Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-12-2013 01 Ran by Justyna (administrator) on JUSTYNA-PC on 13-12-2013 19:39:52 Running from C:\Documents and Settings\Justyna\Pulpit Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (G Data Software AG) C:\Program Files\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files\G Data\AntiVirus\AVK\AVKWCtl.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (G Data Software AG) C:\Program Files\G Data\AntiVirus\AVKTray\AVKTray.exe (Pinnacle Systems GmbH) C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe () C:\Program Files\VLC Player GPU+\GPULog.exe (G Data Software AG) C:\Program Files\Common Files\G Data\AVKProxy\AVKProxy.exe (G Data Software AG) C:\Program Files\G Data\AntiVirus\AVK\AVKService.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE () C:\Program Files\VLC Player GPU+\GPUMonitor.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16270848 2006-11-14] (Realtek Semiconductor Corp.) HKLM\...\Run: [SkyTel] - C:\WINDOWS\SkyTel.exe [2879488 2006-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] - C:\WINDOWS\Alcmtr.exe [69632 2005-05-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [NvCplDaemon] - RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup HKLM\...\Run: [NvMediaCenter] - RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1634112 2012-08-30] () HKLM\...\Run: [G Data AntiVirus Tray] - C:\Program Files\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-02-25] (G Data Software AG) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [BigDog305] - C:\WINDOWS\VM305_STI.EXE [61440 2005-08-05] (Vimicro) HKLM\...\Run: [USBToolTip] - C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe [199752 2007-02-20] (Pinnacle Systems GmbH) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM\...\Run: [WinampAgent] - D:\winap\Winamp\winampa.exe [74752 2012-06-28] (Nullsoft, Inc.) HKLM\...\Run: [GPUTemp] - "C:\DOCUME~1\Justyna\USTAWI~1\Temp\GPUTemp.exe" <===== ATTENTION HKLM\...\Run: [GPULoader] - C:\Program Files\VLC Player GPU+\GPULog.exe [1301216 2013-11-26] () HKCU\...\Run: [Center Agent] - C:\Program Files\KWorld Multimedia\HyperMediaCenter\DTVR\Scheduled.exe [864768 2007-01-19] () HKCU\...\Run: [LightScribe Control Panel] - C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe [2741616 2011-03-04] (Hewlett-Packard Company) HKCU\...\Run: [EPSON Stylus DX4400 Series] - C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICAE.EXE /FU "C:\WINDOWS\TEMP\E_S100.tmp" /EF "HKCU" HKCU\...\Run: [NextLive] - C:\WINDOWS\system32\rundll32.exe "C:\Documents and Settings\Justyna\Dane aplikacji\newnext.me\nengine.dll",EntryPoint -m l HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\BlueSoleil.lnk ShortcutTarget: BlueSoleil.lnk -> C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe (IVT Corporation.) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Remote Control.lnk ShortcutTarget: Remote Control.lnk -> C:\Program Files\KWorld Multimedia\TV Tuner Card Utilities\HMCP3XCtl.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.myhoome.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myhoome.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.myhoome.com/ SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = http://search.tb.ask.com/search/GGmain.jhtml?p2=^HJ^xdm073^YYA^pl&si=pconverter&ptb=1B8632E9-3165-4726-94DA-5EADBFE2696D&ind=2013111918&n=77fda66e&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKCU - DefaultScope {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = http://search.tb.ask.com/search/GGmain.jhtml?p2=^HJ^xdm073^YYA^pl&si=pconverter&ptb=1B8632E9-3165-4726-94DA-5EADBFE2696D&ind=2013111918&n=77fda66e&psa=&st=sb&searchfor={searchTerms} SearchScopes: HKCU - 7C2CD7A42C4F4ADCBD6049E0685AD0BE URL = http://szukaj.gazeta.pl/portalSearch.do?s.si(navigation).navigationEnabled=true&s.sm.query={searchTerms} SearchScopes: HKCU - {cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8} URL = http://search.tb.ask.com/search/GGmain.jhtml?p2=^HJ^xdm073^YYA^pl&si=pconverter&ptb=1B8632E9-3165-4726-94DA-5EADBFE2696D&ind=2013111918&n=77fda66e&psa=&st=sb&searchfor={searchTerms} BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: WinDealist - {B8F10001-9552-4F40-8F61-6765CD22DD9E} - C:\Program Files\windealist\Internet Explorer\windealist.dll () BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1370001771531 Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 85.237.160.6 85.237.160.3 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Justyna\Dane aplikacji\Mozilla\Firefox\Profiles\dgtqter1.default FF SearchEngineOrder.3: Bing FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: Adblock Plus - C:\Documents and Settings\Justyna\Dane aplikacji\Mozilla\Firefox\Profiles\dgtqter1.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 AVKProxy; C:\Program Files\Common Files\G Data\AVKProxy\AVKProxy.exe [1956304 2013-03-04] (G Data Software AG) R2 AVKService; C:\Program Files\G Data\AntiVirus\AVK\AVKService.exe [635344 2013-02-25] (G Data Software AG) R2 AVKWCtl; C:\Program Files\G Data\AntiVirus\AVK\AVKWCtl.exe [1807568 2013-02-25] (G Data Software AG) R3 GDScan; C:\Program Files\Common Files\G Data\GDScan\GDScan.exe [696808 2013-02-25] (G Data Software AG) S2 VideoDownloadConverter_4zService; C:\Program Files\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe [44752 2013-11-19] (COMPANYVERS_NAME) S2 WiseBootAssistant; C:\mirek\Wise Care 365\BootTime.exe [580648 2012-07-17] (WiseCleaner.com) R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" ==================== Drivers (Whitelisted) ==================== R3 3xHybrid; C:\Windows\System32\DRIVERS\3xHybrid.sys [670592 2007-01-18] (Philips Semiconductors GmbH) R3 BlueletAudio; C:\Windows\System32\DRIVERS\blueletaudio.sys [34704 2007-05-11] (IVT Corporation.) R3 BlueletSCOAudio; C:\Windows\System32\DRIVERS\BlueletSCOAudio.sys [27792 2007-03-05] (IVT Corporation.) S3 BT; C:\Windows\System32\DRIVERS\btnetdrv.sys [18320 2007-03-05] (IVT Corporation.) R3 Btcsrusb; C:\Windows\System32\Drivers\btcusb.sys [36496 2007-05-09] (IVT Corporation.) R0 BTHidEnum; C:\Windows\System32\Drivers\vbtenum.sys [20880 2007-03-05] (IVT Corporation.) R0 BTHidMgr; C:\Windows\System32\Drivers\BTHidMgr.sys [35600 2007-03-05] (IVT Corporation.) S3 BTNetFilter; C:\Program Files\IVT Corporation\BlueSoleil\Device\Win2k\BTNetFilter.sys [22416 2006-11-21] (IVT Corporation.) S3 CCDECODE; C:\Windows\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [45912 2013-05-31] (G Data Software AG) R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [97368 2013-05-31] (G Data Software AG) R2 GDTdiInterceptor; C:\WINDOWS\system32\drivers\GDTdiIcpt.sys [53976 2013-05-31] (G Data Software AG) R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [70032 2013-06-03] (G Data Software) R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [47704 2013-05-31] (G Data Software AG) R3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus.sys [171520 2005-09-23] (Pinnacle Systems GmbH) S3 MPE; C:\Windows\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 NdisIP; C:\Windows\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) R3 NVHDA; C:\Windows\System32\drivers\nvhda32.sys [124264 2012-07-03] (NVIDIA Corporation) R1 PCLEPCI; C:\WINDOWS\system32\drivers\pclepci.sys [14165 2005-02-09] (Pinnacle Systems GmbH) S3 RT61; C:\Windows\System32\DRIVERS\RT61.sys [380928 2006-05-04] (Ralink Technology Inc.) R3 VComm; C:\Windows\System32\DRIVERS\VComm.sys [34448 2007-03-05] (IVT Corporation.) R3 VcommMgr; C:\Windows\System32\Drivers\VcommMgr.sys [44304 2007-03-05] (IVT Corporation.) S3 ZSMC0305; C:\Windows\System32\Drivers\usbVM305.sys [391688 2006-05-08] (Vimicro Corporation) S3 zte_cdc_acm; C:\Windows\System32\DRIVERS\zte_cdc_acm.sys [67968 2011-08-10] (ZTE) S3 zte_cpo; C:\Windows\System32\DRIVERS\zte_cpo.sys [9984 2011-08-10] (ZTE) S3 catchme; \??\C:\DOCUME~1\Justyna\USTAWI~1\Temp\catchme.sys [x] S3 EagleXNt; \??\C:\WINDOWS\system32\drivers\EagleXNt.sys [x] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U3 TlntSvr; S3 vtany; \??\C:\WINDOWS\vtany.sys [x] S3 xhunter1; \??\C:\WINDOWS\xhunter1.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-13 19:39 - 2013-12-13 19:40 - 00012531 _____ C:\Documents and Settings\Justyna\Pulpit\FRST.txt 2013-12-13 19:36 - 2013-12-13 19:36 - 00000000 ____D C:\FRST 2013-12-13 18:00 - 2013-12-13 18:00 - 00097516 _____ C:\Documents and Settings\Justyna\Pulpit\OTL.Txt 2013-12-13 12:58 - 2013-12-13 12:58 - 01060575 _____ (Farbar) C:\Documents and Settings\Justyna\Pulpit\FRST.exe 2013-12-13 12:57 - 2013-12-13 12:57 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\Justyna\Pulpit\OTL.exe 2013-12-13 12:40 - 2013-12-13 13:59 - 00026423 _____ C:\WINDOWS\WindowsUpdate.log 2013-12-13 12:40 - 2013-12-13 12:55 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-12-13 12:40 - 2013-12-13 12:55 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-12-13 12:40 - 2013-12-13 12:40 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-12-12 09:37 - 2013-12-12 09:37 - 04861952 _____ C:\Documents and Settings\Justyna\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00315392 _____ C:\WINDOWS\system32\config\default.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00233472 _____ C:\Documents and Settings\NetworkService\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00233472 _____ C:\Documents and Settings\LocalService\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00229376 _____ C:\Documents and Settings\UpdatusUser\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00024576 _____ C:\WINDOWS\system32\config\SAM.rhk 2013-12-12 09:36 - 2013-12-12 09:37 - 31805440 _____ C:\WINDOWS\system32\config\software.rhk 2013-12-12 09:36 - 2013-12-12 09:36 - 00053248 _____ C:\WINDOWS\system32\config\SECURITY.rhk 2013-12-12 08:15 - 2013-12-13 14:36 - 00000350 _____ C:\WINDOWS\Tasks\Wise Care 365.job 2013-12-12 08:11 - 2013-12-13 12:55 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Wise Care 365 2013-12-12 08:10 - 2013-12-12 08:10 - 00000656 _____ C:\Documents and Settings\All Users\Pulpit\Wise Care 365.lnk 2013-12-12 08:10 - 2013-12-12 08:10 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Wise Care 365 2013-12-12 08:09 - 2013-12-12 08:10 - 00000000 ____D C:\mirek 2013-12-12 08:08 - 2013-12-12 08:09 - 08826320 _____ (WiseCleaner.com ) C:\Documents and Settings\Justyna\Pulpit\WiseCare365.exe 2013-12-11 22:37 - 2013-12-11 22:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-11 22:37 - 2013-12-11 22:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-10 10:22 - 2013-12-10 10:22 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\tuto4pc_pl_20 2013-12-09 12:20 - 2013-12-09 12:58 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP 2013-12-09 12:20 - 2013-12-09 12:20 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-09 12:20 - 2013-12-09 12:20 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2013-12-09 12:18 - 2013-12-09 13:54 - 00000000 ____D C:\AdwCleaner 2013-12-08 20:49 - 2013-12-08 20:49 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Help 2013-12-07 20:17 - 2013-12-07 20:27 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Ares 2013-12-07 20:14 - 2013-12-07 20:34 - 00000000 ____D C:\Program Files\MyPC Backup 2013-12-07 17:07 - 2013-12-10 07:40 - 00000000 ____D C:\Program Files\VLC Player GPU+ 2013-12-07 17:06 - 2013-12-13 18:55 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\newnext.me 2013-12-07 17:06 - 2013-12-07 20:07 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-12-07 17:06 - 2013-12-07 17:24 - 00000441 _____ C:\Documents and Settings\Justyna\daemonprocess.txt 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\genienext 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\cache 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Moje dokumenty\Mobogenie 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\.android 2013-12-07 17:01 - 2013-12-08 17:03 - 00000000 ____D C:\Program Files\RegClean Pro 2013-12-07 17:01 - 2013-12-07 17:01 - 00000000 ____D C:\Program Files\windealist 2013-12-06 21:36 - 2013-12-06 21:37 - 00002432 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempJYA288.html 2013-12-06 21:36 - 2013-12-06 21:37 - 00002089 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempSuX288.html 2013-12-06 21:32 - 2013-12-06 21:35 - 00002432 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\Tempsz2136.html 2013-12-06 21:32 - 2013-12-06 21:35 - 00002089 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempYA2136.html 2013-12-06 21:32 - 2013-12-06 21:32 - 00000762 _____ C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk 2013-12-06 21:31 - 2013-12-06 21:31 - 00000680 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Gadu-Gadu 10.lnk 2013-12-06 21:31 - 2013-12-06 21:31 - 00000000 ____D C:\Program Files\Gadu-Gadu 10 2013-12-03 15:51 - 2013-12-03 15:51 - 00000040 ____H C:\F2688DAAEC59 2013-12-02 14:20 - 2013-12-02 14:56 - 00000000 ___SD C:\ComboFix 2013-12-02 14:20 - 2011-06-26 07:45 - 00256000 _____ C:\WINDOWS\PEV.exe 2013-12-02 14:20 - 2010-11-07 18:20 - 00208896 _____ C:\WINDOWS\MBR.exe 2013-12-02 14:20 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00098816 _____ C:\WINDOWS\sed.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00080412 _____ C:\WINDOWS\grep.exe 2013-12-02 14:20 - 2000-08-31 01:00 - 00068096 _____ C:\WINDOWS\zip.exe 2013-12-02 14:19 - 2013-12-02 14:20 - 00000000 ____D C:\Qoobox 2013-12-02 14:18 - 2013-12-02 14:18 - 00000000 ____D C:\WINDOWS\erdnt 2013-11-30 10:31 - 2013-12-04 07:10 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (8) 2013-11-28 18:12 - 2013-11-28 18:12 - 00000145 _____ C:\Documents and Settings\Justyna\Menu Start\Lenovo IdeaPad Y5802899.00zł.url 2013-11-28 13:30 - 2013-11-28 13:30 - 00000000 ____D C:\WINDOWS\pss 2013-11-24 20:46 - 2013-12-04 18:16 - 00024820 _____ C:\Documents and Settings\Justyna\Moje dokumenty\pamiątka ślubu Cywilnego Darii i Dawida.pmpa 2013-11-24 20:45 - 2013-12-03 17:00 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (7) 2013-11-23 12:44 - 2013-11-23 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\okładka3.ncd.Files 2013-11-22 23:37 - 2008-04-14 22:50 - 00021504 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\hidserv.dll 2013-11-22 23:37 - 2008-04-14 22:50 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidserv.dll 2013-11-22 23:20 - 2013-11-22 23:20 - 00001023 _____ C:\Documents and Settings\Justyna\Moje dokumenty\PMDump.log 2013-11-22 23:17 - 2013-11-22 23:17 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Partner_s.c 2013-11-22 23:15 - 2013-11-22 23:15 - 00000732 _____ C:\Documents and Settings\All Users\Pulpit\Edytor Wspomnień.lnk 2013-11-22 23:15 - 2013-11-22 23:15 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\drukujwspomnienia.pl 2013-11-22 23:14 - 2013-11-22 23:14 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Edytor Wspomnień 2013-11-22 23:13 - 2013-11-22 23:15 - 00000000 ____D C:\edytor wspomnień 2013-11-21 18:41 - 2013-11-22 01:10 - 01061120 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat 2013-11-21 18:24 - 2013-11-22 18:42 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (6) 2013-11-21 16:32 - 2013-11-21 16:34 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Studio Plugins 2013-11-21 16:32 - 2013-11-21 16:32 - 00000000 ____D C:\Program Files\LooksBuilderSE 2013-11-21 16:32 - 2013-11-21 16:32 - 00000000 ____D C:\Program Files\Avid 2013-11-21 16:32 - 2004-03-29 16:23 - 00090112 _____ (MindVision Software) C:\WINDOWS\unvise32.exe 2013-11-21 16:29 - 2013-11-21 20:10 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Avid 2013-11-21 16:29 - 2013-11-21 16:29 - 00000228 _____ C:\Documents and Settings\Justyna\Dane aplikacji\JUSTYNA-PC.MTBF.txt 2013-11-21 16:28 - 2013-11-21 16:28 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Avid Studio 2013-11-21 16:25 - 2013-11-21 16:25 - 00000000 ____D C:\Program Files\Common Files\Pegasus Imaging 2013-11-21 16:19 - 2013-11-21 16:29 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Avid 2013-11-21 16:11 - 2013-11-21 16:11 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Avid.Studio.1.0.0.2804 2013-11-20 20:07 - 2013-11-21 21:27 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (5) 2013-11-20 00:23 - 2013-11-20 00:23 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\VideoDownloadConverter_4z 2013-11-19 23:31 - 2013-11-19 23:31 - 00000000 ____D C:\Program Files\VideoDownloadConverter 2013-11-19 23:30 - 2013-11-20 00:23 - 00000000 ____D C:\Program Files\VideoDownloadConverter_4z 2013-11-19 20:11 - 2013-11-19 20:14 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (4) 2013-11-18 20:04 - 2013-11-22 20:53 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (3) 2013-11-18 07:36 - 2013-11-22 22:58 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\przepisy 2013-11-17 19:52 - 2013-11-17 20:43 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-16 20:36 - 2013-12-09 13:34 - 00000730 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2013-11-16 20:36 - 2013-12-09 13:34 - 00000724 _____ C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk 2013-11-16 20:36 - 2013-11-17 20:43 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-11-16 20:13 - 2013-11-16 20:13 - 00000000 ____D C:\Documents and Settings\Justyna\TMOP2BackUp_Z 2013-11-16 08:42 - 2013-11-16 08:41 - 24059344 _____ (Mozilla) C:\Documents and Settings\Justyna\Moje dokumenty\firefox_setup_25_0.exe 2013-11-16 08:35 - 2013-11-16 08:35 - 00000111 _____ C:\Documents and Settings\Justyna\Dane aplikacji\profiles.ini 2013-11-16 08:35 - 2013-11-16 08:35 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Crash Reports 2013-11-15 23:11 - 2013-12-08 09:36 - 00000000 ____D C:\Program Files\tuto4pc_pl_32 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$ 2013-11-13 20:57 - 2013-11-13 20:57 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\IDM ==================== One Month Modified Files and Folders ======= 2013-12-13 19:40 - 2013-12-13 19:39 - 00012531 _____ C:\Documents and Settings\Justyna\Pulpit\FRST.txt 2013-12-13 19:39 - 2013-06-04 06:30 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Skype 2013-12-13 19:39 - 2013-05-31 11:53 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit 2013-12-13 19:36 - 2013-12-13 19:36 - 00000000 ____D C:\FRST 2013-12-13 19:36 - 2013-06-04 06:30 - 00002267 _____ C:\Documents and Settings\All Users\Pulpit\Skype.lnk 2013-12-13 19:28 - 2013-06-04 05:41 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2013-12-13 18:55 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\newnext.me 2013-12-13 18:49 - 2013-08-14 15:49 - 00000428 _____ C:\WINDOWS\Tasks\At2.job 2013-12-13 18:49 - 2013-08-14 15:49 - 00000424 _____ C:\WINDOWS\Tasks\At1.job 2013-12-13 18:00 - 2013-12-13 18:00 - 00097516 _____ C:\Documents and Settings\Justyna\Pulpit\OTL.Txt 2013-12-13 14:36 - 2013-12-12 08:15 - 00000350 _____ C:\WINDOWS\Tasks\Wise Care 365.job 2013-12-13 13:59 - 2013-12-13 12:40 - 00026423 _____ C:\WINDOWS\WindowsUpdate.log 2013-12-13 12:58 - 2013-12-13 12:58 - 01060575 _____ (Farbar) C:\Documents and Settings\Justyna\Pulpit\FRST.exe 2013-12-13 12:57 - 2013-12-13 12:57 - 00602112 _____ (OldTimer Tools) C:\Documents and Settings\Justyna\Pulpit\OTL.exe 2013-12-13 12:55 - 2013-12-13 12:40 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-12-13 12:55 - 2013-12-13 12:40 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-12-13 12:55 - 2013-12-12 08:11 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Wise Care 365 2013-12-13 12:54 - 2013-05-31 11:52 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-12-13 12:40 - 2013-12-13 12:40 - 00000000 _____ C:\WINDOWS\Sti_Trace.log 2013-12-13 12:39 - 2006-03-02 13:00 - 00001374 _____ C:\WINDOWS\system32\wpa.dbl 2013-12-13 12:36 - 2013-05-31 11:53 - 00000188 ___SH C:\Documents and Settings\Justyna\ntuser.ini 2013-12-13 12:36 - 2013-05-31 11:52 - 00032440 _____ C:\WINDOWS\SchedLgU.Txt 2013-12-12 09:37 - 2013-12-12 09:37 - 04861952 _____ C:\Documents and Settings\Justyna\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00315392 _____ C:\WINDOWS\system32\config\default.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00233472 _____ C:\Documents and Settings\NetworkService\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00233472 _____ C:\Documents and Settings\LocalService\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00229376 _____ C:\Documents and Settings\UpdatusUser\NTUSER.rhk 2013-12-12 09:37 - 2013-12-12 09:37 - 00024576 _____ C:\WINDOWS\system32\config\SAM.rhk 2013-12-12 09:37 - 2013-12-12 09:36 - 31805440 _____ C:\WINDOWS\system32\config\software.rhk 2013-12-12 09:37 - 2013-05-31 11:53 - 00000000 ____D C:\Documents and Settings\Justyna 2013-12-12 09:37 - 2013-05-31 11:52 - 00000000 __SHD C:\Documents and Settings\NetworkService 2013-12-12 09:37 - 2013-05-31 11:52 - 00000000 __SHD C:\Documents and Settings\LocalService 2013-12-12 09:36 - 2013-12-12 09:36 - 00053248 _____ C:\WINDOWS\system32\config\SECURITY.rhk 2013-12-12 08:28 - 2013-06-04 05:40 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2013-12-12 08:28 - 2013-05-31 15:52 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2013-12-12 08:11 - 2013-05-31 11:53 - 00000000 __RHD C:\Documents and Settings\Justyna\Dane aplikacji 2013-12-12 08:10 - 2013-12-12 08:10 - 00000656 _____ C:\Documents and Settings\All Users\Pulpit\Wise Care 365.lnk 2013-12-12 08:10 - 2013-12-12 08:10 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Wise Care 365 2013-12-12 08:10 - 2013-12-12 08:09 - 00000000 ____D C:\mirek 2013-12-12 08:10 - 2013-05-31 13:38 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2013-12-12 08:10 - 2013-05-31 13:38 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-12-12 08:09 - 2013-12-12 08:08 - 08826320 _____ (WiseCleaner.com ) C:\Documents and Settings\Justyna\Pulpit\WiseCare365.exe 2013-12-12 08:09 - 2013-06-03 15:51 - 00007168 ___SH C:\WINDOWS\Thumbs.db 2013-12-11 22:39 - 2013-05-31 13:37 - 00228800 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-12-11 22:37 - 2013-12-11 22:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-11 22:37 - 2013-12-11 22:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-11 22:37 - 2013-06-09 18:31 - 00019348 _____ C:\WINDOWS\system32\TZLog.log 2013-12-11 22:37 - 2013-05-31 14:48 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2013-12-11 22:37 - 2013-05-31 13:39 - 00001393 _____ C:\WINDOWS\imsins.BAK 2013-12-11 22:36 - 2013-08-21 21:27 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-11 22:34 - 2013-12-11 22:34 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-11 22:34 - 2013-08-21 21:27 - 88123800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-12-11 21:43 - 2013-05-31 11:53 - 00000000 ___RD C:\Documents and Settings\Justyna\Menu Start\Programy 2013-12-10 15:31 - 2013-05-31 11:53 - 00000000 ___HD C:\Documents and Settings\Justyna\Ustawienia lokalne 2013-12-10 10:22 - 2013-12-10 10:22 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\tuto4pc_pl_20 2013-12-10 10:22 - 2013-05-31 11:53 - 00000000 ___HD C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji 2013-12-10 10:19 - 2013-06-04 06:05 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\instalki 2013-12-10 10:16 - 2013-06-25 12:52 - 00000000 ____D C:\Crash 2013-12-10 08:30 - 2013-05-31 13:29 - 00000000 ____D C:\WINDOWS\repair 2013-12-10 08:30 - 2013-05-31 11:45 - 00000000 ____D C:\WINDOWS\Registration 2013-12-10 07:40 - 2013-12-07 17:07 - 00000000 ____D C:\Program Files\VLC Player GPU+ 2013-12-09 19:16 - 2013-06-04 06:13 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\OpenFM 2013-12-09 13:54 - 2013-12-09 12:18 - 00000000 ____D C:\AdwCleaner 2013-12-09 13:34 - 2013-11-16 20:36 - 00000730 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2013-12-09 13:34 - 2013-11-16 20:36 - 00000724 _____ C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk 2013-12-09 13:34 - 2013-06-04 06:50 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\GRY SŁAWEK 2013-12-09 13:34 - 2013-05-31 11:53 - 00000749 _____ C:\Documents and Settings\Justyna\Menu Start\Programy\Internet Explorer.lnk 2013-12-09 13:33 - 2013-05-31 13:38 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-12-09 13:13 - 2013-05-31 11:53 - 00000000 ___RD C:\Documents and Settings\Justyna\Moje dokumenty\Moje obrazy 2013-12-09 13:05 - 2013-05-31 15:40 - 00000000 ____D C:\Documents and Settings\Justyna\Moje dokumenty\Pobieranie 2013-12-09 12:58 - 2013-12-09 12:20 - 00000000 ____D C:\WINDOWS\220FB0354744483A9A0B41DF77061583.TMP 2013-12-09 12:34 - 2013-05-31 12:29 - 00001599 _____ C:\Documents and Settings\UpdatusUser\Menu Start\Programy\Pomoc zdalna.lnk 2013-12-09 12:26 - 2013-05-31 11:53 - 00001599 _____ C:\Documents and Settings\Justyna\Menu Start\Programy\Pomoc zdalna.lnk 2013-12-09 12:26 - 2013-05-31 11:49 - 00001599 _____ C:\Documents and Settings\Default User\Menu Start\Programy\Pomoc zdalna.lnk 2013-12-09 12:20 - 2013-12-09 12:20 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-12-09 12:20 - 2013-12-09 12:20 - 00000000 ____D C:\Program Files\Common Files\Wise Installation Wizard 2013-12-09 12:03 - 2013-06-04 06:29 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Skype 2013-12-09 12:02 - 2013-06-04 06:30 - 00000000 ___RD C:\Program Files\Skype 2013-12-09 00:58 - 2013-08-15 19:49 - 00000110 _____ C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG 2013-12-09 00:58 - 2013-08-15 19:49 - 00000006 _____ C:\Documents and Settings\NetworkService\Dane aplikacji\WBPU-TTL.DAT 2013-12-08 20:49 - 2013-12-08 20:49 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Help 2013-12-08 17:03 - 2013-12-07 17:01 - 00000000 ____D C:\Program Files\RegClean Pro 2013-12-08 09:36 - 2013-11-15 23:11 - 00000000 ____D C:\Program Files\tuto4pc_pl_32 2013-12-08 09:36 - 2013-11-07 06:48 - 00000000 ____D C:\Program Files\tuto4pc_pl_31 2013-12-08 09:36 - 2013-10-02 12:37 - 00000000 ____D C:\Program Files\tuto4pc_pl_20 2013-12-07 20:34 - 2013-12-07 20:14 - 00000000 ____D C:\Program Files\MyPC Backup 2013-12-07 20:27 - 2013-12-07 20:17 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Ares 2013-12-07 20:17 - 2013-05-31 11:53 - 00000000 ___RD C:\Documents and Settings\Justyna\Menu Start\Programy\Autostart 2013-12-07 20:07 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Mobogenie 2013-12-07 17:24 - 2013-12-07 17:06 - 00000441 _____ C:\Documents and Settings\Justyna\daemonprocess.txt 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\genienext 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\cache 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\Moje dokumenty\Mobogenie 2013-12-07 17:06 - 2013-12-07 17:06 - 00000000 ____D C:\Documents and Settings\Justyna\.android 2013-12-07 17:06 - 2013-05-31 11:53 - 00000000 ___RD C:\Documents and Settings\Justyna\Moje dokumenty 2013-12-07 17:01 - 2013-12-07 17:01 - 00000000 ____D C:\Program Files\windealist 2013-12-07 00:49 - 2013-08-29 20:49 - 00000094 _____ C:\Documents and Settings\Justyna\Dane aplikacji\WB.CFG 2013-12-07 00:49 - 2013-08-29 20:49 - 00000006 _____ C:\Documents and Settings\Justyna\Dane aplikacji\WBPU-TTL.DAT 2013-12-06 21:51 - 2013-06-04 06:50 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Sławek ERA 2013-12-06 21:43 - 2013-06-04 07:50 - 00000000 ____D C:\Documents and Settings\Justyna\.gstreamer-0.10 2013-12-06 21:37 - 2013-12-06 21:36 - 00002432 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempJYA288.html 2013-12-06 21:37 - 2013-12-06 21:36 - 00002089 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempSuX288.html 2013-12-06 21:37 - 2013-06-04 11:01 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\GG 2013-12-06 21:35 - 2013-12-06 21:32 - 00002432 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\Tempsz2136.html 2013-12-06 21:35 - 2013-12-06 21:32 - 00002089 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\TempYA2136.html 2013-12-06 21:35 - 2013-06-04 11:01 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\GG 2013-12-06 21:32 - 2013-12-06 21:32 - 00000762 _____ C:\Documents and Settings\All Users\Pulpit\Gadu-Gadu 10.lnk 2013-12-06 21:31 - 2013-12-06 21:31 - 00000680 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Gadu-Gadu 10.lnk 2013-12-06 21:31 - 2013-12-06 21:31 - 00000000 ____D C:\Program Files\Gadu-Gadu 10 2013-12-06 10:41 - 2013-05-31 14:55 - 00002513 _____ C:\Documents and Settings\Justyna\Pulpit\Microsoft Office Word 2007.lnk 2013-12-04 22:07 - 2013-06-11 20:02 - 00000000 ____D C:\Program Files\AdorageI-SAL 2013-12-04 22:07 - 2013-05-31 11:45 - 00000000 ____D C:\Program Files\Messenger 2013-12-04 21:05 - 2013-09-27 18:44 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Mipony 2013-12-04 20:59 - 2013-06-11 20:07 - 00000000 ____D C:\Program Files\QuickTime 2013-12-04 18:16 - 2013-11-24 20:46 - 00024820 _____ C:\Documents and Settings\Justyna\Moje dokumenty\pamiątka ślubu Cywilnego Darii i Dawida.pmpa 2013-12-04 07:10 - 2013-11-30 10:31 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (8) 2013-12-04 07:09 - 2013-09-20 20:44 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Dawid i Daria 2013-12-03 17:00 - 2013-11-24 20:45 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (7) 2013-12-03 15:51 - 2013-12-03 15:51 - 00000040 ____H C:\F2688DAAEC59 2013-12-02 14:56 - 2013-12-02 14:20 - 00000000 ___SD C:\ComboFix 2013-12-02 14:20 - 2013-12-02 14:19 - 00000000 ____D C:\Qoobox 2013-12-02 14:18 - 2013-12-02 14:18 - 00000000 ____D C:\WINDOWS\erdnt 2013-11-28 18:12 - 2013-11-28 18:12 - 00000145 _____ C:\Documents and Settings\Justyna\Menu Start\Lenovo IdeaPad Y5802899.00zł.url 2013-11-28 13:30 - 2013-11-28 13:30 - 00000000 ____D C:\WINDOWS\pss 2013-11-23 17:06 - 2013-11-23 12:44 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\okładka3.ncd.Files 2013-11-23 09:18 - 2013-06-11 20:54 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Pinnacle 2013-11-23 08:35 - 2013-06-03 12:42 - 00000349 _____ C:\Documents and Settings\All Users\Dokumenty\PCLECHAL.INI 2013-11-22 23:20 - 2013-11-22 23:20 - 00001023 _____ C:\Documents and Settings\Justyna\Moje dokumenty\PMDump.log 2013-11-22 23:17 - 2013-11-22 23:17 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Partner_s.c 2013-11-22 23:15 - 2013-11-22 23:15 - 00000732 _____ C:\Documents and Settings\All Users\Pulpit\Edytor Wspomnień.lnk 2013-11-22 23:15 - 2013-11-22 23:15 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\drukujwspomnienia.pl 2013-11-22 23:15 - 2013-11-22 23:13 - 00000000 ____D C:\edytor wspomnień 2013-11-22 23:14 - 2013-11-22 23:14 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Edytor Wspomnień 2013-11-22 22:58 - 2013-11-18 07:36 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\przepisy 2013-11-22 20:53 - 2013-11-18 20:04 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (3) 2013-11-22 20:53 - 2013-06-12 19:00 - 00088576 _____ C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-11-22 18:42 - 2013-11-21 18:24 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (6) 2013-11-22 01:10 - 2013-11-21 18:41 - 01061120 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat 2013-11-22 01:10 - 2013-05-31 11:52 - 00000000 ___HD C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji 2013-11-21 21:27 - 2013-11-20 20:07 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (5) 2013-11-21 20:10 - 2013-11-21 16:29 - 00000000 ____D C:\Documents and Settings\Justyna\Ustawienia lokalne\Dane aplikacji\Avid 2013-11-21 17:17 - 2013-06-11 20:49 - 00001708 _____ C:\Documents and Settings\All Users\Dane aplikacji\__wdump.txt 2013-11-21 16:57 - 2013-06-11 19:36 - 00000000 ____D C:\Documents and Settings\All Users\Dokumenty\Moje wideo 2013-11-21 16:57 - 2013-05-31 11:45 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty\Moja muzyka 2013-11-21 16:48 - 2013-06-11 20:47 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\skrut do pinakle 2013-11-21 16:34 - 2013-11-21 16:32 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Studio Plugins 2013-11-21 16:32 - 2013-11-21 16:32 - 00000000 ____D C:\Program Files\LooksBuilderSE 2013-11-21 16:32 - 2013-11-21 16:32 - 00000000 ____D C:\Program Files\Avid 2013-11-21 16:29 - 2013-11-21 16:29 - 00000228 _____ C:\Documents and Settings\Justyna\Dane aplikacji\JUSTYNA-PC.MTBF.txt 2013-11-21 16:29 - 2013-11-21 16:19 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Avid 2013-11-21 16:28 - 2013-11-21 16:28 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Avid Studio 2013-11-21 16:26 - 2013-05-31 11:45 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty\Moje obrazy 2013-11-21 16:25 - 2013-11-21 16:25 - 00000000 ____D C:\Program Files\Common Files\Pegasus Imaging 2013-11-21 16:21 - 2013-05-31 15:42 - 00000000 ____D C:\Program Files\Microsoft.NET 2013-11-21 16:21 - 2013-05-31 11:48 - 00000000 ____D C:\WINDOWS\system32\DirectX 2013-11-21 16:11 - 2013-11-21 16:11 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Avid.Studio.1.0.0.2804 2013-11-21 16:05 - 2013-06-11 20:51 - 00000017 _____ C:\WINDOWS\MovingPicture.ini 2013-11-21 01:34 - 2013-08-12 19:54 - 00442590 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1844237615-1770027372-725345543-1004-0.dat 2013-11-21 01:34 - 2013-08-12 19:54 - 00188658 _____ C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat 2013-11-20 20:52 - 2013-05-31 16:09 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Nero 2013-11-20 00:23 - 2013-11-20 00:23 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\VideoDownloadConverter_4z 2013-11-20 00:23 - 2013-11-19 23:30 - 00000000 ____D C:\Program Files\VideoDownloadConverter_4z 2013-11-19 23:31 - 2013-11-19 23:31 - 00000000 ____D C:\Program Files\VideoDownloadConverter 2013-11-19 20:14 - 2013-11-19 20:11 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (4) 2013-11-19 19:34 - 2013-09-07 21:08 - 00000000 ____D C:\Documents and Settings\Justyna\Pulpit\Nowy folder (2) 2013-11-18 23:19 - 2013-10-09 21:03 - 00000000 ___RD C:\Documents and Settings\Justyna\Pulpit\CHOPIN 2013-11-18 20:34 - 2013-06-20 20:06 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Winamp 2013-11-17 21:12 - 2013-06-20 20:59 - 00000000 ____D C:\Documents and Settings\Justyna\Moje dokumenty\Pinnacle Studio 2013-11-17 21:12 - 2013-06-11 20:41 - 00000000 ____D C:\Documents and Settings\All Users\Dokumenty\Pinnacle 2013-11-17 20:43 - 2013-11-17 19:52 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-11-17 20:43 - 2013-11-16 20:36 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-11-16 20:13 - 2013-11-16 20:13 - 00000000 ____D C:\Documents and Settings\Justyna\TMOP2BackUp_Z 2013-11-16 08:41 - 2013-11-16 08:42 - 24059344 _____ (Mozilla) C:\Documents and Settings\Justyna\Moje dokumenty\firefox_setup_25_0.exe 2013-11-16 08:35 - 2013-11-16 08:35 - 00000111 _____ C:\Documents and Settings\Justyna\Dane aplikacji\profiles.ini 2013-11-16 08:35 - 2013-11-16 08:35 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\Crash Reports 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2900986$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2876331$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2868626$ 2013-11-14 09:37 - 2013-11-14 09:37 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2862152$ 2013-11-13 20:57 - 2013-11-13 20:57 - 00000000 ____D C:\Documents and Settings\Justyna\Dane aplikacji\IDM 2013-11-13 04:00 - 2012-02-29 15:10 - 00150528 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\imagehlp.dll 2013-11-13 04:00 - 2006-03-02 13:00 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll 2013-11-13 02:13 - 2013-05-31 13:21 - 00046080 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe Files to move or delete: ==================== C:\Windows\Tasks\At1.job C:\Windows\Tasks\At2.job ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2006-03-02 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2006-03-02 13:00] - [2008-04-14 21:50] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2006-03-02 13:00] - [2008-04-14 21:51] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 13:00] - [2008-04-14 20:31] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================