Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by Marek (administrator) on MAREK-KOMPUTER on 17-02-2014 21:14:30 Running from C:\Users\Marek\Desktop\FRST Windows 7 Ultimate Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe () C:\Program Files (x86)\Dtella@MS\dtella.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe (Microsoft Corporation) C:\Windows\system32\prevhost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDWare] - C:\Program Files\Elantech\ETDCtrl.exe [635784 2010-01-13] (ELAN Microelectronic Corp.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3764024 2013-12-23] (AVAST Software) HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKU\S-1-5-21-263107825-2801771057-2943010423-1001\...\Run: [Overwolf] - C:\Program Files (x86)\Overwolf\Overwolf.exe [37632 2014-01-30] (Overwolf LTD) Startup: C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Google () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_search_url = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Default_page_url = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search bar = http://search.msn.com/spbasic.htm SearchScopes: HKCU - ${searchCLSID} URL = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO-x32: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\b9pgpktd.default FF Homepage: www.google.pl FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Adblock Plus - C:\Users\Marek\AppData\Roaming\Mozilla\Firefox\Profiles\b9pgpktd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-23] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-23] ==================== Services (Whitelisted) ================= R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-23] (AVAST Software) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [98560 2014-01-30] (Overwolf LTD) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () ==================== Drivers (Whitelisted) ==================== R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2013-12-23] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-23] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-23] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1034464 2013-12-23] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [422216 2013-12-23] (AVAST Software) S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [79672 2013-12-23] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-23] () R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [52320 2011-08-27] (http://libusb-win32.sourceforge.net) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ATK64AMD.sys [13680 2007-08-09] () S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800192 2009-08-20] () S4 sptd; \SystemRoot\System32\Drivers\sptd.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-17 21:10 - 2014-02-17 21:10 - 00000830 _____ () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Temp File Cleaner.lnk 2014-02-17 21:10 - 2014-02-17 21:10 - 00000800 _____ () C:\Users\Marek\Desktop\Temp File Cleaner.lnk 2014-02-17 21:10 - 2014-02-17 21:10 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\addpcs 2014-02-17 21:10 - 2014-02-17 21:10 - 00000000 ____D () C:\Program Files\Temp File Cleaner 2014-02-17 21:07 - 2014-02-17 21:07 - 00000036 _____ () C:\Users\Marek\AppData\Roaming\mbam.context.scan 2014-02-17 21:06 - 2014-02-17 21:07 - 00001750 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (4).txt 2014-02-17 21:01 - 2014-02-17 21:01 - 00000000 ____D () C:\ProgramData\Overwolf 2014-02-15 18:07 - 2014-02-17 21:14 - 00000000 ____D () C:\Users\Marek\Desktop\FRST 2014-02-15 18:03 - 2014-02-15 18:04 - 00000375 _____ () C:\Users\Marek\Downloads\Search.txt 2014-02-15 17:57 - 2014-02-15 17:57 - 00448512 _____ (OldTimer Tools) C:\Users\Marek\Downloads\TFC.exe 2014-02-15 17:56 - 2014-02-15 17:56 - 02068796 _____ () C:\Users\Marek\Downloads\TempFileCleaner_4.3.0_Setup.exe 2014-02-15 17:53 - 2014-02-15 17:53 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (3).txt 2014-02-15 17:25 - 2014-02-17 21:11 - 00000000 ____D () C:\Windows\Minidump 2014-02-15 16:02 - 2014-02-15 16:02 - 00015108 _____ () C:\Users\Marek\Desktop\Gmer.txt 2014-02-15 16:02 - 2014-02-15 16:02 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (2).txt 2014-02-15 14:53 - 2014-02-15 14:53 - 00380416 _____ () C:\Users\Marek\Downloads\p7jxi5hq.exe 2014-02-15 14:34 - 2014-02-15 14:50 - 00099784 _____ () C:\Users\Marek\Downloads\Extras.Txt 2014-02-15 14:31 - 2014-02-15 14:47 - 00096870 _____ () C:\Users\Marek\Downloads\OTL.Txt 2014-02-15 14:18 - 2014-02-15 14:18 - 00602112 _____ (OldTimer Tools) C:\Users\Marek\Downloads\OTL.exe 2014-02-15 14:13 - 2014-02-15 16:03 - 00000000 ____D () C:\Users\Marek\Desktop\LOGI 2014-02-15 14:12 - 2014-02-15 14:13 - 00026402 _____ () C:\Users\Marek\Downloads\Addition.txt 2014-02-15 14:11 - 2014-02-15 14:13 - 00046333 _____ () C:\Users\Marek\Downloads\FRST.txt 2014-02-15 14:10 - 2014-02-17 21:14 - 00000000 ____D () C:\FRST 2014-02-15 14:00 - 2014-02-15 14:00 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Marek\Downloads\SPTDinst-v186-x64.exe 2014-02-15 13:57 - 2010-04-06 09:46 - 01065968 _____ (Duplex Secure Ltd.) C:\Users\Marek\Desktop\SPTDinst-v162-x64.exe 2014-02-15 13:55 - 2014-02-15 13:55 - 00000689 _____ () C:\Users\Marek\Desktop\ponowe przywrocenie.txt 2014-02-15 13:54 - 2014-02-15 13:54 - 00921061 _____ () C:\Users\Marek\Downloads\SPTDinst-v162-x64.7z 2014-02-15 13:44 - 2014-02-15 13:45 - 00000000 _____ () C:\UsbFix.txt 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\UsbFix 2014-02-15 13:20 - 2014-02-15 13:20 - 00003466 _____ () C:\Users\Marek\Desktop\UsbFix.txt listening.txt 2014-02-15 13:07 - 2014-02-15 13:07 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy.txt 2014-02-15 12:47 - 2014-02-15 12:47 - 01166132 _____ () C:\Users\Marek\Downloads\adwcleaner.exe 2014-02-15 12:35 - 2014-02-15 12:35 - 00006876 _____ () C:\Users\Marek\Desktop\UsbFix.txt 2014-02-15 12:34 - 2014-02-15 12:35 - 176200356 _____ () C:\UsbFix_Upload_Me_MAREK-KOMPUTER.zip 2014-02-15 12:27 - 2011-06-16 14:12 - 01229735 _____ (TeamXscript.org) C:\Users\Marek\Desktop\UsbFix.exe 2014-02-15 12:12 - 2014-02-15 12:12 - 00000000 ____D () C:\Users\Marek\AppData\Local\GHISLER 2014-02-15 10:27 - 2014-02-15 10:28 - 00000000 ____D () C:\totalcmd 2014-02-15 10:27 - 2014-02-15 10:27 - 00000646 _____ () C:\Users\Marek\Desktop\Total Commander 64 bit.lnk 2014-02-15 10:27 - 2014-02-15 10:27 - 00000632 _____ () C:\Users\Marek\Desktop\Total Commander.lnk 2014-02-15 10:27 - 2014-02-15 10:27 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2014-02-15 10:27 - 2014-02-15 10:27 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\GHISLER 2014-02-15 10:26 - 2014-02-15 10:27 - 05896408 _____ (Ghisler Software GmbH) C:\Users\Marek\Downloads\tcm801x32_64(dobreprogramy.pl).exe 2014-02-15 10:25 - 2014-02-15 10:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-15 10:13 - 2014-02-15 10:13 - 00823346 _____ () C:\Users\Marek\Downloads\USBVaccine.zip 2014-02-14 12:10 - 2014-02-14 12:10 - 01050624 _____ (Unity Technologies ApS) C:\Users\Marek\Downloads\UnityWebPlayer.exe 2014-02-14 00:05 - 2014-02-14 00:05 - 00001069 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Malwarebytes 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-14 00:05 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-02-14 00:03 - 2014-02-14 00:04 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Marek\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-13 00:15 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 00:15 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 00:14 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 00:14 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 00:14 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 00:14 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 00:14 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 00:14 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 00:14 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 00:14 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 00:14 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 00:14 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 00:14 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 00:14 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 00:14 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 00:14 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 00:14 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 00:14 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 00:14 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 00:14 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 00:14 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 00:14 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 00:14 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 00:14 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 00:14 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 00:14 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 00:14 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 00:14 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 00:14 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 00:14 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 00:14 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 00:14 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 00:14 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 00:14 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 00:14 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 00:14 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 00:14 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 00:14 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 00:14 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 00:14 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 00:14 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-12 22:25 - 2014-02-12 22:28 - 07433867 _____ () C:\Users\Marek\Downloads\QuickyBaby 8.11.zip 2014-02-12 22:03 - 2014-02-12 22:03 - 00000571 _____ () C:\Users\Marek\Desktop\World of Tanks 0.8.11 ProMod.lnk 2014-02-12 22:01 - 2014-02-12 22:01 - 00001931 _____ () C:\Users\Public\Desktop\Overwolf.lnk 2014-02-12 22:01 - 2014-02-12 22:01 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2014-02-12 22:01 - 2014-02-12 22:01 - 00000000 ____D () C:\Program Files (x86)\Overwolf 2014-02-12 21:57 - 2014-02-12 21:58 - 00155136 _____ () C:\Windows\SysWOW64\unrar.dll 2014-02-12 21:57 - 2014-02-12 21:58 - 00034308 _____ () C:\Windows\SysWOW64\bassmod.dll 2014-02-12 21:57 - 2014-02-12 21:57 - 02259968 _____ (OldSkool) C:\Users\Marek\Downloads\ProMod.exe 2014-02-12 21:57 - 2014-02-12 21:57 - 01931296 _____ (Codejock Software) C:\Users\Marek\Downloads\Codejock.Controls.v15.3.1.ocx 2014-02-12 21:57 - 2014-02-12 21:57 - 00136008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-02-12 21:50 - 2014-02-17 21:01 - 00000000 ____D () C:\Users\Marek\AppData\Local\Overwolf 2014-02-12 21:49 - 2014-02-12 21:49 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-02-12 21:44 - 2014-02-12 21:48 - 32520760 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak3-Client-win64-3.0.13.1.exe 2014-02-12 21:38 - 2014-02-12 21:42 - 30095736 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak3-Client-win32-3.0.13.1.exe 2014-02-12 20:31 - 2014-02-15 00:47 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\TS3Client 2014-02-12 20:30 - 2014-02-12 21:49 - 00000927 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-02-12 20:30 - 2014-02-12 21:42 - 00000000 ____D () C:\Program Files (x86)\TeamSpeak 3 Client 2014-02-12 20:27 - 2014-02-12 20:30 - 13502504 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak 3.exe 2014-02-12 20:27 - 2014-02-12 20:27 - 00001226 _____ () C:\Users\Marek\Desktop\Kontynuuj instalację TeamSpeak.lnk 2014-02-12 20:10 - 2014-02-12 20:11 - 07433112 _____ () C:\Users\Marek\Downloads\xvm-5.1.0.zip 2014-02-12 11:30 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-12 11:30 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-12 11:30 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-12 11:30 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-12 11:29 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-12 11:29 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-12 11:29 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-12 11:29 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-09 17:51 - 2014-02-09 17:56 - 29141928 _____ (Oracle Corporation) C:\Users\Marek\Downloads\jre-7u51-windows-i586.exe 2014-02-09 17:05 - 2014-02-09 17:50 - 287423479 _____ (TeamExtreme ) C:\Users\Marek\Downloads\Minecraft 1.7.4.exe 2014-02-09 16:59 - 2014-02-09 17:07 - 42722245 _____ () C:\Users\Marek\Downloads\Minecraft Full Version.rar 2014-02-07 23:30 - 2014-02-07 23:30 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\TeamViewer 2014-02-07 23:27 - 2014-02-07 23:27 - 05855856 _____ (TeamViewer GmbH) C:\Users\Marek\Downloads\TeamViewer_Setup_ar-ckq.exe 2014-02-07 01:11 - 2014-02-07 01:11 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(3).xls 2014-02-06 23:12 - 2014-02-06 23:12 - 00020480 _____ () C:\Users\Marek\Downloads\OS-egzamin-I termin.xls 2014-02-06 22:33 - 2014-02-06 22:33 - 00597972 _____ () C:\Users\Marek\Downloads\mikrozrozwizaniami.zip 2014-02-06 17:22 - 2014-02-06 17:22 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(2).xls 2014-02-05 15:48 - 2014-02-05 15:48 - 00807499 _____ () C:\Users\Marek\Downloads\otworowa.rar 2014-02-05 00:20 - 2014-02-05 00:20 - 00000000 ____D () C:\ProgramData\Oracle 2014-02-05 00:19 - 2014-02-05 00:19 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-02-05 00:19 - 2014-02-05 00:19 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-02-05 00:19 - 2014-02-05 00:19 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-02-05 00:19 - 2014-02-05 00:19 - 00000000 ____D () C:\ProgramData\Sun 2014-02-05 00:19 - 2014-02-05 00:18 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-02-05 00:18 - 2014-02-05 00:18 - 00000000 ____D () C:\Program Files (x86)\Java 2014-02-05 00:17 - 2014-02-05 00:17 - 00921000 _____ (Oracle Corporation) C:\Users\Marek\Downloads\jxpiinstall.exe 2014-02-03 22:19 - 2014-02-03 22:19 - 00183404 _____ () C:\Users\Marek\Desktop\prom.svg 2014-02-03 22:16 - 2014-02-03 22:16 - 00183404 _____ () C:\Users\Marek\Desktop\EM_Spectrum_Properties_pl.svg 2014-02-02 13:58 - 2014-02-02 13:58 - 00011374 _____ () C:\Users\Marek\Downloads\Zagrożenia2014IIIOS.xlsx 2014-02-01 11:52 - 2014-02-01 11:52 - 00001007 _____ () C:\Users\Marek\Desktop\Rzepa — skrót.lnk 2014-01-31 21:10 - 2010-03-18 17:15 - 00770384 _____ (Microsoft Corporation) C:\Users\Marek\AppData\Roaming\msvcr100.dll 2014-01-31 21:10 - 2010-03-18 17:15 - 00421200 _____ (Microsoft Corporation) C:\Users\Marek\AppData\Roaming\msvcp100.dll 2014-01-29 21:54 - 2014-01-17 22:38 - 00000000 ____D () C:\Users\Marek\Desktop\złoża- ostatni kolos 2014-01-29 21:26 - 2014-01-29 21:27 - 16753417 _____ () C:\Users\Marek\Downloads\złoża- ostatni kolos.rar 2014-01-29 20:27 - 2014-01-29 20:27 - 05441732 _____ () C:\Users\Marek\Downloads\zoawiczenia.zip 2014-01-29 20:27 - 2014-01-29 20:27 - 05441732 _____ () C:\Users\Marek\Downloads\zoawiczenia(1).zip 2014-01-29 15:53 - 2014-01-29 15:54 - 10447475 _____ () C:\Users\Marek\Downloads\Złoża.rar 2014-01-29 15:49 - 2014-01-29 15:49 - 00127327 _____ () C:\Users\Marek\Downloads\zloza(1).rar 2014-01-29 15:45 - 2014-01-29 15:45 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-01-26 14:29 - 2014-01-26 14:39 - 70127057 _____ () C:\Users\Marek\Downloads\gleby-podrecznik_cz1z3.rar 2014-01-25 19:53 - 2014-01-25 19:53 - 02542143 _____ () C:\Users\Marek\Downloads\Systematyka Gleb (Zielona Książka).rar 2014-01-23 19:36 - 2014-01-29 17:08 - 00000000 ____D () C:\Users\Marek\Desktop\Gleby 2014-01-23 18:38 - 2014-01-23 18:40 - 01200411 _____ () C:\Users\Marek\Downloads\UsbFix.rar 2014-01-23 17:50 - 2014-02-15 10:54 - 00000000 ____D () C:\Windows\erdnt 2014-01-23 17:45 - 2014-02-15 12:49 - 00000000 ____D () C:\AdwCleaner 2014-01-23 17:35 - 2014-01-23 17:35 - 02347384 _____ (ESET) C:\Users\Marek\Downloads\esetsmartinstaller_plk.exe 2014-01-23 16:29 - 2014-01-23 16:29 - 01783837 _____ () C:\Users\Marek\Downloads\wiczeniazmbg.zip 2014-01-22 22:53 - 2014-01-22 22:53 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(1).xls 2014-01-21 13:44 - 2014-01-21 13:47 - 00294912 _____ () C:\Users\Marek\Documents\Baza danych1.accdb ==================== One Month Modified Files and Folders ======= 2014-02-17 21:14 - 2014-02-15 18:07 - 00000000 ____D () C:\Users\Marek\Desktop\FRST 2014-02-17 21:14 - 2014-02-15 14:10 - 00000000 ____D () C:\FRST 2014-02-17 21:11 - 2014-02-15 17:25 - 00000000 ____D () C:\Windows\Minidump 2014-02-17 21:10 - 2014-02-17 21:10 - 00000830 _____ () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Temp File Cleaner.lnk 2014-02-17 21:10 - 2014-02-17 21:10 - 00000800 _____ () C:\Users\Marek\Desktop\Temp File Cleaner.lnk 2014-02-17 21:10 - 2014-02-17 21:10 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\addpcs 2014-02-17 21:10 - 2014-02-17 21:10 - 00000000 ____D () C:\Program Files\Temp File Cleaner 2014-02-17 21:08 - 2013-12-23 15:11 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-17 21:08 - 2009-07-14 05:45 - 00010416 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-17 21:08 - 2009-07-14 05:45 - 00010416 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-17 21:07 - 2014-02-17 21:07 - 00000036 _____ () C:\Users\Marek\AppData\Roaming\mbam.context.scan 2014-02-17 21:07 - 2014-02-17 21:06 - 00001750 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (4).txt 2014-02-17 21:05 - 2013-12-23 15:04 - 02086846 _____ () C:\Windows\WindowsUpdate.log 2014-02-17 21:04 - 2013-12-23 15:14 - 00003990 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{87ECB9C7-0C29-4F28-B4EC-7D3464FF3F6E} 2014-02-17 21:01 - 2014-02-17 21:01 - 00000000 ____D () C:\ProgramData\Overwolf 2014-02-17 21:01 - 2014-02-12 21:50 - 00000000 ____D () C:\Users\Marek\AppData\Local\Overwolf 2014-02-17 21:00 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-15 18:08 - 2013-12-23 15:08 - 00000000 ___RD () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-02-15 18:04 - 2014-02-15 18:03 - 00000375 _____ () C:\Users\Marek\Downloads\Search.txt 2014-02-15 17:57 - 2014-02-15 17:57 - 00448512 _____ (OldTimer Tools) C:\Users\Marek\Downloads\TFC.exe 2014-02-15 17:56 - 2014-02-15 17:56 - 02068796 _____ () C:\Users\Marek\Downloads\TempFileCleaner_4.3.0_Setup.exe 2014-02-15 17:53 - 2014-02-15 17:53 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (3).txt 2014-02-15 17:13 - 2013-12-23 19:33 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\GG 2014-02-15 16:03 - 2014-02-15 14:13 - 00000000 ____D () C:\Users\Marek\Desktop\LOGI 2014-02-15 16:02 - 2014-02-15 16:02 - 00015108 _____ () C:\Users\Marek\Desktop\Gmer.txt 2014-02-15 16:02 - 2014-02-15 16:02 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy (2).txt 2014-02-15 15:23 - 2013-12-25 19:52 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\AIMP3 2014-02-15 14:53 - 2014-02-15 14:53 - 00380416 _____ () C:\Users\Marek\Downloads\p7jxi5hq.exe 2014-02-15 14:50 - 2014-02-15 14:34 - 00099784 _____ () C:\Users\Marek\Downloads\Extras.Txt 2014-02-15 14:47 - 2014-02-15 14:31 - 00096870 _____ () C:\Users\Marek\Downloads\OTL.Txt 2014-02-15 14:18 - 2014-02-15 14:18 - 00602112 _____ (OldTimer Tools) C:\Users\Marek\Downloads\OTL.exe 2014-02-15 14:13 - 2014-02-15 14:12 - 00026402 _____ () C:\Users\Marek\Downloads\Addition.txt 2014-02-15 14:13 - 2014-02-15 14:11 - 00046333 _____ () C:\Users\Marek\Downloads\FRST.txt 2014-02-15 14:00 - 2014-02-15 14:00 - 00623224 _____ (Duplex Secure Ltd.) C:\Users\Marek\Downloads\SPTDinst-v186-x64.exe 2014-02-15 13:55 - 2014-02-15 13:55 - 00000689 _____ () C:\Users\Marek\Desktop\ponowe przywrocenie.txt 2014-02-15 13:54 - 2014-02-15 13:54 - 00921061 _____ () C:\Users\Marek\Downloads\SPTDinst-v162-x64.7z 2014-02-15 13:45 - 2014-02-15 13:44 - 00000000 _____ () C:\UsbFix.txt 2014-02-15 13:44 - 2014-02-15 13:44 - 00000000 ____D () C:\UsbFix 2014-02-15 13:20 - 2014-02-15 13:20 - 00003466 _____ () C:\Users\Marek\Desktop\UsbFix.txt listening.txt 2014-02-15 13:07 - 2014-02-15 13:07 - 00000000 _____ () C:\Users\Marek\Desktop\Nowy dokument tekstowy.txt 2014-02-15 12:55 - 2009-07-14 18:55 - 00739932 _____ () C:\Windows\system32\perfh015.dat 2014-02-15 12:55 - 2009-07-14 18:55 - 00155474 _____ () C:\Windows\system32\perfc015.dat 2014-02-15 12:55 - 2009-07-14 06:13 - 01668226 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-15 12:49 - 2014-01-23 17:45 - 00000000 ____D () C:\AdwCleaner 2014-02-15 12:47 - 2014-02-15 12:47 - 01166132 _____ () C:\Users\Marek\Downloads\adwcleaner.exe 2014-02-15 12:35 - 2014-02-15 12:35 - 00006876 _____ () C:\Users\Marek\Desktop\UsbFix.txt 2014-02-15 12:35 - 2014-02-15 12:34 - 176200356 _____ () C:\UsbFix_Upload_Me_MAREK-KOMPUTER.zip 2014-02-15 12:12 - 2014-02-15 12:12 - 00000000 ____D () C:\Users\Marek\AppData\Local\GHISLER 2014-02-15 12:01 - 2013-12-23 15:18 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-15 10:54 - 2014-01-23 17:50 - 00000000 ____D () C:\Windows\erdnt 2014-02-15 10:53 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2014-02-15 10:28 - 2014-02-15 10:27 - 00000000 ____D () C:\totalcmd 2014-02-15 10:27 - 2014-02-15 10:27 - 00000646 _____ () C:\Users\Marek\Desktop\Total Commander 64 bit.lnk 2014-02-15 10:27 - 2014-02-15 10:27 - 00000632 _____ () C:\Users\Marek\Desktop\Total Commander.lnk 2014-02-15 10:27 - 2014-02-15 10:27 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2014-02-15 10:27 - 2014-02-15 10:27 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\GHISLER 2014-02-15 10:27 - 2014-02-15 10:26 - 05896408 _____ (Ghisler Software GmbH) C:\Users\Marek\Downloads\tcm801x32_64(dobreprogramy.pl).exe 2014-02-15 10:25 - 2014-02-15 10:25 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-15 10:13 - 2014-02-15 10:13 - 00823346 _____ () C:\Users\Marek\Downloads\USBVaccine.zip 2014-02-15 00:47 - 2014-02-12 20:31 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\TS3Client 2014-02-14 12:10 - 2014-02-14 12:10 - 01050624 _____ (Unity Technologies ApS) C:\Users\Marek\Downloads\UnityWebPlayer.exe 2014-02-14 00:05 - 2014-02-14 00:05 - 00001069 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Malwarebytes 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-02-14 00:05 - 2014-02-14 00:05 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-02-14 00:04 - 2014-02-14 00:03 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Marek\Downloads\mbam-setup-1.75.0.1300.exe 2014-02-13 00:17 - 2014-01-11 17:45 - 01641016 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-13 00:03 - 2013-12-23 20:21 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Skype 2014-02-12 22:28 - 2014-02-12 22:25 - 07433867 _____ () C:\Users\Marek\Downloads\QuickyBaby 8.11.zip 2014-02-12 22:03 - 2014-02-12 22:03 - 00000571 _____ () C:\Users\Marek\Desktop\World of Tanks 0.8.11 ProMod.lnk 2014-02-12 22:01 - 2014-02-12 22:01 - 00001931 _____ () C:\Users\Public\Desktop\Overwolf.lnk 2014-02-12 22:01 - 2014-02-12 22:01 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2014-02-12 22:01 - 2014-02-12 22:01 - 00000000 ____D () C:\Program Files (x86)\Overwolf 2014-02-12 21:58 - 2014-02-12 21:57 - 00155136 _____ () C:\Windows\SysWOW64\unrar.dll 2014-02-12 21:58 - 2014-02-12 21:57 - 00034308 _____ () C:\Windows\SysWOW64\bassmod.dll 2014-02-12 21:57 - 2014-02-12 21:57 - 02259968 _____ (OldSkool) C:\Users\Marek\Downloads\ProMod.exe 2014-02-12 21:57 - 2014-02-12 21:57 - 01931296 _____ (Codejock Software) C:\Users\Marek\Downloads\Codejock.Controls.v15.3.1.ocx 2014-02-12 21:57 - 2014-02-12 21:57 - 00136008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinet.ocx 2014-02-12 21:49 - 2014-02-12 21:49 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-02-12 21:49 - 2014-02-12 20:30 - 00000927 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-02-12 21:48 - 2014-02-12 21:44 - 32520760 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak3-Client-win64-3.0.13.1.exe 2014-02-12 21:42 - 2014-02-12 21:38 - 30095736 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak3-Client-win32-3.0.13.1.exe 2014-02-12 21:42 - 2014-02-12 20:30 - 00000000 ____D () C:\Program Files (x86)\TeamSpeak 3 Client 2014-02-12 20:30 - 2014-02-12 20:27 - 13502504 _____ (TeamSpeak Systems GmbH) C:\Users\Marek\Downloads\TeamSpeak 3.exe 2014-02-12 20:27 - 2014-02-12 20:27 - 00001226 _____ () C:\Users\Marek\Desktop\Kontynuuj instalację TeamSpeak.lnk 2014-02-12 20:11 - 2014-02-12 20:10 - 07433112 _____ () C:\Users\Marek\Downloads\xvm-5.1.0.zip 2014-02-09 17:56 - 2014-02-09 17:51 - 29141928 _____ (Oracle Corporation) C:\Users\Marek\Downloads\jre-7u51-windows-i586.exe 2014-02-09 17:50 - 2014-02-09 17:05 - 287423479 _____ (TeamExtreme ) C:\Users\Marek\Downloads\Minecraft 1.7.4.exe 2014-02-09 17:07 - 2014-02-09 16:59 - 42722245 _____ () C:\Users\Marek\Downloads\Minecraft Full Version.rar 2014-02-08 08:24 - 2014-01-15 01:14 - 00000000 ____D () C:\Users\Marek\Desktop\mikro 2014-02-08 07:41 - 2013-12-23 15:37 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-02-07 23:30 - 2014-02-07 23:30 - 00000000 ____D () C:\Users\Marek\AppData\Roaming\TeamViewer 2014-02-07 23:27 - 2014-02-07 23:27 - 05855856 _____ (TeamViewer GmbH) C:\Users\Marek\Downloads\TeamViewer_Setup_ar-ckq.exe 2014-02-07 01:11 - 2014-02-07 01:11 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(3).xls 2014-02-06 23:12 - 2014-02-06 23:12 - 00020480 _____ () C:\Users\Marek\Downloads\OS-egzamin-I termin.xls 2014-02-06 22:33 - 2014-02-06 22:33 - 00597972 _____ () C:\Users\Marek\Downloads\mikrozrozwizaniami.zip 2014-02-06 17:22 - 2014-02-06 17:22 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(2).xls 2014-02-06 13:16 - 2014-02-13 00:14 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 12:30 - 2014-02-13 00:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 12:30 - 2014-02-13 00:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 12:12 - 2014-02-13 00:14 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 12:07 - 2014-02-13 00:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 12:06 - 2014-02-13 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 11:57 - 2014-02-13 00:14 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 11:56 - 2014-02-13 00:14 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 11:52 - 2014-02-13 00:14 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 11:49 - 2014-02-13 00:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 11:48 - 2014-02-13 00:14 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 11:48 - 2014-02-13 00:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 11:38 - 2014-02-13 00:14 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 11:32 - 2014-02-13 00:14 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 11:20 - 2014-02-13 00:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 11:17 - 2014-02-13 00:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 11:11 - 2014-02-13 00:14 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 11:01 - 2014-02-13 00:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 11:00 - 2014-02-13 00:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 00:14 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 10:57 - 2014-02-13 00:14 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 10:52 - 2014-02-13 00:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 10:52 - 2014-02-13 00:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 10:50 - 2014-02-13 00:14 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 10:49 - 2014-02-13 00:14 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 10:47 - 2014-02-13 00:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 10:46 - 2014-02-13 00:14 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 10:25 - 2014-02-13 00:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 10:25 - 2014-02-13 00:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 10:24 - 2014-02-13 00:14 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 10:22 - 2014-02-13 00:14 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 10:13 - 2014-02-13 00:14 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 10:09 - 2014-02-13 00:14 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 10:03 - 2014-02-13 00:14 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 09:55 - 2014-02-13 00:14 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 09:41 - 2014-02-13 00:14 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 09:40 - 2014-02-13 00:14 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 09:36 - 2014-02-13 00:14 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 09:34 - 2014-02-13 00:14 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-05 15:48 - 2014-02-05 15:48 - 00807499 _____ () C:\Users\Marek\Downloads\otworowa.rar 2014-02-05 10:08 - 2013-12-23 15:11 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 10:08 - 2013-12-23 15:11 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 10:08 - 2013-12-23 15:11 - 00003868 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 00:20 - 2014-02-05 00:20 - 00000000 ____D () C:\ProgramData\Oracle 2014-02-05 00:19 - 2014-02-05 00:19 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2014-02-05 00:19 - 2014-02-05 00:19 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2014-02-05 00:19 - 2014-02-05 00:19 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-02-05 00:19 - 2014-02-05 00:19 - 00000000 ____D () C:\ProgramData\Sun 2014-02-05 00:18 - 2014-02-05 00:19 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2014-02-05 00:18 - 2014-02-05 00:18 - 00000000 ____D () C:\Program Files (x86)\Java 2014-02-05 00:17 - 2014-02-05 00:17 - 00921000 _____ (Oracle Corporation) C:\Users\Marek\Downloads\jxpiinstall.exe 2014-02-03 22:19 - 2014-02-03 22:19 - 00183404 _____ () C:\Users\Marek\Desktop\prom.svg 2014-02-03 22:16 - 2014-02-03 22:16 - 00183404 _____ () C:\Users\Marek\Desktop\EM_Spectrum_Properties_pl.svg 2014-02-02 13:58 - 2014-02-02 13:58 - 00011374 _____ () C:\Users\Marek\Downloads\Zagrożenia2014IIIOS.xlsx 2014-02-01 11:52 - 2014-02-01 11:52 - 00001007 _____ () C:\Users\Marek\Desktop\Rzepa — skrót.lnk 2014-01-29 21:27 - 2014-01-29 21:26 - 16753417 _____ () C:\Users\Marek\Downloads\złoża- ostatni kolos.rar 2014-01-29 20:27 - 2014-01-29 20:27 - 05441732 _____ () C:\Users\Marek\Downloads\zoawiczenia.zip 2014-01-29 20:27 - 2014-01-29 20:27 - 05441732 _____ () C:\Users\Marek\Downloads\zoawiczenia(1).zip 2014-01-29 17:08 - 2014-01-23 19:36 - 00000000 ____D () C:\Users\Marek\Desktop\Gleby 2014-01-29 15:54 - 2014-01-29 15:53 - 10447475 _____ () C:\Users\Marek\Downloads\Złoża.rar 2014-01-29 15:49 - 2014-01-29 15:49 - 00127327 _____ () C:\Users\Marek\Downloads\zloza(1).rar 2014-01-29 15:45 - 2014-01-29 15:45 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2014-01-28 14:17 - 2014-01-02 10:42 - 00000000 ____D () C:\Users\Marek\Desktop\Prezentacja gleby 2014-01-26 14:39 - 2014-01-26 14:29 - 70127057 _____ () C:\Users\Marek\Downloads\gleby-podrecznik_cz1z3.rar 2014-01-25 19:53 - 2014-01-25 19:53 - 02542143 _____ () C:\Users\Marek\Downloads\Systematyka Gleb (Zielona Książka).rar 2014-01-23 18:40 - 2014-01-23 18:38 - 01200411 _____ () C:\Users\Marek\Downloads\UsbFix.rar 2014-01-23 18:13 - 2013-12-23 15:06 - 00000000 ____D () C:\Users\Marek 2014-01-23 18:12 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration 2014-01-23 18:08 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2014-01-23 17:35 - 2014-01-23 17:35 - 02347384 _____ (ESET) C:\Users\Marek\Downloads\esetsmartinstaller_plk.exe 2014-01-23 16:29 - 2014-01-23 16:29 - 01783837 _____ () C:\Users\Marek\Downloads\wiczeniazmbg.zip 2014-01-22 22:53 - 2014-01-22 22:53 - 00048640 _____ () C:\Users\Marek\Downloads\Ochrona przyrody OŚ(1).xls 2014-01-21 13:47 - 2014-01-21 13:44 - 00294912 _____ () C:\Users\Marek\Documents\Baza danych1.accdb ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-09 12:40 ==================== End Of Log ============================