Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 29-12-2013 01 Ran by PC (administrator) on PC-0DA369C13844 on 30-12-2013 12:24:12 Running from D:\Filmy\_skan\BB nap\FRST Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe (PowerISO Computing, Inc.) C:\Program Files\PowerISO\PWRISOVM.EXE (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe (Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe (Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe () C:\Program Files\FlashMute\flashmute.exe () C:\Program Files\Hewlett-Packard\Toolbox2.0\Javasoft\JRE\1.3.1\bin\javaw.exe (HP) C:\WINDOWS\system32\HPSIsvc.exe (Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe () C:\Program Files\CyberLink\Shared files\RichVideo.exe (Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe (Nero AG) C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [NeroFilterCheck] - C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG) HKLM\...\Run: [SecurDisc] - C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1629480 2007-06-25] (Nero AG) HKLM\...\Run: [InCD] - C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057064 2007-06-25] (Nero AG) HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [385024 2008-01-31] (Apple Inc.) HKLM\...\Run: [PWRISOVM.EXE] - C:\Program Files\PowerISO\PWRISOVM.EXE [200704 2007-04-09] (PowerISO Computing, Inc.) HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe [39792 2008-01-11] (Adobe Systems Incorporated) HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16806912 2008-07-31] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] - C:\WINDOWS\Alcmtr.exe [57344 2008-06-19] (Realtek Semiconductor Corp.) HKLM\...\Run: [StatusClient] - C:\Program Files\Hewlett-Packard\Toolbox2.0\Apache Tomcat 4.0\webapps\Toolbox\StatusClient\StatusClient.exe [36864 2002-12-16] (Hewlett-Packard) HKLM\...\Run: [TomcatStartup] - C:\Program Files\Hewlett-Packard\Toolbox2.0\hpbpsttp.exe [155648 2003-03-31] (Hewlett-Packard) HKLM\...\Run: [RemoteControl] - C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [71216 2007-02-07] (Cyberlink Corp.) HKLM\...\Run: [LanguageShortcut] - C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [54832 2007-02-07] () HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKCU\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] - C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2007-06-27] (Nero AG) HKCU\...\Run: [FlashMute] - C:\Program Files\FlashMute\flashmute.exe [221184 2006-03-11] () HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x95000000 MountPoints2: {5352f9d0-d7ee-11e0-9b0b-001d7daa3ed6} - K:\AutoRun.exe MountPoints2: {5f5c0c5c-2f94-11df-94a7-001d7daa3ed6} - K:\AutoRun.exe MountPoints2: {7a452016-2f88-11df-94a4-001d7daa3ed6} - K:\AutoRun.exe MountPoints2: {b54f5a20-2877-11df-948a-001d7daa3ed6} - K:\AutoRun.exe MountPoints2: {d1f82872-28eb-11df-9490-001d7daa3ed6} - K:\AutoRun.exe MountPoints2: {e452121e-2f92-11df-94a6-001d7daa3ed6} - K:\AutoRun.exe HKU\Default User\...\RunOnce: [NeroHomeFirstStart] - C:\Program Files\Common Files\Ahead\Lib\NMFirstStart.exe [ 2007-06-27] (Nero AG) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.upologus.pl/ BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) DPF: {31435657-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {A796D216-2DE1-4EA8-BABB-FE6E7C959098} http://www.hp.com/cpso-support-new/SDD/hpsddObjSigned.cab DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\PC\Dane aplikacji\Mozilla\Firefox\Profiles\cmzkixtj.default FF Homepage: hxxp://www.google.pl/ FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=6.0.11.3088 - C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.11.3006 - C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\wolnelektury-pl.xml FF Extension: Element Hiding Helper for Adblock Plus - C:\Documents and Settings\PC\Dane aplikacji\Mozilla\Firefox\Profiles\cmzkixtj.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: Adblock Plus - C:\Documents and Settings\PC\Dane aplikacji\Mozilla\Firefox\Profiles\cmzkixtj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ========================== Services (Whitelisted) ================= R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1552680 2007-06-25] (Nero AG) R2 RichVideo; C:\Program Files\CyberLink\Shared files\RichVideo.exe [173616 2007-02-07] () R2 JavaQuickStarterService; "C:\Program Files\Java\jre7\bin\jqs.exe" -service -config "C:\Program Files\Java\jre7\lib\deploy\jqs\jqs.conf" ==================== Drivers (Whitelisted) ==================== R1 AmdK8; C:\Windows\System32\DRIVERS\AmdK8.sys [43520 2006-06-18] (Advanced Micro Devices) S3 gdrv; C:\WINDOWS\gdrv.sys [15600 2008-03-11] (Windows (R) 2000 DDK provider) R4 InCDfs; C:\Windows\System32\drivers\InCDFs.sys [119080 2007-06-25] (Nero AG) R1 InCDPass; C:\Windows\System32\drivers\InCDPass.sys [36776 2007-06-25] (Nero AG) U1 InCDrec; C:\Windows\System32\Drivers\InCDrec.sys [16040 2007-06-25] (Nero AG) R1 incdrm; C:\Windows\System32\drivers\InCDRm.sys [38440 2007-06-25] (Nero AG) R0 nvata; C:\Windows\System32\DRIVERS\nvata.sys [105472 2006-10-18] (NVIDIA Corporation) R3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [58368 2006-11-27] (NVIDIA Corporation) R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [19968 2006-11-27] (NVIDIA Corporation) S3 PCANDIS5; C:\WINDOWS\system32\PCANDIS5.SYS [16128 2003-08-04] (Printing Communications Assoc., Inc. (PCAUSA)) S3 TVICHW32; C:\WINDOWS\system32\DRIVERS\TVICHW32.SYS [23600 2008-07-20] (EnTech Taiwan) S3 upperdev; C:\Windows\System32\DRIVERS\usbser_lowerflt.sys [8064 2007-11-29] (Windows (R) Codename Longhorn DDK provider) S3 UsbserFilt; C:\Windows\System32\DRIVERS\usbser_lowerfltj.sys [8064 2007-11-29] (Windows (R) Codename Longhorn DDK provider) R2 {95808DC4-FA4A-4c74-92FE-5B863F82066B}; C:\Program Files\CyberLink\PowerDVD\000.fcl [13560 2006-11-02] (Cyberlink Corp.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-12-30 12:05 - 2013-12-30 12:05 - 00000000 ____D C:\Documents and Settings\PC\Menu Start\Programy\Alawar.pl 2013-12-30 07:10 - 2013-12-30 07:10 - 00000000 ____D C:\FRST 2013-12-29 19:12 - 2013-12-29 19:12 - 00003699 _____ C:\UsbFix [Listing 3] PC-0DA369C13844.txt 2013-12-29 18:54 - 2013-12-29 18:55 - 00003464 _____ C:\UsbFix [Listing 2] PC-0DA369C13844.txt 2013-12-29 18:52 - 2013-12-29 18:52 - 00003283 _____ C:\UsbFix [Listing 1] PC-0DA369C13844.txt 2013-12-29 18:51 - 2013-12-29 19:12 - 00000000 ____D C:\UsbFix 2013-12-29 18:34 - 2013-12-29 18:34 - 00000733 _____ C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk 2013-12-29 16:47 - 2013-12-30 12:21 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-29 10:15 - 2013-12-29 10:15 - 00000000 ____D C:\Documents and Settings\Default User\Dane aplikacji\Nokia 2013-12-28 20:46 - 2013-12-28 20:46 - 00000000 ____D C:\Program Files\Kaspersky Lab 2013-12-28 20:46 - 2013-12-28 20:46 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab 2013-12-28 20:33 - 2013-12-28 20:38 - 00000000 ____D C:\AdwCleaner 2013-12-20 22:26 - 2013-12-20 22:26 - 00000215 _____ C:\Documents and Settings\PC\Pulpit\q.csv 2013-12-12 16:48 - 2013-12-12 19:18 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\listy 2013-12-12 08:42 - 2013-12-12 08:43 - 00012832 _____ C:\WINDOWS\KB2898785-IE8.log 2013-12-12 08:42 - 2013-12-12 08:42 - 00004909 _____ C:\WINDOWS\KB2904266.log 2013-12-12 08:42 - 2013-12-12 08:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-12 08:42 - 2013-12-12 08:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-12 07:29 - 2013-12-12 08:42 - 00010201 _____ C:\WINDOWS\KB2898715.log 2013-12-12 07:29 - 2013-12-12 08:39 - 00009720 _____ C:\WINDOWS\KB2893984.log 2013-12-12 07:29 - 2013-12-12 08:39 - 00009025 _____ C:\WINDOWS\KB2893294.log 2013-12-12 07:28 - 2013-12-12 08:39 - 00008200 _____ C:\WINDOWS\KB2892075.log 2013-12-09 22:20 - 2013-12-11 13:38 - 00054156 ____H C:\WINDOWS\QTFont.qfn 2013-12-09 22:20 - 2013-12-09 22:20 - 00001409 _____ C:\WINDOWS\QTFont.for 2013-12-01 13:03 - 2013-12-01 13:01 - 00000775 _____ C:\Documents and Settings\PC\Pulpit\MetaStock Professional.lnk 2013-12-01 13:01 - 2013-12-01 13:01 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\iPlus 2013-12-01 13:00 - 2013-12-20 22:36 - 00000000 ____D C:\MetaStock Data 2013-12-01 13:00 - 1999-09-16 20:58 - 00344064 _____ (Equis International) C:\WINDOWS\system32\OLVI70.dll 2013-12-01 13:00 - 1999-09-16 20:41 - 00184320 _____ (Equis International) C:\WINDOWS\system32\msfl70.dll 2013-12-01 13:00 - 1999-09-16 20:05 - 00192512 _____ () C:\WINDOWS\system32\eqnotify.dll 2013-12-01 13:00 - 1999-04-22 12:20 - 00148480 _____ C:\WINDOWS\system32\dbcapi.dll 2013-12-01 13:00 - 1999-04-15 15:58 - 00017920 _____ C:\WINDOWS\system32\IMPLODE.DLL 2013-12-01 13:00 - 1999-01-29 14:46 - 00110080 ____N C:\WINDOWS\system32\LFPNG61N.dll 2013-12-01 13:00 - 1998-12-17 10:30 - 00164864 _____ C:\WINDOWS\system32\patchw32.dll 2013-12-01 13:00 - 1998-05-07 15:01 - 00028160 ____N (Equis International) C:\WINDOWS\system32\MetaStockShellExtension.dll 2013-12-01 13:00 - 1996-09-12 17:18 - 00017920 ____N C:\WINDOWS\system32\MSWTHK32.DLL 2013-12-01 13:00 - 1996-09-12 17:18 - 00003360 ____N C:\WINDOWS\system32\MSWTHK16.DLL 2013-12-01 13:00 - 1996-08-22 08:08 - 00207360 ____N (LEAD Technologies, Inc.) C:\WINDOWS\system32\LTKRN61N.DLL 2013-12-01 13:00 - 1996-08-22 08:07 - 00158720 ____N C:\WINDOWS\system32\LFCMP61N.DLL 2013-12-01 13:00 - 1996-08-22 08:07 - 00043008 ____N C:\WINDOWS\system32\LTFIL61N.DLL 2013-12-01 13:00 - 1996-07-01 15:49 - 00546816 ____N (FarPoint Technologies, Inc.) C:\WINDOWS\system32\SS32D25.DLL 2013-12-01 12:59 - 2013-12-01 13:00 - 00000000 ____D C:\Program Files\metas ==================== One Month Modified Files and Folders ======= 2013-12-30 12:21 - 2013-12-29 16:47 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-30 12:21 - 2008-03-11 21:58 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2013-12-30 12:21 - 2008-03-11 21:09 - 00000000 __RHD C:\Documents and Settings\PC\Dane aplikacji 2013-12-30 12:19 - 2008-03-16 14:59 - 00000069 _____ C:\WINDOWS\NeroDigital.ini 2013-12-30 12:07 - 2008-03-11 21:05 - 01548437 _____ C:\WINDOWS\WindowsUpdate.log 2013-12-30 12:05 - 2013-12-30 12:05 - 00000000 ____D C:\Documents and Settings\PC\Menu Start\Programy\Alawar.pl 2013-12-30 12:05 - 2008-03-11 22:00 - 00000159 _____ C:\WINDOWS\wiadebug.log 2013-12-30 12:05 - 2008-03-11 22:00 - 00000050 _____ C:\WINDOWS\wiaservc.log 2013-12-30 12:05 - 2008-03-11 21:09 - 00000000 ___RD C:\Documents and Settings\PC\Menu Start\Programy 2013-12-30 12:05 - 2008-03-11 21:08 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2013-12-30 09:05 - 2008-03-11 21:09 - 00000188 ___SH C:\Documents and Settings\PC\ntuser.ini 2013-12-30 09:05 - 2008-03-11 21:08 - 00032510 _____ C:\WINDOWS\SchedLgU.Txt 2013-12-30 09:01 - 2008-05-15 05:38 - 00000000 ____D C:\Documents and Settings\PC\Dane aplikacji\OpenOffice.ux.pl2 2013-12-30 07:10 - 2013-12-30 07:10 - 00000000 ____D C:\FRST 2013-12-30 06:25 - 2012-10-31 17:03 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-12-29 19:12 - 2013-12-29 19:12 - 00003699 _____ C:\UsbFix [Listing 3] PC-0DA369C13844.txt 2013-12-29 19:12 - 2013-12-29 18:51 - 00000000 ____D C:\UsbFix 2013-12-29 19:12 - 2008-03-11 21:09 - 00000000 ___HD C:\Documents and Settings\PC\Ustawienia lokalne 2013-12-29 18:55 - 2013-12-29 18:54 - 00003464 _____ C:\UsbFix [Listing 2] PC-0DA369C13844.txt 2013-12-29 18:52 - 2013-12-29 18:52 - 00003283 _____ C:\UsbFix [Listing 1] PC-0DA369C13844.txt 2013-12-29 18:34 - 2013-12-29 18:34 - 00000733 _____ C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk 2013-12-29 18:34 - 2012-08-13 21:20 - 00000739 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk 2013-12-29 18:34 - 2008-03-11 21:58 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-12-29 16:58 - 2008-03-15 20:20 - 00032256 _____ C:\Documents and Settings\PC\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2013-12-29 16:51 - 2008-03-11 21:58 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty 2013-12-29 16:51 - 2004-08-04 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl 2013-12-29 16:50 - 2008-03-11 21:09 - 00000000 ____D C:\Documents and Settings\PC 2013-12-29 16:50 - 2008-03-11 21:08 - 00000000 __SHD C:\Documents and Settings\NetworkService 2013-12-29 16:50 - 2008-03-11 21:08 - 00000000 __SHD C:\Documents and Settings\LocalService 2013-12-29 16:49 - 2008-03-11 21:04 - 00000000 ____D C:\WINDOWS\Registration 2013-12-29 16:48 - 2008-05-25 10:20 - 00000000 ____D C:\Documents and Settings\PC\Pulpit\aktowka 2013-12-29 16:48 - 2008-03-11 21:09 - 00000000 ____D C:\Documents and Settings\PC\Pulpit 2013-12-29 16:47 - 2010-02-03 21:18 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Nokia PC Suite 2013-12-29 10:15 - 2013-12-29 10:15 - 00000000 ____D C:\Documents and Settings\Default User\Dane aplikacji\Nokia 2013-12-29 10:15 - 2008-03-11 21:58 - 00000000 __RHD C:\Documents and Settings\Default User\Dane aplikacji 2013-12-28 20:46 - 2013-12-28 20:46 - 00000000 ____D C:\Program Files\Kaspersky Lab 2013-12-28 20:46 - 2013-12-28 20:46 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab 2013-12-28 20:38 - 2013-12-28 20:33 - 00000000 ____D C:\AdwCleaner 2013-12-26 15:12 - 2012-02-13 19:09 - 00000000 ____D C:\Program Files\Alawar.pl 2013-12-21 18:59 - 2010-11-25 18:20 - 00005915 _____ C:\Documents and Settings\PC\Pulpit\do ściągnięcia.txt 2013-12-20 22:36 - 2013-12-01 13:00 - 00000000 ____D C:\MetaStock Data 2013-12-20 22:26 - 2013-12-20 22:26 - 00000215 _____ C:\Documents and Settings\PC\Pulpit\q.csv 2013-12-13 20:20 - 2013-03-21 07:39 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\Moje skany 2013-12-12 19:18 - 2013-12-12 16:48 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\listy 2013-12-12 17:23 - 2009-02-02 22:48 - 00002599 _____ C:\Documents and Settings\PC\Pulpit\OpenOffice.ux.pl Writer.lnk 2013-12-12 17:03 - 2010-08-18 19:06 - 00000000 ____D C:\Documents and Settings\PC\Pulpit\priv 2013-12-12 16:53 - 2010-11-27 09:47 - 00000000 ____D C:\Documents and Settings\PC\Pulpit\grzesiek 2013-12-12 16:51 - 2008-03-11 21:09 - 00000000 ___RD C:\Documents and Settings\PC\Moje dokumenty 2013-12-12 16:50 - 2010-01-26 17:49 - 00006198 _____ C:\Documents and Settings\PC\Moje dokumenty\N.txt 2013-12-12 16:49 - 2012-02-10 09:30 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\tpsa 2013-12-12 11:56 - 2008-03-11 21:58 - 00165120 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-12-12 08:43 - 2013-12-12 08:42 - 00012832 _____ C:\WINDOWS\KB2898785-IE8.log 2013-12-12 08:43 - 2011-06-16 06:56 - 00149510 _____ C:\WINDOWS\setupapi.log 2013-12-12 08:43 - 2008-03-11 21:59 - 02844463 _____ C:\WINDOWS\FaxSetup.log 2013-12-12 08:43 - 2008-03-11 21:59 - 01370068 _____ C:\WINDOWS\ocgen.log 2013-12-12 08:43 - 2008-03-11 21:59 - 01094618 _____ C:\WINDOWS\tsoc.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00954663 _____ C:\WINDOWS\comsetup.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00577352 _____ C:\WINDOWS\ntdtcsetup.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00452619 _____ C:\WINDOWS\iis6.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00177658 _____ C:\WINDOWS\ocmsn.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00142577 _____ C:\WINDOWS\msgsocm.log 2013-12-12 08:43 - 2008-03-11 21:59 - 00001393 _____ C:\WINDOWS\imsins.log 2013-12-12 08:43 - 2008-03-11 17:46 - 00330112 _____ C:\WINDOWS\updspapi.log 2013-12-12 08:42 - 2013-12-12 08:42 - 00004909 _____ C:\WINDOWS\KB2904266.log 2013-12-12 08:42 - 2013-12-12 08:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-12 08:42 - 2013-12-12 08:42 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-12 08:42 - 2013-12-12 07:29 - 00010201 _____ C:\WINDOWS\KB2898715.log 2013-12-12 08:42 - 2013-08-14 06:35 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-12-12 08:42 - 2008-03-14 21:14 - 00647016 _____ C:\WINDOWS\system32\TZLog.log 2013-12-12 08:42 - 2008-03-11 21:59 - 00001393 _____ C:\WINDOWS\imsins.BAK 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-12 08:39 - 2013-12-12 08:39 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-12 08:39 - 2013-12-12 07:29 - 00009720 _____ C:\WINDOWS\KB2893984.log 2013-12-12 08:39 - 2013-12-12 07:29 - 00009025 _____ C:\WINDOWS\KB2893294.log 2013-12-12 08:39 - 2013-12-12 07:28 - 00008200 _____ C:\WINDOWS\KB2892075.log 2013-12-12 08:39 - 2008-03-15 19:55 - 88123800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2013-12-11 13:38 - 2013-12-09 22:20 - 00054156 ____H C:\WINDOWS\QTFont.qfn 2013-12-09 22:20 - 2013-12-09 22:20 - 00001409 _____ C:\WINDOWS\QTFont.for 2013-12-09 21:59 - 2008-04-09 20:05 - 00046393 _____ C:\Documents and Settings\PC\Pulpit\N.txt 2013-12-05 07:38 - 2008-03-16 15:02 - 00028182 _____ C:\Documents and Settings\PC\default.pls 2013-12-02 10:04 - 2011-04-29 11:55 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\AGATA 2013-12-01 13:15 - 2010-05-18 19:01 - 00000000 ____D C:\Documents and Settings\PC\Moje dokumenty\lasy 2013-12-01 13:01 - 2013-12-01 13:03 - 00000775 _____ C:\Documents and Settings\PC\Pulpit\MetaStock Professional.lnk 2013-12-01 13:01 - 2013-12-01 13:01 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\iPlus 2013-12-01 13:01 - 2008-03-11 21:58 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2013-12-01 13:00 - 2013-12-01 12:59 - 00000000 ____D C:\Program Files\metas ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2004-08-04 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2004-08-04 13:00] - [2008-04-14 18:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2004-08-04 13:00] - [2008-04-14 18:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\Drivers\volsnap.sys [2004-08-04 13:00] - [2008-04-14 17:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================