OTL logfile created on: 2011-03-06 09:16:43 - Run 1 OTL by OldTimer - Version 3.2.22.2 Folder = C:\Users\Jagoda i Michał\Desktop Windows Vista Home Premium Edition (Version = 6.0.6000) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18882) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 42,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 71,00% Paging File free Paging file location(s): ?:\pagefile.sys %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 39,05 Gb Total Space | 0,16 Gb Free Space | 0,40% Space Free | Partition Type: NTFS Drive D: | 39,06 Gb Total Space | 0,24 Gb Free Space | 0,61% Space Free | Partition Type: NTFS Drive F: | 65,50 Gb Total Space | 30,71 Gb Free Space | 46,89% Space Free | Partition Type: NTFS Computer Name: JAGODAIMICHA-PC | User Name: Jagoda i Michał | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-03-06 09:14:59 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Jagoda i Michał\Desktop\OTL.exe PRC - [2010-12-13 08:25:29 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-09-07 17:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-02-03 08:46:52 | 001,531,904 | ---- | M] (Nokia) -- C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe PRC - [2009-12-16 12:53:53 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe PRC - [2009-04-21 04:27:30 | 000,101,376 | ---- | M] () -- C:\PROGRAMY\QPrinter Bookmaker\qprintmon.exe PRC - [2008-10-29 07:20:29 | 002,923,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008-04-24 18:21:57 | 000,155,896 | ---- | M] (Google Inc.) -- C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe PRC - [2008-02-14 00:09:40 | 000,486,856 | ---- | M] (DT Soft Ltd) -- C:\PROGRAMY\DAEMON Tools Lite\daemon.exe PRC - [2007-12-03 16:05:25 | 001,006,264 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe PRC - [2007-08-09 10:36:36 | 000,644,408 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe PRC - [2007-07-05 15:49:18 | 000,128,296 | ---- | M] (Lenovo) -- C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe PRC - [2007-07-05 15:49:06 | 000,124,200 | ---- | M] (Lenovo) -- C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe PRC - [2007-07-05 15:48:58 | 000,419,112 | ---- | M] (Lenovo) -- C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe PRC - [2007-07-05 15:48:54 | 000,206,120 | ---- | M] (Lenovo) -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe PRC - [2007-07-05 15:48:50 | 000,091,432 | ---- | M] (Lenovo) -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe PRC - [2007-06-07 16:43:46 | 000,013,312 | ---- | M] (Lenovo Group Limited) -- c:\Program Files\Lenovo\System Update\SUService.exe PRC - [2007-05-14 23:22:22 | 000,035,328 | ---- | M] () -- C:\PROGRAMY\Winamp\winampa.exe PRC - [2007-04-26 18:10:00 | 000,120,368 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\LenovoCare\LPMGR.EXE PRC - [2007-04-09 19:03:00 | 000,058,416 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\NPDIRECT\tpfnf7sp.exe PRC - [2007-04-09 02:24:32 | 000,054,832 | ---- | M] (Lenovo.) -- C:\Program Files\Lenovo\HOTKEY\FnF5svc.exe PRC - [2007-03-29 13:11:50 | 000,719,664 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe PRC - [2007-03-23 12:04:54 | 004,423,680 | ---- | M] (Realtek Semiconductor) -- C:\Windows\RtHDVCpl.exe PRC - [2007-03-16 05:26:22 | 000,057,344 | ---- | M] (Lenovo) -- C:\Program Files\Lenovo\PM Driver\PMSveH.exe PRC - [2007-03-02 06:07:28 | 000,055,936 | ---- | M] () -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe PRC - [2007-02-12 13:38:04 | 000,355,096 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe PRC - [2007-02-12 13:37:58 | 000,174,872 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe PRC - [2007-01-30 04:01:26 | 000,108,080 | ---- | M] (Lenovo Group Limited) -- C:\Windows\System32\IPSSVC.EXE PRC - [2007-01-08 20:03:26 | 000,569,344 | ---- | M] () -- C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe PRC - [2007-01-08 19:49:46 | 000,022,016 | ---- | M] () -- C:\Program Files\Common Files\Lenovo\Logger\logmon.exe PRC - [2006-11-23 15:10:42 | 000,056,928 | ---- | M] (Cyberlink Corp.) -- C:\Program Files\Lenovo Multimedia Center\PowerDVD\PDVDServ.exe PRC - [2006-11-15 16:21:56 | 000,217,176 | ---- | M] (Diskeeper Corporation) -- C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe PRC - [2006-11-15 16:20:46 | 000,634,988 | ---- | M] (Diskeeper Corporation) -- C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe PRC - [2006-11-07 11:51:20 | 000,091,688 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\AwayTask\AwaySch.EXE PRC - [2006-11-02 20:40:12 | 000,174,656 | ---- | M] () -- C:\Windows\System32\PSIService.exe PRC - [2006-11-02 10:44:59 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conime.exe PRC - [2006-10-05 04:10:12 | 000,009,216 | ---- | M] (Agere Systems) -- C:\Windows\System32\agrsmsvc.exe PRC - [2006-09-06 08:38:44 | 000,054,824 | ---- | M] () -- C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-03-06 09:14:59 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Jagoda i Michał\Desktop\OTL.exe MOD - [2006-11-02 10:38:57 | 001,648,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6000.16386_none_5d07289e07e1d100\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-09-07 17:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2010-02-26 15:14:04 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\Nokia\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-03-16 17:20:21 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service) SRV - [2007-12-03 16:05:25 | 000,265,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-08-09 10:36:36 | 000,644,408 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe -- (ThinkVantage Registry Monitor Service) SRV - [2007-07-05 15:48:54 | 000,206,120 | ---- | M] (Lenovo) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe -- (AcSvc) SRV - [2007-07-05 15:48:50 | 000,091,432 | ---- | M] (Lenovo) [Auto | Running] -- C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe -- (AcPrfMgrSvc) SRV - [2007-06-07 16:43:46 | 000,013,312 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- c:\Program Files\Lenovo\System Update\SUService.exe -- (SUService) SRV - [2007-04-09 02:24:32 | 000,054,832 | ---- | M] (Lenovo.) [Auto | Running] -- C:\Program Files\Lenovo\HOTKEY\FnF5svc.exe -- (FNF5SVC) SRV - [2007-03-16 05:26:22 | 000,057,344 | ---- | M] (Lenovo) [Auto | Running] -- C:\Program Files\Lenovo\PM Driver\PMSveH.exe -- (PMSveH) SRV - [2007-03-02 06:07:28 | 000,055,936 | ---- | M] () [Auto | Running] -- C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe -- (TPHKSVC) SRV - [2007-02-12 13:38:04 | 000,355,096 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTmon.exe -- (IAANTMON) Intel(R) SRV - [2007-01-30 04:01:26 | 000,108,080 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Windows\System32\IPSSVC.EXE -- (IPSSVC) SRV - [2007-01-08 20:03:26 | 000,569,344 | ---- | M] () [Auto | Running] -- C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe -- (TVT Backup Protection Service) SRV - [2006-11-15 16:20:46 | 000,634,988 | ---- | M] (Diskeeper Corporation) [Auto | Running] -- C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe -- (Diskeeper) SRV - [2006-11-02 20:40:12 | 000,174,656 | ---- | M] () [Auto | Start_Pending] -- C:\Windows\System32\PSIService.exe -- (ProtexisLicensing) SRV - [2006-10-05 04:10:12 | 000,009,216 | ---- | M] (Agere Systems) [Auto | Running] -- C:\Windows\System32\agrsmsvc.exe -- (AgereModemAudio) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-09-07 16:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-09-07 16:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP) DRV - [2010-09-07 16:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-09-07 16:47:30 | 000,050,768 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt) DRV - [2010-09-07 16:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-01-21 13:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 10:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 10:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 10:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-01-08 08:42:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-03-03 20:27:47 | 000,716,272 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2007-06-16 21:29:08 | 000,146,824 | ---- | M] (AuthenTec, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atswpdrv.sys -- (ATSWPDRV) AuthenTec TruePrint USB Driver (SwipeSensor) DRV - [2007-05-22 15:59:38 | 000,030,336 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tvti2c.sys -- (TVTI2C) DRV - [2007-05-22 08:59:34 | 000,021,376 | ---- | M] (Lenovo (United States) Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\psadd.sys -- (psadd) DRV - [2007-03-21 22:02:04 | 000,037,376 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp) DRV - [2007-02-24 14:42:22 | 000,039,936 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2007-01-23 16:40:20 | 000,042,496 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk) DRV - [2007-01-09 01:25:53 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\WimFltr.sys -- (WimFltr) DRV - [2006-12-19 01:12:22 | 001,786,880 | ---- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw3v32.sys -- (NETw3v32) Sterownik karty Intel(R) DRV - [2006-11-09 14:34:26 | 000,019,456 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\LPCFilter.sys -- (LPCFilter) DRV - [2006-11-08 08:29:44 | 001,161,888 | ---- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AGRSM.sys -- (AgereSoftModem) DRV - [2006-11-06 09:23:24 | 000,012,080 | ---- | M] (Lenovo Group Limited) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\PROCDD.SYS -- (PROCDD) DRV - [2006-08-30 11:04:04 | 000,013,744 | ---- | M] (Lenovo Group Limited) [Kernel | System | Running] -- C:\Windows\System32\drivers\smiif32.sys -- (lenovo.smi) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo.live.com IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com/welcome/3000notebook [binary data] IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com.pl/0SEPLPL/SAOS01?FORM=TOOLBR IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\..\URLSearchHook: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll (Vendio Services, Inc.) IE - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Ask.com" FF - prefs.js..browser.search.defaultenginename: "Ask.com" FF - prefs.js..browser.search.order.1: "Ask.com" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:1.0 FF - prefs.js..extensions.enabledItems: {A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}:7.3.2.26 FF - prefs.js..extensions.enabledItems: {b9db16a4-6edc-47ec-a1f4-b86292ed211d}:4.8.1 FF - prefs.js..keyword.URL: "" FF - HKLM\software\mozilla\Firefox\Extensions\\{A27F3FEF-1113-4cfb-A032-8E12D7D8EE70}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Bookmarks Connector\FirefoxExtension\ [2010-06-08 13:42:43 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-12-13 08:25:31 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-01-13 22:15:39 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\{CCB7D94B-CA92-4E3F-B79D-ADE0F07ADC74}: C:\Program Files\Nokia\Nokia Ovi Suite\Connectors\Thunderbird Connector\ThunderbirdExtension\ [2010-06-08 13:42:44 | 000,000,000 | ---D | M] [2008-06-18 11:05:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jagoda i Michał\AppData\Roaming\mozilla\Extensions [2011-03-06 08:52:06 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Jagoda i Michał\AppData\Roaming\mozilla\Firefox\Profiles\mvdcob2s.default\extensions [2009-09-02 15:12:49 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Jagoda i Michał\AppData\Roaming\mozilla\Firefox\Profiles\mvdcob2s.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-12-07 17:24:40 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Jagoda i Michał\AppData\Roaming\mozilla\Firefox\Profiles\mvdcob2s.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2009-11-10 20:01:16 | 000,002,233 | ---- | M] () -- C:\Users\Jagoda i Michał\AppData\Roaming\Mozilla\Firefox\Profiles\mvdcob2s.default\searchplugins\askcom.xml [2011-01-25 13:53:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-06-08 13:42:43 | 000,000,000 | ---D | M] (Firefox Synchronisation Extension) -- C:\PROGRAM FILES\NOKIA\NOKIA OVI SUITE\CONNECTORS\BOOKMARKS CONNECTOR\FIREFOXEXTENSION [2009-12-16 12:54:16 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- C:\PROGRAM FILES\REAL\REALPLAYER\BROWSERRECORD\FIREFOX\EXT File not found (No name found) -- C:\USERS\JAGODA I MICHAĹ‚\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MVDCOB2S.DEFAULT\EXTENSIONS\{20A82645-C095-46ED-80E3-08825760534B} File not found (No name found) -- C:\USERS\JAGODA I MICHAĹ‚\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\MVDCOB2S.DEFAULT\EXTENSIONS\{B9DB16A4-6EDC-47EC-A1F4-B86292ED211D} [2008-01-23 07:20:30 | 000,491,520 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll [2011-01-13 22:15:23 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-09-17 17:56:05 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-09-17 17:56:06 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-09-17 17:56:06 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-09-17 17:56:06 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-09-17 17:56:06 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-09-17 17:56:06 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2006-09-18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found O2 - BHO: (SearchSettings Class) - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll (Vendio Services, Inc.) O3 - HKLM\..\Toolbar: (@msdxmLC.dll,-1@1033,&Radio) - {8E718888-423F-11D2-876E-00A0C9082467} - C:\PROGRAMY\No1 Video Converter\msdxm.ocx (Microsoft Corporation) O3 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [ACTray] C:\Program Files\ThinkPad\ConnectUtilities\ACTray.exe (Lenovo) O4 - HKLM..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe (Lenovo) O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [AwaySch] C:\Program Files\Lenovo\AwayTask\AwaySch.EXE (Lenovo Group Limited) O4 - HKLM..\Run: [CameraApplicationLauncher] C:\Program Files\Lenovo\Camera Center\bin\CameraApplicationLaunchPadLauncher.exe () O4 - HKLM..\Run: [DiskeeperSystray] C:\Program Files\Diskeeper Corporation\Diskeeper\DkIcon.exe (Diskeeper Corporation) O4 - HKLM..\Run: [FingerPrintSoftware] C:\Program Files\Lenovo Fingerprint Software\fpapp.exe (Authentec,Inc) O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe (Intel Corporation) O4 - HKLM..\Run: [LanguageShortcut] C:\Program Files\Lenovo Multimedia Center\PowerDVD\Language\Language.exe () O4 - HKLM..\Run: [LenovoOobeOffers] c:\SWTOOLS\LenovoWelcome\LenovoOobeOffers.exe (lenovo) O4 - HKLM..\Run: [LPManager] C:\Program Files\Lenovo\LenovoCare\LPMGR.EXE (Lenovo Group Limited) O4 - HKLM..\Run: [NBKeyScan] File not found O4 - HKLM..\Run: [Nokia FastStart] File not found O4 - HKLM..\Run: [NokiaMServer] C:\Program Files\Common Files\Nokia\MPlatform\NokiaMServer.exe (Nokia) O4 - HKLM..\Run: [PMHandler] C:\Program Files\Lenovo\PM Driver\PMHandler.exe (Lenovo) O4 - HKLM..\Run: [QPrinter 2.0 monitor] C:\PROGRAMY\QPrinter Bookmaker\qprintmon.exe () O4 - HKLM..\Run: [RemoteControl] C:\Program Files\Lenovo Multimedia Center\PowerDVD\PDVDServ.exe (Cyberlink Corp.) O4 - HKLM..\Run: [RtHDVCpl] C:\Windows\RtHDVCpl.exe (Realtek Semiconductor) O4 - HKLM..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe (Vendio Services, Inc.) O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [TPFNF7] C:\Program Files\Lenovo\NPDIRECT\TPFNF7SP.exe (Lenovo Group Limited) O4 - HKLM..\Run: [TPWAUDAP] C:\Program Files\Lenovo\HOTKEY\TpWAudAp.exe () O4 - HKLM..\Run: [WinampAgent] C:\PROGRAMY\Winamp\winampa.exe () O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKU\.DEFAULT..\Run: [Picasa Media Detector] File not found O4 - HKU\S-1-5-18..\Run: [Picasa Media Detector] File not found O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [] File not found O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [BitComet] File not found O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [DAEMON Tools Lite] C:\PROGRAMY\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [fsm] File not found O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [OM2_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master 2\MMonitor.exe (OLYMPUS IMAGING CORP.) O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [Software Informer] File not found O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe (Google Inc.) O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [VoipBuster] File not found O4 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003..\Run: [VoipCheapCom] File not found O4 - Startup: C:\Users\Jagoda i Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O7 - HKU\S-1-5-21-4182308462-1003076708-3753380735-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Wyślij obraz do urządzenia &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm () O8 - Extra context menu item: Wyślij stronę do urządzenia &Bluetooth... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm () O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra Button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm () O9 - Extra 'Tools' menuitem : @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm () O13 - gopher Prefix: missing O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.63 62.179.1.62 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O18 - Protocol\Handler\vnd.ms.radio {3DA2AA3B-3D96-11D2-9BD2-204C4F4F5020} - C:\PROGRAMY\No1 Video Converter\msdxm.ocx (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Windows\Web\Wallpaper\img36.jpg O24 - Desktop BackupWallPaper: C:\Windows\Web\Wallpaper\img36.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{01010f70-49c5-11de-8dd6-001b380c8255}\Shell\1\Command - "" = Recycle.exe O33 - MountPoints2\{01010f70-49c5-11de-8dd6-001b380c8255}\Shell\2\Command - "" = Recycle.exe O33 - MountPoints2\{01010f70-49c5-11de-8dd6-001b380c8255}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Recycle.exe O33 - MountPoints2\{35d117cd-04c9-11df-891f-001b380c8255}\Shell\AutoRun\command - "" = 9xf8.exe O33 - MountPoints2\{35d117cd-04c9-11df-891f-001b380c8255}\Shell\open\Command - "" = 9xf8.exe O33 - MountPoints2\{642fa620-f635-11de-a285-001b380c8255}\Shell\AutoRun\command - "" = H:\p3vwxx.exe O33 - MountPoints2\{642fa620-f635-11de-a285-001b380c8255}\Shell\open\Command - "" = H:\p3vwxx.exe O33 - MountPoints2\{6dbd71c5-dbcc-11dd-9ec0-001b380c8255}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL H:\copy.exe O33 - MountPoints2\{77b343b9-3b9f-11de-9015-c0fba49f0f69}\Shell - "" = AutoRun O33 - MountPoints2\{77b343b9-3b9f-11de-9015-c0fba49f0f69}\Shell\AutoRun\command - "" = H:\AutoRun.exe O33 - MountPoints2\{77b343bd-3b9f-11de-9015-c0fba49f0f69}\Shell - "" = AutoRun O33 - MountPoints2\{77b343bd-3b9f-11de-9015-c0fba49f0f69}\Shell\AutoRun\command - "" = H:\AutoRun.exe O33 - MountPoints2\{7a8ecee0-20e0-11dd-9a17-001b380c8255}\Shell\AutoRun\command - "" = lcw.exe O33 - MountPoints2\{7a8ecee0-20e0-11dd-9a17-001b380c8255}\Shell\open\Command - "" = lcw.exe O33 - MountPoints2\{ad1a74f2-f938-11df-b23f-001b380c8255}\Shell - "" = Autorun O33 - MountPoints2\{ad1a74f2-f938-11df-b23f-001b380c8255}\Shell\AutoRun\command - "" = H:\Install_Nokia_Ovi_Suite.exe O33 - MountPoints2\{cb19d939-4f38-11de-a6ff-001b380c8255}\Shell\AutoRun\command - "" = H:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe O33 - MountPoints2\{cb19d939-4f38-11de-a6ff-001b380c8255}\Shell\open\command - "" = H:\SYSTEM\S-1-5-21-1482476501-1644491937-682003330-1013\system32.exe O33 - MountPoints2\{e2a9f323-1855-11de-b0fd-001b380c8255}\Shell\AutoRun\command - "" = H:\windows\usbv.exe O33 - MountPoints2\{e2a9f323-1855-11de-b0fd-001b380c8255}\Shell\open\command - "" = H:\windows\usbv.exe O33 - MountPoints2\{ec56b91b-eec9-11dd-8822-001b380c8255}\Shell\AutoRun\command - "" = H:\2nuk.com O33 - MountPoints2\{ec56b91b-eec9-11dd-8822-001b380c8255}\Shell\open\Command - "" = H:\2nuk.com O33 - MountPoints2\{fd786ede-f1e0-11dc-b2dc-001b380c8255}\Shell\Auto\command - "" = UFO.exe O33 - MountPoints2\{fd786ede-f1e0-11dc-b2dc-001b380c8255}\Shell\AutoRun\command - "" = C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL UFO.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-03-06 09:14:52 | 000,581,120 | ---- | C] (OldTimer Tools) -- C:\Users\Jagoda i Michał\Desktop\OTL.exe [2011-02-21 14:09:26 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Local1\VirtualStore [2011-02-21 12:58:01 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Roaming\Malwarebytes [2011-02-21 12:57:58 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2011-02-21 12:57:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2011-02-21 12:57:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011-02-21 12:57:54 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2011-02-21 12:57:54 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2011-02-21 12:39:31 | 024,103,576 | ---- | C] (GridinSoft, Inc. ) -- C:\Users\Jagoda i Michał\Desktop\trojankiller2088-setup.exe [2011-02-21 12:38:45 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Local1\Adobe [2011-02-21 12:36:12 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Local1\Mozilla [2011-02-21 12:35:30 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Local1\Microsoft [2011-02-21 03:00:28 | 000,420,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\vbscript.dll [2011-02-20 16:27:48 | 000,594,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll [2011-02-20 16:27:47 | 001,469,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl [2011-02-20 16:27:47 | 000,387,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll [2011-02-20 16:27:47 | 000,184,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll [2011-02-20 16:27:47 | 000,164,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll [2011-02-20 16:27:47 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe [2011-02-20 16:27:47 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll [2011-02-20 16:27:46 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll [2011-02-20 16:27:46 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll [2011-02-20 16:27:37 | 001,638,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb [2011-02-20 16:27:37 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe [2011-02-20 16:27:37 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll [2011-02-20 16:27:37 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll [2011-02-20 16:27:37 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe [2011-02-20 16:26:45 | 000,726,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript.dll [2011-02-20 16:13:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [2011-02-17 15:35:47 | 000,000,000 | ---D | C] -- C:\Users\Jagoda i Michał\AppData\Roaming\FileZilla [2011-02-17 15:35:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client [2011-02-17 15:31:19 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll [2011-02-17 15:31:19 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\admparse.dll [2011-02-17 15:31:19 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll [2011-02-17 15:31:19 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\corpol.dll [2011-02-17 15:31:18 | 000,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll [2011-02-17 15:31:18 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll [2011-02-17 15:31:18 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakeng.dll [2011-02-17 15:31:18 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll [2011-02-17 15:31:17 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieaksie.dll [2011-02-17 15:31:17 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll [2011-02-17 15:31:17 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieakui.dll [2011-02-17 15:31:17 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll [2011-02-17 15:31:17 | 000,066,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe [2011-02-17 15:31:17 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll [2011-02-17 15:31:16 | 000,611,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mstime.dll [2011-02-17 15:31:16 | 000,208,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WinFXDocObj.exe [2011-02-17 15:31:16 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll [2011-02-17 15:31:15 | 000,445,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll [2011-02-17 15:31:15 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll [2011-02-17 15:31:14 | 003,698,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat [2011-02-17 15:31:14 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec [2011-02-17 15:31:14 | 000,169,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe [2011-02-17 15:31:14 | 000,107,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe [2011-02-17 15:31:13 | 000,109,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PDMSetup.exe [2011-02-17 15:31:13 | 000,107,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe [2011-02-14 11:28:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2011-02-14 11:28:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-03-06 09:20:00 | 000,000,438 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job [2011-03-06 09:15:09 | 006,553,600 | -HS- | M] () -- C:\Users\Jagoda i Michał\NTUSER.DAT [2011-03-06 09:14:59 | 000,581,120 | ---- | M] (OldTimer Tools) -- C:\Users\Jagoda i Michał\Desktop\OTL.exe [2011-03-06 08:50:03 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-03-06 08:44:04 | 003,911,040 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\ComboFix[www.instalki.pl].exe [2011-03-06 08:39:29 | 000,025,269 | ---- | M] () -- C:\Windows\System32\PROCDB.INI [2011-03-06 08:39:15 | 000,000,380 | ---- | M] () -- C:\Windows\System32\IPSCtrl.INI [2011-03-06 08:39:10 | 000,001,050 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-03-06 08:39:06 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2011-03-06 08:39:02 | 000,003,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011-03-06 08:39:01 | 000,003,456 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011-03-06 08:38:53 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-03-06 08:38:50 | 2137,448,448 | -HS- | M] () -- C:\hiberfil.sys [2011-03-03 18:27:12 | 000,006,604 | ---- | M] () -- C:\Windows\bthservsdp.dat [2011-03-03 18:27:00 | 002,281,272 | -H-- | M] () -- C:\Users\Jagoda i Michał\AppData\Local1\IconCache.db [2011-03-03 10:47:34 | 001,326,240 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2011-03-03 10:47:34 | 000,610,142 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-03-03 10:47:34 | 000,535,568 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-03-03 10:47:34 | 000,103,924 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-03-03 10:47:34 | 000,086,416 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-02-21 12:57:58 | 000,000,876 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011-02-21 12:38:00 | 024,103,576 | ---- | M] (GridinSoft, Inc. ) -- C:\Users\Jagoda i Michał\Desktop\trojankiller2088-setup.exe [2011-02-21 11:14:10 | 002,438,656 | -H-- | M] () -- C:\Users\Jagoda i Michał\AppData\Roaming\lotybf.exe [2011-02-20 16:25:46 | 000,299,415 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\l6.jpg [2011-02-17 15:35:45 | 000,001,666 | ---- | M] () -- C:\Users\Public\Desktop\FileZilla Client.lnk [2011-02-14 09:36:29 | 000,000,357 | ---- | M] () -- C:\Windows\win.ini [2011-02-09 09:33:32 | 000,000,000 | ---- | M] () -- C:\Windows\System32\AccConnAdvanced.html [2011-02-08 22:44:50 | 000,431,594 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\dsc7330d.jpg [2011-02-08 22:43:24 | 000,383,385 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\5387237871_7e7568a5f7_b.jpg [2011-02-07 17:06:58 | 000,503,559 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\wst14.jpg [2011-02-05 11:50:13 | 000,067,820 | ---- | M] () -- C:\Users\Jagoda i Michał\Desktop\min1h.jpg [3 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-03-06 08:43:44 | 003,911,040 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\ComboFix[www.instalki.pl].exe [2011-02-21 14:07:50 | 002,281,272 | -H-- | C] () -- C:\Users\Jagoda i Michał\AppData\Local1\IconCache.db [2011-02-21 12:57:58 | 000,000,876 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011-02-21 11:14:10 | 002,438,656 | -H-- | C] () -- C:\Users\Jagoda i Michał\AppData\Roaming\lotybf.exe [2011-02-20 16:27:37 | 000,057,667 | ---- | C] () -- C:\Windows\System32\ieuinit.inf [2011-02-20 16:25:25 | 000,299,415 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\l6.jpg [2011-02-17 15:35:45 | 000,001,666 | ---- | C] () -- C:\Users\Public\Desktop\FileZilla Client.lnk [2011-02-09 09:33:32 | 000,000,000 | ---- | C] () -- C:\Windows\System32\AccConnAdvanced.html [2011-02-08 22:44:50 | 000,431,594 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\dsc7330d.jpg [2011-02-08 22:43:15 | 000,383,385 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\5387237871_7e7568a5f7_b.jpg [2011-02-07 17:06:56 | 000,503,559 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\wst14.jpg [2011-02-05 11:50:11 | 000,067,820 | ---- | C] () -- C:\Users\Jagoda i Michał\Desktop\min1h.jpg [2011-01-05 15:27:08 | 000,174,736 | ---- | C] () -- C:\Windows\hpoins45.dat [2011-01-05 15:27:08 | 000,000,450 | ---- | C] () -- C:\Windows\hpomdl45.dat [2010-04-07 12:50:48 | 000,442,368 | ---- | C] () -- C:\Windows\System32\zshp1018.exe [2010-04-07 12:43:42 | 000,106,496 | R--- | C] () -- C:\Windows\System32\vshp1018.dll [2010-01-18 15:28:29 | 000,068,640 | ---- | C] () -- C:\Windows\unTMV.exe [2009-11-19 20:59:57 | 000,000,066 | ---- | C] () -- C:\Windows\#1 Video Converter.INI [2009-08-12 17:00:34 | 000,110,592 | ---- | C] () -- C:\Windows\System32\FsUsbExDevice.Dll [2009-08-12 17:00:34 | 000,036,608 | ---- | C] () -- C:\Windows\System32\FsUsbExDisk.Sys [2009-06-15 17:08:25 | 000,116,224 | ---- | C] () -- C:\Windows\System32\redmonnt.dll [2009-06-15 17:08:25 | 000,045,056 | ---- | C] () -- C:\Windows\System32\unredmon.exe [2009-06-15 14:12:08 | 000,001,024 | ---- | C] () -- C:\ProgramData\1doc2pdf.dll [2009-06-15 14:10:52 | 000,116,224 | ---- | C] () -- C:\Windows\System32\pdfmonnt.dll [2009-06-15 14:02:59 | 000,000,025 | ---- | C] () -- C:\Windows\wpd99.drv [2009-06-15 14:02:58 | 000,051,716 | ---- | C] () -- C:\Windows\System32\pdf995mon.dll [2009-03-13 18:00:32 | 000,000,062 | ---- | C] () -- C:\Windows\wininit.ini [2008-12-18 16:01:21 | 000,000,048 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat [2008-12-01 19:05:12 | 000,000,235 | ---- | C] () -- C:\Windows\pdf2word.INI [2008-05-16 20:15:36 | 000,782,336 | ---- | C] () -- C:\Windows\System32\IlmImf.dll [2008-05-16 20:15:36 | 000,204,288 | ---- | C] () -- C:\Windows\System32\pmtf3.dll [2008-05-16 20:15:36 | 000,053,248 | ---- | C] () -- C:\Windows\System32\pmexr.dll [2008-05-16 20:15:36 | 000,011,776 | ---- | C] () -- C:\Windows\System32\pmbm.dll [2008-05-16 20:15:35 | 000,446,464 | ---- | C] () -- C:\Windows\System32\Photomatix_jpg.dll [2008-05-16 20:15:35 | 000,353,280 | ---- | C] () -- C:\Windows\System32\pmtf2.dll [2008-05-16 20:15:35 | 000,266,240 | ---- | C] () -- C:\Windows\System32\Photomatix25Lib.dll [2008-05-16 20:15:35 | 000,249,856 | ---- | C] () -- C:\Windows\System32\Photomatix25Lib2.dll [2008-05-16 20:15:35 | 000,205,824 | ---- | C] () -- C:\Windows\System32\pmtf1.dll [2008-05-16 20:15:35 | 000,167,936 | ---- | C] () -- C:\Windows\System32\Photomatix25Lib3.dll [2008-04-27 19:28:44 | 000,962,560 | ---- | C] () -- C:\Windows\tesseract.exe [2008-04-03 21:44:26 | 000,000,000 | ---- | C] () -- C:\Windows\Irremote.ini [2008-03-11 18:32:09 | 000,025,773 | ---- | C] () -- C:\Users\Jagoda i Michał\AppData\Roaming\UserTile.png [2008-03-06 16:46:56 | 000,000,412 | ---- | C] () -- C:\Windows\ODBC.INI [2008-03-03 21:44:39 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll [2008-03-03 21:44:39 | 000,765,952 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2008-03-03 21:44:39 | 000,180,224 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2008-03-03 21:17:16 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2008-03-03 20:27:46 | 000,716,272 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2008-03-03 19:33:22 | 000,000,032 | ---- | C] () -- C:\ProgramData\ezsid.dat [2008-03-03 19:04:33 | 000,000,168 | RHS- | C] () -- C:\Windows\System32\3CE30D3F31.sys [2008-03-03 19:04:32 | 000,005,798 | -HS- | C] () -- C:\Windows\System32\KGyGaAvL.sys [2008-01-02 16:57:36 | 000,147,456 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1409.dll [2008-01-02 16:47:22 | 001,953,696 | ---- | C] () -- C:\Windows\System32\igklg400.dll [2008-01-02 16:47:22 | 001,533,360 | ---- | C] () -- C:\Windows\System32\igklg450.dll [2008-01-02 16:47:22 | 000,104,636 | ---- | C] () -- C:\Windows\System32\igmedcompkrn.dll [2007-12-03 15:58:10 | 000,535,568 | ---- | C] () -- C:\Windows\System32\perfh015.dat [2007-12-03 15:58:10 | 000,332,832 | ---- | C] () -- C:\Windows\System32\perfi015.dat [2007-12-03 15:58:10 | 000,086,416 | ---- | C] () -- C:\Windows\System32\perfc015.dat [2007-12-03 15:58:10 | 000,037,468 | ---- | C] () -- C:\Windows\System32\perfd015.dat [2007-12-03 08:18:22 | 001,226,320 | ---- | C] () -- C:\ProgramData\pswi_preloaded.exe [2007-12-03 08:06:29 | 002,115,816 | ---- | C] () -- C:\Windows\System32\NPSWF32.dll [2007-12-03 07:51:17 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1214.dll [2007-12-03 07:51:16 | 000,701,840 | ---- | C] () -- C:\Windows\System32\igmedkrn.dll [2007-12-03 07:47:18 | 000,000,176 | ---- | C] () -- C:\Windows\System32\drivers\RTHDAEQ0.dat [2007-12-03 07:40:22 | 000,016,480 | ---- | C] () -- C:\Windows\System32\rixdicon.dll [2007-12-03 07:30:40 | 000,006,604 | ---- | C] () -- C:\Windows\bthservsdp.dat [2007-10-25 16:26:10 | 000,005,632 | ---- | C] () -- C:\Windows\System32\drivers\StarOpen.sys [2007-08-16 11:28:38 | 000,025,269 | ---- | C] () -- C:\Windows\System32\PROCDB.INI [2007-08-16 11:28:27 | 000,000,380 | ---- | C] () -- C:\Windows\System32\IPSCtrl.INI [2007-05-24 21:51:58 | 000,016,896 | ---- | C] () -- C:\Windows\Eventclr.exe [2007-03-29 12:42:38 | 000,389,120 | ---- | C] () -- C:\Windows\System32\btwhidcs.dll [2007-03-23 17:35:26 | 000,022,723 | ---- | C] () -- C:\Windows\System32\xrxs1l3.dll [2006-12-05 06:26:43 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [2006-11-02 20:40:12 | 000,174,656 | ---- | C] () -- C:\Windows\System32\PSIService.exe [2006-11-02 13:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2006-11-02 13:47:37 | 000,473,288 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2006-11-02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006-11-02 11:33:01 | 001,326,240 | ---- | C] () -- C:\Windows\System32\PerfStringBackup.INI [2006-11-02 11:33:01 | 000,610,142 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2006-11-02 11:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2006-11-02 11:33:01 | 000,103,924 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2006-11-02 11:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2006-11-02 11:24:31 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini [2006-11-02 11:23:31 | 000,000,357 | ---- | C] () -- C:\Windows\win.ini [2006-11-02 11:23:31 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini [2006-11-02 11:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2006-11-02 09:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2006-11-02 09:23:38 | 000,055,858 | ---- | C] () -- C:\Windows\System32\tcpmon.ini [2006-11-02 09:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2006-11-02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-11-02 08:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [2006-11-02 08:22:43 | 000,099,999 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin [2006-11-02 08:22:43 | 000,018,271 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin [2006-11-02 08:10:37 | 000,053,536 | ---- | C] () -- C:\Windows\System32\dosx.exe [2006-11-02 08:10:02 | 000,000,718 | ---- | C] () -- C:\Windows\System32\mscdexnt.exe [2006-11-02 08:10:00 | 000,002,842 | ---- | C] () -- C:\Windows\System32\redir.exe [2006-11-02 08:09:59 | 000,069,886 | ---- | C] () -- C:\Windows\System32\edit.com [2006-11-02 08:09:59 | 000,019,694 | ---- | C] () -- C:\Windows\System32\GRAPHICS.COM [2006-11-02 08:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\share.exe [2006-11-02 08:09:59 | 000,000,882 | ---- | C] () -- C:\Windows\System32\fastopen.exe [2006-11-02 08:09:57 | 000,014,710 | ---- | C] () -- C:\Windows\System32\KB16.COM [2006-11-02 08:09:56 | 000,007,052 | ---- | C] () -- C:\Windows\System32\nlsfunc.exe [2006-11-02 08:09:55 | 000,039,274 | ---- | C] () -- C:\Windows\System32\mem.exe [2006-11-02 08:09:55 | 000,001,131 | ---- | C] () -- C:\Windows\System32\LOADFIX.COM [2006-11-02 08:09:53 | 000,011,753 | ---- | C] () -- C:\Windows\System32\setver.exe [2006-11-02 08:09:52 | 000,020,634 | ---- | C] () -- C:\Windows\System32\debug.exe [2006-11-02 08:09:51 | 000,008,424 | ---- | C] () -- C:\Windows\System32\exe2bin.exe [2006-11-02 08:09:50 | 000,012,642 | ---- | C] () -- C:\Windows\System32\edlin.exe [2006-11-02 08:09:49 | 000,050,648 | ---- | C] () -- C:\Windows\System32\COMMAND.COM [2006-11-02 08:09:49 | 000,012,498 | ---- | C] () -- C:\Windows\System32\append.exe [2006-11-02 08:09:45 | 000,027,097 | ---- | C] () -- C:\Windows\System32\country.sys [2006-11-02 08:09:44 | 000,042,809 | ---- | C] () -- C:\Windows\System32\KEY01.SYS [2006-11-02 08:09:44 | 000,042,537 | ---- | C] () -- C:\Windows\System32\KEYBOARD.SYS [2006-11-02 08:09:42 | 000,009,029 | ---- | C] () -- C:\Windows\System32\ANSI.SYS [2006-11-02 08:09:41 | 000,004,768 | ---- | C] () -- C:\Windows\System32\HIMEM.SYS [2006-11-02 08:09:40 | 000,029,274 | ---- | C] () -- C:\Windows\System32\NTDOS412.SYS [2006-11-02 08:09:38 | 000,029,370 | ---- | C] () -- C:\Windows\System32\NTDOS411.SYS [2006-11-02 08:09:35 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS404.SYS [2006-11-02 08:09:31 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS804.SYS [2006-11-02 08:09:29 | 000,027,866 | ---- | C] () -- C:\Windows\System32\NTDOS.SYS [2006-11-02 08:09:26 | 000,035,536 | ---- | C] () -- C:\Windows\System32\NTIO412.SYS [2006-11-02 08:09:24 | 000,035,776 | ---- | C] () -- C:\Windows\System32\NTIO411.SYS [2006-11-02 08:09:23 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO404.SYS [2006-11-02 08:09:22 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO804.SYS [2006-11-02 08:09:20 | 000,033,952 | ---- | C] () -- C:\Windows\System32\NTIO.SYS [2006-11-02 07:47:51 | 000,364,544 | ---- | C] () -- C:\Windows\System32\msjetoledb40.dll [2006-11-02 07:25:08 | 000,013,312 | ---- | C] () -- C:\Windows\System32\win87em.dll [2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\Windows\System32\lcppn21.dll [color=#E56717]========== LOP Check ==========[/color] [2008-06-04 18:51:51 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\.RawTherapee [2010-05-12 18:26:25 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Any Video Converter [2009-03-16 17:21:36 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Autodesk [2008-03-03 20:27:28 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\DAEMON Tools [2011-02-21 12:04:21 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Desktopicon [2011-02-17 17:21:58 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\FileZilla [2009-02-08 15:59:29 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Free Download Manager [2008-03-05 18:25:50 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Gadu-Gadu [2008-06-05 15:56:28 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\gtk-2.0 [2008-04-14 19:18:39 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Leadertech [2008-03-03 18:48:49 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Lenovo [2009-11-17 20:41:50 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\LG Electronics [2009-01-16 21:20:53 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\LimeWire [2010-02-24 15:47:20 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\MyBoox [2010-06-08 13:51:28 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Nokia [2010-06-07 19:51:48 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Nseries [2008-06-17 10:46:34 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\OpenOffice.ux.pl2 [2008-04-05 11:41:45 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Opera [2010-11-26 19:05:37 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\PC Suite [2008-03-11 18:32:09 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\PeerNetworking [2009-06-15 17:11:36 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\QPrint [2011-01-24 11:46:05 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Radmin [2010-05-10 17:50:34 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Samsung [2009-05-25 21:05:59 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Softi Software [2008-10-03 09:24:00 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\VoipBuster [2008-10-03 09:36:27 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\VoipCheapCom [2009-06-15 13:09:40 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\WordToPDF [2010-05-10 20:54:39 | 000,000,000 | ---D | M] -- C:\Users\Jagoda i Michał\AppData\Roaming\Youtube Downloader HD [2011-03-03 18:27:14 | 000,032,596 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011-03-06 09:20:00 | 000,000,438 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{D9B30BB4-63C0-47D4-A444-A174F9308500}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 64 bytes -> C:\Users\Jagoda i Michał\Desktop\20100617007.mp4:TOC.WMV < End of report >