Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 05-01-2014 Ran by dom (administrator) on MABENEK on 06-01-2014 00:46:01 Running from D:\Install Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polish Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) =================== (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jqs.exe (RealVNC Ltd.) C:\Program Files\RealVNC\VNC4\winvnc4.exe (Canon Inc.) C:\Program Files\Canon\CAL\CALMAIN.exe (Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (RealVNC Ltd.) C:\Program Files\RealVNC\VNC4\vncviewer.exe (Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [igfxhkcmd] - C:\WINDOWS\system32\hkcmd.exe [77824 2005-11-28] (Intel Corporation) HKLM\...\Run: [igfxpers] - C:\WINDOWS\system32\igfxpers.exe [118784 2005-11-28] (Intel Corporation) HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.exe [16207872 2006-05-18] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] - C:\WINDOWS\Alcmtr.exe [69632 2005-05-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [Adobe Photo Downloader] - C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe [57344 2005-06-06] (Adobe Systems Incorporated) HKLM\...\Run: [SkyTel] - C:\WINDOWS\SkyTel.exe [2879488 2006-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [Easy-PrintToolBox] - C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE [409600 2004-01-14] (CANON INC.) HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [948440 2013-10-23] (Microsoft Corporation) HKCU\...\Run: [Dzieńdobry!] - C:\Program Files\VSD Software\Dzieńdobry!\dziendobry.exe [753664 2007-04-04] (VSD Software) HKCU\...\Run: [WMPNSCFG] - C:\Program Files\Windows Media Player\wmpnscfg.exe [204288 2006-12-01] (Microsoft Corporation) MountPoints2: {6cebc5a8-f080-11de-bec9-000fea563d8b} - G:\LaunchU3.exe -a Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar ={SUB_RFC1766}/srchasst/srchasst.htm SearchScopes: HKCU - {2883B452-678A-4E03-886F-BFCC11F51942} URL ={searchTerms}&lang=de SearchScopes: HKCU - {45868C47-C688-49C6-9465-825E2517C10A} URL ={searchTerms} SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL ={searchTerms}&{language}&rlz=1I7GGLL_en SearchScopes: HKCU - {9A584BE6-7575-4B87-AF0E-C733AC509A85} URL ={searchTerms}&lang=en SearchScopes: HKCU - {EA1992B5-EAFC-45DD-A7A0-ECA631F2DCA9} URL ={searchTerms} SearchScopes: HKCU - {EAB0FBCF-7020-4094-9A44-F8108B7D43FC} URL ={searchTerms} SearchScopes: HKCU - {ECD9645F-49CF-4CA8-A920-7D830BCC30A9} URL ={searchTerms} BHO: ALLYouTubeDownloader - {61DB16C5-B733-43F4-872E-B20DC9E72740} - C:\Program Files\ALLYouTubeDownloader\ALLYouTubeDownloader.dll (ALLCinema Ltd.) BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) BHO: JQSIEStartDetectorImpl Class - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation) DPF: {166B1BCA-3F9C-11CF-8075-444553540000} DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Documents and Settings\dom\Dane aplikacji\Mozilla\Firefox\Profiles\oiwu3cei.default-1388421352937 FF Plugin: - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin: - C:\WINDOWS\system32\Adobe\Director\np32dsw_1165635.dll (Adobe Systems, Inc.) FF Plugin:,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin: - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin:,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin:,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: Update;version=3 - C:\Program Files\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Update;version=9 - C:\Program Files\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin:,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\wolnelektury-pl.xml FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF HKLM\...\Firefox\Extensions: [] - C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF Extension: Java Quick Starter - C:\Program Files\Java\jre6\lib\deploy\jqs\ff Chrome: ======= CHR Plugin: (Widevine Content Decryption Module) - C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\WidevineCDM\\_platform_specific\win_x86\widevinecdmadapter.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll () CHR Plugin: (Java Deployment Toolkit 6.0.300.12) - C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\\npGoogleUpdate3.dll (Google Inc.) CHR Plugin: (Java(TM) Platform SE 6 U30) - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Presentation Foundation) - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) CHR Plugin: (Shockwave for Director) - C:\WINDOWS\system32\Adobe\Director\np32dsw_1165635.dll (Adobe Systems, Inc.) CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_224.dll () CHR Extension: (YouTube) - C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0 CHR Extension: (Google Search) - C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\ CHR Extension: (Google Wallet) - C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\ CHR Extension: (Gmail) - C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1 ========================== Services (Whitelisted) ================= R2 CCALib8; C:\Program Files\Canon\CAL\CALMAIN.exe [96370 2007-01-31] (Canon Inc.) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-10-23] (Microsoft Corporation) S4 PuranDefrag; C:\WINDOWS\system32\PuranDefragS.exe [260992 2013-08-15] (Puran Software) S2 spupdsvc; C:\WINDOWS\system32\spupdsvc.exe [26144 2009-01-07] (Microsoft Corporation) R2 WinVNC4; C:\Program Files\RealVNC\VNC4\WinVNC4.exe [439632 2008-10-15] (RealVNC Ltd.) ==================== Drivers (Whitelisted) ==================== S3 HPZid412; C:\Windows\System32\DRIVERS\HPZid412.sys [51120 2005-03-08] (HP) S3 HPZipr12; C:\Windows\System32\DRIVERS\HPZipr12.sys [16496 2005-03-08] (HP) S3 HPZius12; C:\Windows\System32\DRIVERS\HPZius12.sys [21744 2005-03-08] (HP) R2 Kmm4xNT; C:\Windows\System32\Drivers\Kmm4xNT.sys [95484 2002-04-26] (DATOM Dariusz Cielebąk) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [214696 2013-09-27] (Microsoft Corporation) R1 MpKslfc688ed2; C:\Documents and Settings\All Users\Dane aplikacji\Microsoft\Microsoft Antimalware\Definition Updates\{DB7B931B-FAB8-4C70-BA69-B00E9D7BBB7E}\MpKslfc688ed2.sys [40392 2014-01-05] (Microsoft Corporation) S3 MSIRCOMM; C:\Windows\System32\DRIVERS\MSIRCOMM.sys [22016 2008-04-13] (Microsoft Corporation) R3 Rasirda; C:\Windows\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation) S3 vncmirror; C:\Windows\System32\DRIVERS\vncmirror.sys [4608 2013-12-06] (RealVNC Ltd.) S4 IntelIde; No ImagePath U5 ScsiPort; C:\Windows\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-01-06 00:39 - 2014-01-06 00:39 - 00000000 ____D C:\MATS 2014-01-06 00:36 - 2014-01-06 00:36 - 00065536 _____ C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-01-06 00:36 - 2014-01-06 00:36 - 00000000 ____D C:\WINDOWS\system32\windowspowershell 2014-01-06 00:36 - 2014-01-06 00:36 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Windows PowerShell 1.0 2014-01-06 00:35 - 2014-01-06 00:36 - 00033139 _____ C:\WINDOWS\KB926139-v2.log 2014-01-06 00:35 - 2014-01-06 00:36 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB926139-v2$ 2014-01-06 00:35 - 2014-01-06 00:35 - 00000000 ____D C:\WINDOWS\LastGood 2014-01-02 11:05 - 2014-01-02 11:02 - 00737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe 2014-01-02 11:04 - 2014-01-02 11:05 - 00000000 ____D C:\Program Files\EA GAMES 2013-12-30 23:24 - 2013-12-30 23:24 - 00004223 _____ C:\Documents and Settings\dom\Pulpit\AdwCleaner[S0].txt 2013-12-30 17:46 - 2013-12-30 17:56 - 00000000 ____D C:\AdwCleaner 2013-12-29 18:28 - 2013-12-29 18:28 - 00000000 ____D C:\WINDOWS\ie8updates 2013-12-29 15:52 - 2013-12-29 15:52 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\RealVNC 2013-12-29 15:03 - 2013-12-29 15:03 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\RealVNC 2013-12-29 15:03 - 2013-12-06 14:48 - 00020992 _____ (RealVNC Ltd.) C:\WINDOWS\system32\vncmirror.dll 2013-12-29 15:03 - 2013-12-06 14:48 - 00004608 _____ (RealVNC Ltd.) C:\WINDOWS\system32\Drivers\vncmirror.sys 2013-12-29 15:02 - 2013-12-29 15:02 - 00000000 ____D C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\RealVNC 2013-12-29 03:40 - 2013-12-29 03:42 - 00000000 __HDC C:\WINDOWS\ie8 2013-12-29 03:00 - 2013-12-29 03:01 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898785$ 2013-12-29 03:00 - 2013-12-29 03:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2510581$ 2013-12-28 17:40 - 2013-12-29 18:28 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-12-28 17:40 - 2013-12-29 03:01 - 00013687 _____ C:\WINDOWS\KB2898785.log 2013-12-28 17:40 - 2013-12-29 03:00 - 00013531 _____ C:\WINDOWS\KB2510581.log 2013-12-28 17:00 - 2014-01-06 00:14 - 00000000 ____D C:\FRST 2013-12-28 15:46 - 2014-01-02 12:49 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Zdjęcia_Jemaiki 2013-12-28 15:40 - 2013-12-28 15:41 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Canon 2013-12-28 15:38 - 2014-01-01 18:15 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\MultiMedia 2013-12-28 15:37 - 2013-12-28 15:40 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Gry 2013-12-28 15:36 - 2013-12-28 15:36 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Microsoft Office 2013-12-28 15:35 - 2013-12-28 15:45 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Norma 2013-12-28 15:34 - 2013-12-29 14:25 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\PITY 2013-12-28 15:31 - 2013-12-28 15:32 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\ALLPlayer 2013-12-28 02:07 - 2013-12-28 10:00 - 00000000 ____D C:\Program Files\Puran Defrag 2013-12-28 02:07 - 2013-12-28 02:07 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Puran Defrag 2013-12-28 02:07 - 2013-08-15 16:39 - 01136512 _____ (Puran Software) C:\WINDOWS\system32\PuranFD.exe 2013-12-28 02:07 - 2013-08-15 16:39 - 00260992 _____ (Puran Software) C:\WINDOWS\system32\PuranDefragS.exe 2013-12-28 02:07 - 2013-08-15 16:39 - 00257408 _____ (Puran Software) C:\WINDOWS\system32\PuranDC.exe 2013-12-28 02:07 - 2013-08-15 16:39 - 00219520 _____ (Puran Software) C:\WINDOWS\system32\PuranDefrag.dll 2013-12-28 02:07 - 2013-08-15 16:39 - 00109952 _____ (Puran Software) C:\WINDOWS\system32\PuranDefragBT.exe 2013-12-27 23:11 - 2013-12-27 23:13 - 00041662 _____ C:\WINDOWS\ie8Uninst.log 2013-12-26 15:06 - 2013-12-26 15:08 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-14 18:54 - 2013-12-29 18:30 - 00024055 _____ C:\WINDOWS\KB2898785-IE8.log 2013-12-14 18:54 - 2013-12-14 18:54 - 00004916 _____ C:\WINDOWS\KB2904266.log 2013-12-14 18:54 - 2013-12-14 18:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-14 18:54 - 2013-12-14 18:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-13 09:37 - 2013-12-14 18:54 - 00012101 _____ C:\WINDOWS\KB2898715.log 2013-12-13 09:36 - 2013-12-14 18:50 - 00011614 _____ C:\WINDOWS\KB2893984.log 2013-12-13 09:36 - 2013-12-14 18:50 - 00010917 _____ C:\WINDOWS\KB2893294.log 2013-12-13 09:36 - 2013-12-14 18:50 - 00010179 _____ C:\WINDOWS\KB2892075.log ==================== One Month Modified Files and Folders ======= 2014-01-06 00:45 - 2007-08-24 23:28 - 00003509 _____ C:\WINDOWS\wincmd.ini 2014-01-06 00:39 - 2014-01-06 00:39 - 00000000 ____D C:\MATS 2014-01-06 00:39 - 2007-08-24 12:43 - 00000000 __RHD C:\Documents and Settings\dom\Dane aplikacji 2014-01-06 00:36 - 2014-01-06 00:36 - 00065536 _____ C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-01-06 00:36 - 2014-01-06 00:36 - 00000000 ____D C:\WINDOWS\system32\windowspowershell 2014-01-06 00:36 - 2014-01-06 00:36 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Windows PowerShell 1.0 2014-01-06 00:36 - 2014-01-06 00:35 - 00033139 _____ C:\WINDOWS\KB926139-v2.log 2014-01-06 00:36 - 2014-01-06 00:35 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB926139-v2$ 2014-01-06 00:36 - 2010-03-06 20:02 - 00690974 _____ C:\WINDOWS\setupapi.log 2014-01-06 00:36 - 2007-08-24 14:10 - 03031698 _____ C:\WINDOWS\FaxSetup.log 2014-01-06 00:36 - 2007-08-24 14:10 - 01493183 _____ C:\WINDOWS\ocgen.log 2014-01-06 00:36 - 2007-08-24 14:10 - 01169611 _____ C:\WINDOWS\tsoc.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00974601 _____ C:\WINDOWS\comsetup.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00593914 _____ C:\WINDOWS\ntdtcsetup.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00477991 _____ C:\WINDOWS\iis6.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00182000 _____ C:\WINDOWS\ocmsn.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00152915 _____ C:\WINDOWS\msgsocm.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00001355 _____ C:\WINDOWS\imsins.log 2014-01-06 00:36 - 2007-08-24 14:10 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy 2014-01-06 00:36 - 2007-08-24 13:17 - 00054066 _____ C:\WINDOWS\spupdsvc.log 2014-01-06 00:35 - 2014-01-06 00:35 - 00000000 ____D C:\WINDOWS\LastGood 2014-01-06 00:35 - 2011-12-29 19:30 - 00000000 ____D C:\Documents and Settings\dom\Moje dokumenty\Pobieranie 2014-01-06 00:34 - 2007-08-24 12:30 - 01140598 _____ C:\WINDOWS\WindowsUpdate.log 2014-01-06 00:30 - 2010-01-30 15:32 - 00001036 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-01-06 00:30 - 2007-08-24 14:10 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start 2014-01-06 00:27 - 2007-08-24 12:46 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2014-01-06 00:26 - 2007-10-28 16:50 - 00000000 ____D C:\Program Files\SkanerOnline 2014-01-06 00:14 - 2013-12-28 17:00 - 00000000 ____D C:\FRST 2014-01-06 00:14 - 2007-08-24 14:08 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2014-01-05 23:58 - 2013-05-23 09:32 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-01-05 23:14 - 2013-11-19 20:35 - 00000406 ____H C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job 2014-01-05 23:05 - 2007-08-24 14:01 - 00000000 ____D C:\WINDOWS\system32\ias 2014-01-05 23:04 - 2010-01-30 15:32 - 00001032 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-01-05 23:04 - 2007-08-24 14:12 - 00000159 _____ C:\WINDOWS\wiadebug.log 2014-01-05 23:04 - 2007-08-24 14:12 - 00000050 _____ C:\WINDOWS\wiaservc.log 2014-01-05 23:04 - 2007-08-24 12:41 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2014-01-05 14:23 - 2007-08-24 12:43 - 00000188 ___SH C:\Documents and Settings\dom\ntuser.ini 2014-01-05 14:23 - 2007-08-24 12:41 - 00031844 _____ C:\WINDOWS\SchedLgU.Txt 2014-01-04 23:10 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Menu Start\Programy\Autostart 2014-01-04 01:13 - 2007-08-24 12:43 - 00000000 ____D C:\Documents and Settings\dom\Pulpit 2014-01-02 12:49 - 2013-12-28 15:46 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Zdjęcia_Jemaiki 2014-01-02 11:05 - 2014-01-02 11:04 - 00000000 ____D C:\Program Files\EA GAMES 2014-01-02 11:02 - 2014-01-02 11:05 - 00737280 _____ (Indigo Rose Corporation) C:\WINDOWS\iun6002.exe 2014-01-01 18:18 - 2012-09-09 18:48 - 00000000 ____D C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\ChomikBox 2014-01-01 18:15 - 2013-12-28 15:38 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\MultiMedia 2014-01-01 18:14 - 2012-09-09 18:49 - 00000000 ____D C:\Documents and Settings\dom\.gstreamer-0.10 2014-01-01 18:14 - 2008-05-23 19:51 - 00000000 ____D C:\Documents and Settings\dom\Dane aplikacji\Image Zone Express 2014-01-01 16:01 - 2006-03-02 13:00 - 00013646 _____ C:\WINDOWS\system32\wpa.dbl 2013-12-30 23:24 - 2013-12-30 23:24 - 00004223 _____ C:\Documents and Settings\dom\Pulpit\AdwCleaner[S0].txt 2013-12-30 17:56 - 2013-12-30 17:46 - 00000000 ____D C:\AdwCleaner 2013-12-30 17:55 - 2007-08-24 12:43 - 00000000 ___HD C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji 2013-12-29 18:30 - 2013-12-14 18:54 - 00024055 _____ C:\WINDOWS\KB2898785-IE8.log 2013-12-29 18:30 - 2007-08-24 14:10 - 00001393 _____ C:\WINDOWS\imsins.BAK 2013-12-29 18:29 - 2011-04-14 15:49 - 00016642 _____ C:\WINDOWS\KB2510531-IE8.log 2013-12-29 18:29 - 2007-08-24 13:09 - 00393216 _____ C:\WINDOWS\updspapi.log 2013-12-29 18:28 - 2013-12-29 18:28 - 00000000 ____D C:\WINDOWS\ie8updates 2013-12-29 18:28 - 2013-12-28 17:40 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2013-12-29 15:52 - 2013-12-29 15:52 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\RealVNC 2013-12-29 15:29 - 2007-08-25 18:58 - 00000000 ____D C:\Program Files\RealVNC 2013-12-29 15:03 - 2013-12-29 15:03 - 00000000 ____D C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\RealVNC 2013-12-29 15:02 - 2013-12-29 15:02 - 00000000 ____D C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\RealVNC 2013-12-29 14:25 - 2013-12-28 15:34 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\PITY 2013-12-29 14:25 - 2007-08-24 14:10 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2013-12-29 03:45 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Moje dokumenty\Moja muzyka 2013-12-29 03:44 - 2008-10-26 12:33 - 00000000 ____D C:\WINDOWS\system32\pl-pl 2013-12-29 03:44 - 2007-08-24 14:01 - 00000000 ____D C:\WINDOWS\Help 2013-12-29 03:44 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Moje dokumenty\Moje obrazy 2013-12-29 03:44 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Moje dokumenty 2013-12-29 03:42 - 2013-12-29 03:40 - 00000000 __HDC C:\WINDOWS\ie8 2013-12-29 03:42 - 2009-06-17 20:21 - 00091500 _____ C:\WINDOWS\ie8.log 2013-12-29 03:42 - 2009-06-17 20:18 - 00129361 _____ C:\WINDOWS\ie8_main.log 2013-12-29 03:41 - 2007-08-24 14:01 - 00000000 ____D C:\WINDOWS\Media 2013-12-29 03:01 - 2013-12-29 03:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898785$ 2013-12-29 03:01 - 2013-12-28 17:40 - 00013687 _____ C:\WINDOWS\KB2898785.log 2013-12-29 03:00 - 2013-12-29 03:00 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2510581$ 2013-12-29 03:00 - 2013-12-28 17:40 - 00013531 _____ C:\WINDOWS\KB2510581.log 2013-12-28 15:45 - 2013-12-28 15:35 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Norma 2013-12-28 15:45 - 2007-08-25 18:32 - 00000000 ____D C:\Program Files\FORMUL.IPS 2013-12-28 15:41 - 2013-12-28 15:40 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Canon 2013-12-28 15:40 - 2013-12-28 15:37 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Gry 2013-12-28 15:36 - 2013-12-28 15:36 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\Microsoft Office 2013-12-28 15:32 - 2013-12-28 15:31 - 00000000 ____D C:\Documents and Settings\dom\Pulpit\ALLPlayer 2013-12-28 10:00 - 2013-12-28 02:07 - 00000000 ____D C:\Program Files\Puran Defrag 2013-12-28 02:07 - 2013-12-28 02:07 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Puran Defrag 2013-12-28 01:49 - 2007-08-24 14:10 - 01090296 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2013-12-28 01:49 - 2006-03-02 13:00 - 00491118 _____ C:\WINDOWS\system32\perfh015.dat 2013-12-28 01:49 - 2006-03-02 13:00 - 00084370 _____ C:\WINDOWS\system32\perfc015.dat 2013-12-28 01:17 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Menu Start\Programy 2013-12-28 01:13 - 2009-03-02 19:36 - 00000000 ____D C:\Program Files\NAPI-PROJEKT 2013-12-28 00:50 - 2007-08-24 14:10 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2013-12-28 00:05 - 2012-01-19 17:44 - 00000000 ____D C:\Program Files\Winamp 2013-12-27 23:57 - 2011-12-30 11:38 - 00000000 ____D C:\Program Files\NapiProjekt 2013-12-27 23:49 - 2009-05-31 19:17 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Apple Computer 2013-12-27 23:36 - 2007-08-24 12:43 - 00000000 __SHD C:\Documents and Settings\dom\Ustawienia lokalne\Historia 2013-12-27 23:35 - 2007-08-24 12:43 - 00000000 ___RD C:\Documents and Settings\dom\Ulubione 2013-12-27 23:31 - 2008-07-14 21:24 - 00000000 ____D C:\Program Files\Adobe Media Player 2013-12-27 23:29 - 2007-09-04 16:55 - 00064634 _____ C:\WINDOWS\DPINST.LOG 2013-12-27 23:13 - 2013-12-27 23:11 - 00041662 _____ C:\WINDOWS\ie8Uninst.log 2013-12-27 23:01 - 2008-03-01 12:13 - 00000000 ____D C:\Documents and Settings\dom\Ustawienia lokalne\Dane aplikacji\Google 2013-12-27 23:01 - 2008-03-01 12:00 - 00000000 ____D C:\Program Files\Google 2013-12-27 23:01 - 2008-03-01 12:00 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Google 2013-12-27 22:18 - 2007-08-24 12:43 - 00000000 ____D C:\Documents and Settings\dom 2013-12-27 00:45 - 2007-09-04 19:38 - 00000000 ____D C:\Program Files\Common Files\Nokia 2013-12-27 00:45 - 2007-09-04 16:54 - 00000000 ____D C:\Program Files\Nokia 2013-12-26 23:03 - 2013-05-23 08:29 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2013-12-26 15:08 - 2013-12-26 15:06 - 00000000 ____D C:\Program Files\Mozilla Firefox 2013-12-18 16:31 - 2013-05-18 12:35 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Google Drive 2013-12-17 14:47 - 2007-08-24 23:28 - 00000000 ____D C:\Totalcmd 2013-12-14 19:11 - 2007-08-24 14:07 - 00147608 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2013-12-14 18:54 - 2013-12-14 18:54 - 00004916 _____ C:\WINDOWS\KB2904266.log 2013-12-14 18:54 - 2013-12-14 18:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2904266$ 2013-12-14 18:54 - 2013-12-14 18:54 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2898715$ 2013-12-14 18:54 - 2013-12-13 09:37 - 00012101 _____ C:\WINDOWS\KB2898715.log 2013-12-14 18:54 - 2013-07-12 08:23 - 00000000 ____D C:\WINDOWS\system32\MRT 2013-12-14 18:54 - 2007-08-24 13:12 - 00897162 _____ C:\WINDOWS\system32\TZLog.log 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893984$ 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2893294$ 2013-12-14 18:50 - 2013-12-14 18:50 - 00000000 __HDC C:\WINDOWS\$NtUninstallKB2892075$ 2013-12-14 18:50 - 2013-12-13 09:36 - 00011614 _____ C:\WINDOWS\KB2893984.log 2013-12-14 18:50 - 2013-12-13 09:36 - 00010917 _____ C:\WINDOWS\KB2893294.log 2013-12-14 18:50 - 2013-12-13 09:36 - 00010179 _____ C:\WINDOWS\KB2892075.log 2013-12-14 18:50 - 2007-08-24 13:11 - 88123800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Bamital & volsnap Check ================= C:\Windows\explorer.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 1035264 ____A (Microsoft Corporation) c791ed9eac5e76d9525e157b1d7a599a C:\Windows\System32\winlogon.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0510464 ____A (Microsoft Corporation) 51fd2e13d723857b9ca239ae77150f48 C:\Windows\System32\svchost.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0014336 ____A (Microsoft Corporation) 8607d35d92528e2df386f19a960d23ce C:\Windows\System32\services.exe [2006-03-02 13:00] - [2009-02-09 12:25] - 0111104 ____A (Microsoft Corporation) 02a467e27af55f7064c5b251e587315f C:\Windows\System32\User32.dll [2006-03-02 13:00] - [2008-04-14 18:20] - 0580096 ____A (Microsoft Corporation) a435c5c069afd901751ac323ad238793 C:\Windows\System32\userinit.exe [2006-03-02 13:00] - [2008-04-14 18:21] - 0026624 ____A (Microsoft Corporation) 2a5b37d520508be6570a3ea79695f5b5 C:\Windows\System32\rpcss.dll [2006-03-02 13:00] - [2009-02-09 11:53] - 0401408 ____A (Microsoft Corporation) a37311d9d628c1042a2836731787f0f3 C:\Windows\System32\Drivers\volsnap.sys [2006-03-02 13:00] - [2008-04-14 17:01] - 0052864 ____A (Microsoft Corporation) 56b191ac5fc0df219949c95a6c87afe7 ==================== End Of Log ============================