OTL logfile created on: 2014-01-27 16:57:38 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\danek08\Moje dokumenty\Pobieranie Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 2,45 Gb Available Physical Memory | 75,43% Memory free 5,09 Gb Paging File | 4,30 Gb Available in Paging File | 84,56% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 29,29 Gb Total Space | 7,93 Gb Free Space | 27,07% Space Free | Partition Type: NTFS Drive D: | 146,48 Gb Total Space | 106,90 Gb Free Space | 72,98% Space Free | Partition Type: NTFS Drive E: | 122,31 Gb Total Space | 88,42 Gb Free Space | 72,29% Space Free | Partition Type: NTFS Drive H: | 465,64 Gb Total Space | 128,38 Gb Free Space | 27,57% Space Free | Partition Type: FAT32 Computer Name: DOM-60DA8B8F79B | User Name: danek08 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - File not found -- PRC - [2014-01-27 16:50:39 | 001,223,168 | ---- | M] (Farbar) -- C:\Documents and Settings\danek08\Pulpit\FRST.exe PRC - [2014-01-22 21:07:44 | 006,118,400 | ---- | M] (Spotify Ltd) -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\spotify.exe PRC - [2014-01-22 21:07:41 | 001,171,968 | ---- | M] (Spotify Ltd) -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\SpotifyWebHelper.exe PRC - [2014-01-22 21:07:40 | 000,603,648 | ---- | M] () -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\SpotifyHelper.exe PRC - [2014-01-05 14:49:53 | 000,182,696 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2013-12-20 22:14:57 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2013-07-02 09:16:32 | 000,507,264 | ---- | M] (Oracle Corporation) -- C:\Program Files\Common Files\Java\Java Update\jucheck.exe PRC - [2013-03-19 11:02:54 | 000,098,304 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe PRC - [2013-03-19 11:02:32 | 003,784,704 | ---- | M] (Firebird Project) -- C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe PRC - [2009-12-22 16:23:00 | 002,647,040 | ---- | M] () -- C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe PRC - [2009-10-30 12:57:08 | 000,369,200 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-02-20 11:08:46 | 000,472,320 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2008-02-20 11:06:58 | 001,443,072 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2008-02-09 15:17:44 | 000,401,408 | ---- | M] (EFD Software) -- D:\Program Files\HD Tune\HDTune.exe PRC - [2007-12-10 15:55:26 | 000,323,584 | ---- | M] (PixArt Imaging Incorporation) -- C:\WINDOWS\PixArt\PAC7302\Monitor.exe PRC - [2006-07-07 17:15:12 | 000,348,160 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFTVFM\WFWIZ.exe PRC - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-01-22 21:07:42 | 036,967,424 | ---- | M] () -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\libcef.dll MOD - [2014-01-22 21:07:41 | 000,887,808 | ---- | M] () -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\libGLESv2.dll MOD - [2014-01-22 21:07:41 | 000,109,568 | ---- | M] () -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\libEGL.dll MOD - [2014-01-22 21:07:40 | 000,603,648 | ---- | M] () -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\SpotifyHelper.exe MOD - [2013-12-20 22:14:54 | 003,559,024 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2013-11-29 11:13:18 | 012,509,184 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\System.Web.ni.dll MOD - [2013-11-29 11:12:50 | 001,011,712 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\System.Configuration.ni.dll MOD - [2013-11-29 11:09:53 | 000,027,136 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\Accessibility.ni.dll MOD - [2013-11-28 19:57:30 | 005,771,264 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\System.Xml.ni.dll MOD - [2013-11-28 19:57:26 | 013,193,216 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\System.Windows.Forms.ni.dll MOD - [2013-11-28 19:57:17 | 001,667,072 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\System.Drawing.ni.dll MOD - [2013-11-28 19:56:16 | 008,265,728 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll MOD - [2013-11-28 19:56:09 | 011,722,752 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll MOD - [2013-11-28 19:28:11 | 000,299,008 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll MOD - [2013-08-30 03:03:10 | 000,270,336 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll MOD - [2013-06-18 15:49:28 | 000,016,384 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll MOD - [2010-03-16 12:22:12 | 000,014,848 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\AxInterop.WBOCXLib.dll MOD - [2009-12-22 16:23:00 | 002,647,040 | ---- | M] () -- C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe MOD - [2009-12-18 17:23:58 | 000,194,560 | ---- | M] () -- C:\Program Files\Anti-Vibrate Oscar Editor\Win32Share.dll MOD - [2009-06-09 07:27:58 | 000,093,184 | ---- | M] () -- C:\Program Files\Anti-Vibrate Oscar Editor\Resource.dll MOD - [2008-04-14 22:50:38 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - [2014-01-24 19:37:16 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2014-01-05 14:49:53 | 000,182,696 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2013-12-20 22:14:55 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-10-23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-03-19 11:02:54 | 000,098,304 | ---- | M] (Firebird Project) [Auto | Running] -- C:\Program Files\Firebird\Firebird_2_5\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance) SRV - [2013-03-19 11:02:32 | 003,784,704 | ---- | M] (Firebird Project) [On_Demand | Running] -- C:\Program Files\Firebird\Firebird_2_5\bin\fbserver.exe -- (FirebirdServerDefaultInstance) SRV - [2013-03-01 02:48:58 | 000,118,520 | ---- | M] (Riverbed Technology, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) SRV - [2008-02-20 11:14:52 | 000,019,200 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2008-02-20 11:08:46 | 000,472,320 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2007-11-07 07:58:18 | 003,004,416 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- D:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x86\msvsmon.exe -- (msvsmon90) SRV - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) SRV - [2001-10-26 20:30:00 | 000,003,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\System32\regedt32.exe -- (.EsetTrialReset) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (agq6pjpj) DRV - [2013-12-14 18:41:44 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2013-08-30 09:41:40 | 006,852,096 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2013-03-01 02:48:42 | 000,036,600 | ---- | M] (Riverbed Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF) DRV - [2010-10-12 16:39:10 | 000,461,952 | ---- | M] (PixArt Imaging Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PAC7302.SYS -- (PAC7302) DRV - [2008-02-20 11:11:16 | 000,033,800 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2008-02-20 11:02:22 | 000,029,704 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\easdrv.sys -- (easdrv) DRV - [2008-02-20 11:01:30 | 000,039,944 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2006-08-23 07:54:22 | 000,042,752 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\jraid.sys -- (JRAID) DRV - [2006-06-18 23:51:32 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2006-05-23 08:56:00 | 000,245,248 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2006-03-17 11:18:58 | 000,392,960 | R--- | M] (Sensaura) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (SenFiltService) DRV - [2006-02-07 12:52:58 | 000,006,912 | R--- | M] (JMicron ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\JGOGO.sys -- (JGOGO) DRV - [2005-06-28 09:24:00 | 000,163,584 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88vid.sys -- (CX23880) DRV - [2005-06-28 09:22:00 | 000,030,976 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88tune.sys -- (CXTUNE) DRV - [2005-06-28 09:21:00 | 000,009,728 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cxavxbar.sys -- (CXAVXBAR) DRV - [2005-01-06 16:55:38 | 000,009,446 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\Program Files\WinFast\WFTVFM\WFIOCTL.sys -- (WFIOCTL) DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2004-08-03 23:31:34 | 000,020,992 | ---- | M] (Realtek Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RTL8139.sys -- (rtl8139) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1482476501-412668190-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1482476501-412668190-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledAddons: %7B5ebdca98-43b3-45bb-87e0-716029fb42ab%7D:9.5.1 FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_9_900_117.dll () FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2013-11-07 17:23:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\danek08\Dane aplikacji\Mozilla\Extensions [2013-11-07 18:07:36 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\danek08\Dane aplikacji\Mozilla\Firefox\Profiles\ofan4kd5.default\extensions [2013-11-07 18:06:39 | 000,000,000 | ---D | M] ("Foxtab Speed Dial") -- C:\Documents and Settings\danek08\Dane aplikacji\Mozilla\Firefox\Profiles\ofan4kd5.default\extensions\{5ebdca98-43b3-45bb-87e0-716029fb42ab} [2013-12-20 22:14:37 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2013-12-20 22:14:57 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [color=#E56717]========== Chrome ==========[/color] CHR - default_search_provider: Google (Enabled) CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding} CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter}, CHR - Extension: Dokumenty Google = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\ CHR - Extension: Dysk Google = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\ CHR - Extension: YouTube = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\ CHR - Extension: Szukaj w Google = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\ CHR - Extension: Google Wallet = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\ CHR - Extension: Gmail = C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\ O1 HOSTS File: ([2001-10-26 18:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [JMB36X Configure] C:\WINDOWS\System32\JMRaidTool.exe (JMicron Technology Corp.) O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files\Mobogenie\DaemonProcess.exe File not found O4 - HKLM..\Run: [PAC7302_Monitor] C:\WINDOWS\PixArt\PAC7302\Monitor.exe (PixArt Imaging Incorporation) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFTVFM\WFWIZ.exe (Leadtek Research Inc.) O4 - HKU\S-1-5-21-1482476501-412668190-839522115-1003..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1482476501-412668190-839522115-1003..\Run: [NextLive] C:\Documents and Settings\danek08\Dane aplikacji\newnext.me\nengine.dll (NewNextDotMe) O4 - HKU\S-1-5-21-1482476501-412668190-839522115-1003..\Run: [OscarEditor] C:\Program Files\Anti-Vibrate Oscar Editor\OscarEditor.exe () O4 - HKU\S-1-5-21-1482476501-412668190-839522115-1003..\Run: [Spotify] C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Spotify.exe (Spotify Ltd) O4 - HKU\S-1-5-21-1482476501-412668190-839522115-1003..\Run: [Spotify Web Helper] C:\Documents and Settings\danek08\Dane aplikacji\Spotify\Data\SpotifyWebHelper.exe (Spotify Ltd) O4 - HKLM..\RunOnceEx: [Flag] Reg Error: Invalid data type. File not found O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1482476501-412668190-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.144.9 83.175.144.14 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FFCD297C-D1D4-4667-99B8-44EF76B65DAE}: DhcpNameServer = 83.175.144.9 83.175.144.14 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2013-11-07 16:42:31 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2013-12-19 17:18:22 | 000,000,000 | R--D | M] - H:\Autorun.inf -- [ FAT32 ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-01-27 16:50:30 | 001,223,168 | ---- | C] (Farbar) -- C:\Documents and Settings\danek08\Pulpit\FRST.exe [2014-01-27 16:40:40 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\danek08\Pulpit\OTL.exe [2014-01-27 16:27:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HD Tune [2014-01-24 19:46:50 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour [2014-01-24 19:37:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared [2014-01-22 09:07:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Spotify [2014-01-22 09:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify [2014-01-21 21:52:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Pulpit\piesek 19 styczeń 2014 [2014-01-18 21:12:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\.android [2014-01-18 21:12:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\cache [2014-01-18 21:12:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\newnext.me [2014-01-18 21:12:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\genienext [2014-01-18 21:12:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Mobogenie [2014-01-18 21:12:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\Mobogenie [2014-01-18 21:01:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\.thumbnails [2014-01-18 21:00:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\gegl-0.0 [2014-01-18 21:00:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\.gimp-2.6 [2014-01-18 21:00:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\GIMP [2014-01-18 20:59:10 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0 [2014-01-13 20:21:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\MPC-HC [2014-01-13 20:20:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\K-Lite Codec Pack [2014-01-13 20:20:30 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack [2014-01-13 16:20:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\.idlerc [2014-01-13 16:07:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\Any Video Converter [2014-01-13 16:07:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\AnvSoft [2014-01-13 16:01:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2014-01-13 16:01:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\Nowy folder [2014-01-13 16:01:08 | 000,000,000 | R--D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\Moje wideo [2014-01-13 15:59:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Pulpit\Apex przyciski 3.3 [2014-01-08 17:39:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\ophcrack [2014-01-08 16:43:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\WinPcap [2014-01-08 16:43:10 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap [2014-01-08 16:42:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Menu Start\Programy\Cain [2014-01-08 16:42:42 | 000,000,000 | ---D | C] -- C:\Program Files\Cain [2014-01-08 16:09:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Pulpit\pliki sam [2014-01-07 16:43:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Pulpit\sprawko sluzba [2014-01-06 17:09:53 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusb.dll [2014-01-06 17:09:52 | 000,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ptpusd.dll [2014-01-06 17:09:52 | 000,015,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbscan.sys [2014-01-05 19:10:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\Sun [2014-01-05 14:50:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Sun [2014-01-05 14:50:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2014-01-05 14:50:10 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-01-05 14:50:10 | 000,145,408 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2014-01-05 14:50:05 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-01-05 14:50:05 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-01-05 14:50:05 | 000,094,632 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-01-05 14:50:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Java [2014-01-05 14:49:45 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2014-01-05 14:49:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\Sun [2014-01-01 19:08:54 | 000,461,952 | ---- | C] (PixArt Imaging Inc.) -- C:\WINDOWS\System32\drivers\PAC7302.SYS [2014-01-01 19:08:54 | 000,048,128 | ---- | C] (PixArt Imaging Incorporation) -- C:\WINDOWS\System32\Remove.exe [2014-01-01 19:08:54 | 000,006,656 | ---- | C] (PixArt Imaging Inc.) -- C:\WINDOWS\System32\CoInst_071029.dll [2014-01-01 19:08:51 | 000,129,024 | ---- | C] (PixArt Imaging Incorporation) -- C:\WINDOWS\System32\SP7302.AX [2014-01-01 19:08:51 | 000,000,000 | ---D | C] -- C:\Program Files\PixArt [2014-01-01 19:08:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Media-Tech Camera [2014-01-01 19:08:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\PixArt [2014-01-01 19:08:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PAC7302 [2014-01-01 18:57:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Dane aplikacji\Skype [2014-01-01 18:57:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype [2014-01-01 18:56:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2014-01-01 18:56:41 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2014-01-01 18:56:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype [2014-01-01 18:51:34 | 000,060,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbaudio.sys [2014-01-01 12:48:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\danek08\Moje dokumenty\Need for Speed World [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-01-27 16:50:39 | 001,223,168 | ---- | M] (Farbar) -- C:\Documents and Settings\danek08\Pulpit\FRST.exe [2014-01-27 16:41:16 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\danek08\Pulpit\OTL.exe [2014-01-27 16:27:14 | 000,000,513 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\HD Tune.lnk [2014-01-27 16:22:30 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2014-01-27 16:22:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-01-27 12:07:00 | 000,000,426 | ---- | M] () -- C:\WINDOWS\tasks\At1.job [2014-01-27 12:06:00 | 000,001,038 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2014-01-26 20:30:00 | 000,029,350 | ---- | M] () -- C:\Documents and Settings\danek08\.recently-used.xbel [2014-01-25 11:40:50 | 001,452,352 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-01-24 14:43:21 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-01-22 21:08:22 | 000,001,852 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\Spotify.lnk [2014-01-18 21:00:09 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2014-01-15 16:57:55 | 000,000,697 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\TeamSpeak 3 Client.lnk [2014-01-13 16:13:17 | 000,004,608 | ---- | M] () -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-01-13 16:12:07 | 028,037,241 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\DSC_0144_WMV V9.wmv [2014-01-10 18:51:32 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2014-01-08 17:39:17 | 000,000,576 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ophcrack.lnk [2014-01-08 16:42:52 | 000,001,466 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\Cain.lnk [2014-01-06 13:59:16 | 002,776,973 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\20140106_135916.jpg [2014-01-06 13:59:10 | 001,923,588 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\20140106_135910.jpg [2014-01-06 13:42:25 | 002,136,569 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134223.jpg [2014-01-06 13:42:09 | 002,308,534 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134209.jpg [2014-01-06 13:41:59 | 001,938,640 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134158.jpg [2014-01-05 14:49:55 | 000,094,632 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-01-05 14:49:51 | 000,264,616 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-01-05 14:49:51 | 000,175,016 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-01-05 14:49:51 | 000,174,504 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-01-05 14:49:51 | 000,145,408 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2013-12-29 20:57:39 | 000,098,910 | ---- | M] () -- C:\Documents and Settings\danek08\Pulpit\alfa.JPG [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-01-27 16:27:14 | 000,000,513 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\HD Tune.lnk [2014-01-26 20:30:00 | 000,029,350 | ---- | C] () -- C:\Documents and Settings\danek08\.recently-used.xbel [2014-01-24 19:50:49 | 000,000,708 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Photoshop CS3.lnk [2014-01-24 19:46:04 | 000,000,762 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Stock Photos CS3.lnk [2014-01-24 19:44:04 | 000,001,100 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe ExtendScript Toolkit 2.lnk [2014-01-24 19:43:40 | 000,000,745 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Device Central CS3.lnk [2014-01-24 19:39:59 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Bridge CS3.lnk [2014-01-22 09:07:00 | 000,001,858 | ---- | C] () -- C:\Documents and Settings\danek08\Menu Start\Programy\Spotify.lnk [2014-01-22 09:07:00 | 000,001,852 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\Spotify.lnk [2014-01-18 21:00:09 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2014-01-13 20:20:43 | 000,218,200 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2014-01-13 16:12:09 | 000,004,608 | ---- | C] () -- C:\Documents and Settings\danek08\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-01-13 16:11:08 | 028,037,241 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\DSC_0144_WMV V9.wmv [2014-01-08 17:39:17 | 000,000,576 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\ophcrack.lnk [2014-01-08 16:42:52 | 000,001,466 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\Cain.lnk [2014-01-06 13:59:16 | 002,776,973 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\20140106_135916.jpg [2014-01-06 13:59:10 | 001,923,588 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\20140106_135910.jpg [2014-01-06 13:42:23 | 002,136,569 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134223.jpg [2014-01-06 13:42:09 | 002,308,534 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134209.jpg [2014-01-06 13:41:59 | 001,938,640 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\20140106_134158.jpg [2014-01-05 19:06:06 | 000,000,061 | ---- | C] () -- C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG [2014-01-01 19:08:54 | 000,000,687 | ---- | C] () -- C:\WINDOWS\System32\Remover.ini [2014-01-01 19:08:51 | 000,000,566 | ---- | C] () -- C:\WINDOWS\System32\SP7302.INI [2014-01-01 18:57:00 | 000,002,267 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2013-12-29 20:57:39 | 000,098,910 | ---- | C] () -- C:\Documents and Settings\danek08\Pulpit\alfa.JPG [2013-11-28 19:50:54 | 000,000,175 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2013-11-28 19:29:47 | 000,172,480 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2013-11-24 08:07:38 | 000,436,736 | ---- | C] () -- C:\WINDOWS\System32\promedin.dll [2013-11-07 17:53:30 | 000,000,143 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LaunchURL.bat [2013-11-07 17:34:50 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2013-11-07 17:32:07 | 001,452,352 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2013-11-07 16:57:12 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2013-11-07 16:57:05 | 000,887,724 | R--- | C] () -- C:\WINDOWS\System32\ativva6x.dat [2013-11-07 16:57:05 | 000,710,269 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2013-11-07 16:57:05 | 000,000,003 | R--- | C] () -- C:\WINDOWS\System32\ativva5x.dat [2013-11-07 16:48:11 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys [2013-11-07 16:48:06 | 000,023,701 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2013-11-07 16:47:54 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2013-11-07 16:44:18 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2013-11-07 16:39:55 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2013-03-01 02:47:36 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [color=#E56717]========== ZeroAccess Check ==========[/color] [2013-11-07 16:55:02 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 22:50:48 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2008-04-14 22:50:32 | 000,472,064 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 22:50:58 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2013-11-07 18:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BonanzaDealsLive [2013-12-14 18:41:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2013-11-07 17:08:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET [2013-11-24 08:05:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\firebird [2013-11-28 19:39:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PreEmptive Solutions [2013-11-07 18:00:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems [2014-01-13 16:07:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\AnvSoft [2013-12-14 20:30:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\DAEMON Tools Lite [2013-11-07 18:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\FoxTab [2014-01-13 20:21:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\MPC-HC [2013-12-21 19:21:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\Need for Speed World [2014-01-27 16:22:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\newnext.me [2014-01-27 16:23:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\Spotify [2014-01-16 19:22:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\TS3Client [2013-11-07 19:53:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\danek08\Dane aplikacji\Wargaming.net [color=#E56717]========== Purity Check ==========[/color] < End of report >