23 16:12 - 00000000 ____D C:\Program Files\HUGO 2013-11-23 11:06 - 2013-11-23 11:06 - 00002386 _____ C:\WINDOWS\system32\qtplugin.log 2013-11-23 11:06 - 2013-11-23 11:06 - 00000724 _____ C:\Documents and Settings\Kondzio\Pulpit\QuickTime Player.lnk 2013-11-23 11:06 - 2013-11-23 11:06 - 00000361 _____ C:\WINDOWS\system32\QuickTime.qtp 2013-11-23 11:06 - 2013-11-23 11:06 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\QuickTime 2013-11-23 11:06 - 2013-11-23 11:06 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\QuickTime 2013-11-23 11:06 - 1999-04-12 17:51 - 00086016 _____ (MindVision Software) C:\WINDOWS\unvise32qt.exe 2013-11-23 11:05 - 2013-11-23 11:06 - 00000000 ____D C:\WINDOWS\system32\QuickTime 2013-11-23 11:05 - 2013-11-23 11:06 - 00000000 ____D C:\Program Files\QuickTime 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 ____D C:\Program Files\The Learning Company 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\The Learning Company 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 _____ C:\WINDOWS\SETUP32.INI 2013-11-13 22:31 - 2013-11-13 22:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$ 2013-11-13 22:30 - 2013-11-13 22:30 - 00008999 _____ C:\WINDOWS\KB2900986.log 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$ 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$ 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$ 2013-11-13 22:29 - 2013-11-13 22:30 - 00011380 _____ C:\WINDOWS\KB2888505-IE8.log 2013-11-13 18:15 - 2013-11-13 22:31 - 00014669 _____ C:\WINDOWS\KB2868626.log 2013-11-13 18:14 - 2013-11-13 22:30 - 00013620 _____ C:\WINDOWS\KB2862152.log 2013-11-13 18:13 - 2013-11-13 22:30 - 00013144 _____ C:\WINDOWS\KB2876331.log ==================== One Month Modified Files and Folders ======= 2013-12-10 08:46 - 2012-10-01 15:24 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\PMB Files 2013-12-10 08:44 - 2013-12-10 08:44 - 00000000 ____D C:\FRST 2013-12-10 08:44 - 2013-12-10 08:43 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit\kondzio 2013-12-10 08:43 - 2012-10-01 12:12 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit 2013-12-10 08:40 - 2013-12-08 11:35 - 00000916 _____ C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineUA.job 2013-12-10 08:39 - 2012-10-01 13:23 - 00000466 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{E44EA5EF-6A11-4B8E-A2DE-247E1BBAF9D1}.job 2013-12-10 08:21 - 2013-09-28 23:32 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-12-10 08:06 - 2012-10-01 12:29 - 00001038 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-10 07:45 - 2013-12-08 11:35 - 00001252 _____ C:\Documents and Settings\Kondzio\daemonprocess.txt 2013-12-10 07:34 - 2012-10-01 12:05 - 01297772 _____ C:\WINDOWS\WindowsUpdate.log 2013-12-10 07:33 - 2013-12-10 07:32 - 00030976 _____ C:\WINDOWS\system32\Drivers\hitmanpro37.sys 2013-12-10 07:33 - 2013-12-10 07:05 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\HitmanPro 2013-12-10 07:33 - 2013-12-08 11:35 - 00000912 _____ C:\WINDOWS\Tasks\BonanzaDealsLiveUpdateTaskMachineCore.job 2013-12-10 07:33 - 2013-07-24 16:35 - 00000000 ____D C:\Program Files\Steam 2013-12-10 07:33 - 2012-10-01 13:45 - 00000157 _____ C:\WINDOWS\wiadebug.log 2013-12-10 07:33 - 2012-10-01 13:45 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-12-10 07:33 - 2012-10-01 12:29 - 00001034 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-10 07:33 - 2012-10-01 12:29 - 00000364 ____H C:\WINDOWS\Tasks\avast! Emergency Update.job 2013-12-10 07:32 - 2012-10-01 12:11 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-12-10 07:31 - 2012-10-01 12:12 - 00000188 ___SH C:\Documents and Settings\Kondzio\ntuser.ini 2013-12-10 07:31 - 2012-10-01 12:11 - 00032630 _____ C:\WINDOWS\SchedLgU.Txt 2013-12-10 07:30 - 2013-12-10 07:30 - 00001602 _____ C:\WINDOWS\system32\.crusader 2013-12-10 07:30 - 2013-05-31 08:30 - 00000000 ____D C:\Program Files\Desk 365 2013-12-10 07:30 - 2013-05-31 08:30 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\eSafe 2013-12-10 07:05 - 2013-12-10 07:05 - 00000694 _____ C:\Documents and Settings\Kondzio\Pulpit\Hitman Pro.lnk 2013-12-10 07:05 - 2013-12-10 07:05 - 00000000 ____D C:\Program Files\HitmanPro 2013-12-10 07:05 - 2013-12-10 07:05 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Hitman Pro 2013-12-10 07:05 - 2012-10-01 13:43 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-12-10 07:05 - 2012-10-01 13:43 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2013-12-09 15:07 - 2013-12-09 14:47 - 00000000 ____D C:\ComboFix 2013-12-09 15:06 - 2013-08-24 06:32 - 00000000 ____D C:\Program Files\WinZipper 2013-12-09 15:06 - 2012-10-01 13:41 - 00000327 __RSH C:\boot.ini 2013-12-09 15:06 - 2012-10-01 12:12 - 00000000 ___RD C:\Documents and Settings\Kondzio\Menu Start\Programy\Autostart 2013-12-09 15:06 - 2008-04-15 13:00 - 00000582 _____ C:\WINDOWS\win.ini 2013-12-09 15:06 - 2008-04-15 13:00 - 00000227 _____ C:\WINDOWS\system.ini 2013-12-09 15:05 - 2012-10-02 19:05 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\Skype 2013-12-09 15:03 - 2013-03-01 12:38 - 00000000 ____D C:\Qoobox 2013-12-09 15:02 - 2013-03-01 12:58 - 00008192 ____H C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2013-12-09 15:02 - 2013-03-01 12:37 - 00000000 ____D C:\WINDOWS\erdnt 2013-12-09 15:02 - 2012-10-01 13:42 - 00262144 _____ C:\WINDOWS\system32\config\SAM.bak 2013-12-09 15:02 - 2012-10-01 13:42 - 00053248 _____ C:\WINDOWS\system32\config\SECURITY.bak 2013-12-09 15:02 - 2012-10-01 13:41 - 28835840 _____ C:\WINDOWS\system32\config\software.bak 2013-12-09 15:02 - 2012-10-01 13:41 - 04718592 _____ C:\WINDOWS\system32\config\system.bak 2013-12-09 15:02 - 2012-10-01 13:41 - 00524288 _____ C:\WINDOWS\system32\config\default.bak 2013-12-09 15:02 - 2012-10-01 12:12 - 00000000 ____D C:\Documents and Settings\Kondzio 2013-12-09 15:01 - 2013-03-01 12:29 - 00000000 ___HD C:\Documents and Settings\Administrator\Ustawienia lokalne 2013-12-09 15:01 - 2012-10-01 12:44 - 00000000 ___HD C:\Documents and Settings\Piotrek\Ustawienia lokalne 2013-12-09 15:01 - 2012-10-01 12:12 - 00000000 ___HD C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji 2013-12-09 15:01 - 2012-10-01 12:09 - 00000000 ___HD C:\Documents and Settings\NetworkService\Ustawienia lokalne 2013-12-09 14:51 - 2012-10-01 12:12 - 00000000 __RHD C:\Documents and Settings\Kondzio\Dane aplikacji 2013-12-09 14:47 - 2013-12-09 14:46 - 05153091 ____R (Swearware) C:\Documents and Settings\Kondzio\Pulpit\ComboFix.exe 2013-12-09 14:46 - 2013-12-09 14:46 - 00000000 ___RD C:\Documents and Settings\Kondzio\Menu Start\Programy\Narzędzia administracyjne 2013-12-09 14:46 - 2012-10-01 12:12 - 00000000 ___RD C:\Documents and Settings\Kondzio\Menu Start\Programy 2013-12-09 14:44 - 2013-12-09 14:44 - 05153091 _____ (Swearware) C:\Documents and Settings\Kondzio\Moje dokumenty\ComboFix (1).exe 2013-12-09 14:44 - 2013-12-09 14:43 - 05153091 _____ (Swearware) C:\Documents and Settings\Kondzio\Moje dokumenty\ComboFix.exe 2013-12-09 14:44 - 2013-10-23 15:51 - 00002071 _____ C:\Documents and Settings\Kondzio\Menu Start\Programy\Lollipop.lnk 2013-12-09 14:44 - 2012-10-01 12:12 - 00000000 ___RD C:\Documents and Settings\Kondzio\Moje dokumenty 2013-12-09 14:43 - 2013-12-09 14:43 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit\CrystalDiskInfoPortable 2013-12-09 14:42 - 2013-06-04 16:34 - 00430663 _____ C:\Documents and Settings\Kondzio\debug.log 2013-12-09 14:39 - 2013-07-25 16:36 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\GG 2013-12-09 14:37 - 2012-10-01 13:25 - 00000000 ____D C:\WINDOWS\pss 2013-12-09 14:32 - 2012-10-03 20:06 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\ipla 2013-12-09 14:29 - 2013-09-12 21:21 - 00107075 _____ C:\WINDOWS\setupapi.log 2013-12-09 14:29 - 2012-10-01 13:43 - 00182919 _____ C:\WINDOWS\setupact.log 2013-12-08 19:27 - 2012-10-01 15:16 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\TS3Client 2013-12-08 13:21 - 2012-11-14 17:17 - 00000000 ____D C:\WINDOWS\Minidump 2013-12-08 13:20 - 2013-12-08 13:21 - 00094208 _____ C:\WINDOWS\Minidump\Mini120813-01.dmp 2013-12-08 12:05 - 2013-12-08 11:34 - 00000000 ____D C:\Program Files\Mobogenie 2013-12-08 11:53 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\cache 2013-12-08 11:51 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-12-08 11:49 - 2012-10-12 12:06 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\.minecraft 2013-12-08 11:47 - 2013-12-08 11:47 - 49097239 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft NonPremium 1.2.5.rar 2013-12-08 11:47 - 2013-08-24 06:32 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\WinZipper 2013-12-08 11:35 - 2013-12-08 11:35 - 00000694 _____ C:\Documents and Settings\Kondzio\Pulpit\Mobogenie.lnk 2013-12-08 11:35 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Moje dokumenty\Mobogenie 2013-12-08 11:35 - 2013-12-08 11:35 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\Mobogenie 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Program Files\BonanzaDealsLive 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Program Files\BonanzaDeals 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\Kondzio\Ustawienia lokalne\Dane aplikacji\BonanzaDealsLive 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\BonanzaDeals 2013-12-08 11:34 - 2013-12-08 11:34 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\BonanzaDealsLive 2013-12-08 11:33 - 2013-12-08 11:33 - 00591536 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft 1.7.2_isdmgr.exe 2013-12-08 11:31 - 2013-12-08 11:31 - 00675988 _____ C:\Documents and Settings\Kondzio\Moje dokumenty\Minecraft.exe 2013-12-08 11:24 - 2013-06-09 18:17 - 00000323 _____ C:\Documents and Settings\Kondzio\Pulpit\Last.dat 2013-12-08 11:03 - 2013-05-27 19:28 - 00000151 _____ C:\Documents and Settings\Kondzio\Pulpit\memlist.dat 2013-12-08 10:07 - 2012-10-03 20:06 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\RDRM 2013-12-08 00:40 - 2012-10-01 12:44 - 00000188 ___SH C:\Documents and Settings\Piotrek\ntuser.ini 2013-12-07 20:21 - 2013-12-07 20:21 - 00000000 ____D C:\Documents and Settings\Piotrek\Dane aplikacji\AVAST Software 2013-12-07 20:21 - 2012-10-01 12:44 - 00000788 _____ C:\Documents and Settings\Piotrek\Menu Start\Programy\Windows Media Player.lnk 2013-12-07 20:21 - 2012-10-01 12:44 - 00000000 __RHD C:\Documents and Settings\Piotrek\Dane aplikacji 2013-12-07 20:21 - 2012-10-01 12:44 - 00000000 ___RD C:\Documents and Settings\Piotrek\Menu Start\Programy 2013-12-07 20:21 - 2012-10-01 12:03 - 00024182 _____ C:\WINDOWS\wmsetup.log 2013-12-07 19:47 - 2012-10-01 14:35 - 00060416 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\ALCFDRTM.VER 2013-12-07 18:11 - 2012-11-11 19:08 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\Tibia 2013-12-07 10:10 - 2013-12-07 10:10 - 00000428 _____ C:\Documents and Settings\All Users\Pulpit\Tibia.lnk 2013-12-07 10:10 - 2012-11-11 19:08 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Tibia 2013-12-07 10:10 - 2012-10-01 13:43 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-12-07 07:02 - 2008-04-15 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl 2013-12-06 14:48 - 2013-09-28 12:30 - 00000000 ____D C:\Program Files\Opera 2013-12-05 17:56 - 2012-10-01 12:48 - 00001324 _____ C:\WINDOWS\system32\d3d9caps.dat 2013-12-05 15:30 - 2012-10-02 19:05 - 00000000 ___RD C:\Program Files\Skype 2013-12-05 15:30 - 2012-10-02 19:05 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Skype 2013-12-04 17:35 - 2013-02-22 17:24 - 00000000 ____D C:\Documents and Settings\Kondzio\Pulpit\NostaleData 2013-12-02 19:57 - 2013-11-25 20:14 - 00087552 _____ C:\Documents and Settings\Kondzio\Pulpit\nadg P-2 2.12.xls 2013-12-01 22:29 - 2012-10-01 12:12 - 00000000 ___RD C:\Documents and Settings\Kondzio\Ulubione 2013-12-01 19:29 - 2013-02-24 14:15 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR 2013-12-01 18:52 - 2013-12-01 18:52 - 00000000 ____D C:\Documents and Settings\Kondzio\Dane aplikacji\AVAST Software 2013-12-01 18:52 - 2013-12-01 12:46 - 00247192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswndis2.sys 2013-12-01 12:54 - 2013-12-01 12:54 - 00001799 _____ C:\Documents and Settings\All Users\Pulpit\avast! SafeZone.lnk 2013-12-01 12:54 - 2013-12-01 12:54 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Avast 2013-12-01 12:54 - 2013-12-01 12:42 - 00001739 _____ C:\Documents and Settings\All Users\Pulpit\avast! Internet Security.lnk 2013-12-01 12:52 - 2013-03-04 15:12 - 00178304 _____ C:\WINDOWS\system32\Drivers\aswVmm.sys 2013-12-01 12:52 - 2013-03-04 15:12 - 00070384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2013-12-01 12:52 - 2013-03-04 15:12 - 00049944 _____ C:\WINDOWS\system32\Drivers\aswRvrt.sys 2013-12-01 12:52 - 2012-10-01 12:29 - 00774392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2013-12-01 12:52 - 2012-10-01 12:29 - 00403440 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2013-12-01 12:52 - 2012-10-01 12:29 - 00269216 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2013-12-01 12:52 - 2012-10-01 12:29 - 00057672 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys 2013-12-01 12:52 - 2012-10-01 12:29 - 00054832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys 2013-12-01 12:52 - 2012-10-01 12:29 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr 2013-12-01 12:52 - 2012-10-01 12:29 - 00035656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswFsBlk.sys 2013-12-01 12:51 - 2013-05-24 15:50 - 00026136 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2013-12-01 12:48 - 2012-10-01 12:28 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software 2013-12-01 12:46 - 2012-10-01 12:06 - 00002596 _____ C:\WINDOWS\system32\CONFIG.NT 2013-11-30 13:11 - 2013-07-24 16:35 - 00000000 ____D C:\Program Files\Common Files\Steam 2013-11-28 21:18 - 2013-11-28 20:29 - 00065024 _____ C:\Documents and Settings\Kondzio\Pulpit\dodatek 100% listopad.xls 2013-11-24 17:52 - 2013-02-02 13:30 - 00000000 ____D C:\Program Files\Disney Interactive 2013-11-24 17:52 - 2013-02-02 13:30 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Disney Interactive 2013-11-24 17:52 - 2013-02-02 13:29 - 00003076 _____ C:\WINDOWS\disney.ini 2013-11-23 16:12 - 2013-11-23 16:12 - 00000000 ____D C:\Documents and Settings\Kondzio\Menu Start\Programy\HUGO 2013-11-23 16:12 - 2013-11-23 16:11 - 00000000 ____D C:\Program Files\HUGO 2013-11-23 11:06 - 2013-11-23 11:06 - 00002386 _____ C:\WINDOWS\system32\qtplugin.log 2013-11-23 11:06 - 2013-11-23 11:06 - 00000724 _____ C:\Documents and Settings\Kondzio\Pulpit\QuickTime Player.lnk 2013-11-23 11:06 - 2013-11-23 11:06 - 00000361 _____ C:\WINDOWS\system32\QuickTime.qtp 2013-11-23 11:06 - 2013-11-23 11:06 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\QuickTime 2013-11-23 11:06 - 2013-11-23 11:06 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\QuickTime 2013-11-23 11:06 - 2013-11-23 11:05 - 00000000 ____D C:\WINDOWS\system32\QuickTime 2013-11-23 11:06 - 2013-11-23 11:05 - 00000000 ____D C:\Program Files\QuickTime 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 ____D C:\Program Files\The Learning Company 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\The Learning Company 2013-11-23 11:05 - 2013-11-23 11:05 - 00000000 _____ C:\WINDOWS\SETUP32.INI 2013-11-13 22:31 - 2013-11-13 22:31 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$ 2013-11-13 22:31 - 2013-11-13 18:15 - 00014669 _____ C:\WINDOWS\KB2868626.log 2013-11-13 22:31 - 2012-10-01 13:44 - 01198630 _____ C:\WINDOWS\FaxSetup.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00582277 _____ C:\WINDOWS\ocgen.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00463451 _____ C:\WINDOWS\tsoc.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00410680 _____ C:\WINDOWS\comsetup.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00247125 _____ C:\WINDOWS\ntdtcsetup.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00190509 _____ C:\WINDOWS\iis6.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00074997 _____ C:\WINDOWS\ocmsn.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00060199 _____ C:\WINDOWS\msgsocm.log 2013-11-13 22:31 - 2012-10-01 13:44 - 00001393 _____ C:\WINDOWS\imsins.log 2013-11-13 22:31 - 2012-10-01 12:43 - 00107532 _____ C:\WINDOWS\updspapi.log 2013-11-13 22:31 - 2012-10-01 12:33 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2013-11-13 22:30 - 2013-11-13 22:30 - 00008999 _____ C:\WINDOWS\KB2900986.log 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$ 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$ 2013-11-13 22:30 - 2013-11-13 22:30 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$ 2013-11-13 22:30 - 2013-11-13 22:29 - 00011380 _____ C:\WINDOWS\KB2888505-IE8.log 2013-11-13 22:30 - 2013-11-13 18:14 - 00013620 _____ C:\WINDOWS\KB2862152.log 2013-11-13 22:30 - 2013-11-13 18:13 - 00013144 _____ C:\WINDOWS\KB2876331.log 2013-11-13 22:30 - 2012-10-01 13:44 - 00001393 _____ C:\WINDOWS\imsins.BAK 2013-11-13 22:30 - 2012-10-01 13:06 - 00000000 ____D C:\WINDOWS\ie8updates 2013-11-13 22:28 - 2013-08-14 21:45 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-11-13 22:26 - 2013-02-14 22:27 - 80340640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2008-04-15 13:00] - [2008-04-15 13:00] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2008-04-15 13:00] - [2008-04-15 13:00] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2008-04-15 13:00] - [2008-04-15 13:00] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2008-04-15 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2008-04-15 13:00] - [2008-04-15 13:00] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2008-04-15 13:00] - [2008-04-15 13:00] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2008-04-15 13:00] - [2008-04-15 13:00] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================