Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-12-2013 01 Ran by wojtek (administrator) on LEN7 on 15-12-2013 17:46:29 Running from E:\Archiwum\Moje\Ustawienia\Win7_konfiguracja\131215_FixItPC_raporty_Win7 Windows 7 Professional Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) M:\Windows\System32\ibmpmsvc.exe (NVIDIA Corporation) M:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) M:\Windows\System32\nvvsvc.exe (DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkUserAgent.exe (Authentec Inc.) C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe (Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe (Microsoft Corporation) M:\Windows\System32\wlanext.exe (Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Sierra Wireless, Inc.) C:\Program Files (x86)\Sierra Wireless Inc\Gobi\QDLService\GobiQDLService.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe (SafeNet, Inc) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe (SafeNet, Inc.) C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe (Data Perceptions / PowerProgrammer) C:\Program Files (x86)\Lenovo\MobileAccess\WebUpdateSvc4.exe (Intel(R) Corporation) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe (Winstep Software Technologies) C:\Program Files (x86)\Winstep\WsxService.exe (Ericsson AB) C:\Program Files (x86)\Mobile Broadband drivers\WMCore\mini_WMCore.exe (X-Rite Inc.) C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe (Red Bend Ltd.) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo.) M:\Windows\System32\TpShocks.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Password Manager\password_manager.exe (Pokki) C:\Users\wojtek\AppData\Local\Pokki\Engine\pokki.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Winstep Software Technologies) C:\Program Files (x86)\Winstep\Nexus.exe (Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\dexpot.exe (Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe (Lenovo Group Limited) C:\Program Files (x86)\Lenovo\Password Manager\password_manager.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Facebook) C:\Users\wojtek\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Check Point Software Technologies LTD) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe (Lenovo) C:\Program Files (x86)\Lenovo\MobileAccess\MobileAccess.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe (Apple Inc.) C:\Program Files (x86)\AirPort\APAgent.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\Dexpot64.exe (InstallShield Software Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE (Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe (Pokki) C:\Users\wojtek\AppData\Local\Pokki\Engine\pokki.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnetwk.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Macheen) C:\Program Files (x86)\Lenovo\MobileAccess\MacheenService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe (Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Lenovo Group Limited) C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe (Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [TpShocks] - C:\Windows\System32\TpShocks.exe [382248 2013-02-12] (Lenovo.) HKLM\...\Run: [ResetACGauge] - C:\Program Files (x86)\Lenovo\Access Connections\SMBHlpr.exe [147456 2013-03-18] (Lenovo) HKLM\...\Run: [PasswordManager] - C:\Program Files\Lenovo\Password Manager\password_manager.exe [3091256 2012-03-15] (Lenovo Group Limited) HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] () HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-08-20] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1215632 2012-08-17] (Realtek Semiconductor) HKLM\...\Run: [LENOVO.TPKNRRES] - C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe [293232 2012-11-26] (Lenovo Group Limited) HKLM\...\Run: [AcWin7Hlpr] - C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [63784 2013-03-18] (Lenovo) HKLM\...\Run: [SynTPEnh] - M:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2963184 2013-04-24] (Synaptics Incorporated) HKLM\...\Run: [EvtMgr6] - C:\Program Files\Logitech\SetPointP\SetPoint.exe [2991856 2013-02-21] (Logitech, Inc.) HKLM\...\Run: [nwiz] - C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2747680 2013-11-15] () HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe, Winlogon\Notify\igfxcui: C:\WINDOWS\SYSTEM32\igfxdev.dll (Intel Corporation) Winlogon\Notify\LBTWlgn: C:\Program Files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.) Winlogon\Notify\psfus: C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll (Authentec Inc.) HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] () HKCU\...\Run: [NeXuS] - C:\Program Files (x86)\Winstep\Nexus.exe [16957056 2012-03-28] (Winstep Software Technologies) HKCU\...\Run: [Dexpot] - C:\Program Files (x86)\Dexpot\dexpot.exe [1841232 2013-12-14] (Dexpot GbR) HKCU\...\Run: [PC Suite Tray] - C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia) HKCU\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2012-07-22] (Google Inc.) HKCU\...\Run: [Pokki] - M:\Windows\system32\rundll32.exe "%LOCALAPPDATA%\Pokki\Engine\Launcher.dll",RunLaunchPlatform HKCU\...\Run: [ISUSPM Startup] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [249856 2005-06-10] (InstallShield Software Corporation) HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133400 2012-02-28] (Intel Corporation) HKLM-x32\...\Run: [PWMTRV] - C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL [6002984 2013-04-23] (Lenovo Group Limited) HKLM-x32\...\Run: [ZoneAlarm] - C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [73832 2013-01-29] (Check Point Software Technologies LTD) HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284480 2012-05-30] (Intel Corporation) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2012-02-20] (Apple Inc.) HKLM-x32\...\Run: [MobileAccess] - C:\Program Files (x86)\Lenovo\MobileAccess\MobileAccess.exe [155864 2013-04-17] (Lenovo) HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-04-19] (Intel Corporation) HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2011-07-13] (Lenovo, Inc.) HKLM-x32\...\Run: [AirPort Base Station Agent] - C:\Program Files (x86)\AirPort\APAgent.exe [771360 2009-11-11] (Apple Inc.) HKLM-x32\...\Run: [NSU_agent] - C:\Program Files (x86)\Nokia\Nokia Software Updater\nsu3ui_agent.exe [190768 2012-02-28] () HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ISUSScheduler] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe [81920 2005-06-10] (InstallShield Software Corporation) HKLM-x32\...\Run: [ZoneAlarm Installer] - C:\Program Files (x86)\CheckPoint\Install\Install.xml [30647 2013-12-15] () HKU\Default\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation) HKU\Default\...\RunOnce: [Lenovo.ShowBand] - C:\Program Files\Lenovo\SimpleTap DeskBand\ShowBand.exe [52584 2013-03-14] (Lenovo) HKU\Default\...\RunOnce: [] - [x] HKU\Default\...\RunOnce: [Lenovoautoqdrive] - C:\Program Files (x86)\Common Files\Lenovo\LenovoDrive\LenovoAutoRunReg.exe [159744 2011-12-15] () HKU\Default User\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation) HKU\Default User\...\RunOnce: [Lenovo.ShowBand] - C:\Program Files\Lenovo\SimpleTap DeskBand\ShowBand.exe [52584 2013-03-14] (Lenovo) HKU\Default User\...\RunOnce: [] - [x] HKU\Default User\...\RunOnce: [Lenovoautoqdrive] - C:\Program Files (x86)\Common Files\Lenovo\LenovoDrive\LenovoAutoRunReg.exe [159744 2011-12-15] () AppInit_DLLs: M:\Windows\System32\nvinitx.dll [245872 2013-11-15] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll,M:\Windows\SysWOW64\nvinit.dll [201576 2013-11-15] (NVIDIA Corporation) Lsa: [Notification Packages] C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll ACGina Startup: C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled () Startup: C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Messenger.lnk ShortcutTarget: Facebook Messenger.lnk -> C:\Users\wojtek\AppData\Local\Facebook\Messenger\2.1.4814.0\FacebookMessenger.exe (Facebook) BootExecute: autocheck autochk /r \??\G:autocheck autochk * AlternateShell: ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.zonealarm.com/?src=hp&tbid=goughGA&Lan=en&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=& HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Strona wyszukiwania = http://www.msn.com/access/allinone.asp HKCU\Software\Microsoft\Internet Explorer\Main,Strona początkowa = http://www.microsoft.com/msoffice/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=1367339024 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=1367339024 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=1367339024 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=1367339024 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=1367339024 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=0 SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=0 SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=0 SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=SAMSUNGXSSDX830XSeries_S0WLNEAC700092&ts=0 SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {026A3AAA-D3E5-49A6-8EE5-21D2523CDE17} URL = http://search.zonealarm.com/search?src=sp&tbid=goughGA&Lan=en&q={searchTerms}&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=&&r=420 SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll (Google Inc.) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: IePasswordManagerHelper Class - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files\Lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) BHO: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\64bit\VIPAddOnForIE64.dll (Symantec Corporation) BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Zonealarm Helper Object - {2A841F7A-A014-4DA5-B6D9-8B913DFB7A8C} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\bh\zonealarm.dll (Check Point Software Technologies LTD) BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coieplg.dll (Symantec Corporation) BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ips\ipsbho.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Partner BHO Class - {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll (Google Inc.) BHO-x32: Pomocnik logowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: IePasswordManagerHelper Class - {BF468356-BB7E-42D7-9F15-4F3B9BCFCED2} - C:\Program Files (x86)\Lenovo\Password Manager\tvtpwm_ie_com.dll (Lenovo Group Limited) BHO-x32: Symantec VIP Access Add-On - {C63CD127-A1CB-4D49-A4F7-D6F88A917BE6} - C:\Program Files (x86)\Symantec\VIP Access Client\VIPAddOnForIE.dll (Symantec Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coieplg.dll (Symantec Corporation) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKLM-x32 - ZoneAlarm Security Toolbar - {438FAE3E-BDEF-44D3-AB8B-0C7C8350DF59} - C:\Program Files (x86)\Check Point Software Technologies LTD\zonealarm\1.8.22.0\zonealarmTlbr.dll (Check Point Software Technologies LTD) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File DPF: HKLM {816BE035-1450-40D0-8A3B-BA7825A83A77} http://support.lenovo.com/Resources/Lenovo/AutoDetect/Lenovo_AutoDetect2.cab DPF: HKLM-x32 {816BE035-1450-40D0-8A3B-BA7825A83A77} http://support.lenovo.com/Resources/Lenovo/AutoDetect/Lenovo_AutoDetect2.cab Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{93AB33B1-E758-4A0B-BF8D-6331880FF931}: [NameServer]89.108.202.21 89.108.195.21 Tcpip\..\Interfaces\{D11E69A4-83A3-4024-AF83-01C95D8F31C0}: [NameServer]193.41.112.14 193.41.112.18 FireFox: ======== FF ProfilePath: C:\Users\wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\arpbkecr.default-1355564453331 FF user.js: detected! => C:\Users\wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\arpbkecr.default-1355564453331\user.js FF SearchEngineOrder.1: Search By ZoneAlarm FF SelectedSearchEngine: Google FF Homepage: hxxp://search.zonealarm.com/?src=hp&tbid=goughGA&Lan=en&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=& FF Plugin: @adobe.com/FlashPlayer - M:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - M:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @checkpoint.com/FFApi - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll No File FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.9.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: facebook.com/fbDesktopPlugin - C:\Users\wojtek\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll (Facebook, Inc.) FF SearchPlugin: C:\Users\wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\arpbkecr.default-1355564453331\searchplugins\zonealarm.xml FF SearchPlugin: M:\Program Files (x86)\mozilla firefox\searchplugins\qvo6.xml FF Extension: zonealarm.com - C:\Users\wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\arpbkecr.default-1355564453331\Extensions\ffxtlbr@zonealarm.com FF Extension: Adblock Plus - C:\Users\wojtek\AppData\Roaming\Mozilla\Firefox\Profiles\arpbkecr.default-1355564453331\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Java Console - M:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\IPSFFPlgn\ FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\IPSFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\coFFPlgn\ FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\coFFPlgn\ FF HKLM-x32\...\Firefox\Extensions: [VIP1X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client\ FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client\ FF HKLM-x32\...\Firefox\Extensions: [{FFB96CC1-7EB3-449D-B827-DB661701C6BB}] - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ FF HKLM-x32\...\Firefox\Extensions: [VIP2X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client\ FF Extension: Symantec VIP Access Add-On - C:\Program Files (x86)\Symantec\VIP Access Client\ FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF HKCU\...\Firefox\Extensions: [{F74D5734-46F5-4B16-96F0-1E7FBF41B750}] - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12 FF Extension: ThinkVantage Password Manager - C:\Program Files (x86)\Lenovo\Password Manager\PWM Firefox Extension\2.0b12 Chrome: ======= CHR HomePage: hxxp://search.zonealarm.com/?src=hp&tbid=goughGA&Lan=en&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=& CHR RestoreOnStartup: "hxxp://search.zonealarm.com/?src=hp&tbid=goughGA&Lan=en&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=&" CHR DefaultSearchProvider: Search By ZoneAlarm CHR DefaultSearchURL: http://search.zonealarm.com/search?src=sp&tbid=goughGA&Lan=en&q={searchTerms}&gu=829ec40c9fc845ebbd33005bd62fda58&tu=10GXz00BW2C01g0&sku=&tstsId=&ver=& CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.94\pdf.dll No File CHR Plugin: (invokete Dynamic Link Library) - C:\Users\wojtek\AppData\Local\Google\Chrome\User Data\Default\Extensions\geempcnjhccnoepfmahaeemnnfnignab\4.0.22_0\tvtpwm_chrome_npapi.dll No File CHR Plugin: (Norton Confidential) - C:\Users\wojtek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.6.10_0\npcoplgn.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Nokia Suite Enabler Plugin) - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (npFFApi) - C:\Program Files\CheckPoint\ZAForceField\WOW64\TrustChecker\bin\npFFApi.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_135.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Plugin: (Windows Activation Technologies) - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation) CHR Extension: (Logitech SetPoint) - C:\Users\wojtek\AppData\Local\Google\Chrome\User Data\Default\Extensions\edaibbiobngpbmeonadpbfafbkimjbdd\6.52.74_0 CHR HKLM\...\Chrome\Extension: [geempcnjhccnoepfmahaeemnnfnignab] - C:\Program Files (x86)\Lenovo\Password Manager\chrome_npapi_extension.crx CHR HKLM-x32\...\Chrome\Extension: [edaibbiobngpbmeonadpbfafbkimjbdd] - C:\ProgramData\Logitech\LogiSmoothChromeExt.crx CHR HKLM-x32\...\Chrome\Extension: [geempcnjhccnoepfmahaeemnnfnignab] - C:\Program Files (x86)\Lenovo\Password Manager\chrome_npapi_extension.crx CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\Exts\Chrome.crx ==================== Services (Whitelisted) ================= R2 AcPrfMgrSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe [133416 2013-03-18] (Lenovo) S3 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1191648 2012-04-27] (Acronis) R2 AcSvc; C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe [272680 2013-03-18] (Lenovo) S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640 2013-05-09] (Adobe Systems Incorporated) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [256904 2013-05-21] (Adobe Systems Incorporated) S4 Autodesk Licensing Service; C:\Program Files (x86)\Common Files\Autodesk Shared\Service\AdskScSrv.exe [85096 2012-09-08] (Autodesk) R2 Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [462184 2011-08-30] (Apple Inc.) R2 btwdins; C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe [1006384 2013-01-21] (Broadcom Corporation.) S2 clr_optimization_v4.0.30319_32; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [130384 2010-03-18] (Microsoft Corporation) S2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [138576 2010-03-18] (Microsoft Corporation) R2 DisplayLinkService; C:\Program Files\DisplayLink Core Software\DisplayLinkManager.exe [8447848 2011-11-09] (DisplayLink Corp.) R2 DMAgent; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [514048 2011-12-27] (Red Bend Ltd.) S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [320576 2013-04-23] (Lenovo.) S3 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [60040 2011-08-05] (CHENGDU YIWO Tech Development Co., Ltd) R2 EvtEng; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [621296 2013-02-08] (Intel(R) Corporation) S4 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [655624 2012-09-13] (Acresso Software Inc.) S3 FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [1038088 2012-09-20] (Acresso Software Inc.) R2 GobiQDLService; C:\Program Files (x86)\Sierra Wireless Inc\Gobi\QDLService\GobiQDLService.exe [312688 2011-11-25] (Sierra Wireless, Inc.) S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2013-05-30] (Google Inc.) S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [116648 2013-05-30] (Google Inc.) S3 gusvc; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [194032 2012-09-07] (Google) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () S3 HyperW7Svc; C:\Program Files\Lenovo\RapidBoot\HyperW7Svc64.exe [144992 2012-05-29] (Lenovo Group Limited) R2 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [13632 2012-05-30] (Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [628448 2012-02-02] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-28] (Intel Corporation) S3 LBTServ; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [359664 2013-02-08] (Logitech, Inc.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe [58224 2012-11-26] (Lenovo Group Limited) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [127072 2012-08-24] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [61296 2012-11-26] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [187760 2012-11-26] (Lenovo Group Limited) R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited) R2 LMS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [277784 2012-02-28] (Intel Corporation) R2 MacheenService; C:\Program Files (x86)\Lenovo\MobileAccess\MacheenService.exe [32480 2013-04-17] (Macheen) S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [234776 2012-09-05] (McAfee, Inc.) S4 MozillaMaintenance; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [117144 2013-05-24] (Mozilla Foundation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-02-08] () S4 NetMsmqActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [124240 2010-03-18] (Microsoft Corporation) S4 NetPipeActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [124240 2010-03-18] (Microsoft Corporation) S4 NetTcpActivator; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [124240 2010-03-18] (Microsoft Corporation) S3 NetTcpPortSharing; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [124240 2010-03-18] (Microsoft Corporation) R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe [138272 2012-06-16] (Symantec Corporation) S2 nvUpdatusService; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1260320 2013-01-11] (NVIDIA Corporation) S3 odserv; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [440696 2011-07-20] (Microsoft Corporation) S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [145184 2006-10-26] (Microsoft Corporation) S3 PACSPTISVR-Sound_Organizer; C:\Program Files (x86)\Sony\Sound Organizer\Sony.Earth\PACSPTISVR.exe [174176 2012-11-08] (Sony Corporation) S4 Partner Service; C:\ProgramData\Partner\Partner.exe [332272 2012-07-22] (Google Inc.) S3 PLAY ONLINE. RunOuc; C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [246112 2012-12-02] () R3 Power Manager DBC Service; C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE [1667368 2013-04-23] (Lenovo) R2 PSI_SVC_2; C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [193824 2010-03-11] (Protexis Inc.) S3 PwmEWSvc; C:\Program Files (x86)\ThinkPad\Utilities\PWMEWSVC.EXE [1664808 2013-04-23] (Lenovo Group Limited) R2 RegSrvc; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [149744 2013-02-08] (Intel(R) Corporation) S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1225312 2012-11-26] (Secunia) S3 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [659040 2012-11-26] (Secunia) R2 SentinelKeysServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Keys Server\sntlkeyssrvr.exe [374304 2011-09-22] (SafeNet, Inc.) R2 SentinelProtectionServer; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Protection Server\WinNT\spnsrvnt.exe [1259040 2011-09-22] (SafeNet, Inc) R2 SentinelSecurityRuntime; C:\Program Files (x86)\Common Files\SafeNet Sentinel\Sentinel Security Runtime\sntlsrtsrvr.exe [292384 2011-09-22] (SafeNet, Inc.) R3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [737616 2013-04-18] (Nokia) S3 SgtSch2Svc; C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe [1192048 2011-06-30] (Seagate) S4 SkypeUpdate; C:\Program Files (x86)\Skype\Updater\Updater.exe [160944 2012-07-13] (Skype Technologies) R2 Stereo Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [383776 2013-10-28] (NVIDIA Corporation) S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [22376 2013-04-11] () R2 ThinkVantage Registry Monitor Service; C:\Program Files (x86)\Common Files\Lenovo\tvt_reg_monitor_svc.exe [1028096 2010-08-31] (Lenovo Group Limited) R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [145808 2012-09-07] (Lenovo Group Limited) R2 TPHKSVC; C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe [125504 2012-12-04] (Lenovo Group Limited) S3 TVT Backup Service; C:\Program Files (x86)\Lenovo\Rescue and Recovery\rrservice.exe [1492280 2012-01-19] (Lenovo Group Limited) S3 UleadBurningHelper; C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [61440 2008-01-10] (Ulead Systems, Inc.) R2 UNS; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [363800 2012-02-28] (Intel Corporation) R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84112 2012-08-22] (Symantec Corporation) R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [2447888 2013-01-29] (Check Point Software Technologies LTD) R2 WebUpdate4; C:\Program Files (x86)\Lenovo\MobileAccess\WebUpdateSvc4.exe [278800 2013-01-16] (Data Perceptions / PowerProgrammer) S3 wifimansvc; C:\Program Files (x86)\Mobile Partner\eap\wifimansvc.exe [598528 2011-10-24] () R2 WiMAXAppSrv; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [979456 2011-12-27] (Intel(R) Corporation) S4 wlcrasvc; C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [57184 2010-09-22] (Microsoft Corporation) S3 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2286976 2010-09-21] (Microsoft Corp.) R2 WMCoreService; C:\Program Files (x86)\Mobile Broadband drivers\WMCore\mini_WMCore.exe [689560 2012-10-18] (Ericsson AB) R2 xrdd.exe; C:\Program Files (x86)\X-Rite\Devices\Services\xrdd.exe [203088 2011-10-11] (X-Rite Inc.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3386608 2013-02-08] (Intel® Corporation) R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService [x] ==================== Drivers (Whitelisted) ==================== R3 bcbtums; M:\Windows\System32\drivers\bcbtums.sys [165688 2012-09-25] (Broadcom Corporation.) R1 BHDrvx64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\BASHDefs\20120928.001\BHDrvx64.sys [1385120 2012-09-04] (Symantec Corporation) R3 btwampfl; C:\Windows\system32\drivers\btwampfl.sys [598808 2012-12-04] (Broadcom Corporation.) R1 ccSet_NIS; M:\Windows\system32\drivers\NISx64\1309010.00E\ccSetx64.sys [167072 2012-06-07] (Symantec Corporation) R3 ecnssndis; M:\Windows\System32\Drivers\wwuss64.sys [26664 2011-10-05] (Ericsson AB) R3 ecnssndisfltr; M:\Windows\System32\Drivers\wwussf64.sys [29736 2011-10-05] (Ericsson AB) R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484512 2012-09-07] (Symantec Corporation) R0 EUBKMON; M:\Windows\System32\drivers\EUBKMON.sys [50312 2011-08-05] () R1 EUDSKACS; C:\Windows\system32\drivers\eudskacs.sys [19592 2011-08-05] (CHENGDU YIWO Tech Development Co., Ltd) R1 EUFDDISK; C:\Windows\system32\drivers\EuFdDisk.sys [189576 2011-08-05] (CHENGDU YIWO Tech Development Co., Ltd) R1 excfs; M:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; M:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) R1 FNETURPX; M:\Windows\System32\drivers\FNETURPX.SYS [15936 2012-10-15] (FNet Co., Ltd.) R0 fsbts; M:\Windows\System32\Drivers\fsbts.sys [56016 2012-12-14] () R0 iaStorF; M:\Windows\System32\drivers\iaStorF.sys [24496 2012-03-21] (Intel Corporation) R0 iaStorS; M:\Windows\System32\drivers\iaStorS.sys [637360 2012-03-21] (Intel Corporation) R1 IDSVia64; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\IPSDefs\20121005.002\IDSvia64.sys [513184 2012-09-06] (Symantec Corporation) R1 KLIF; M:\Windows\System32\DRIVERS\klif.sys [611160 2012-11-15] (Kaspersky Lab) R3 l36wgps; M:\Windows\System32\DRIVERS\l36wgps64.sys [103184 2012-03-01] (Ericsson AB) R3 l36wscard; M:\Windows\System32\DRIVERS\l36wscard.sys [61992 2011-01-14] (Ericsson AB) R3 Mbm3CBus; M:\Windows\System32\DRIVERS\Mbm3CBus.sys [443208 2012-10-02] (MCCI Corporation) R3 Mbm3DevMt; M:\Windows\System32\DRIVERS\Mbm3DevMt.sys [453960 2012-10-02] (MCCI Corporation) R3 Mbm3mdfl; M:\Windows\System32\DRIVERS\Mbm3mdfl.sys [21832 2012-10-02] (MCCI Corporation) R3 Mbm3Mdm; M:\Windows\System32\DRIVERS\Mbm3Mdm.sys [506184 2012-10-02] (MCCI Corporation) R0 mv64xx; M:\Windows\System32\drivers\mv64xx.sys [333352 2011-04-11] (Marvell Semiconductor, Inc.) S3 NAVENG; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20121006.007\ENG64.SYS [126112 2012-10-07] (Symantec Corporation) S3 NAVEX15; C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.1.0.28\Definitions\VirusDefs\20121006.007\EX64.SYS [2084000 2012-10-07] (Symantec Corporation) S3 NPF; M:\Windows\System32\drivers\NPF.sys [35344 2011-09-26] (CACE Technologies, Inc.) S3 NPF; M:\Windows\SysWow64\drivers\NPF.sys [35344 2011-09-26] (CACE Technologies, Inc.) R1 nvkflt; M:\Windows\System32\DRIVERS\nvkflt.sys [284448 2013-11-15] (NVIDIA Corporation) R1 PHCORE; C:\Program Files\Lenovo\RapidBoot\PHCORE64.SYS [33344 2012-03-26] (Lenovo Group Limited) S3 PortTalk; M:\Windows\SysWow64\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic http://www.beyondlogic.org) R0 PxHlpa64; M:\Windows\System32\Drivers\PxHlpa64.sys [56336 2012-12-17] (Corel Corporation) R2 Sentinel64; M:\Windows\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc.) R3 SmbDrvI; M:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [44344 2012-10-17] (Synaptics Incorporated) R2 smihlp; C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys [13128 2011-05-30] (Authentec Inc.) S3 SNTUSB64; M:\Windows\System32\DRIVERS\SNTUSB64.SYS [63528 2011-09-22] (SafeNet, Inc.) S3 SRTSP; M:\Windows\System32\Drivers\NISx64\1309010.00E\SRTSP64.SYS [737952 2012-07-06] (Symantec Corporation) R1 SRTSPX; M:\Windows\system32\drivers\NISx64\1309010.00E\SRTSPX64.SYS [37536 2012-07-06] (Symantec Corporation) R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [11576 2007-08-13] (Samsung Electronics) R0 SymDS; M:\Windows\System32\drivers\NISx64\1309010.00E\SYMDS64.SYS [451192 2011-07-25] (Symantec Corporation) R0 SymEFA; M:\Windows\System32\drivers\NISx64\1309010.00E\SYMEFA64.SYS [1129120 2012-05-22] (Symantec Corporation) R3 SymEvent; M:\Windows\system32\Drivers\SYMEVENT64x86.SYS [175736 2013-12-15] (Symantec Corporation) R1 SymIRON; M:\Windows\system32\drivers\NISx64\1309010.00E\Ironx64.SYS [190072 2012-04-18] (Symantec Corporation) R1 SymNetS; M:\Windows\System32\Drivers\NISx64\1309010.00E\SYMNETS.SYS [405624 2012-04-18] (Symantec Corporation) S3 SynasUSB; M:\Windows\System32\drivers\SynUSB64.sys [31248 2006-11-16] (SIA Syncrosoft) R3 TVTI2C; M:\Windows\System32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Product(ShenZhen China) Inc.) R3 tvtvcamd; M:\Windows\System32\DRIVERS\tvtvcamd.sys [27432 2011-12-07] (ThinkVantage Communications Utility) R1 VD_FileDisk; M:\Windows\System32\Drivers\VD_FileDisk.sys [30312 2011-01-26] (CaptainFlint Software) R0 vidsflt53; M:\Windows\System32\DRIVERS\vsflt53.sys [141920 2012-10-15] (Acronis) R1 Vsdatant; M:\Windows\System32\DRIVERS\vsdatant.sys [450136 2012-12-13] (Check Point Software Technologies LTD) R2 WIBUKEY; M:\Windows\System32\DRIVERS\WibuKey64.sys [107008 2007-07-31] (WIBU-SYSTEMS AG) R3 WwanUsbServ; M:\Windows\System32\DRIVERS\WwanUsbMp64.sys [281840 2013-02-19] (Ericsson AB) U5 klflt; M:\Windows\System32\Drivers\klflt.sys [89432 2012-11-15] (Kaspersky Lab) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-15 17:46 - 2013-12-15 17:46 - 00000000 ____D M:\FRST 2013-12-15 15:53 - 2013-12-15 16:09 - 00000000 ____D C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Urządzenia interfejsu Bluetooth 2013-12-15 14:13 - 2013-06-12 11:08 - 00001210 _____ C:\Users\wojtek\Desktop 2\DVDVideoSoft Free Studio.lnk 2013-12-15 04:25 - 2013-12-15 04:25 - 00000000 ____D M:\414bfd990b24c7f0e360 2013-12-15 02:45 - 2013-12-15 02:48 - 00002101 _____ C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2013-12-15 02:39 - 2013-12-15 02:39 - 00007100 _____ M:\Windows\IE11_main.log 2013-12-15 02:39 - 2013-12-15 02:39 - 00000134 _____ C:\Users\wojtek\Desktop 2\Internet Explorer Troubleshooting.url 2013-12-15 02:17 - 2013-12-15 02:17 - 00003591 _____ C:\Users\wojtek\Desktop 2\Msirepair.reg 2013-12-15 02:14 - 2013-12-15 02:14 - 00003591 _____ C:\Users\wojtek\Documents\Msirepair.reg 2013-12-15 01:36 - 2013-12-15 01:36 - 00000000 ____D C:\Program Files (x86)\Check Point Software Technologies LTD 2013-12-15 00:31 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) M:\Windows\system32\wmp.dll 2013-12-15 00:31 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) M:\Windows\system32\wmploc.DLL 2013-12-15 00:31 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wmploc.DLL 2013-12-15 00:31 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wmp.dll 2013-12-15 00:29 - 2013-10-25 07:19 - 02241536 _____ (Microsoft Corporation) M:\Windows\system32\wininet.dll 2013-12-15 00:29 - 2013-10-25 07:19 - 01365504 _____ (Microsoft Corporation) M:\Windows\system32\urlmon.dll 2013-12-15 00:29 - 2013-10-25 07:19 - 00051712 _____ (Microsoft Corporation) M:\Windows\system32\ie4uinit.exe 2013-12-15 00:29 - 2013-10-25 07:18 - 19271168 _____ (Microsoft Corporation) M:\Windows\system32\mshtml.dll 2013-12-15 00:29 - 2013-10-25 07:18 - 00603136 _____ (Microsoft Corporation) M:\Windows\system32\msfeeds.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 15404032 _____ (Microsoft Corporation) M:\Windows\system32\ieframe.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 03959808 _____ (Microsoft Corporation) M:\Windows\system32\jscript9.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 02648576 _____ (Microsoft Corporation) M:\Windows\system32\iertutil.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00855552 _____ (Microsoft Corporation) M:\Windows\system32\jscript.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00526336 _____ (Microsoft Corporation) M:\Windows\system32\ieui.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00136704 _____ (Microsoft Corporation) M:\Windows\system32\iesysprep.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00067072 _____ (Microsoft Corporation) M:\Windows\system32\iesetup.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00053248 _____ (Microsoft Corporation) M:\Windows\system32\jsproxy.dll 2013-12-15 00:29 - 2013-10-25 07:17 - 00039936 _____ (Microsoft Corporation) M:\Windows\system32\iernonce.dll 2013-12-15 00:29 - 2013-10-25 05:45 - 01767936 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wininet.dll 2013-12-15 00:29 - 2013-10-25 05:44 - 14356992 _____ (Microsoft Corporation) M:\Windows\SysWOW64\mshtml.dll 2013-12-15 00:29 - 2013-10-25 05:44 - 01140736 _____ (Microsoft Corporation) M:\Windows\SysWOW64\urlmon.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 13761536 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ieframe.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 02877952 _____ (Microsoft Corporation) M:\Windows\SysWOW64\jscript9.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 02049024 _____ (Microsoft Corporation) M:\Windows\SysWOW64\iertutil.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00690688 _____ (Microsoft Corporation) M:\Windows\SysWOW64\jscript.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00493056 _____ (Microsoft Corporation) M:\Windows\SysWOW64\msfeeds.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00391168 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ieui.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00109056 _____ (Microsoft Corporation) M:\Windows\SysWOW64\iesysprep.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00061440 _____ (Microsoft Corporation) M:\Windows\SysWOW64\iesetup.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00039424 _____ (Microsoft Corporation) M:\Windows\SysWOW64\jsproxy.dll 2013-12-15 00:29 - 2013-10-25 05:43 - 00033280 _____ (Microsoft Corporation) M:\Windows\SysWOW64\iernonce.dll 2013-12-15 00:29 - 2013-10-25 05:07 - 02706432 _____ (Microsoft Corporation) M:\Windows\system32\mshtml.tlb 2013-12-15 00:29 - 2013-10-25 04:41 - 02706432 _____ (Microsoft Corporation) M:\Windows\SysWOW64\mshtml.tlb 2013-12-15 00:29 - 2013-10-25 04:17 - 00089600 _____ (Microsoft Corporation) M:\Windows\system32\RegisterIEPKEYs.exe 2013-12-15 00:29 - 2013-10-25 03:49 - 00071680 _____ (Microsoft Corporation) M:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-12-15 00:21 - 2013-12-15 00:25 - 00000000 ____D M:\Windows\system32\MRT 2013-12-15 00:01 - 2013-12-15 00:00 - 00866592 _____ C:\Users\wojtek\Downloads\Norton Removal Tool 20.0.0.21.exe 2013-12-14 23:46 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) M:\Windows\SysWOW64\WMPhoto.dll 2013-12-14 23:46 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) M:\Windows\system32\WMPhoto.dll 2013-12-14 23:46 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) M:\Windows\system32\tzres.dll 2013-12-14 23:46 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) M:\Windows\SysWOW64\tzres.dll 2013-12-14 23:46 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) M:\Windows\system32\msieftp.dll 2013-12-14 23:46 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) M:\Windows\SysWOW64\msieftp.dll 2013-12-14 23:46 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) M:\Windows\system32\win32k.sys 2013-12-14 23:46 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) M:\Windows\system32\imagehlp.dll 2013-12-14 23:46 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) M:\Windows\SysWOW64\imagehlp.dll 2013-12-14 23:46 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) M:\Windows\system32\crypt32.dll 2013-12-14 23:46 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) M:\Windows\SysWOW64\crypt32.dll 2013-12-14 23:46 - 2013-08-29 02:29 - 00033280 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\usbser.sys 2013-12-14 23:46 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) M:\Windows\system32\wintrust.dll 2013-12-14 23:46 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) M:\Windows\system32\cryptsvc.dll 2013-12-14 23:46 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) M:\Windows\system32\cryptnet.dll 2013-12-14 23:46 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wintrust.dll 2013-12-14 23:46 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) M:\Windows\SysWOW64\cryptsvc.dll 2013-12-14 23:46 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) M:\Windows\SysWOW64\cryptnet.dll 2013-12-14 23:46 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) M:\Windows\system32\comctl32.dll 2013-12-14 23:46 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) M:\Windows\SysWOW64\comctl32.dll 2013-12-14 23:45 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) M:\Windows\system32\SmartcardCredentialProvider.dll 2013-12-14 23:45 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) M:\Windows\system32\credui.dll 2013-12-14 23:45 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) M:\Windows\system32\authui.dll 2013-12-14 23:45 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\drmk.sys 2013-12-14 23:45 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) M:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2013-12-14 23:45 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) M:\Windows\SysWOW64\authui.dll 2013-12-14 23:45 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) M:\Windows\SysWOW64\credui.dll 2013-12-14 23:45 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\portcls.sys 2013-12-14 23:45 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\afd.sys 2013-12-14 23:45 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\ksecpkg.sys 2013-12-14 23:45 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\ksecdd.sys 2013-12-14 23:45 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) M:\Windows\system32\sspicli.dll 2013-12-14 23:45 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) M:\Windows\system32\sspisrv.dll 2013-12-14 23:45 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) M:\Windows\system32\secur32.dll 2013-12-14 23:45 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) M:\Windows\system32\schannel.dll 2013-12-14 23:45 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) M:\Windows\system32\lsasrv.dll 2013-12-14 23:45 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) M:\Windows\system32\ncrypt.dll 2013-12-14 23:45 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) M:\Windows\SysWOW64\sspicli.dll 2013-12-14 23:45 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) M:\Windows\SysWOW64\schannel.dll 2013-12-14 23:45 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) M:\Windows\SysWOW64\secur32.dll 2013-12-14 23:45 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ncrypt.dll 2013-12-14 23:45 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) M:\Windows\system32\lsass.exe 2013-12-14 23:45 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\ataport.sys 2013-12-14 23:45 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) M:\Windows\system32\winsrv.dll 2013-12-14 23:45 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) M:\Windows\system32\kernel32.dll 2013-12-14 23:45 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) M:\Windows\system32\KernelBase.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) M:\Windows\system32\csrsrv.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) M:\Windows\system32\apisetschema.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) M:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) M:\Windows\SysWOW64\kernel32.dll 2013-12-14 23:45 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) M:\Windows\SysWOW64\KernelBase.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) M:\Windows\SysWOW64\apisetschema.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) M:\Windows\system32\conhost.exe 2013-12-14 23:45 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) M:\Windows\system32\smss.exe 2013-12-14 23:45 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-12-14 23:45 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) M:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-12-14 23:45 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) M:\Windows\system32\WMVDECOD.DLL 2013-12-14 23:45 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) M:\Windows\SysWOW64\WMVDECOD.DLL 2013-12-14 23:45 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) M:\Windows\system32\rpcrt4.dll 2013-12-14 23:45 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) M:\Windows\SysWOW64\rpcrt4.dll 2013-12-14 23:45 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\cng.sys 2013-12-14 23:45 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\Wdf01000.sys 2013-12-14 23:45 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) M:\Windows\system32\lpk.dll 2013-12-14 23:45 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) M:\Windows\system32\fontsub.dll 2013-12-14 23:45 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) M:\Windows\system32\dciman32.dll 2013-12-14 23:45 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) M:\Windows\system32\atmlib.dll 2013-12-14 23:45 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) M:\Windows\SysWOW64\lpk.dll 2013-12-14 23:45 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) M:\Windows\SysWOW64\fontsub.dll 2013-12-14 23:45 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) M:\Windows\SysWOW64\dciman32.dll 2013-12-14 23:45 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) M:\Windows\system32\atmfd.dll 2013-12-14 23:45 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) M:\Windows\SysWOW64\atmfd.dll 2013-12-14 23:45 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) M:\Windows\SysWOW64\atmlib.dll 2013-12-14 23:44 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\tcpip.sys 2013-12-14 23:44 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) M:\Windows\system32\mswsock.dll 2013-12-14 23:44 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) M:\Windows\SysWOW64\mswsock.dll 2013-12-14 23:44 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) M:\Windows\system32\scavengeui.dll 2013-12-14 23:44 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\usbvideo.sys 2013-12-14 23:44 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\usbcir.sys 2013-12-14 23:44 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) M:\Windows\system32\WebClnt.dll 2013-12-14 23:44 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) M:\Windows\system32\davclnt.dll 2013-12-14 23:44 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) M:\Windows\SysWOW64\WebClnt.dll 2013-12-14 23:44 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) M:\Windows\SysWOW64\davclnt.dll 2013-12-14 23:44 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\mrxdav.sys 2013-12-14 23:44 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\usbscan.sys 2013-12-14 23:44 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\hidclass.sys 2013-12-14 23:44 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\hidparse.sys 2013-12-14 23:44 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\tssecsrv.sys 2013-12-14 23:44 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) M:\Windows\system32\qedit.dll 2013-12-14 23:44 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) M:\Windows\SysWOW64\qedit.dll 2013-12-14 23:39 - 2013-12-14 23:37 - 00001024 _____ C:\Users\wojtek\Desktop 2\Eusing Free Registry Cleaner - Kopia.lnk 2013-12-14 23:39 - 2013-12-14 23:37 - 00000735 _____ C:\Users\wojtek\Desktop 2\CCleaner.lnk 2013-12-14 23:34 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) M:\Windows\system32\wshom.ocx 2013-12-14 23:34 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) M:\Windows\system32\scrrun.dll 2013-12-14 23:34 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wshom.ocx 2013-12-14 23:34 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) M:\Windows\SysWOW64\scrrun.dll 2013-12-14 23:34 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) M:\Windows\system32\wscript.exe 2013-12-14 23:34 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) M:\Windows\system32\cscript.exe 2013-12-14 23:34 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wscript.exe 2013-12-14 23:34 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) M:\Windows\SysWOW64\cscript.exe 2013-12-14 23:34 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) M:\Windows\system32\gdi32.dll 2013-12-14 23:34 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) M:\Windows\SysWOW64\gdi32.dll 2013-12-14 23:34 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) M:\Windows\system32\ntoskrnl.exe 2013-12-14 23:34 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) M:\Windows\system32\ntdll.dll 2013-12-14 23:34 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) M:\Windows\system32\tdh.dll 2013-12-14 23:34 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) M:\Windows\system32\wow64.dll 2013-12-14 23:34 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) M:\Windows\system32\advapi32.dll 2013-12-14 23:34 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ntkrnlpa.exe 2013-12-14 23:34 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ntoskrnl.exe 2013-12-14 23:34 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ntdll.dll 2013-12-14 23:34 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) M:\Windows\SysWOW64\tdh.dll 2013-12-14 23:34 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) M:\Windows\SysWOW64\wow32.dll 2013-12-14 23:34 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) M:\Windows\SysWOW64\advapi32.dll 2013-12-14 23:34 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) M:\Windows\SysWOW64\setup16.exe 2013-12-14 23:34 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) M:\Windows\SysWOW64\ntvdm64.dll 2013-12-14 23:34 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) M:\Windows\SysWOW64\instnm.exe 2013-12-14 23:34 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) M:\Windows\SysWOW64\user.exe 2013-12-14 23:34 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) M:\Windows\system32\Drivers\dxgkrnl.sys 2013-12-14 23:34 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) M:\Windows\system32\shell32.dll 2013-12-14 23:34 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) M:\Windows\system32\shdocvw.dll 2013-12-14 23:34 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) M:\Windows\SysWOW64\shell32.dll 2013-12-14 23:34 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) M:\Windows\SysWOW64\shdocvw.dll 2013-12-14 23:34 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) M:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2013-12-14 23:34 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) M:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2013-12-14 23:33 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) M:\Windows\SysWOW64\DWrite.dll 2013-12-14 23:33 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) M:\Windows\system32\DWrite.dll 2013-12-14 23:28 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) M:\Windows\system32\nshwfp.dll 2013-12-14 23:28 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) M:\Windows\system32\IKEEXT.DLL 2013-12-14 23:28 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) M:\Windows\system32\FWPUCLNT.DLL 2013-12-14 23:28 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) M:\Windows\SysWOW64\nshwfp.dll 2013-12-14 23:28 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) M:\Windows\SysWOW64\FWPUCLNT.DLL 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\xerox 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\outlook express 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\netmeeting 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\msn gaming zone 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\movie maker 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\microsoft frontpage 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\Common Files\mssoap 2013-11-15 10:53 - 2013-11-15 10:53 - 15051216 _____ (NVIDIA Corporation) M:\Windows\system32\nvwgf2umx.dll 2013-11-15 10:53 - 2013-11-15 10:53 - 12641480 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvwgf2um.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 26940704 _____ (NVIDIA Corporation) M:\Windows\system32\nvoglv64.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 25256224 _____ (NVIDIA Corporation) M:\Windows\system32\nvcompiler.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 20461344 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvoglv32.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 17560352 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcompiler.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 11137824 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-15 10:52 - 2013-11-15 10:52 - 09393856 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuda.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 07935352 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuda.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 07566624 _____ (NVIDIA Corporation) M:\Windows\system32\nvopencl.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 06264144 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvopencl.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02907936 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuvid.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02723616 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuvid.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02346784 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuvenc.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01987360 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuvenc.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01814304 _____ (NVIDIA Corporation) M:\Windows\system32\nvdispco6431269.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01511712 _____ (NVIDIA Corporation) M:\Windows\system32\nvdispgenco6431269.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00420128 _____ (NVIDIA Corporation) M:\Windows\system32\nvEncodeAPI64.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00364832 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00284448 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvkflt.sys 2013-11-15 10:52 - 2013-11-15 10:52 - 00245872 _____ (NVIDIA Corporation) M:\Windows\system32\nvinitx.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00201576 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvinit.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00030496 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvpciflt.sys ==================== One Month Modified Files and Folders ======= 2013-12-15 17:46 - 2013-12-15 17:46 - 00000000 ____D M:\FRST 2013-12-15 17:12 - 2013-05-30 04:32 - 00001048 _____ M:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-12-15 16:46 - 2012-09-07 14:29 - 00000000 ____D C:\Users\wojtek\AppData\Local\Mozilla 2013-12-15 16:45 - 2013-03-11 08:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-12-15 16:34 - 2012-07-22 06:21 - 01728398 _____ M:\Windows\WindowsUpdate.log 2013-12-15 16:30 - 2009-07-14 05:45 - 00034432 ____H M:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-12-15 16:30 - 2009-07-14 05:45 - 00034432 ____H M:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-12-15 16:28 - 2012-07-22 16:10 - 00742800 _____ M:\Windows\system32\perfh015.dat 2013-12-15 16:28 - 2012-07-22 16:10 - 00156566 _____ M:\Windows\system32\perfc015.dat 2013-12-15 16:28 - 2009-07-14 06:13 - 01671332 _____ M:\Windows\system32\PerfStringBackup.INI 2013-12-15 16:24 - 2012-09-14 19:34 - 01599727 _____ M:\Windows\setupact.log 2013-12-15 16:23 - 2013-05-30 04:32 - 00001044 _____ M:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-12-15 16:23 - 2012-12-15 20:34 - 00000324 _____ M:\Windows\Tasks\GlaryInitialize.job 2013-12-15 16:23 - 2009-07-14 06:08 - 00000006 ____H M:\Windows\Tasks\SA.DAT 2013-12-15 16:22 - 2012-07-22 06:30 - 00000000 ____D M:\ProgramData\NVIDIA 2013-12-15 16:21 - 2012-09-18 06:21 - 00000000 ____D C:\Users\wojtek\AppData\Roaming\Dexpot 2013-12-15 16:09 - 2013-12-15 15:53 - 00000000 ____D C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Urządzenia interfejsu Bluetooth 2013-12-15 15:36 - 2013-06-12 11:12 - 00000000 ____D C:\Users\wojtek\AppData\Local\Pokki 2013-12-15 14:25 - 2012-09-17 23:32 - 00001779 _____ C:\Users\wojtek\Desktop 2\Wysuń CD.lnk 2013-12-15 14:25 - 2012-09-17 22:59 - 00001832 _____ C:\Users\wojtek\Desktop 2\usb.lnk 2013-12-15 14:13 - 2012-09-18 07:12 - 00000000 ___RD C:\Users\wojtek\Desktop 1 2013-12-15 14:13 - 2012-09-18 06:36 - 00000000 ____D C:\Users\wojtek\Desktop 2 2013-12-15 07:00 - 2009-07-14 04:20 - 00000000 ____D M:\Windows\rescache 2013-12-15 04:25 - 2013-12-15 04:25 - 00000000 ____D M:\414bfd990b24c7f0e360 2013-12-15 03:48 - 2009-07-14 06:32 - 00000000 ____D M:\Windows\system32\WinBioPlugIns 2013-12-15 02:48 - 2013-12-15 02:45 - 00002101 _____ C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk 2013-12-15 02:42 - 2013-05-21 07:51 - 00000930 _____ M:\Windows\Tasks\Adobe Flash Player Updater.job 2013-12-15 02:42 - 2012-07-22 06:31 - 00000000 ____D M:\Windows\SysWOW64\NV 2013-12-15 02:42 - 2012-07-22 06:31 - 00000000 ____D M:\Windows\system32\NV 2013-12-15 02:39 - 2013-12-15 02:39 - 00007100 _____ M:\Windows\IE11_main.log 2013-12-15 02:39 - 2013-12-15 02:39 - 00000134 _____ C:\Users\wojtek\Desktop 2\Internet Explorer Troubleshooting.url 2013-12-15 02:38 - 2012-07-22 06:29 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-12-15 02:37 - 2012-07-22 06:29 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-12-15 02:26 - 2012-07-22 06:39 - 00000000 ____D M:\swshare 2013-12-15 02:17 - 2013-12-15 02:17 - 00003591 _____ C:\Users\wojtek\Desktop 2\Msirepair.reg 2013-12-15 02:14 - 2013-12-15 02:14 - 00003591 _____ C:\Users\wojtek\Documents\Msirepair.reg 2013-12-15 02:05 - 2013-05-21 07:51 - 00003870 _____ M:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-12-15 02:05 - 2012-09-07 20:24 - 00692616 _____ (Adobe Systems Incorporated) M:\Windows\SysWOW64\FlashPlayerApp.exe 2013-12-15 02:05 - 2012-09-07 20:24 - 00071048 _____ (Adobe Systems Incorporated) M:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-12-15 01:55 - 2013-06-01 06:46 - 00010492 _____ M:\Windows\PFRO.log 2013-12-15 01:36 - 2013-12-15 01:36 - 00000000 ____D C:\Program Files (x86)\Check Point Software Technologies LTD 2013-12-15 01:15 - 2012-09-17 23:09 - 00001401 _____ C:\Users\wojtek\Desktop 2\Update.lnk 2013-12-15 00:46 - 2012-09-07 08:10 - 00175736 _____ (Symantec Corporation) M:\Windows\system32\Drivers\SYMEVENT64x86.SYS 2013-12-15 00:46 - 2012-09-07 08:10 - 00007488 _____ M:\Windows\system32\Drivers\SYMEVENT64x86.CAT 2013-12-15 00:46 - 2012-09-07 08:10 - 00000000 ____D C:\Program Files\Symantec 2013-12-15 00:43 - 2012-09-08 10:57 - 00000000 ___RD C:\Users\wojtek\Virtual Machines 2013-12-15 00:43 - 2012-09-07 06:44 - 00000000 ___RD C:\Users\wojtek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-12-15 00:37 - 2009-07-14 05:45 - 03154936 _____ M:\Windows\system32\FNTCACHE.DAT 2013-12-15 00:36 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-12-15 00:36 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-12-15 00:25 - 2013-12-15 00:21 - 00000000 ____D M:\Windows\system32\MRT 2013-12-15 00:22 - 2012-07-22 15:58 - 00000000 ____D M:\ProgramData\Lenovo 2013-12-15 00:00 - 2013-12-15 00:01 - 00866592 _____ C:\Users\wojtek\Downloads\Norton Removal Tool 20.0.0.21.exe 2013-12-14 23:37 - 2013-12-14 23:39 - 00001024 _____ C:\Users\wojtek\Desktop 2\Eusing Free Registry Cleaner - Kopia.lnk 2013-12-14 23:37 - 2013-12-14 23:39 - 00000735 _____ C:\Users\wojtek\Desktop 2\CCleaner.lnk 2013-12-14 23:37 - 2012-09-16 15:34 - 00000000 ____D C:\Program Files (x86)\Eusing Free Registry Cleaner 2013-12-14 23:37 - 2012-09-07 16:47 - 00000000 ____D C:\Program Files\CCleaner 2013-12-14 23:33 - 2012-07-22 06:34 - 00000000 ____D M:\Windows\Downloaded Installations 2013-12-14 23:23 - 2012-09-18 06:21 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-12-14 23:07 - 2013-05-30 04:32 - 00004044 _____ M:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-12-14 23:07 - 2013-05-30 04:32 - 00003792 _____ M:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-12-14 21:56 - 2012-12-13 06:22 - 00000377 _____ M:\ProgramData\LastUpdate.xml 2013-12-14 21:56 - 2012-12-13 06:22 - 00000207 _____ M:\Windows\WebUpdateSvc4.INI 2013-12-14 21:46 - 2012-09-07 19:45 - 00417564 _____ M:\Windows\system32\Drivers\vsconfig.xml 2013-12-14 21:42 - 2012-09-20 00:41 - 00006130 _____ M:\Windows\LkmdfCoInst.log 2013-12-14 21:42 - 2012-09-07 14:01 - 00018960 _____ (Logitech, Inc.) M:\Windows\system32\Drivers\LNonPnP.sys 2013-12-14 20:26 - 2012-09-07 06:40 - 00000000 ____D C:\Users\wojtek 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\xerox 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\outlook express 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\netmeeting 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\msn gaming zone 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\movie maker 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\microsoft frontpage 2013-12-14 17:01 - 2013-12-14 17:01 - 00000000 ____D C:\Program Files\Common Files\mssoap 2013-12-01 14:42 - 2012-09-07 11:52 - 90708896 _____ (Microsoft Corporation) M:\Windows\system32\MRT.exe 2013-11-23 19:26 - 2013-12-14 23:46 - 00417792 _____ (Microsoft Corporation) M:\Windows\SysWOW64\WMPhoto.dll 2013-11-23 18:47 - 2013-12-14 23:46 - 00465920 _____ (Microsoft Corporation) M:\Windows\system32\WMPhoto.dll 2013-11-19 03:33 - 2010-11-21 04:27 - 00267936 ____N (Microsoft Corporation) M:\Windows\system32\MpSigStub.exe 2013-11-15 10:53 - 2013-11-15 10:53 - 15051216 _____ (NVIDIA Corporation) M:\Windows\system32\nvwgf2umx.dll 2013-11-15 10:53 - 2013-11-15 10:53 - 12641480 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvwgf2um.dll 2013-11-15 10:53 - 2013-02-06 13:42 - 01107440 _____ (NVIDIA Corporation) M:\Windows\system32\nvumdshimx.dll 2013-11-15 10:53 - 2012-10-25 20:02 - 00961192 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvumdshim.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 26940704 _____ (NVIDIA Corporation) M:\Windows\system32\nvoglv64.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 25256224 _____ (NVIDIA Corporation) M:\Windows\system32\nvcompiler.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 20461344 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvoglv32.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 17560352 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcompiler.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 11137824 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvlddmkm.sys 2013-11-15 10:52 - 2013-11-15 10:52 - 09393856 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuda.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 07935352 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuda.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 07566624 _____ (NVIDIA Corporation) M:\Windows\system32\nvopencl.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 06264144 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvopencl.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02907936 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuvid.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02723616 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuvid.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 02346784 _____ (NVIDIA Corporation) M:\Windows\system32\nvcuvenc.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01987360 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvcuvenc.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01814304 _____ (NVIDIA Corporation) M:\Windows\system32\nvdispco6431269.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 01511712 _____ (NVIDIA Corporation) M:\Windows\system32\nvdispgenco6431269.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00420128 _____ (NVIDIA Corporation) M:\Windows\system32\nvEncodeAPI64.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00364832 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvEncodeAPI.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00284448 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvkflt.sys 2013-11-15 10:52 - 2013-11-15 10:52 - 00245872 _____ (NVIDIA Corporation) M:\Windows\system32\nvinitx.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00201576 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvinit.dll 2013-11-15 10:52 - 2013-11-15 10:52 - 00030496 _____ (NVIDIA Corporation) M:\Windows\system32\Drivers\nvpciflt.sys 2013-11-15 10:52 - 2013-04-28 04:13 - 18005208 _____ (NVIDIA Corporation) M:\Windows\system32\nvd3dumx.dll 2013-11-15 10:52 - 2013-02-06 13:42 - 02832720 _____ (NVIDIA Corporation) M:\Windows\system32\nvapi64.dll 2013-11-15 10:52 - 2012-10-25 20:02 - 15095440 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvd3dum.dll 2013-11-15 10:52 - 2012-10-25 20:02 - 02511312 _____ (NVIDIA Corporation) M:\Windows\SysWOW64\nvapi.dll 2013-11-15 10:52 - 2012-07-22 06:29 - 00018146 _____ M:\Windows\system32\nvinfo.pb Files to move or delete: ==================== M:\ProgramData\PKP_DLbx.DAT Some content of TEMP: ==================== C:\Users\wojtek\AppData\Local\Temp\oct4AF9.tmp.exe C:\Users\wojtek\AppData\Local\Temp\Uninstall.exe ==================== Bamital & volsnap Check ================= M:\Windows\System32\winlogon.exe => MD5 is legit M:\Windows\System32\wininit.exe => MD5 is legit M:\Windows\SysWOW64\wininit.exe => MD5 is legit M:\Windows\explorer.exe => MD5 is legit M:\Windows\SysWOW64\explorer.exe => MD5 is legit M:\Windows\System32\svchost.exe => MD5 is legit M:\Windows\SysWOW64\svchost.exe => MD5 is legit M:\Windows\System32\services.exe => MD5 is legit M:\Windows\System32\User32.dll => MD5 is legit M:\Windows\SysWOW64\User32.dll => MD5 is legit M:\Windows\System32\userinit.exe => MD5 is legit M:\Windows\SysWOW64\userinit.exe => MD5 is legit M:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-15 06:53 ==================== End Of Log ============================