OTL logfile created on: 2014-01-07 23:25:18 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\User\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,04 Gb Available Physical Memory | 52,11% Memory free 4,85 Gb Paging File | 3,47 Gb Available in Paging File | 71,50% Paging File free Paging file location(s): C:\pagefile.sys 3070 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 292,97 Gb Total Space | 218,76 Gb Free Space | 74,67% Space Free | Partition Type: NTFS Drive D: | 638,54 Gb Total Space | 626,36 Gb Free Space | 98,09% Space Free | Partition Type: NTFS Unable to calculate disk information. Computer Name: KOMPUTER | User Name: User | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-01-07 19:38:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Pulpit\OTL.exe PRC - [2013-12-23 17:22:53 | 018,708,392 | ---- | M] (Zemana Ltd.) -- C:\Program Files\AntiLogger\AntiLogger.exe PRC - [2013-12-05 20:34:42 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2013-12-05 12:48:30 | 021,321,312 | ---- | M] (Redefine Sp z o.o.) -- C:\Program Files\ipla\ipla.exe PRC - [2013-11-14 19:16:14 | 000,508,144 | ---- | M] (QFX Software Corporation) -- C:\Program Files\KeyScrambler\KeyScrambler.exe PRC - [2013-10-29 15:49:29 | 000,182,696 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2013-03-22 10:13:36 | 001,957,840 | ---- | M] (G Data Software AG) -- C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe PRC - [2013-02-25 13:59:46 | 000,696,808 | ---- | M] (G Data Software AG) -- C:\Program Files\Common Files\G DATA\GDScan\GDScan.exe PRC - [2012-03-11 21:13:22 | 001,983,232 | ---- | M] (COMODO) -- C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe PRC - [2012-03-11 21:13:02 | 006,749,512 | ---- | M] (COMODO) -- C:\Program Files\Comodo\COMODO Internet Security\cfp.exe PRC - [2011-11-23 11:27:04 | 001,052,472 | ---- | M] (COMODO) -- C:\Program Files\Comodo\COMODO GeekBuddy\CLPSLS.exe PRC - [2008-05-16 16:39:15 | 000,594,600 | ---- | M] ( ) -- C:\WINDOWS\system32\lxdrcoms.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-03-06 09:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe PRC - [2007-03-03 13:48:28 | 000,067,056 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe PRC - [2005-12-30 08:15:16 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\acs.exe PRC - [2004-06-14 16:58:06 | 000,221,184 | ---- | M] (M-Audio) -- C:\WINDOWS\system32\RevoTask.exe PRC - [2004-02-26 14:43:16 | 000,962,661 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe PRC - [2003-10-16 19:07:12 | 000,053,248 | ---- | M] (France Télécom R&D) -- C:\Program Files\Neostrada TP\TaskBarIcon.exe PRC - [2002-08-14 14:21:16 | 000,200,704 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2013-12-05 20:36:56 | 003,559,024 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2013-12-05 12:48:32 | 000,068,104 | ---- | M] () -- C:\Program Files\ipla\ziplib.dll MOD - [2013-12-05 12:48:30 | 000,392,200 | ---- | M] () -- C:\Program Files\ipla\jabberoo.dll MOD - [2013-12-05 12:22:00 | 000,294,400 | ---- | M] () -- C:\Program Files\ipla\MediaFileScanner.dll MOD - [2013-11-20 14:08:26 | 037,016,576 | ---- | M] () -- C:\Program Files\ipla\libcef.dll MOD - [2011-12-19 18:59:44 | 000,068,424 | ---- | M] () -- C:\Program Files\Comodo\COMODO Internet Security\scanners\smart.cav MOD - [2011-08-15 15:40:46 | 001,728,512 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Wizard\2.0.3404.40413__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Wizard.dll MOD - [2011-08-15 15:40:46 | 000,290,816 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Runtime\2.0.3404.40397__90ba9c70f846762e\CLI.Caste.Graphics.Runtime.dll MOD - [2011-08-15 15:40:46 | 000,204,800 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Wizard\2.0.3404.40414__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Wizard.dll MOD - [2011-08-15 15:40:46 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard\2.0.3404.40409__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.dll MOD - [2011-08-15 15:40:46 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Runtime\2.0.3404.40404__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Runtime.dll MOD - [2011-08-15 15:40:46 | 000,011,776 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.HydraVision.Runtime\2.0.3404.40497__90ba9c70f846762e\CLI.Caste.HydraVision.Runtime.dll MOD - [2011-08-15 15:40:46 | 000,008,704 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.HydraVision.Shared\2.0.3404.40496__90ba9c70f846762e\CLI.Caste.HydraVision.Shared.dll MOD - [2011-08-15 15:40:46 | 000,007,680 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.HydraVision.Wizard\2.0.3404.40500__90ba9c70f846762e\CLI.Caste.HydraVision.Wizard.dll MOD - [2011-08-15 15:40:46 | 000,007,680 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.HydraVision.Dashboard\2.0.3404.40496__90ba9c70f846762e\CLI.Caste.HydraVision.Dashboard.dll MOD - [2011-08-15 15:40:45 | 000,491,520 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Wizard\2.0.3404.40482__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Wizard.dll MOD - [2011-08-15 15:40:45 | 000,139,264 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Welcome.Graphics.Dashboard\2.0.3404.40483__90ba9c70f846762e\CLI.Aspect.Welcome.Graphics.Dashboard.dll MOD - [2011-08-15 15:40:45 | 000,073,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard\2.0.3404.40404__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.dll MOD - [2011-08-15 15:40:44 | 000,094,208 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Wizard\2.0.3404.40453__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Wizard.dll MOD - [2011-08-15 15:40:42 | 000,225,280 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.InfoCentre.Graphics.Dashboard\2.0.3404.40414__90ba9c70f846762e\CLI.Aspect.InfoCentre.Graphics.Dashboard.dll MOD - [2011-08-15 15:40:41 | 000,712,704 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.DisplaysManager.Graphics.Dashboard\2.0.3404.40405__90ba9c70f846762e\CLI.Aspect.DisplaysManager.Graphics.Dashboard.dll MOD - [2011-08-15 15:40:40 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Hotkeys.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Plugin.Hotkeys.Shared.dll MOD - [2011-08-15 15:40:40 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Actions.CCAA.Shared\2.0.3309.28608__90ba9c70f846762e\AEM.Actions.CCAA.Shared.dll MOD - [2011-08-15 15:40:40 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.WinMessages.Shared\2.0.3309.28629__90ba9c70f846762e\AEM.Plugin.WinMessages.Shared.dll MOD - [2011-08-15 15:40:40 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.REG.Shared\2.0.3309.28645__90ba9c70f846762e\AEM.Plugin.REG.Shared.dll MOD - [2011-08-15 15:40:40 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.GD.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.GD.Shared.dll MOD - [2011-08-15 15:40:40 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.EEU.Shared\2.0.3309.28627__90ba9c70f846762e\AEM.Plugin.EEU.Shared.dll MOD - [2011-08-15 15:40:39 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.DPPE.Shared\2.0.3309.28647__90ba9c70f846762e\AEM.Plugin.DPPE.Shared.dll MOD - [2011-08-15 15:40:39 | 000,007,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\atixclib\1.0.0.0__90ba9c70f846762e\atixclib.dll MOD - [2011-08-15 15:40:38 | 000,073,728 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation\2.0.3309.28604__90ba9c70f846762e\CLI.Foundation.dll MOD - [2011-08-15 15:40:38 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics.I0601\2.0.2573.17685__90ba9c70f846762e\DEM.Graphics.I0601.dll MOD - [2011-08-15 15:40:38 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation\2.0.3309.28601__90ba9c70f846762e\LOG.Foundation.dll MOD - [2011-08-15 15:40:38 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\NEWAEM.Foundation\2.0.3309.28603__90ba9c70f846762e\NEWAEM.Foundation.dll MOD - [2011-08-15 15:40:38 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.XManifest\2.0.3309.28669__90ba9c70f846762e\CLI.Foundation.XManifest.dll MOD - [2011-08-15 15:40:38 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS.I0602\2.0.3309.28630__90ba9c70f846762e\DEM.OS.I0602.dll MOD - [2011-08-15 15:40:38 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared\2.0.3309.28620__90ba9c70f846762e\CLI.Component.Wizard.Shared.dll MOD - [2011-08-15 15:40:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Foundation\2.0.3309.28626__90ba9c70f846762e\MOM.Foundation.dll MOD - [2011-08-15 15:40:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.OS\2.0.3309.28645__90ba9c70f846762e\DEM.OS.dll MOD - [2011-08-15 15:40:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Graphics\2.0.3309.28630__90ba9c70f846762e\DEM.Graphics.dll MOD - [2011-08-15 15:40:38 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\DEM.Foundation\2.0.2573.17684__90ba9c70f846762e\DEM.Foundation.dll MOD - [2011-08-15 15:40:37 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Shared\2.0.3309.28618__90ba9c70f846762e\CLI.Caste.Graphics.Shared.dll MOD - [2011-08-15 15:40:37 | 000,053,248 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.Radeon3D.Graphics.Shared\2.0.3309.28636__90ba9c70f846762e\CLI.Aspect.Radeon3D.Graphics.Shared.dll MOD - [2011-08-15 15:40:37 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.TransCode.Graphics.Shared\2.0.3309.28644__90ba9c70f846762e\CLI.Aspect.TransCode.Graphics.Shared.dll MOD - [2011-08-15 15:40:37 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Dashboard.Shared.dll MOD - [2011-08-15 15:40:37 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared\2.0.3309.28611__90ba9c70f846762e\CLI.Component.Client.Shared.dll MOD - [2011-08-15 15:40:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared\2.0.3309.28617__90ba9c70f846762e\CLI.Component.Runtime.Shared.dll MOD - [2011-08-15 15:40:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Wizard.Shared\2.0.3309.28631__90ba9c70f846762e\CLI.Caste.Graphics.Wizard.Shared.dll MOD - [2011-08-15 15:40:37 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Caste.Graphics.Dashboard.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Caste.Graphics.Dashboard.Shared.dll MOD - [2011-08-15 15:40:36 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Aspect.HotkeysHandling.Graphics.Shared\2.0.3309.28630__90ba9c70f846762e\CLI.Aspect.HotkeysHandling.Graphics.Shared.dll MOD - [2011-08-15 15:40:35 | 000,503,808 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ResourceManagement.Foundation.Implementation\2.0.3404.40507__90ba9c70f846762e\ResourceManagement.Foundation.Implementation.dll MOD - [2011-08-15 15:40:35 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Plugin.Source.Kit.Server\2.0.3404.40490__90ba9c70f846762e\AEM.Plugin.Source.Kit.Server.dll MOD - [2011-08-15 15:40:35 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ACE.Graphics.DisplaysManager.Shared\2.0.2573.17685__90ba9c70f846762e\ACE.Graphics.DisplaysManager.Shared.dll MOD - [2011-08-15 15:40:35 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Foundation\2.0.3309.28626__90ba9c70f846762e\APM.Foundation.dll MOD - [2011-08-15 15:40:35 | 000,016,384 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server.Shared\2.0.3309.28617__90ba9c70f846762e\AEM.Server.Shared.dll MOD - [2011-08-15 15:40:35 | 000,014,848 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AxInterop.WBOCXLib\1.0.0.0__90ba9c70f846762e\AxInterop.WBOCXLib.dll MOD - [2011-08-15 15:40:35 | 000,013,312 | ---- | M] () -- C:\WINDOWS\assembly\GAC\Interop.WBOCXLib\1.0.0.0__90ba9c70f846762e\Interop.WBOCXLib.dll MOD - [2011-08-15 15:40:35 | 000,007,168 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Extension.EEU\2.0.3404.40393__90ba9c70f846762e\CLI.Component.Runtime.Extension.EEU.dll MOD - [2011-08-15 15:40:34 | 000,544,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Systemtray\2.0.3404.40472__90ba9c70f846762e\CLI.Component.Systemtray.dll MOD - [2011-08-15 15:40:34 | 000,405,504 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard\2.0.3404.40409__90ba9c70f846762e\CLI.Component.Wizard.dll MOD - [2011-08-15 15:40:34 | 000,106,496 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\MOM.Implementation\2.0.3404.40477__90ba9c70f846762e\MOM.Implementation.dll MOD - [2011-08-15 15:40:34 | 000,081,920 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime\2.0.3404.40395__90ba9c70f846762e\CLI.Component.Runtime.dll MOD - [2011-08-15 15:40:34 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation\2.0.3404.40476__90ba9c70f846762e\LOG.Foundation.Implementation.dll MOD - [2011-08-15 15:40:34 | 000,057,344 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.SkinFactory\2.0.3404.40396__90ba9c70f846762e\CLI.Component.SkinFactory.dll MOD - [2011-08-15 15:40:34 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Runtime.Shared.Private\2.0.3309.28628__90ba9c70f846762e\CLI.Component.Runtime.Shared.Private.dll MOD - [2011-08-15 15:40:34 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Foundation.Private\2.0.3309.28608__90ba9c70f846762e\CLI.Foundation.Private.dll MOD - [2011-08-15 15:40:34 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Private\2.0.3309.28614__90ba9c70f846762e\LOG.Foundation.Private.dll MOD - [2011-08-15 15:40:34 | 000,024,576 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Wizard.Shared.Private\2.0.3309.28627__90ba9c70f846762e\CLI.Component.Wizard.Shared.Private.dll MOD - [2011-08-15 15:40:34 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ResourceManagement.Foundation.Private\2.0.3309.28612__90ba9c70f846762e\ResourceManagement.Foundation.Private.dll MOD - [2011-08-15 15:40:34 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\LOG.Foundation.Implementation.Private\2.0.3309.28626__90ba9c70f846762e\LOG.Foundation.Implementation.Private.dll MOD - [2011-08-15 15:40:33 | 001,142,784 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard\2.0.3404.40401__90ba9c70f846762e\CLI.Component.Dashboard.dll MOD - [2011-08-15 15:40:33 | 001,019,904 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Eeu\2.0.3404.40461__90ba9c70f846762e\CLI.Component.Eeu.dll MOD - [2011-08-15 15:40:33 | 000,020,480 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Dashboard.Shared.Private\2.0.3309.28624__90ba9c70f846762e\CLI.Component.Dashboard.Shared.Private.dll MOD - [2011-08-15 15:40:32 | 000,081,920 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATIDEMOS\2.0.3404.40395__90ba9c70f846762e\ATIDEMOS.dll MOD - [2011-08-15 15:40:32 | 000,061,440 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\APM.Server\2.0.3404.40394__90ba9c70f846762e\APM.Server.dll MOD - [2011-08-15 15:40:32 | 000,045,056 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\AEM.Server\2.0.3404.40393__90ba9c70f846762e\AEM.Server.dll MOD - [2011-08-15 15:40:32 | 000,040,960 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CLI.Component.Client.Shared.Private\2.0.3309.28621__90ba9c70f846762e\CLI.Component.Client.Shared.Private.dll MOD - [2011-08-15 15:40:32 | 000,032,768 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\ATICCCom\2.0.0.0__90ba9c70f846762e\ATICCCom.dll MOD - [2011-08-15 15:40:32 | 000,028,672 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\CCC.Implementation\2.0.3404.40477__90ba9c70f846762e\CCC.Implementation.dll MOD - [2010-05-01 15:02:07 | 011,791,360 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\674dd5f227bbdf2b07296c7e490457be\System.Web.ni.dll MOD - [2010-05-01 14:25:33 | 000,771,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\77d533fa754c9699579b859ee2bfe187\System.Runtime.Remoting.ni.dll MOD - [2010-05-01 13:59:28 | 000,425,984 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms.resources\2.0.0.0_pl_b77a5c561934e089\System.Windows.Forms.resources.dll MOD - [2010-05-01 13:59:24 | 000,311,296 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pl_b77a5c561934e089\mscorlib.resources.dll MOD - [2010-03-21 09:04:44 | 000,025,600 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\8f7cb352abc0356968a95d54e2c50ea6\Accessibility.ni.dll MOD - [2010-03-21 09:04:39 | 000,970,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eecd056989bb157d03094acde93890e2\System.Configuration.ni.dll MOD - [2010-03-21 08:58:43 | 005,449,728 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\b48bb64ff5b083c6afb5ecd439235077\System.Xml.ni.dll MOD - [2010-03-21 08:58:37 | 012,428,800 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\bcf919fbe2c7a112d1f6b7fb84a3358a\System.Windows.Forms.ni.dll MOD - [2010-03-21 08:58:27 | 001,587,200 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f728d300a977f19baf982b0e84df806\System.Drawing.ni.dll MOD - [2010-03-21 08:58:17 | 007,867,392 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ece12e1b68509d8489de783ace3d21b1\System.ni.dll MOD - [2010-03-21 08:58:09 | 011,485,184 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\415f12bc5874cee471c12d31d41812bf\mscorlib.ni.dll MOD - [2009-02-27 18:04:20 | 000,311,296 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\pdfshell.POL MOD - [2008-10-30 13:39:12 | 000,016,384 | R--- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll MOD - [2008-09-10 10:37:08 | 000,053,248 | ---- | M] () -- C:\WINDOWS\system32\lxf3oem.dll MOD - [2008-09-10 10:37:00 | 000,012,288 | ---- | M] () -- C:\WINDOWS\system32\LXF3PMRC.DLL MOD - [2008-09-10 10:36:10 | 000,032,768 | ---- | M] () -- C:\Program Files\Lexmark Fax Solutions\ipcmt.dll MOD - [2008-05-16 16:12:02 | 000,121,856 | ---- | M] () -- C:\WINDOWS\system32\spool\prtprocs\w32x86\lxdrdrpp.dll MOD - [2008-04-14 22:50:38 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2008-04-01 02:59:03 | 000,045,056 | ---- | M] () -- C:\WINDOWS\system32\LXF3PMON.DLL MOD - [2005-12-30 08:15:16 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\acs.exe MOD - [2004-06-21 15:58:22 | 000,860,160 | ---- | M] () -- C:\Program Files\Neostrada TP\ResourceStyle.dll MOD - [2004-02-26 14:43:16 | 000,962,661 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe MOD - [2003-06-06 08:59:18 | 000,081,920 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\languages\english.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- %SystemRoot%\System32\ersvc.dll -- (ERSvc) SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\system32\cisvc.exe -- (CiSvc) SRV - [2013-12-05 20:36:33 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-10-29 15:49:29 | 000,182,696 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2013-03-22 10:13:36 | 001,957,840 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files\Common Files\G DATA\AVKProxy\AVKProxy.exe -- (AVKProxy) SRV - [2013-02-25 13:59:46 | 000,696,808 | ---- | M] (G Data Software AG) [On_Demand | Running] -- C:\Program Files\Common Files\G DATA\GDScan\GDScan.exe -- (GDScan) SRV - [2012-12-17 00:57:00 | 004,580,968 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\system32\GameMon.des -- (npggsvc) SRV - [2012-03-11 21:13:22 | 001,983,232 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\Comodo\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2011-11-23 11:27:04 | 001,052,472 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\Comodo\COMODO GeekBuddy\CLPSLS.exe -- (CLPSLS) SRV - [2008-09-08 07:59:00 | 000,575,488 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2008-05-16 16:39:15 | 000,594,600 | ---- | M] ( ) [Auto | Running] -- C:\WINDOWS\system32\lxdrcoms.exe -- (lxdr_device) SRV - [2008-05-16 16:39:03 | 000,098,984 | ---- | M] () [Auto | Stopped] -- C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\\lxdrserv.exe -- (lxdrCATSCustConnectService) SRV - [2007-03-06 09:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe -- (Capture Device Service) SRV - [2007-03-03 13:48:28 | 000,067,056 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2005-12-30 08:15:16 | 000,036,864 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\acs.exe -- (ACS) SRV - [2002-08-14 14:21:16 | 000,200,704 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\Norton Ghost 2003\GhostStartService.exe -- (GhostStartService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\VcommMgr.sys -- (VcommMgr) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\VComm.sys -- (VComm) DRV - File not found [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\SBREdrv.sys -- (SBRE) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand | Stopped] -- E:\FXDrv32.sys -- (FXDrv32) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\gPotato.eu\Rappelz\GameGuard\dump_wmimmc.sys -- (dump_wmimmc) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Stopped] -- C:\ComboFix\catchme.sys -- (catchme) DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btcusb.sys -- (Btcsrusb) DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btcombus.sys -- (BTCOMBUS) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btcomport.sys -- (BTCOM) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\btnetdrv.sys -- (BT) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\blueletaudio.sys -- (BlueletAudio) DRV - [2014-01-07 23:20:17 | 000,054,016 | ---- | M] () [Kernel | Boot | Unknown] -- C:\WINDOWS\system32\drivers\maxdyhc.sys -- (bjso) DRV - [2014-01-07 19:18:44 | 000,054,016 | ---- | M] () [Kernel | Boot | Unknown] -- C:\WINDOWS\system32\drivers\antgjxek.sys -- (hsccce) DRV - [2014-01-01 18:22:38 | 000,080,104 | ---- | M] (Zemana Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AntiLog32.sys -- (AntiLog32) DRV - [2013-12-26 00:14:40 | 000,050,200 | ---- | M] (Emsisoft GmbH) [File_System | On_Demand | Stopped] -- C:\EEK\Run\cleanhlp32.sys -- (cleanhlp) DRV - [2013-06-10 21:15:32 | 000,070,032 | ---- | M] (G Data Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\GRD.sys -- (GRD) DRV - [2013-06-10 17:57:20 | 000,053,976 | ---- | M] (G Data Software AG) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\GDTdiIcpt.sys -- (GDTdiInterceptor) DRV - [2013-06-10 17:57:18 | 000,096,344 | ---- | M] (G Data Software AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\MiniIcpt.sys -- (GDMnIcpt) DRV - [2013-06-10 17:57:18 | 000,047,832 | ---- | M] (G Data Software AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\HookCentre.sys -- (HookCentre) DRV - [2013-06-10 17:57:18 | 000,045,912 | ---- | M] (G Data Software AG) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\GDBehave.sys -- (GDBehave) DRV - [2013-05-31 15:53:18 | 000,209,016 | ---- | M] (QFX Software Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\keyscrambler.sys -- (KeyScrambler) DRV - [2013-02-18 17:43:26 | 000,033,112 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtpx86.sys -- (avgtp) DRV - [2012-09-10 14:39:31 | 000,477,240 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2012-03-11 21:13:48 | 000,097,760 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\inspect.sys -- (Inspect) DRV - [2012-03-11 21:13:46 | 000,494,968 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2012-03-11 21:13:46 | 000,031,704 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2011-07-01 09:46:40 | 000,026,624 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\tap0901.sys -- (tap0901) DRV - [2010-11-12 08:10:54 | 000,100,456 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA) DRV - [2010-04-06 18:33:10 | 000,025,864 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\btnetBus.sys -- (btnetBUs) DRV - [2009-04-28 07:13:23 | 003,565,568 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-06-05 09:50:12 | 000,086,528 | ---- | M] (PACE Anti-Piracy, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\TPkd.sys -- (TPkd) DRV - [2007-03-01 10:27:26 | 004,484,608 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2006-10-13 09:16:36 | 000,081,664 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2005-12-21 10:16:34 | 000,470,048 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ar5211.sys -- (AR5211) DRV - [2005-04-30 14:50:20 | 000,011,860 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\vbtenum.sys -- (BTHidEnum) DRV - [2005-04-30 14:50:10 | 000,028,271 | ---- | M] (IVT Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\BTHidMgr.sys -- (BTHidMgr) DRV - [2004-08-03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) DRV - [2004-06-15 15:35:24 | 000,119,680 | ---- | M] (Midiman/M-Audio) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\revo.sys -- (REVO) DRV - [2004-06-14 16:58:00 | 000,400,640 | ---- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\revosens.sys -- (REVOSENS) DRV - [2004-04-01 16:30:46 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2003-07-17 16:48:44 | 000,046,167 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\adildr.sys -- (ADILOADER) DRV - [2003-06-24 13:55:56 | 000,127,497 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\adiusbaw.sys -- (adiusbaw) DRV - [2002-08-14 14:11:16 | 000,005,632 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Symantec\Norton Ghost 2003\GhPciScan.sys -- (GhPciScan) DRV - [2002-08-14 14:03:36 | 000,017,005 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\ASPI32.SYS -- (Aspi32) DRV - [2001-10-05 08:40:14 | 000,966,784 | ---- | M] (YAMAHA CORPORATION) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sxgxgwdm.sys -- (SOFTXG) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.myhoome.com/ IE - HKLM\..\SearchScopes,DefaultScope = IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2002}: "URL" = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=876&systemid=2&apn_uid=2313075238934124&apn_dtid=IME002&o=APN10641&apn_ptnrs=AG2&q={searchTerms} IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.myhoome.com/ IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes,DefaultScope = IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes\{12503EC9-CD77-4F88-A9DF-6B4CA6E603FC}: "URL" = http://www.idg.pl?q={searchTerms} IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes\{41DEC4D4-99C4-4CE4-82A5-CC113490CA15}: "URL" = http://www.idg.pl?q={searchTerms} IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\..\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2002}: "URL" = http://dts.search.ask.com/sr?src=ieb&gct=ds&appid=876&systemid=2&apn_uid=2313075238934124&apn_dtid=IME002&o=APN10641&apn_ptnrs=AG2&q={searchTerms} IE - HKU\S-1-5-21-343818398-1500820517-839522115-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultengine: "Google" FF - prefs.js..browser.search.useDBForOrder: "false" FF - prefs.js..browser.startup.homepage: "https://www.google.pl/" FF - prefs.js..extensions.enabledAddons: youtube2mp3%40mondayx.de:1.2.3 FF - prefs.js..extensions.enabledAddons: artur.dubovoy%40gmail.com:4.0.8 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {B13721C7-F507-4982-B2E5-502A71474FED}:2.2.0.102 FF - prefs.js..extensions.enabledItems: {09ec805c-cb2e-4d53-b0d3-a75a428b81c7}:2.5.6.0 FF - prefs.js..extensions.enabledItems: {9AA46F4F-4DC7-4c06-97AF-5035170633FE}:20.1.0.4 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_7_700_202.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1168638.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@nullsoft.com/winampDetector;version=1: C:\Program Files\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.3088: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.11.3006: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@facebook.com/FBPlugin,version=1.0.3: C:\Documents and Settings\User\Dane aplikacji\Facebook\npfbplugin_1_0_3.dll ( ) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2013-12-11 11:38:33 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-12-11 11:38:35 | 000,000,000 | ---D | M] [2010-03-20 19:11:09 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Extensions [2014-01-06 15:31:10 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\q33d5r4n.default\extensions [2013-07-19 18:32:40 | 000,000,000 | ---D | M] (New Tab) -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\q33d5r4n.default\extensions\{5E2BBC9D-7272-2F81-F889-122C992270EF} [2013-12-12 21:18:27 | 000,343,554 | ---- | M] () (No name found) -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\q33d5r4n.default\extensions\artur.dubovoy@gmail.com.xpi [2012-04-17 20:48:26 | 000,011,510 | ---- | M] () (No name found) -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\q33d5r4n.default\extensions\youtube2mp3@mondayx.de.xpi [2013-01-22 15:48:58 | 000,001,088 | ---- | M] () -- C:\Documents and Settings\User\Dane aplikacji\Mozilla\Firefox\Profiles\q33d5r4n.default\searchplugins\freeonlineradioplayerrecorder-customized-web-search.xml [2013-12-11 11:38:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-01-02 14:22:50 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2011-11-03 07:59:20 | 000,917,816 | ---- | M] (BitComet) -- C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}, CHR - homepage: http://www.google.com CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\ppGoogleNaClPluginChrome.dll CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\pdf.dll CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\31.0.1650.63\gcswf32.dll CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll CHR - plugin: registryAccess (Enabled) = C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aaaapkgbncoppllbmlhjinokkjioaelp\7.15.1.22466_0\background/registryAccess.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll CHR - plugin: Microsoft\u00AE Windows Media Player Firefox Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll CHR - plugin: BitCometAgent (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll CHR - plugin: Java Deployment Toolkit 6.0.310.5 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll CHR - plugin: Java(TM) Platform SE 6 U31 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll CHR - plugin: QuickTime Plug-in 7.6.6 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll CHR - plugin: Facebook Plugin (Enabled) = C:\Documents and Settings\User\Dane aplikacji\Facebook\npfbplugin_1_0_3.dll CHR - plugin: AVG SiteSafety plugin (Enabled) = C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\11.0.2\\npsitesafety.dll CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll CHR - plugin: Windows Presentation Foundation (Enabled) = C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll CHR - plugin: Shockwave for Director (Enabled) = C:\WINDOWS\system32\Adobe\Director\np32dsw.dll CHR - Extension: Love Smoke = C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jgibfhhccaknggplelmbaepoikkcnllb\1_0\ CHR - Extension: Google Wallet = C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\ O1 HOSTS File: ([2014-01-07 11:38:47 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O4 - HKLM..\Run: [AntiLogger] C:\Program Files\AntiLogger\AntiLogger.exe (Zemana Ltd.) O4 - HKLM..\Run: [BCSSync] C:\Program Files\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [dtmcfg] C:\WINDOWS\system32\dtmcfg\dtmcfg.exe (Dyzmond Software) O4 - HKLM..\Run: [KeyScrambler] C:\Program Files\KeyScrambler\keyscrambler.exe (QFX Software Corporation) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe () O4 - HKLM..\Run: [RevoTaskbarApp] C:\WINDOWS\system32\RevoTask.exe (M-Audio) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [WOOTASKBARICON] C:\Program Files\Neostrada TP\TaskBarIcon.exe (France Télécom R&D) O4 - HKLM..\Run: [WOOWATCH] C:\Program Files\Neostrada TP\Watch.exe (France Télécom R&D) O4 - HKU\S-1-5-21-343818398-1500820517-839522115-1001..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] regsvr32 /s /n /i:U shell32 File not found O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveTrack = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-343818398-1500820517-839522115-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: &Download All using 4shared Desktop - C:\Program Files\4shared Desktop\down_all.htm File not found O8 - Extra context menu item: &P&obierz &za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O8 - Extra context menu item: Pobierz wszystko za pomocą BitComet - C:\Program Files\BitComet\BitComet.exe (www.BitComet.com) O9 - Extra 'Tools' menuitem : My kikin - {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - Reg Error: Key error. File not found O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.5.4.11.dll (BitComet) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.45.2) O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 10.45.2) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9B89DE19-3E18-4257-A4AC-CCDC2A05C90E}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9B89DE19-3E18-4257-A4AC-CCDC2A05C90E}: NameServer = 8.26.56.26,156.154.70.22 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No CLSID value found. O29 - HKLM SecurityProviders - (UdfadbaHbiht.dll) - File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-03-20 17:58:41 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-01-07 23:15:02 | 000,000,000 | ---D | C] -- C:\FRST [2014-01-07 19:38:39 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\User\Pulpit\OTL.exe [2014-01-07 18:38:38 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\User\Recent [2014-01-07 18:38:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\KeyScrambler [2014-01-07 18:38:23 | 000,209,016 | ---- | C] (QFX Software Corporation) -- C:\WINDOWS\System32\drivers\keyscrambler.sys [2014-01-07 18:28:07 | 000,000,000 | ---D | C] -- C:\Program Files\KeyScrambler [2014-01-07 18:17:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\.android [2014-01-07 18:17:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Mobogenie [2014-01-07 18:17:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Moje dokumenty\Mobogenie [2014-01-07 13:31:19 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2014-01-07 11:17:54 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2014-01-06 15:05:16 | 000,000,000 | ---D | C] -- C:\Program Files\SmartTweak [2014-01-03 15:51:05 | 000,000,000 | ---D | C] -- C:\VritualRoot [2014-01-02 20:29:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CPA_VA [2014-01-02 20:27:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\COMODO [2014-01-02 20:23:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Comodo [2014-01-02 20:22:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Comodo [2014-01-02 20:22:55 | 000,000,000 | ---D | C] -- C:\Program Files\Comodo [2014-01-02 14:22:52 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-01-01 18:55:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2014-01-01 18:22:35 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\{492EBBD4-E9BF-4990-93B7-BA313CF7EB4B} [2014-01-01 18:19:00 | 000,080,104 | ---- | C] (Zemana Ltd.) -- C:\WINDOWS\System32\drivers\AntiLog32.sys [2014-01-01 17:34:20 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group [2014-01-01 16:14:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\CSC [2014-01-01 14:22:36 | 000,000,000 | ---D | C] -- C:\Program Files\AntiLogger [2014-01-01 14:22:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\Zemana [2013-12-27 23:50:38 | 000,000,000 | ---D | C] -- C:\EEK [2013-12-27 23:22:27 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy [2013-12-27 23:22:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy [2013-12-27 23:09:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\GFI Software [2013-12-27 23:04:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Dane aplikacji\Ad-Aware Antivirus [2013-12-27 23:04:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Ad-Aware Antivirus [2013-12-27 23:01:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Lavasoft [2013-12-27 22:47:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Dane aplikacji\QFX Software [2013-12-27 22:47:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\QFX Software [2013-12-27 21:46:32 | 000,026,624 | ---- | C] (The OpenVPN Project) -- C:\WINDOWS\System32\drivers\tap0901.sys [2013-12-27 21:46:27 | 000,000,000 | ---D | C] -- C:\Program Files\SecurityKISS Tunnel [2013-12-27 16:57:53 | 005,160,001 | R--- | C] (Swearware) -- C:\Documents and Settings\User\Pulpit\ComboFix.exe [2013-12-23 13:06:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\genienext [2013-12-20 09:03:22 | 000,000,000 | -HSD | C] -- C:\WINDOWS\System32\dtmcfg [2013-12-20 09:03:22 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\dtmcfg [2013-12-11 11:38:33 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2012-01-27 15:31:55 | 000,203,576 | ---- | C] (Microsoft Corporation) -- C:\Program Files\RICHTX32.OCX [2010-04-21 19:47:59 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\User\Dane aplikacji\pcouffin.sys [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\Documents and Settings\User\*.tmp files -> C:\Documents and Settings\User\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-01-07 23:20:19 | 001,474,832 | ---- | M] () -- C:\WINDOWS\System32\drivers\sfi.dat [2014-01-07 23:20:17 | 000,054,016 | ---- | M] () -- C:\WINDOWS\System32\drivers\maxdyhc.sys [2014-01-07 19:38:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\User\Pulpit\OTL.exe [2014-01-07 19:18:44 | 000,054,016 | ---- | M] () -- C:\WINDOWS\System32\drivers\antgjxek.sys [2014-01-07 18:40:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-01-07 18:06:25 | 000,021,521 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\spis utworow alfabetycznie.odt [2014-01-07 11:38:47 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2014-01-07 08:52:21 | 005,160,001 | R--- | M] (Swearware) -- C:\Documents and Settings\User\Pulpit\ComboFix.exe [2014-01-05 22:41:32 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2014-01-05 10:16:27 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-01-02 14:22:53 | 000,000,730 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2014-01-01 18:22:38 | 000,080,104 | ---- | M] (Zemana Ltd.) -- C:\WINDOWS\System32\drivers\AntiLog32.sys [2013-12-30 22:26:43 | 000,141,312 | ---- | M] () -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2013-12-28 10:44:37 | 000,000,107 | ---- | M] () -- C:\Documents and Settings\User\SecurityKISSTunnel.config [2013-12-26 11:15:18 | 008,639,701 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Desti - Dluga noc (lepszy aranz).mp3 [2013-12-21 13:07:34 | 009,296,482 | ---- | M] () -- C:\Documents and Settings\User\Pulpit\Desti & A Great Big World - Say something.mp3 [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\Documents and Settings\User\*.tmp files -> C:\Documents and Settings\User\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-01-07 23:20:17 | 000,054,016 | ---- | C] () -- C:\WINDOWS\System32\drivers\maxdyhc.sys [2014-01-07 19:18:44 | 000,054,016 | ---- | C] () -- C:\WINDOWS\System32\drivers\antgjxek.sys [2014-01-07 18:06:25 | 000,021,521 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\spis utworow alfabetycznie.odt [2014-01-05 10:45:26 | 004,900,603 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Twin peaks theme (instrumental).mp3 [2014-01-02 20:27:06 | 001,474,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\sfi.dat [2014-01-02 14:22:53 | 000,000,736 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2014-01-02 14:22:53 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2013-12-27 21:46:54 | 000,000,107 | ---- | C] () -- C:\Documents and Settings\User\SecurityKISSTunnel.config [2013-12-26 11:13:26 | 008,639,701 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Desti - Dluga noc (lepszy aranz).mp3 [2013-12-21 12:50:58 | 009,296,482 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Desti & A Great Big World - Say something.mp3 [2013-12-11 09:58:52 | 008,894,076 | ---- | C] () -- C:\Documents and Settings\User\Pulpit\Monika Urlik - Nie wie nikt podklad.mp3 [2012-12-13 15:20:03 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\User\midi [2012-12-06 11:22:23 | 000,444,283 | ---- | C] () -- C:\Program Files\Common Files\WinPcapNmap.exe [2012-08-01 15:53:34 | 000,001,945 | ---- | C] () -- C:\WINDOWS\psmplay.ini [2012-06-03 18:07:16 | 000,000,882 | ---- | C] () -- C:\Documents and Settings\User\.recently-used.xbel [2012-04-05 13:02:58 | 000,000,274 | ---- | C] () -- C:\WINDOWS\LEXSTAT.INI [2012-02-27 19:09:27 | 006,352,896 | ---- | C] () -- C:\WINDOWS\System32\PSP VintageWarmer2.dll [2012-02-27 19:07:53 | 002,874,368 | ---- | C] () -- C:\WINDOWS\System32\PSP EasyVerb.dll [2012-02-27 19:07:00 | 000,856,064 | ---- | C] () -- C:\WINDOWS\System32\PSP MixTreble.dll [2012-02-27 19:07:00 | 000,708,608 | ---- | C] () -- C:\WINDOWS\System32\PSP MixPressor.dll [2012-02-27 19:07:00 | 000,643,072 | ---- | C] () -- C:\WINDOWS\System32\PSP MixSaturator.dll [2012-02-27 19:07:00 | 000,475,136 | ---- | C] () -- C:\WINDOWS\System32\PSP MixBass.dll [2012-02-27 19:05:01 | 001,764,864 | ---- | C] () -- C:\WINDOWS\System32\Lexicon PSP42.dll [2012-02-27 19:04:32 | 008,396,800 | ---- | C] () -- C:\WINDOWS\System32\PSP 608.dll [2012-02-27 18:58:12 | 004,576,256 | ---- | C] () -- C:\WINDOWS\System32\PSP Neon.dll [2012-02-22 13:27:39 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2012-02-22 13:27:39 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2012-02-22 13:27:39 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2012-02-22 13:27:39 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2012-02-22 13:27:39 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2012-02-17 22:09:35 | 000,000,010 | ---- | C] () -- C:\WINDOWS\popcinfo.dat [2012-02-17 14:53:57 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2012-02-17 14:45:59 | 000,644,608 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2012-02-17 14:45:59 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll [2012-02-15 10:30:58 | 000,000,154 | ---- | C] () -- C:\WINDOWS\adidsl.ini [2012-02-15 10:30:58 | 000,000,021 | ---- | C] () -- C:\WINDOWS\Fast800.ini [2012-02-15 10:30:52 | 000,127,456 | ---- | C] () -- C:\WINDOWS\System32\ipdetect.exe [2012-02-15 10:30:51 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\coclassfast.dll [2012-02-15 10:30:50 | 000,046,892 | ---- | C] () -- C:\WINDOWS\System32\adadix16.dll [2012-02-15 10:30:50 | 000,022,395 | ---- | C] () -- C:\WINDOWS\System32\drivers\fpga.bin [2012-02-15 09:45:48 | 000,000,342 | ---- | C] () -- C:\WINDOWS\adiras.ini [2012-02-09 13:39:52 | 000,210,456 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll [2012-02-09 13:39:52 | 000,206,360 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll [2012-02-09 13:39:52 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll [2012-02-09 13:39:52 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll [2012-02-09 13:39:52 | 000,194,072 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll [2012-02-09 13:39:52 | 000,026,136 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll [2012-02-08 16:07:54 | 000,057,038 | ---- | C] () -- C:\Documents and Settings\All Users\Léame de Adobe Audition CS5.5.pdf [2012-02-08 16:07:54 | 000,051,796 | ---- | C] () -- C:\Documents and Settings\All Users\Leggimi di Adobe Audition CS5.5.pdf [2012-02-08 16:07:53 | 000,058,315 | ---- | C] () -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 - Bitte lesen.pdf [2012-02-08 16:07:53 | 000,053,873 | ---- | C] () -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 - Lisez-moi.pdf [2012-02-08 16:07:53 | 000,047,238 | ---- | C] () -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 Read Me.pdf [2012-02-08 14:12:32 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2012-02-08 14:08:23 | 000,905,290 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll [2012-02-06 01:54:59 | 000,000,064 | ---- | C] () -- C:\WINDOWS\msocreg32.dat [2012-02-03 15:46:43 | 000,602,112 | ---- | C] () -- C:\WINDOWS\System32\dfxg115.dll [2012-02-02 01:29:23 | 000,348,208 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2012-01-30 23:15:34 | 000,000,088 | ---- | C] () -- C:\WINDOWS\BsMobileModel.ini [2012-01-30 22:02:27 | 000,011,860 | ---- | C] () -- C:\WINDOWS\System32\drivers\vbtenum.sys [2012-01-27 12:44:50 | 004,030,464 | ---- | C] () -- C:\WINDOWS\System32\PSP Xenon.dll [2012-01-27 07:20:35 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-01-26 13:33:36 | 000,458,752 | ---- | C] () -- C:\WINDOWS\System32\PSP StereoController.dll [2012-01-26 13:33:36 | 000,450,560 | ---- | C] () -- C:\WINDOWS\System32\PSP StereoAnalyser.dll [2012-01-26 13:33:36 | 000,434,176 | ---- | C] () -- C:\WINDOWS\System32\PSP PseudoStereo.dll [2012-01-26 13:33:36 | 000,368,640 | ---- | C] () -- C:\WINDOWS\System32\PSP StereoEnhancer.dll [2012-01-26 08:41:28 | 001,102,901 | ---- | C] () -- C:\WINDOWS\System32\sig.bin [2012-01-25 15:51:41 | 000,253,464 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2012-01-25 15:51:39 | 000,253,464 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2012-01-25 15:51:39 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2012-01-25 15:50:55 | 002,293,138 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2012-01-25 13:18:21 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\adinst32.dll [2010-05-30 11:31:57 | 000,002,596 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Config.nt.bak [2010-05-30 11:31:57 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Autoexec.nt.bak [2010-05-30 11:31:57 | 000,000,742 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\hosts.bak [2010-04-21 19:47:59 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\User\Dane aplikacji\pcouffin.cat [2010-04-21 19:47:59 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\User\Dane aplikacji\pcouffin.inf [2010-03-20 19:50:00 | 000,141,312 | ---- | C] () -- C:\Documents and Settings\User\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2010-05-01 13:55:34 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 22:50:48 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2008-04-14 22:50:32 | 000,472,064 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = %systemroot%\system32\wbem\wbemess.dll -- [2008-04-14 22:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2012-01-27 17:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Artweaver [2012-01-27 17:12:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Artweaver Free [2014-01-02 20:27:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2014-01-06 15:30:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Big Fish Games [2012-04-23 13:46:04 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2014-01-03 09:48:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CPA_VA [2012-09-10 15:08:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2013-07-19 18:32:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Datamngr [2013-12-20 09:16:09 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\dtmcfg [2013-06-10 17:57:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\G DATA [2013-12-27 23:09:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GFI Software [2012-01-30 23:54:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2012-02-09 13:39:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\InterVideo [2013-12-12 13:05:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2012-02-06 12:02:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\iZotope [2013-06-21 20:06:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Licenses [2012-02-15 19:27:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MediaMonkey [2010-05-16 13:17:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Metacafe [2010-03-24 12:03:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2012-02-27 18:30:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Overloud [2012-02-09 18:45:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-04-29 20:13:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PicturesToExe [2013-12-27 22:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\QFX Software [2012-03-12 16:50:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\RDRM [2012-01-26 12:15:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe [2012-02-27 18:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SIR [2012-02-01 19:07:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Sony [2012-11-01 22:41:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software [2012-02-09 13:38:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems [2012-02-17 21:51:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Zylom [2014-01-01 18:22:37 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{492EBBD4-E9BF-4990-93B7-BA313CF7EB4B} [2012-11-01 22:40:13 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} [2013-12-27 23:04:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Ad-Aware Antivirus [2012-08-08 11:26:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Lexmark Productivity Studio [2012-11-01 22:44:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\TuneUp Software [2013-12-27 23:08:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Ad-Aware Antivirus [2013-01-22 15:47:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\All Free YouTube to MP3 Converter [2012-02-09 18:04:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\AnvSoft [2012-02-01 19:03:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\AquaSoft [2012-01-27 17:12:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Artweaver Free [2012-01-25 20:46:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Audacity [2010-04-21 20:55:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\avidemux [2013-12-24 07:20:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\BitComet [2010-04-27 19:00:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Crystal Player [2012-10-02 16:53:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\DAEMON Tools Lite [2012-02-27 13:45:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Easeware [2012-06-21 22:13:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\eJamming [2014-01-02 22:15:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Facebook [2012-12-13 15:36:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\GHISLER [2012-06-03 18:07:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\gtk-2.0 [2014-01-07 18:41:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\ipla [2012-01-26 13:52:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\iZotope [2010-05-20 18:05:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Lexmark Productivity Studio [2012-11-16 17:11:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\LibreOffice [2012-02-15 19:29:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\MediaMonkey [2012-07-06 10:40:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\MusicLab [2012-12-21 13:15:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Nowe Gadu-Gadu [2010-03-24 11:53:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\OpenFM [2010-03-24 13:43:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\OpenOffice.org [2012-12-06 11:43:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Orbit [2012-02-09 18:45:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\PC Suite [2010-03-23 18:03:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\PhotoFiltre Studio X [2013-06-18 12:35:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\PhotoScape [2012-02-01 19:57:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Publish Providers [2013-12-27 22:47:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\QFX Software [2012-02-08 14:17:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\SIR [2012-02-13 23:04:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Sony [2010-05-01 12:56:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Sony Setup [2013-05-18 09:48:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Spotify [2013-12-28 19:00:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\TS3Client [2012-11-01 22:40:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\TuneUp Software [2010-05-17 00:16:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Ulead Systems [2012-12-06 11:23:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\VDownloader [2010-04-23 06:59:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Vso [2012-01-27 13:00:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\User\Dane aplikacji\Waves Audio [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Files - Unicode (All) ==========[/color] [2012-02-08 16:07:54 | 000,208,562 | ---- | M] ()(C:\Documents and Settings\All Users\Adobe Audition CS5.5 ????.pdf) -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 읽어보기.pdf [2012-02-08 16:07:54 | 000,208,562 | ---- | C] ()(C:\Documents and Settings\All Users\Adobe Audition CS5.5 ????.pdf) -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 읽어보기.pdf [2012-02-08 16:07:54 | 000,175,164 | ---- | M] ()(C:\Documents and Settings\All Users\Adobe Audition CS5.5 ???????.pdf) -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 お読みください.pdf [2012-02-08 16:07:54 | 000,175,164 | ---- | C] ()(C:\Documents and Settings\All Users\Adobe Audition CS5.5 ???????.pdf) -- C:\Documents and Settings\All Users\Adobe Audition CS5.5 お読みください.pdf < End of report >