OTL logfile created on: 2014-01-21 19:13:53 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\xxx\Pulpit\diagnostyka Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1,49 Gb Total Physical Memory | 0,60 Gb Available Physical Memory | 40,45% Memory free 3,34 Gb Paging File | 2,14 Gb Available in Paging File | 64,13% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 74,53 Gb Total Space | 12,40 Gb Free Space | 16,64% Space Free | Partition Type: NTFS Computer Name: WESTO | User Name: xxx | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-01-21 18:23:08 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\xxx\Pulpit\diagnostyka\OTL.exe PRC - [2013-12-19 01:08:11 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2013-12-19 01:07:25 | 000,431,672 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2013-12-19 01:07:22 | 000,684,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2013-12-19 01:07:09 | 000,661,048 | ---- | M] (Avira Operations GmbH & Co. KG) -- c:\Program Files\Avira\AntiVir Desktop\avcenter.exe PRC - [2013-11-12 11:48:41 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2013-08-29 00:21:02 | 000,276,376 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2013-04-23 08:48:17 | 003,574,624 | ---- | M] (TeamViewer GmbH) -- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe PRC - [2013-01-03 15:05:55 | 000,170,408 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2012-08-01 03:48:54 | 002,345,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgtray.exe PRC - [2011-09-09 02:10:56 | 001,082,208 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgnsx.exe PRC - [2011-07-08 09:28:06 | 000,142,464 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe PRC - [2011-02-08 04:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG10\avgwdsvc.exe PRC - [2011-01-17 18:50:30 | 011,322,880 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.exe PRC - [2011-01-17 18:50:30 | 011,314,688 | ---- | M] (OpenOffice.org) -- C:\Program Files\OpenOffice.org 3\program\soffice.bin PRC - [2010-11-04 11:58:52 | 000,139,264 | ---- | M] () -- C:\Program Files\Hytera\HyteraUSBDriver\device_detector.exe PRC - [2010-03-04 22:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe PRC - [2009-11-03 14:48:54 | 000,874,768 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe PRC - [2009-11-03 14:45:52 | 000,348,160 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe PRC - [2009-11-03 14:45:48 | 001,372,160 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe PRC - [2009-11-03 14:42:00 | 000,909,312 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe PRC - [2009-11-03 14:35:14 | 001,202,448 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe PRC - [2009-11-03 14:33:48 | 000,473,360 | ---- | M] (Intel(R) Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe PRC - [2009-03-05 15:07:20 | 002,260,480 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe PRC - [2008-10-15 07:23:28 | 000,106,496 | R--- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson MD400 Wireless Modem\wwanSvc.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-07-02 12:29:22 | 000,159,744 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\Apoint.exe PRC - [2007-06-06 15:44:44 | 000,049,152 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApntEx.exe PRC - [2007-05-22 13:18:56 | 000,050,736 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\ApMsgFwd.exe PRC - [2006-09-08 14:10:22 | 000,040,960 | ---- | M] (Alps Electric Co., Ltd.) -- C:\Program Files\DellTPad\hidfind.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2013-08-29 00:21:00 | 003,551,640 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2012-09-19 18:17:40 | 000,397,088 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll MOD - [2011-07-08 09:28:06 | 001,048,496 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\wxmsw28u_core_vc_custom.dll MOD - [2011-07-08 09:28:06 | 000,861,104 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\UIToolkit.dll MOD - [2011-07-08 09:28:06 | 000,726,960 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\wxbase28u_vc_custom.dll MOD - [2011-07-08 09:28:06 | 000,608,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Toolkit.dll MOD - [2011-07-08 09:28:06 | 000,393,648 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\WebClient.dll MOD - [2011-07-08 09:28:06 | 000,360,880 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Device.dll MOD - [2011-07-08 09:28:06 | 000,247,728 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\DB.dll MOD - [2011-07-08 09:28:06 | 000,147,888 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\pcre3.dll MOD - [2011-07-08 09:28:06 | 000,142,464 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe MOD - [2011-07-08 09:28:06 | 000,132,016 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Discovery.dll MOD - [2011-07-08 09:28:06 | 000,099,760 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\System.dll MOD - [2011-07-08 09:28:06 | 000,096,688 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ComCore.dll MOD - [2011-07-08 09:28:06 | 000,061,872 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\DriveDetector.dll MOD - [2011-07-08 09:28:06 | 000,049,584 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\Preferences.dll MOD - [2011-07-08 09:28:06 | 000,033,280 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryGeneric.plugin MOD - [2011-07-08 09:28:06 | 000,028,160 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryMobileBroadband.plugin MOD - [2011-07-08 09:28:06 | 000,018,944 | ---- | M] () -- C:\Program Files\Nokia\Nokia Internet Modem\ressources\plugins\DiscoveryNdis.plugin MOD - [2011-06-26 22:40:38 | 000,985,088 | ---- | M] () -- C:\Program Files\OpenOffice.org 3\program\libxml2.dll MOD - [2010-11-04 11:58:52 | 000,139,264 | ---- | M] () -- C:\Program Files\Hytera\HyteraUSBDriver\device_detector.exe MOD - [2010-03-04 22:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe MOD - [2009-11-03 14:35:46 | 000,200,704 | ---- | M] () -- C:\Program Files\Intel\WiFi\bin\iWMSProv.dll MOD - [2008-10-15 07:23:28 | 000,106,496 | R--- | M] () -- C:\Program Files\Sony Ericsson\Sony Ericsson MD400 Wireless Modem\wwanSvc.exe [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2013-12-19 01:08:11 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2013-12-11 10:08:26 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc) SRV - [2013-11-12 11:48:41 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2013-08-29 00:21:01 | 000,117,656 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-04-23 08:48:17 | 003,574,624 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe -- (TeamViewer8) SRV - [2013-01-03 15:05:55 | 000,170,408 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2011-02-08 04:33:42 | 000,269,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG10\avgwdsvc.exe -- (avgwd) SRV - [2010-03-04 22:38:00 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccess) SRV - [2009-11-03 14:48:54 | 000,874,768 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng) SRV - [2009-11-03 14:45:52 | 000,348,160 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\WLKEEPER.exe -- (WLANKEEPER) SRV - [2009-11-03 14:42:00 | 000,909,312 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor) SRV - [2009-11-03 14:33:48 | 000,473,360 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc) SRV - [2008-10-15 07:23:28 | 000,106,496 | R--- | M] () [Auto | Running] -- C:\Program Files\Sony Ericsson\Sony Ericsson MD400 Wireless Modem\wwanSvc.exe -- (wwanSvc) SRV - [2006-11-13 12:23:40 | 000,142,128 | ---- | M] (VMware, Inc.) [Disabled | Stopped] -- C:\WINDOWS\system32\vmnat.exe -- (VMware NAT Service) SRV - [2006-11-13 12:23:26 | 000,113,456 | ---- | M] (VMware, Inc.) [Disabled | Stopped] -- C:\WINDOWS\system32\vmnetdhcp.exe -- (VMnetDHCP) SRV - [2006-11-13 12:23:16 | 000,224,048 | ---- | M] (VMware, Inc.) [Disabled | Stopped] -- C:\Program Files\VMware\VMware Player\vmware-authd.exe -- (VMAuthdService) SRV - [2006-11-13 11:39:22 | 000,269,104 | ---- | M] (VMware, Inc.) [Disabled | Stopped] -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe -- (vmount2) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\UIUSYS.SYS -- (UIUSys) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (ayh070r9) DRV - [2013-12-19 01:08:19 | 000,135,648 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2013-12-19 01:08:19 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2013-11-12 11:49:09 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2013-07-14 06:16:22 | 000,114,296 | ---- | M] (Ray Hinchliffe) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SIVX32.sys -- (SIVDriver) DRV - [2012-08-27 14:50:24 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2011-12-15 01:41:38 | 000,173,880 | ---- | M] (QFX Software Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\keyscrambler.sys -- (KeyScrambler) DRV - [2011-06-22 14:10:02 | 000,067,968 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nokia_usb_modem_cdc_acm.sys -- (nokia_usb_modem_cdc_acm) DRV - [2011-06-22 14:10:02 | 000,047,488 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nokia_usb_modem_ecm_enum_filter.sys -- (nokia_usb_modem_ecm_enum_filter) DRV - [2011-06-22 14:10:02 | 000,047,488 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nokia_usb_modem_ecm_enum.sys -- (nokia_usb_modem_ecm_enum) DRV - [2011-06-22 14:10:02 | 000,032,896 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nokia_usb_modem_cdc_ecm.sys -- (nokia_usb_modem_cdc_ecm) DRV - [2011-06-22 14:10:02 | 000,009,984 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nokia_usb_modem_cpo.sys -- (nokia_usb_modem_cpo) DRV - [2011-04-04 23:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix) DRV - [2011-02-22 07:13:02 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\AVGIDSEH.sys -- (AVGIDSEH) DRV - [2010-12-21 06:55:02 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2010-12-21 06:55:02 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bserd.sys -- (ss_bserd) DRV - [2010-12-21 06:55:02 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) DRV - [2010-12-21 06:55:02 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) DRV - [2010-11-10 13:47:01 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2010-11-04 11:56:50 | 000,035,328 | ---- | M] (Hytera) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HyteraUSBDriver.sys -- (HyteraUSBDriver) DRV - [2010-11-04 11:53:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usb8023y.sys -- (USB_RNDISY) DRV - [2010-09-28 20:03:22 | 000,032,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HyteraComposite.sys -- (HyteraComposite) DRV - [2009-12-02 12:21:00 | 000,020,616 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\eufs.sys -- (EUFS) DRV - [2009-12-02 12:20:58 | 000,014,216 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\eudskacs.sys -- (EUDSKACS) DRV - [2009-12-02 12:20:56 | 000,026,248 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\eubakup.sys -- (EUBAKUP) DRV - [2009-12-02 12:20:54 | 000,122,504 | ---- | M] (CHENGDU YIWO Tech Development Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\EuDisk.sys -- (EuDisk) DRV - [2009-11-12 13:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2009-10-26 04:47:30 | 004,221,952 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) DRV - [2009-10-22 14:11:14 | 000,057,800 | R--- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ftdibus.sys -- (FTDIBUS) DRV - [2009-10-22 14:09:34 | 000,072,520 | R--- | M] (FTDI Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ftser2k.sys -- (FTSER2K) DRV - [2008-08-20 09:53:26 | 000,431,616 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553mdm2.sys -- (d553mdm2) DRV - [2008-08-20 09:53:26 | 000,402,944 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553unic.sys -- (d553unic) DRV - [2008-08-20 09:53:26 | 000,387,200 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553mdm.sys -- (d553mdm) DRV - [2008-08-20 09:53:26 | 000,378,368 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553card.sys -- (d553card) DRV - [2008-08-20 09:53:26 | 000,300,672 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553bus.sys -- (d553bus) DRV - [2008-08-20 09:53:26 | 000,025,984 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553nd5.sys -- (d553nd5) DRV - [2008-08-20 09:53:26 | 000,014,976 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553mdfl2.sys -- (d553mdfl2) DRV - [2008-08-20 09:53:26 | 000,014,976 | R--- | M] (MCCI Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553mdfl.sys -- (d553mdfl) DRV - [2008-08-19 13:22:00 | 000,025,640 | R--- | M] (Sony Ericsson) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553scard.sys -- (Sony_EricssonWWSC) DRV - [2008-08-13 15:23:56 | 000,011,904 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans) DRV - [2008-08-09 09:15:04 | 000,076,328 | R--- | M] (Dell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\d553gps.sys -- (d553gps) DRV - [2007-12-23 16:18:48 | 000,068,696 | ---- | M] (O2Micro) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\oz776.sys -- (guardian2) DRV - [2007-06-25 17:53:10 | 000,155,136 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Apfiltr.sys -- (ApfiltrService) DRV - [2007-05-10 09:24:34 | 001,222,840 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\sthda.sys -- (STHDA) DRV - [2006-11-13 12:23:54 | 000,031,024 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hcmon.sys -- (hcmon) DRV - [2006-11-13 12:23:54 | 000,022,576 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\vmnetuserif.sys -- (VMnetuserif) DRV - [2006-11-13 12:23:54 | 000,016,560 | ---- | M] (VMware, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vmnetadapter.sys -- (VMnetAdapter) DRV - [2006-11-13 12:23:52 | 000,102,960 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\vmx86.sys -- (vmx86) DRV - [2006-11-13 11:39:24 | 000,018,480 | ---- | M] (VMware, Inc.) [Kernel | Auto | Running] -- C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vstor2.sys -- (vstor2) DRV - [2006-01-07 04:32:04 | 000,049,792 | R--- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\oxser.sys -- (oxser) DRV - [2006-01-07 04:32:04 | 000,015,872 | R--- | M] (OEM) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\oxmf.sys -- (oxmf) DRV - [2006-01-07 04:32:04 | 000,004,992 | R--- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\oxmfuf.sys -- (Oxmfuf) DRV - [2005-10-26 09:01:02 | 000,142,720 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k) DRV - [2004-12-06 14:54:36 | 000,086,528 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\acfva.sys -- (acfva) DRV - [2003-07-16 14:27:40 | 000,043,264 | ---- | M] (Prolific Technology Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ser2pl.sys -- (Ser2pl) DRV - [2000-04-27 13:09:12 | 000,024,476 | ---- | M] (Motorola) [Kernel | Auto | Running] -- C:\WINDOWS\System32\drivers\COMMSBEP.sys -- (CommSBEP) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Default User\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2039583544-2244875162-939584356-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-2039583544-2244875162-939584356-1004\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKU\S-1-5-21-2039583544-2244875162-939584356-1004\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src=IE-SearchBox&Form=IE8SRC IE - HKU\S-1-5-21-2039583544-2244875162-939584356-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledAddons: %7BDDC359D1-844A-42a7-9AA1-88A850A938A8%7D:2.0.16 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:23.0.1 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: keyscrambler@qfx.software.corporation:2.7.1.0 FF - prefs.js..extensions.enabledItems: piclens@cooliris.com:1.12.2.44079 FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:9.0.0.872 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.10.2: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.10.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.6: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\xxx\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG10\Firefox4\ [2013-04-11 21:52:29 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 23.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-08-29 00:20:42 | 000,000,000 | ---D | M] [2010-05-27 15:10:10 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\xxx\Dane aplikacji\Mozilla\Extensions [2013-04-05 11:03:31 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\xxx\Dane aplikacji\Mozilla\Firefox\Profiles\addtuwbl.default\extensions [2010-09-18 15:33:13 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\xxx\Dane aplikacji\Mozilla\Firefox\Profiles\addtuwbl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2012-08-16 22:04:07 | 000,000,000 | ---D | M] (KeyScrambler) -- C:\Documents and Settings\xxx\Dane aplikacji\Mozilla\Firefox\Profiles\addtuwbl.default\extensions\keyscrambler@qfx.software.corporation [2013-04-05 11:03:31 | 000,714,654 | ---- | M] () (No name found) -- C:\Documents and Settings\xxx\Dane aplikacji\Mozilla\Firefox\Profiles\addtuwbl.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2013-08-29 00:20:35 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2013-08-29 00:20:36 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2013-08-29 00:21:05 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2013-08-29 00:21:05 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2011-09-28 20:42:50 | 000,437,613 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 15053 more lines... O2 - BHO: (KeyScramblerBHO Class) - {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG10\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (no name) - AutorunsDisabled - No CLSID value found. O4 - HKLM..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe (Alps Electric Co., Ltd.) O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG10\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] C:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation) O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel(R) Corporation) O4 - HKLM..\Run: [NokiaInternetModem_AppStart.exe] C:\Program Files\Nokia\Nokia Internet Modem\NokiaInternetModem_AppStart.exe () O4 - HKU\S-1-5-21-2039583544-2244875162-939584356-1004..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe File not found O4 - HKU\S-1-5-21-2039583544-2244875162-939584356-1004..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\HyteraDeviceDetector.lnk = C:\Program Files\Hytera\HyteraUSBDriver\device_detector.exe () O4 - Startup: C:\Documents and Settings\xxx\Menu Start\Programy\Autostart\OpenOffice.org 3.3.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 4 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\Default User\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-2039583544-2244875162-939584356-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : &KeyScrambler Options - {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - C:\Program Files\KeyScrambler\KeyScramblerIE.dll (QFX Software Corporation) O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset.com/special/eos/OnlineScanner.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Reg Error: Value error.) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA8CB1E1-9C92-45E3-82A9-68505FBC4946}: DhcpNameServer = 192.168.0.1 O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG10\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:AutorunsDisabled () - O24 - Desktop WallPaper: C:\Documents and Settings\All Users\Dokumenty\Moje obrazy\Przykładowe obrazy\Przykładowe obrazy\1185151flip.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\All Users\Dokumenty\Moje obrazy\Przykładowe obrazy\Przykładowe obrazy\1185151flip.bmp O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 0 O32 - AutoRun File - [2010-05-15 21:04:26 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2013-01-23 23:13:17 | 000,130,748 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ] O33 - MountPoints2\{47b45234-63fc-11df-939e-00188bdab3f4}\Shell - "" = AutoRun O33 - MountPoints2\{47b45234-63fc-11df-939e-00188bdab3f4}\Shell\AutoRun\command - "" = D:\setup.exe O33 - MountPoints2\{87ea0dd5-5981-11e0-814d-00164157a97e}\Shell - "" = AutoRun O33 - MountPoints2\{87ea0dd5-5981-11e0-814d-00164157a97e}\Shell\AutoRun\command - "" = E:\SD_Install.exe O33 - MountPoints2\{b8076e68-63e3-11df-9398-fcecccd0ab47}\Shell\AutoRun\command - "" = D:\winPenPack.exe O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-01-21 18:58:10 | 000,000,000 | ---D | C] -- C:\FRST [2014-01-21 18:36:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\xxx\Pulpit\diagnostyka [2014-01-21 17:30:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\xxx\Dane aplikacji\andro [2014-01-21 17:29:18 | 000,000,000 | ---D | C] -- C:\Program Files\XS-Software [2014-01-21 16:53:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2014-01-17 10:01:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\xxx\Moje dokumenty\Moje wideo [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-01-21 17:00:11 | 000,529,854 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2014-01-21 17:00:11 | 000,469,700 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2014-01-21 17:00:11 | 000,092,942 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2014-01-21 17:00:11 | 000,075,374 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2014-01-21 16:08:00 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2014-01-21 08:32:50 | 000,012,598 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-01-21 08:28:58 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-01-21 08:28:56 | 1600,249,856 | -HS- | M] () -- C:\hiberfil.sys [2014-01-21 08:16:59 | 000,206,848 | ---- | M] () -- C:\Documents and Settings\xxx\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-01-20 17:10:27 | 000,051,262 | ---- | M] () -- C:\Documents and Settings\xxx\Moje dokumenty\Koperta C5 UNINet krzywe Pantone.cdr [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-01-20 17:10:27 | 000,051,262 | ---- | C] () -- C:\Documents and Settings\xxx\Moje dokumenty\Koperta C5 UNINet krzywe Pantone.cdr [2013-08-20 14:01:28 | 000,000,097 | ---- | C] () -- C:\WINDOWS\wpdvrnet.ini [2013-05-31 20:21:31 | 000,004,096 | ---- | C] () -- C:\Documents and Settings\xxx\Del1.MB [2013-02-15 14:56:21 | 000,000,104 | ---- | C] () -- C:\WINDOWS\CPS.INI [2013-01-29 10:56:07 | 000,127,758 | ---- | C] () -- C:\WINDOWS\hpoins14.dat [2013-01-29 10:56:07 | 000,001,996 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat [2012-12-05 11:09:44 | 000,000,917 | ---- | C] () -- C:\WINDOWS\reConfig.ini [2012-11-01 22:49:02 | 000,000,000 | ---- | C] () -- C:\WINDOWS\EAREMOVE.INI [2012-05-09 12:19:17 | 000,000,043 | ---- | C] () -- C:\WINDOWS\gswin32.ini [2012-02-18 19:01:45 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\Base64_Library.dll [2010-06-27 14:41:22 | 000,000,448 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol [2010-06-23 18:05:38 | 000,072,080 | ---- | C] () -- C:\Documents and Settings\xxx\g2mdlhlpx.exe [2010-05-27 22:09:14 | 000,206,848 | ---- | C] () -- C:\Documents and Settings\xxx\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [color=#E56717]========== ZeroAccess Check ==========[/color] [2010-07-21 23:35:15 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2010-09-09 15:23:32 | 001,510,400 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 18:20:57 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2013-03-14 11:18:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Avery [2011-05-05 12:22:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2011-05-05 11:53:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\avg9ls [2011-07-01 18:46:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited [2012-04-28 15:32:59 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2011-03-16 12:13:17 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2010-11-10 13:46:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2011-05-05 12:24:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2011-10-21 21:27:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\QFX Software [2013-03-16 10:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Samsung [2012-10-21 22:29:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\QFX Software [2010-06-03 13:36:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Softland [2014-01-21 17:30:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\andro [2014-01-17 13:40:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Any Video Converter [2011-05-05 12:24:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\AVG10 [2010-07-22 23:52:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Canneverbe Limited [2010-11-10 13:53:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\DAEMON Tools Lite [2012-02-29 22:19:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\e-pity [2010-09-23 06:20:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\FileZilla [2012-05-22 22:00:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\FOG Downloader [2013-10-30 16:58:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\GHISLER [2010-09-23 13:19:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\IrfanView [2010-05-27 09:08:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\OpenOffice.org [2011-10-21 21:27:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\QFX Software [2013-03-16 10:14:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Samsung [2010-06-03 13:36:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Softland [2012-10-26 16:19:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\TeamViewer [2013-02-05 20:31:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Temp [2012-02-04 20:40:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xxx\Dane aplikacji\Unity [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Files - Unicode (All) ==========[/color] [2013-11-11 11:42:56 | 103,682,728 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\싲쫵哔; [2013-11-11 11:42:56 | 103,682,728 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\싲쫵哔; [2013-11-07 16:32:31 | 102,946,670 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\촗臸哔; [2013-11-07 16:32:31 | 102,946,670 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\촗臸哔; [2013-11-06 09:15:37 | 105,166,163 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\釥哔; [2013-11-06 09:15:37 | 105,166,163 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\釥哔; [2013-10-30 16:36:56 | 104,185,711 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䟣哔; [2013-10-30 16:36:56 | 104,185,711 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䟣哔; [2013-10-28 07:47:41 | 103,622,390 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\謜꓉哔; [2013-10-28 07:47:41 | 103,622,390 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\謜꓉哔; [2013-10-25 11:35:21 | 102,943,771 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䶱獒哔; [2013-10-25 11:35:21 | 102,943,771 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\䶱獒哔; [2013-10-14 11:38:31 | 100,856,651 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㌡閶哔; [2013-10-14 11:38:31 | 100,856,651 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\㌡閶哔; [2013-10-11 13:00:40 | 100,470,597 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﷅ䰇哔; [2013-10-11 13:00:40 | 100,470,597 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\ﷅ䰇哔; [2013-10-01 17:38:05 | 098,609,570 | ---- | M] ()(C:\WINDOWS\System32\ˇ??;) -- C:\WINDOWS\System32\▼馓哔; [2013-10-01 17:38:05 | 098,609,570 | ---- | C] ()(C:\WINDOWS\System32\ˇ??;) -- C:\WINDOWS\System32\▼馓哔; [2013-09-29 12:01:30 | 098,462,899 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\쵉缥哔; [2013-09-29 12:01:30 | 098,462,899 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\쵉缥哔; [2013-09-17 21:28:42 | 098,062,984 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⥜㸕哔; [2013-09-17 21:28:42 | 098,062,984 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\⥜㸕哔; [2013-09-17 01:09:25 | 097,872,530 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\鱡ᐣ哔; [2013-09-17 01:09:25 | 097,872,530 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\鱡ᐣ哔; [2013-09-13 09:09:25 | 097,443,711 | ---- | M] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\쀗㚛哌; [2013-09-13 09:09:25 | 097,443,711 | ---- | C] ()(C:\WINDOWS\System32\???;) -- C:\WINDOWS\System32\쀗㚛哌; < End of report >