Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014 Ran by agusia (administrator) on AGUSIA-HP on 18-02-2014 12:40:20 Running from C:\Users\agusia\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 9 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Download link for 64-Bit Version: Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: ==================== Processes (Whitelisted) ================= (HP) C:\Program Files (x86)\HP SimplePass 2011\TrueSuiteService.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe () C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (BitTorrent Inc.) C:\Users\agusia\AppData\Roaming\uTorrent\uTorrent.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Service.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-Network.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-BlockDevice.exe (BlueStack Systems) C:\Program Files (x86)\BlueStacks\HD-SharedFolder.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\VBExpress.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Users\agusia\Documents\Visual Studio 2010\Projects\WindowsApplication15\bin\Debug\WindowsApplication15.vshost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Alexander Roshal) C:\Program Files (x86)\WinRAR\WinRAR.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\xlview.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\TouchControl.exe (HP) C:\Program Files (x86)\HP SimplePass 2011\BioMonitor.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1424896 2011-09-08] (IDT, Inc.) HKLM\...\Run: [SetDefault] - C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [43320 2011-09-30] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1281512 2013-01-27] (Microsoft Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-09-25] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HPQuickWebProxy] - C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [169528 2011-10-08] (Hewlett-Packard Company) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [574008 2011-07-11] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [946352 2012-12-03] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HPOSD] - C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [Easybits Recovery] - C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-09-15] (EasyBits Software AS) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-11-05] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.) HKLM-x32\...\Run: [BlueStacks Agent] - C:\Program Files (x86)\BlueStacks\HD-Agent.exe [811792 2014-01-20] (BlueStack Systems, Inc.) HKLM-x32\...\Run: [fst_pl_31] - [X] Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [Facebook Update] - C:\Users\agusia\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-01-01] (Facebook Inc.) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [uTorrent] - C:\Users\agusia\AppData\Roaming\uTorrent\uTorrent.exe [1307736 2014-01-20] (BitTorrent Inc.) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd) HKU\S-1-5-21-2927037778-1233708203-2928765012-1000\...\MountPoints2: {f4a19b42-81a7-11e3-a81f-ec9a743f342e} - G:\setup.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== ProxyServer: SearchScopes: HKLM - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL ={searchTerms} SearchScopes: HKLM-x32 - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL ={searchTerms} SearchScopes: HKCU - {ACE05FB9-18E8-48AC-A0EC-2D474C167A90} URL ={searchTerms} BHO: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\x64\IEBHO.dll (HP) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: TrueSuite Website Log On - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files (x86)\HP SimplePass 2011\IEBHO.dll (HP) BHO-x32: Pomocnik logowania za pomocą identyfikatora Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-10-21] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\agusia\AppData\Roaming\Mozilla\Firefox\Profiles\arxobzob.default-1392448114656 FF Plugin: - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: - disabled No File FF Plugin:,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll () FF Plugin-x32:,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32:,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32:,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: - disabled No File FF Plugin-x32:,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32:,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32:,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: Update;version=3 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Update;version=9 - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32:,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF Plugin HKCU: @Skype Video Calling Plugin - C:\Users\agusia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU:,version=1.0 - C:\Users\agusia\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: TrueSuite Website Logon - C:\Program Files (x86)\Mozilla Firefox\extensions\ [2014-02-14] Chrome: ======= CHR HomePage: hxxp://{793D217C-F454-49F6-8494-EA81DEA07253}&mid=a766980ef71147d0aac2a113f034d415-e37a1320561a2da1ae077a7def2cf969e71cc59b&lang=pl/finishurl=hxxp:// 11:06:18&v= CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\agusia\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) CHR HKLM-x32\...\Chrome\Extension: [bfmogjcijkfeahcajecmmegieipfbdcc] - C:\Program Files (x86)\HP SimplePass 2011\tschrome.crx [2011-08-17] ==================== Services (Whitelisted) ================= R2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-01-20] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-01-20] (BlueStack Systems, Inc.) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22056 2013-01-27] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [379360 2013-01-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [115472 2014-01-20] (BlueStack Systems) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-20] (Disc Soft Ltd) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [230320 2013-01-20] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [130008 2013-01-20] (Microsoft Corporation) S3 sscdserd; C:\Windows\System32\DRIVERS\sscdserd.sys [158024 2013-05-02] (MCCI Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-18 12:40 - 2014-02-18 12:40 - 00000000 ____D () C:\Users\agusia\Downloads\FRST-OlderVersion 2014-02-18 12:00 - 2014-02-18 12:00 - 77738888 _____ (Microsoft Corporation) C:\Users\agusia\Downloads\ExcelViewer.exe 2014-02-18 11:57 - 2014-02-18 11:58 - 00673640 _____ ( ) C:\Users\agusia\Downloads\Excel-Viewer(12201).exe 2014-02-18 11:56 - 2014-02-18 11:56 - 00052420 _____ () C:\Users\agusia\Downloads\Lista SEO.rar 2014-02-18 09:54 - 2014-02-18 09:55 - 00255760 _____ () C:\Users\agusia\Downloads\ 2014-02-17 22:05 - 2014-02-17 22:05 - 00403271 _____ () C:\Users\agusia\Desktop\Card Wars Adventure Time Hack 2014-02-17 21:18 - 2014-02-18 10:40 - 00000286 _____ () C:\Windows\Tasks\bench-Updater removing.job 2014-02-17 21:18 - 2014-02-17 21:18 - 00003226 _____ () C:\Windows\System32\Tasks\bench-Updater removing 2014-02-17 20:48 - 2014-02-17 20:48 - 00403253 _____ () C:\Users\agusia\Desktop\The Tribez & Castlez 2014-02-17 20:30 - 2014-02-17 20:30 - 00064754 _____ () C:\Users\agusia\Desktop\screen568x568.jpeg 2014-02-16 22:56 - 2014-02-16 22:56 - 00403241 _____ () C:\Users\agusia\Desktop\Legends At War 2014-02-16 22:33 - 2014-02-16 22:33 - 00403227 _____ () C:\Users\agusia\Desktop\Hay Day 2014-02-16 20:16 - 2014-02-16 20:17 - 02450313 _____ () C:\Users\agusia\Downloads\ssy how v2.rar 2014-02-16 18:27 - 2014-02-16 22:30 - 00403251 _____ () C:\Users\agusia\Desktop\Eternity Warriors 3 2014-02-16 13:26 - 2014-02-16 13:26 - 00003328 _____ () C:\Windows\System32\Tasks\e-pity2013_styczen 2014-02-16 13:26 - 2014-02-16 13:26 - 00003328 _____ () C:\Windows\System32\Tasks\e-pity2013_kwiecien 2014-02-16 13:26 - 2014-02-16 13:26 - 00001185 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-pity 2013 - program, pity roczne, e-deklaracje.lnk 2014-02-16 13:26 - 2014-02-16 13:26 - 00001155 _____ () C:\Users\agusia\Desktop\e-pity 2013 - program, pity roczne, e-deklaracje.lnk 2014-02-16 13:26 - 2014-02-16 13:26 - 00000000 ____D () C:\Users\agusia\Documents\efile 2014-02-16 13:26 - 2014-02-16 13:26 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\com.efile.epity2013 2014-02-16 13:25 - 2014-02-16 13:25 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\fillUp 2014-02-16 13:25 - 2014-02-16 13:25 - 00000000 ____D () C:\Program Files (x86)\e-file 2014-02-16 13:24 - 2014-02-16 13:25 - 21614336 _____ (e-file sp. z o.o. ) C:\Users\agusia\Downloads\setup_e-pity2013_adg.exe 2014-02-15 12:14 - 2014-02-18 12:41 - 00018361 _____ () C:\Users\agusia\Downloads\FRST.txt 2014-02-15 12:14 - 2014-02-18 12:40 - 02152448 _____ (Farbar) C:\Users\agusia\Downloads\FRST64.exe 2014-02-15 08:16 - 2014-02-15 08:17 - 00000000 ____D () C:\AdwCleaner 2014-02-15 08:15 - 2014-02-15 08:15 - 01166132 _____ () C:\Users\agusia\Downloads\adwcleaner.exe 2014-02-15 08:01 - 2014-02-13 14:47 - 00000426 _____ () C:\AVScanner.ini 2014-02-15 08:00 - 2014-02-18 09:18 - 00000346 _____ () C:\Windows\Tasks\bench-sys.job 2014-02-15 08:00 - 2014-02-17 17:41 - 00000000 ____D () C:\Program Files (x86)\Bench 2014-02-15 08:00 - 2014-02-15 08:00 - 00003242 _____ () C:\Windows\System32\Tasks\bench-sys 2014-02-15 08:00 - 2014-02-15 08:00 - 00000000 ____D () C:\Program Files (x86)\predm 2014-02-14 21:37 - 2014-02-14 21:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 21:10 - 2014-02-15 12:18 - 00029581 _____ () C:\Users\agusia\Downloads\Addition.txt 2014-02-14 21:00 - 2014-02-18 12:40 - 00000000 ____D () C:\FRST 2014-02-14 20:32 - 2014-02-14 20:32 - 00602112 _____ (OldTimer Tools) C:\Users\agusia\Downloads\OTL.exe 2014-02-14 17:56 - 2014-02-14 17:56 - 00001219 _____ () C:\Users\agusia\Desktop\PIT pro 2013.lnk 2014-02-14 17:56 - 2014-02-14 17:56 - 00000000 ____D () C:\Program Files (x86)\ 2014-02-14 17:52 - 2014-02-14 17:56 - 18302464 _____ ( Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (2).exe 2014-02-14 17:51 - 2014-02-14 17:52 - 18302416 _____ ( Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (1).exe 2014-02-14 15:17 - 2014-02-14 15:19 - 00000000 ____D () C:\Program Files (x86)\BacklinkBeast 2014-02-14 15:17 - 2014-02-14 15:17 - 00001969 _____ () C:\Users\Public\Desktop\BacklinkBeast.lnk 2014-02-14 15:16 - 2014-02-14 15:16 - 13813716 _____ () C:\Users\agusia\Downloads\BBeast.rar 2014-02-12 08:24 - 2014-02-12 08:24 - 00141776 _____ () C:\Users\agusia\Downloads\Royal Story Hack Tool v9.1.rar 2014-02-11 16:20 - 2014-02-11 16:20 - 00004761 _____ () C:\Users\agusia\AppData\Local\recently-used.xbel 2014-02-11 16:07 - 2014-02-11 16:08 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-11 16:05 - 2014-02-11 16:05 - 90396104 _____ (The GIMP Team ) C:\Users\agusia\Downloads\gimp-2.8.10-setup( 2014-02-11 16:01 - 2014-02-17 17:41 - 00000266 __RSH () C:\ProgramData\ntuser.pol 2014-02-11 11:02 - 2014-02-11 11:02 - 00419123 _____ () C:\Users\agusia\Downloads\Dawn Of The Dragons Hack.rar 2014-02-11 09:14 - 2014-02-11 09:14 - 00013934 _____ () C:\Users\agusia\Downloads\scan virus.odt 2014-02-10 17:11 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-02-10 17:11 - 2012-05-15 07:13 - 00020992 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-02-10 17:11 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-02-10 17:11 - 2012-05-15 06:20 - 00017920 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-02-10 17:07 - 2013-08-14 10:55 - 05905904 _____ (Intel Corporation) C:\Windows\system32\GfxUI.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00515568 _____ (Intel Corporation) C:\Windows\system32\igfxsrvc.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00442352 _____ (Intel Corporation) C:\Windows\system32\igfxpers.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00399856 _____ (Intel Corporation) C:\Windows\system32\hkcmd.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00279024 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00254960 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00185840 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-02-10 17:07 - 2013-08-14 10:55 - 00172016 _____ (Intel Corporation) C:\Windows\system32\igfxtray.exe 2014-02-10 17:07 - 2013-07-01 12:51 - 00342528 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-02-10 17:07 - 2013-07-01 12:51 - 00116224 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3223.dll 2014-02-10 17:07 - 2013-07-01 12:51 - 00016896 _____ (Intel(R) Corporation) C:\Windows\system32\IntcDAuC.dll 2014-02-10 17:07 - 2013-06-27 07:12 - 00017090 _____ () C:\Windows\system32\iglhxs64.vp 2014-02-10 17:07 - 2013-06-27 07:09 - 00330752 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxdv32.dll 2014-02-10 17:07 - 2013-06-27 07:09 - 00025088 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 12615680 _____ (Intel Corporation) C:\Windows\system32\igdumd64.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 05361920 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-02-10 17:07 - 2013-06-27 07:07 - 00098304 _____ () C:\Windows\system32\igdde64.dll 2014-02-10 17:07 - 2013-06-27 07:07 - 00077312 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 09007616 _____ (Intel Corporation) C:\Windows\system32\igfxress.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00442880 _____ (Intel Corporation) C:\Windows\system32\igfxdev.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00440320 _____ (Intel Corporation) C:\Windows\system32\igfxrell.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxrfra.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439808 _____ (Intel Corporation) C:\Windows\system32\igfxresn.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrus.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00439296 _____ (Intel Corporation) C:\Windows\system32\igfxrrom.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrsky.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrptg.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrplk.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrnld.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrita.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrhrv.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438784 _____ (Intel Corporation) C:\Windows\system32\igfxrdeu.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrhun.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrfin.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00438272 _____ (Intel Corporation) C:\Windows\system32\igfxrcsy.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrtrk.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrsve.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrslv.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrptb.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437760 _____ (Intel Corporation) C:\Windows\system32\igfxrnor.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrtha.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00437248 _____ (Intel Corporation) C:\Windows\system32\igfxrdan.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrheb.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00435712 _____ (Intel Corporation) C:\Windows\system32\igfxrara.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00432128 _____ (Intel Corporation) C:\Windows\system32\igfxrjpn.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00431104 _____ (Intel Corporation) C:\Windows\system32\igfxrkor.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00429056 _____ (Intel Corporation) C:\Windows\system32\igfxrcht.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00428544 _____ (Intel Corporation) C:\Windows\system32\igfxrchs.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00410624 _____ (Intel Corporation) C:\Windows\system32\igfxTMM.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00286208 _____ (Intel Corporation) C:\Windows\system32\igfxrenu.lrc 2014-02-10 17:07 - 2013-06-27 07:06 - 00223664 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00210106 _____ () C:\Windows\system32\Gfxres.el-GR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00194245 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00175104 _____ (Intel Corporation) C:\Windows\system32\gfxSrvc.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00166170 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00163421 _____ () C:\Windows\system32\Gfxres.ja-JP.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00159008 _____ () C:\Windows\system32\Gfxres.he-IL.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00149682 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00148042 _____ () C:\Windows\system32\Gfxres.ko-KR.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00147393 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00147288 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00146004 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00145491 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00144645 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00144260 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00144020 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00143932 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00142882 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00142877 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00142717 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00142336 _____ (Intel Corporation) C:\Windows\system32\igfxdo.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00142289 _____ () C:\Windows\system32\Gfxres.cs-CZ.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00142008 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00141838 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00141049 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00137889 _____ () C:\Windows\system32\ 2014-02-10 17:07 - 2013-06-27 07:06 - 00137784 _____ () C:\Windows\system32\Gfxres.nb-NO.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00137141 _____ () C:\Windows\system32\Gfxres.da-DK.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00132623 _____ () C:\Windows\system32\Gfxres.en-US.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00126976 _____ (Intel Corporation) C:\Windows\system32\igfxcpl.cpl 2014-02-10 17:07 - 2013-06-27 07:06 - 00126300 _____ () C:\Windows\system32\Gfxres.zh-TW.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00124650 _____ () C:\Windows\system32\Gfxres.zh-CN.resources 2014-02-10 17:07 - 2013-06-27 07:06 - 00028672 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-02-10 17:07 - 2013-06-27 07:06 - 00009728 _____ ( ) C:\Windows\system32\IGFXDEVLib.dll 2014-02-10 17:07 - 2013-06-27 07:05 - 11175936 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10umd32.dll 2014-02-10 17:07 - 2013-06-27 06:58 - 13031424 _____ (Intel Corporation) C:\Windows\system32\ig4icd64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 03511296 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 03121152 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 01040384 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00963452 _____ () C:\Windows\SysWOW64\igcodeckrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00963452 _____ () C:\Windows\system32\igcodeckrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00931840 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00575488 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00542720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00524800 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00519680 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00272928 _____ () C:\Windows\SysWOW64\igvpkrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00272928 _____ () C:\Windows\system32\igvpkrng600.bin 2014-02-10 17:07 - 2013-06-27 06:56 - 00216064 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00180224 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-02-10 17:07 - 2013-06-27 06:56 - 00059425 _____ () C:\Windows\system32\iglhxo64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059398 _____ () C:\Windows\system32\iglhxg64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059230 _____ () C:\Windows\system32\iglhxc64.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00059104 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00058796 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-02-10 17:07 - 2013-06-27 06:56 - 00058109 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-02-10 16:56 - 2014-02-10 16:56 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-02-10 16:55 - 2014-02-10 17:07 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-02-10 16:55 - 2014-02-10 16:56 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-02-10 16:55 - 2014-02-10 16:55 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\agusia\Downloads\BlueStacks-SplitInstaller_native.exe 2014-02-10 16:53 - 2014-02-10 16:53 - 00666648 _____ () C:\Users\agusia\Downloads\BlueStacks-App-Player(35569).exe 2014-02-10 16:32 - 2014-02-10 16:35 - 208666624 _____ () C:\Users\agusia\Downloads\android-x86-4.3-20130725.iso 2014-02-10 16:03 - 2014-02-10 16:06 - 206569472 _____ () C:\Users\agusia\Downloads\android-x86-4.2-20130228.iso 2014-02-10 13:50 - 2014-02-10 13:53 - 00000000 ____D () C:\Program Files (x86)\Counter-Strike 1.6 NonSteam 2014-02-10 13:41 - 2014-02-10 13:46 - 334566618 _____ () C:\Users\agusia\Downloads\Counter-Strike 1.6 PATCH v50.rar 2014-02-10 12:35 - 2014-02-10 12:38 - 25970356 _____ () C:\Users\agusia\Downloads\Brave Frontier v1.1.1.apk 2014-02-10 11:33 - 2014-02-10 11:33 - 00946895 _____ () C:\Users\agusia\Downloads\ 2014-02-09 21:38 - 2014-02-09 21:38 - 01144851 _____ () C:\Users\agusia\Downloads\cstrike (1).zip 2014-02-08 19:33 - 2014-02-08 19:33 - 00636030 _____ () C:\Users\agusia\Downloads\Desktop.rar 2014-02-08 18:09 - 2014-02-08 18:09 - 07652580 _____ () C:\Users\agusia\Downloads\ 2014-02-07 12:05 - 2014-02-07 12:06 - 48704734 _____ () C:\Users\agusia\Downloads\BBHF-WAC.rar 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182.txt 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182 (1).txt 2014-02-07 09:33 - 2014-02-07 09:33 - 00006358 _____ () C:\Users\agusia\Downloads\8892773.txt 2014-02-06 11:45 - 2014-02-06 11:45 - 07652987 _____ () C:\Users\agusia\Downloads\ 2014-02-05 17:38 - 2014-02-05 17:38 - 01069948 _____ () C:\Users\agusia\Downloads\cstrike (8).rar 2014-02-05 17:19 - 2014-02-05 17:19 - 00066659 _____ () C:\Users\agusia\Downloads\ 2014-02-05 17:15 - 2014-02-05 17:15 - 00010793 _____ () C:\Users\agusia\Downloads\SB Crack.rar 2014-02-05 17:09 - 2014-02-05 17:09 - 04414406 _____ () C:\Users\agusia\Downloads\ 2014-02-04 22:25 - 2014-02-04 22:25 - 00391325 _____ () C:\Users\agusia\Downloads\de_dust2_long0000.rar 2014-02-03 21:00 - 2014-02-03 21:00 - 01947192 _____ (Best Free Spinner ) C:\Users\agusia\Downloads\bfspro.exe 2014-02-03 21:00 - 2014-02-03 21:00 - 00003072 _____ () C:\Users\agusia\AppData\Roaming\bfs.settings 2014-02-03 21:00 - 2014-02-03 21:00 - 00000000 ____D () C:\Program Files (x86)\BFS Pro 2014-02-02 19:45 - 2014-02-02 19:45 - 00405789 _____ () C:\Users\agusia\Downloads\Frrrr.rar 2014-02-02 19:41 - 2014-02-02 19:41 - 02761738 _____ () C:\Users\agusia\Downloads\cstrike_polish (1).rar 2014-02-01 19:29 - 2014-02-01 19:30 - 03274422 _____ () C:\Users\agusia\Downloads\cstrike (7).rar 2014-02-01 14:01 - 2014-02-01 14:01 - 00000625 _____ () C:\Users\agusia\Downloads\Anonymous.txt 2014-01-31 17:03 - 2014-01-31 17:03 - 03695620 _____ () C:\Users\agusia\Downloads\ 2014-01-30 11:20 - 2014-01-06 15:02 - 00431616 _____ (Hewlett-Packard) C:\Users\agusia\Desktop\Card Wars Adventure Time Hack Tool.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00778274 _____ () C:\Users\agusia\Downloads\MarkItNowLite_Setup.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mark IT Now! 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Local\MarkIT Now 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Program Files (x86)\Mark IT Now! 2014-01-29 20:35 - 2014-01-29 20:35 - 01156487 _____ () C:\Users\agusia\Downloads\ 2014-01-29 20:27 - 2014-01-29 20:27 - 00650377 _____ () C:\Users\agusia\Downloads\ 2014-01-29 20:24 - 2014-01-29 20:25 - 00518160 _____ () C:\Users\agusia\Downloads\ 2014-01-29 19:57 - 2014-01-29 19:58 - 05554763 _____ () C:\Users\agusia\Downloads\ 2014-01-28 22:00 - 2014-01-28 22:00 - 01801935 _____ () C:\Users\agusia\Downloads\ 2014-01-28 16:28 - 2014-01-28 16:28 - 00310575 _____ () C:\Users\agusia\Downloads\ 2014-01-27 19:18 - 2014-01-27 19:18 - 03118607 _____ () C:\Users\agusia\Downloads\ 2014-01-27 18:55 - 2014-01-27 18:55 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft Corporation 2014-01-27 14:26 - 2014-01-27 14:26 - 01889051 _____ () C:\Users\agusia\Downloads\50-000.txt 2014-01-27 11:03 - 2014-01-27 11:03 - 04531894 _____ () C:\Users\agusia\Downloads\lucid1.5.rar 2014-01-27 08:43 - 2014-01-27 08:43 - 03080779 _____ () C:\Users\agusia\Downloads\ 2014-01-26 09:01 - 2014-01-26 09:02 - 06397424 _____ () C:\Users\agusia\Downloads\Tekstury.rar 2014-01-25 18:18 - 2014-01-25 18:18 - 00000505 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (4).txt 2014-01-23 13:24 - 2014-01-23 13:24 - 00000000 ____D () C:\Users\agusia\Documents\default 2014-01-20 11:52 - 2014-02-15 08:04 - 00000000 ____D () C:\Users\agusia\AppData\Local\Mobogenie 2014-01-20 11:52 - 2014-02-15 07:38 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\ 2014-01-20 11:52 - 2014-02-10 10:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\cache 2014-01-20 11:52 - 2014-01-25 08:01 - 00000000 ____D () C:\Users\agusia\AppData\Local\genienext 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\Documents\Mobogenie 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ () C:\Users\agusia\daemonprocess.txt 2014-01-20 11:48 - 2014-01-20 11:49 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\DAEMON Tools Lite 2014-01-20 11:48 - 2014-01-20 11:48 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-20 11:48 - 2014-01-20 11:48 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:49 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:47 - 13485616 _____ (Disc Soft Ltd) C:\Users\agusia\Downloads\DTLite4481-0347( 2014-01-20 11:44 - 2014-02-14 11:29 - 00000000 ____D () C:\Users\agusia\VirtualBox VMs 2014-01-20 11:33 - 2014-01-20 11:33 - 00172635 _____ () C:\Users\agusia\Downloads\SS Gruby Lolooo.rar 2014-01-20 11:25 - 2014-01-20 11:38 - 00000000 ____D () C:\Users\agusia\Downloads\xp prof sp3 2014-01-20 11:24 - 2014-01-20 11:25 - 00013085 _____ () C:\Users\agusia\Downloads\Windows XP Professional SP3 [PL].torrent 2014-01-20 11:21 - 2014-01-20 11:21 - 00000814 _____ () C:\Users\agusia\Desktop\µTorrent.lnk 2014-01-20 11:21 - 2014-01-20 11:21 - 00000794 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-20 11:20 - 2014-02-18 12:41 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\uTorrent 2014-01-20 11:20 - 2014-01-20 11:20 - 01307736 _____ (BitTorrent Inc.) C:\Users\agusia\Downloads\utorrent.exe 2014-01-20 11:19 - 2014-01-20 11:19 - 00013109 _____ () C:\Users\agusia\Downloads\Windows_XP_SP3_[PL]_[ iso].torrent 2014-01-20 11:14 - 2014-02-14 11:29 - 00000000 ____D () C:\Users\agusia\.VirtualBox 2014-01-20 11:13 - 2014-01-20 11:13 - 00001076 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-01-20 11:13 - 2013-12-18 17:19 - 00252688 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-01-20 11:12 - 2014-01-20 11:12 - 00000000 ____D () C:\Program Files\Oracle 2014-01-20 11:12 - 2013-12-18 17:16 - 00126736 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-01-20 11:10 - 2014-01-20 11:10 - 106322704 _____ (Oracle Corporation) C:\Users\agusia\Downloads\VirtualBox-4.3.6-91406-Win.exe 2014-01-19 17:43 - 2014-01-19 17:43 - 00002614 _____ () C:\Users\agusia\Downloads\www-addonsbestgame-com_20140119T164309Z_DisavowLinks.csv 2014-01-19 17:34 - 2014-01-19 17:34 - 00002641 _____ () C:\Users\agusia\Downloads\Critical Backlinks 2014-01-19 17:32 - 2014-01-19 17:32 - 00007250 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (2).xlsx 2014-01-19 17:31 - 2014-01-19 17:31 - 00007426 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (1).xlsx 2014-01-19 17:30 - 2014-01-19 17:30 - 00007427 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19.xlsx 2014-01-19 14:44 - 2014-01-19 14:44 - 02347384 _____ (ESET) C:\Users\agusia\Downloads\esetsmartinstaller_plk.exe 2014-01-19 14:44 - 2014-01-19 14:44 - 00000000 ____D () C:\Program Files (x86)\ESET ==================== One Month Modified Files and Folders ======= 2014-02-18 12:41 - 2014-02-15 12:14 - 00018361 _____ () C:\Users\agusia\Downloads\FRST.txt 2014-02-18 12:41 - 2014-01-20 11:20 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\uTorrent 2014-02-18 12:40 - 2014-02-18 12:40 - 00000000 ____D () C:\Users\agusia\Downloads\FRST-OlderVersion 2014-02-18 12:40 - 2014-02-15 12:14 - 02152448 _____ (Farbar) C:\Users\agusia\Downloads\FRST64.exe 2014-02-18 12:40 - 2014-02-14 21:00 - 00000000 ____D () C:\FRST 2014-02-18 12:19 - 2011-12-12 00:31 - 02004318 _____ () C:\Windows\WindowsUpdate.log 2014-02-18 12:15 - 2013-12-10 14:26 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-18 12:00 - 2014-02-18 12:00 - 77738888 _____ (Microsoft Corporation) C:\Users\agusia\Downloads\ExcelViewer.exe 2014-02-18 12:00 - 2012-12-28 13:32 - 00000000 ____D () C:\Program Files (x86)\MSECache 2014-02-18 11:58 - 2014-02-18 11:57 - 00673640 _____ ( ) C:\Users\agusia\Downloads\Excel-Viewer(12201).exe 2014-02-18 11:56 - 2014-02-18 11:56 - 00052420 _____ () C:\Users\agusia\Downloads\Lista SEO.rar 2014-02-18 11:50 - 2012-12-17 15:25 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-18 11:40 - 2013-01-01 17:35 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2927037778-1233708203-2928765012-1000UA.job 2014-02-18 10:40 - 2014-02-17 21:18 - 00000286 _____ () C:\Windows\Tasks\bench-Updater removing.job 2014-02-18 09:55 - 2014-02-18 09:54 - 00255760 _____ () C:\Users\agusia\Downloads\ 2014-02-18 09:18 - 2014-02-15 08:00 - 00000346 _____ () C:\Windows\Tasks\bench-sys.job 2014-02-18 08:50 - 2012-12-17 15:25 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-02-18 08:43 - 2013-02-17 15:15 - 00000000 ____D () C:\Users\agusia\AppData\Local\Adobe 2014-02-18 08:40 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-18 08:40 - 2009-07-14 05:45 - 00032064 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-18 08:33 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-18 08:33 - 2009-07-14 05:51 - 00091629 _____ () C:\Windows\setupact.log 2014-02-17 22:05 - 2014-02-17 22:05 - 00403271 _____ () C:\Users\agusia\Desktop\Card Wars Adventure Time Hack 2014-02-17 21:57 - 2014-01-02 21:30 - 00000000 ____D () C:\Users\agusia\Desktop\output 2014-02-17 21:18 - 2014-02-17 21:18 - 00003226 _____ () C:\Windows\System32\Tasks\bench-Updater removing 2014-02-17 20:48 - 2014-02-17 20:48 - 00403253 _____ () C:\Users\agusia\Desktop\The Tribez & Castlez 2014-02-17 20:30 - 2014-02-17 20:30 - 00064754 _____ () C:\Users\agusia\Desktop\screen568x568.jpeg 2014-02-17 19:59 - 2012-12-17 13:19 - 00003974 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{72F69AC9-5AD0-46CB-B469-2BAA73A78A21} 2014-02-17 17:41 - 2014-02-15 08:00 - 00000000 ____D () C:\Program Files (x86)\Bench 2014-02-17 17:41 - 2014-02-11 16:01 - 00000266 __RSH () C:\ProgramData\ntuser.pol 2014-02-17 17:40 - 2013-01-01 17:35 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2927037778-1233708203-2928765012-1000Core.job 2014-02-16 22:56 - 2014-02-16 22:56 - 00403241 _____ () C:\Users\agusia\Desktop\Legends At War 2014-02-16 22:33 - 2014-02-16 22:33 - 00403227 _____ () C:\Users\agusia\Desktop\Hay Day 2014-02-16 22:30 - 2014-02-16 18:27 - 00403251 _____ () C:\Users\agusia\Desktop\Eternity Warriors 3 2014-02-16 20:17 - 2014-02-16 20:16 - 02450313 _____ () C:\Users\agusia\Downloads\ssy how v2.rar 2014-02-16 13:26 - 2014-02-16 13:26 - 00003328 _____ () C:\Windows\System32\Tasks\e-pity2013_styczen 2014-02-16 13:26 - 2014-02-16 13:26 - 00003328 _____ () C:\Windows\System32\Tasks\e-pity2013_kwiecien 2014-02-16 13:26 - 2014-02-16 13:26 - 00001185 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-pity 2013 - program, pity roczne, e-deklaracje.lnk 2014-02-16 13:26 - 2014-02-16 13:26 - 00001155 _____ () C:\Users\agusia\Desktop\e-pity 2013 - program, pity roczne, e-deklaracje.lnk 2014-02-16 13:26 - 2014-02-16 13:26 - 00000000 ____D () C:\Users\agusia\Documents\efile 2014-02-16 13:26 - 2014-02-16 13:26 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\com.efile.epity2013 2014-02-16 13:25 - 2014-02-16 13:25 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\fillUp 2014-02-16 13:25 - 2014-02-16 13:25 - 00000000 ____D () C:\Program Files (x86)\e-file 2014-02-16 13:25 - 2014-02-16 13:24 - 21614336 _____ (e-file sp. z o.o. ) C:\Users\agusia\Downloads\setup_e-pity2013_adg.exe 2014-02-16 10:36 - 2012-12-17 15:29 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\GG 2014-02-15 15:06 - 2013-02-18 17:41 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\ 2014-02-15 13:05 - 2013-08-07 09:35 - 00000000 ____D () C:\Users\agusia\.gimp-2.8 2014-02-15 12:18 - 2014-02-14 21:10 - 00029581 _____ () C:\Users\agusia\Downloads\Addition.txt 2014-02-15 08:18 - 2013-12-07 21:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-02-15 08:18 - 2010-11-21 04:47 - 00396270 _____ () C:\Windows\PFRO.log 2014-02-15 08:17 - 2014-02-15 08:16 - 00000000 ____D () C:\AdwCleaner 2014-02-15 08:17 - 2012-12-17 13:19 - 00001186 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-02-15 08:17 - 2012-12-17 13:19 - 00000999 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-02-15 08:15 - 2014-02-15 08:15 - 01166132 _____ () C:\Users\agusia\Downloads\adwcleaner.exe 2014-02-15 08:07 - 2014-01-17 18:24 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SmartTweak Software 2014-02-15 08:07 - 2014-01-17 18:24 - 00000000 ____D () C:\Program Files (x86)\SmartTweak 2014-02-15 08:04 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\Mobogenie 2014-02-15 08:00 - 2014-02-15 08:00 - 00003242 _____ () C:\Windows\System32\Tasks\bench-sys 2014-02-15 08:00 - 2014-02-15 08:00 - 00000000 ____D () C:\Program Files (x86)\predm 2014-02-15 08:00 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-02-15 07:38 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\ 2014-02-14 21:38 - 2014-02-14 21:37 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-02-14 20:32 - 2014-02-14 20:32 - 00602112 _____ (OldTimer Tools) C:\Users\agusia\Downloads\OTL.exe 2014-02-14 17:56 - 2014-02-14 17:56 - 00001219 _____ () C:\Users\agusia\Desktop\PIT pro 2013.lnk 2014-02-14 17:56 - 2014-02-14 17:56 - 00000000 ____D () C:\Program Files (x86)\ 2014-02-14 17:56 - 2014-02-14 17:52 - 18302464 _____ ( Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (2).exe 2014-02-14 17:52 - 2014-02-14 17:51 - 18302416 _____ ( Sp. z o.o. ) C:\Users\agusia\Downloads\Instaluj_program_PIT_PRO_2013 (1).exe 2014-02-14 15:57 - 2013-10-09 19:09 - 00003192 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForagusia 2014-02-14 15:57 - 2013-10-09 19:09 - 00000336 _____ () C:\Windows\Tasks\HPCeeScheduleForagusia.job 2014-02-14 15:19 - 2014-02-14 15:17 - 00000000 ____D () C:\Program Files (x86)\BacklinkBeast 2014-02-14 15:17 - 2014-02-14 15:17 - 00001969 _____ () C:\Users\Public\Desktop\BacklinkBeast.lnk 2014-02-14 15:16 - 2014-02-14 15:16 - 13813716 _____ () C:\Users\agusia\Downloads\BBeast.rar 2014-02-14 11:29 - 2014-01-20 11:44 - 00000000 ____D () C:\Users\agusia\VirtualBox VMs 2014-02-14 11:29 - 2014-01-20 11:14 - 00000000 ____D () C:\Users\agusia\.VirtualBox 2014-02-13 14:47 - 2014-02-15 08:01 - 00000426 _____ () C:\AVScanner.ini 2014-02-12 08:24 - 2014-02-12 08:24 - 00141776 _____ () C:\Users\agusia\Downloads\Royal Story Hack Tool v9.1.rar 2014-02-12 07:31 - 2013-06-28 14:03 - 00000000 ____D () C:\Users\agusia\Documents\Visual Studio 2010 2014-02-11 21:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-02-11 16:20 - 2014-02-11 16:20 - 00004761 _____ () C:\Users\agusia\AppData\Local\recently-used.xbel 2014-02-11 16:20 - 2013-08-07 09:38 - 00000000 ____D () C:\Users\agusia\AppData\Local\gtk-2.0 2014-02-11 16:08 - 2014-02-11 16:07 - 00000000 ____D () C:\Program Files\GIMP 2 2014-02-11 16:05 - 2014-02-11 16:05 - 90396104 _____ (The GIMP Team ) C:\Users\agusia\Downloads\gimp-2.8.10-setup( 2014-02-11 16:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy 2014-02-11 11:02 - 2014-02-11 11:02 - 00419123 _____ () C:\Users\agusia\Downloads\Dawn Of The Dragons Hack.rar 2014-02-11 09:14 - 2014-02-11 09:14 - 00013934 _____ () C:\Users\agusia\Downloads\scan virus.odt 2014-02-11 08:45 - 2012-12-17 15:25 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-11 08:45 - 2012-12-17 15:25 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-10 17:11 - 2011-12-12 00:52 - 00000000 ____D () C:\ProgramData\Intel 2014-02-10 17:11 - 2011-12-12 00:27 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-02-10 17:07 - 2014-02-10 16:55 - 00000000 ____D () C:\ProgramData\BlueStacksSetup 2014-02-10 16:57 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-02-10 16:56 - 2014-02-10 16:56 - 00000000 ____D () C:\Program Files (x86)\BlueStacks 2014-02-10 16:56 - 2014-02-10 16:55 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-02-10 16:55 - 2014-02-10 16:55 - 10414824 _____ (BlueStack Systems Inc.) C:\Users\agusia\Downloads\BlueStacks-SplitInstaller_native.exe 2014-02-10 16:53 - 2014-02-10 16:53 - 00666648 _____ () C:\Users\agusia\Downloads\BlueStacks-App-Player(35569).exe 2014-02-10 16:35 - 2014-02-10 16:32 - 208666624 _____ () C:\Users\agusia\Downloads\android-x86-4.3-20130725.iso 2014-02-10 16:06 - 2014-02-10 16:03 - 206569472 _____ () C:\Users\agusia\Downloads\android-x86-4.2-20130228.iso 2014-02-10 13:53 - 2014-02-10 13:50 - 00000000 ____D () C:\Program Files (x86)\Counter-Strike 1.6 NonSteam 2014-02-10 13:46 - 2014-02-10 13:41 - 334566618 _____ () C:\Users\agusia\Downloads\Counter-Strike 1.6 PATCH v50.rar 2014-02-10 12:38 - 2014-02-10 12:35 - 25970356 _____ () C:\Users\agusia\Downloads\Brave Frontier v1.1.1.apk 2014-02-10 11:50 - 2011-10-21 19:26 - 00737480 _____ () C:\Windows\system32\perfh015.dat 2014-02-10 11:50 - 2011-10-21 19:26 - 00154136 _____ () C:\Windows\system32\perfc015.dat 2014-02-10 11:50 - 2009-07-14 06:13 - 01661232 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-10 11:33 - 2014-02-10 11:33 - 00946895 _____ () C:\Users\agusia\Downloads\ 2014-02-10 10:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\cache 2014-02-09 21:38 - 2014-02-09 21:38 - 01144851 _____ () C:\Users\agusia\Downloads\cstrike (1).zip 2014-02-08 19:33 - 2014-02-08 19:33 - 00636030 _____ () C:\Users\agusia\Downloads\Desktop.rar 2014-02-08 18:09 - 2014-02-08 18:09 - 07652580 _____ () C:\Users\agusia\Downloads\ 2014-02-07 12:06 - 2014-02-07 12:05 - 48704734 _____ () C:\Users\agusia\Downloads\BBHF-WAC.rar 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182.txt 2014-02-07 09:35 - 2014-02-07 09:35 - 00000000 _____ () C:\Users\agusia\Downloads\7263182 (1).txt 2014-02-07 09:33 - 2014-02-07 09:33 - 00006358 _____ () C:\Users\agusia\Downloads\8892773.txt 2014-02-06 17:19 - 2012-12-17 15:35 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Skype 2014-02-06 17:00 - 2012-12-17 15:35 - 00000000 ____D () C:\Users\agusia\Documents\Youcam 2014-02-06 11:45 - 2014-02-06 11:45 - 07652987 _____ () C:\Users\agusia\Downloads\ 2014-02-05 19:15 - 2013-12-10 14:26 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-05 19:15 - 2013-12-10 14:26 - 00003868 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-05 19:15 - 2011-10-21 10:00 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-05 17:38 - 2014-02-05 17:38 - 01069948 _____ () C:\Users\agusia\Downloads\cstrike (8).rar 2014-02-05 17:19 - 2014-02-05 17:19 - 00066659 _____ () C:\Users\agusia\Downloads\ 2014-02-05 17:15 - 2014-02-05 17:15 - 00010793 _____ () C:\Users\agusia\Downloads\SB Crack.rar 2014-02-05 17:09 - 2014-02-05 17:09 - 04414406 _____ () C:\Users\agusia\Downloads\ 2014-02-04 22:25 - 2014-02-04 22:25 - 00391325 _____ () C:\Users\agusia\Downloads\de_dust2_long0000.rar 2014-02-03 21:00 - 2014-02-03 21:00 - 01947192 _____ (Best Free Spinner ) C:\Users\agusia\Downloads\bfspro.exe 2014-02-03 21:00 - 2014-02-03 21:00 - 00003072 _____ () C:\Users\agusia\AppData\Roaming\bfs.settings 2014-02-03 21:00 - 2014-02-03 21:00 - 00000000 ____D () C:\Program Files (x86)\BFS Pro 2014-02-02 22:20 - 2014-01-11 17:08 - 00002389 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (3).txt 2014-02-02 19:45 - 2014-02-02 19:45 - 00405789 _____ () C:\Users\agusia\Downloads\Frrrr.rar 2014-02-02 19:41 - 2014-02-02 19:41 - 02761738 _____ () C:\Users\agusia\Downloads\cstrike_polish (1).rar 2014-02-01 19:30 - 2014-02-01 19:29 - 03274422 _____ () C:\Users\agusia\Downloads\cstrike (7).rar 2014-02-01 14:01 - 2014-02-01 14:01 - 00000625 _____ () C:\Users\agusia\Downloads\Anonymous.txt 2014-01-31 17:03 - 2014-01-31 17:03 - 03695620 _____ () C:\Users\agusia\Downloads\ 2014-01-30 18:22 - 2011-10-21 09:56 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-01-30 18:19 - 2011-10-21 10:14 - 00000000 ____D () C:\ProgramData\Hewlett-Packard 2014-01-30 18:18 - 2011-02-10 20:23 - 00000000 ____D () C:\SWSetup 2014-01-29 22:36 - 2014-01-29 22:36 - 00778274 _____ () C:\Users\agusia\Downloads\MarkItNowLite_Setup.exe 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mark IT Now! 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Users\agusia\AppData\Local\MarkIT Now 2014-01-29 22:36 - 2014-01-29 22:36 - 00000000 ____D () C:\Program Files (x86)\Mark IT Now! 2014-01-29 20:35 - 2014-01-29 20:35 - 01156487 _____ () C:\Users\agusia\Downloads\ 2014-01-29 20:27 - 2014-01-29 20:27 - 00650377 _____ () C:\Users\agusia\Downloads\ 2014-01-29 20:25 - 2014-01-29 20:24 - 00518160 _____ () C:\Users\agusia\Downloads\ 2014-01-29 19:58 - 2014-01-29 19:57 - 05554763 _____ () C:\Users\agusia\Downloads\ 2014-01-29 09:34 - 2013-01-16 16:42 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-01-29 09:34 - 2012-12-19 12:56 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-01-28 22:00 - 2014-01-28 22:00 - 01801935 _____ () C:\Users\agusia\Downloads\ 2014-01-28 16:28 - 2014-01-28 16:28 - 00310575 _____ () C:\Users\agusia\Downloads\ 2014-01-27 19:18 - 2014-01-27 19:18 - 03118607 _____ () C:\Users\agusia\Downloads\ 2014-01-27 18:55 - 2014-01-27 18:55 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft Corporation 2014-01-27 14:59 - 2013-10-20 14:55 - 00953645 _____ () C:\Users\agusia\Downloads\ 2014-01-27 14:26 - 2014-01-27 14:26 - 01889051 _____ () C:\Users\agusia\Downloads\50-000.txt 2014-01-27 11:03 - 2014-01-27 11:03 - 04531894 _____ () C:\Users\agusia\Downloads\lucid1.5.rar 2014-01-27 08:43 - 2014-01-27 08:43 - 03080779 _____ () C:\Users\agusia\Downloads\ 2014-01-26 09:02 - 2014-01-26 09:01 - 06397424 _____ () C:\Users\agusia\Downloads\Tekstury.rar 2014-01-25 18:18 - 2014-01-25 18:18 - 00000505 _____ () C:\Users\agusia\Desktop\Nowy dokument tekstowy (4).txt 2014-01-25 08:01 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\AppData\Local\genienext 2014-01-23 13:24 - 2014-01-23 13:24 - 00000000 ____D () C:\Users\agusia\Documents\default 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnlockRoot Pro 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Program Files (x86)\Unlockroot Pro 2014-01-21 09:00 - 2014-01-17 18:25 - 00000000 ____D () C:\Program Files (x86)\Unlockroot 2014-01-21 08:57 - 2014-01-17 18:51 - 00000000 ____D () C:\Program Files (x86)\ZhuoDaShi 2014-01-21 08:56 - 2012-12-19 13:13 - 00000000 ____D () C:\Firefox 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 ____D () C:\Users\agusia\Documents\Mobogenie 2014-01-20 11:52 - 2014-01-20 11:52 - 00000000 _____ () C:\Users\agusia\daemonprocess.txt 2014-01-20 11:52 - 2012-12-17 13:11 - 00000000 ____D () C:\Users\agusia 2014-01-20 11:49 - 2014-01-20 11:48 - 00000000 ____D () C:\Users\agusia\AppData\Roaming\DAEMON Tools Lite 2014-01-20 11:49 - 2014-01-20 11:47 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-01-20 11:48 - 2014-01-20 11:48 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-01-20 11:48 - 2014-01-20 11:48 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-01-20 11:47 - 2014-01-20 11:47 - 13485616 _____ (Disc Soft Ltd) C:\Users\agusia\Downloads\DTLite4481-0347( 2014-01-20 11:38 - 2014-01-20 11:25 - 00000000 ____D () C:\Users\agusia\Downloads\xp prof sp3 2014-01-20 11:33 - 2014-01-20 11:33 - 00172635 _____ () C:\Users\agusia\Downloads\SS Gruby Lolooo.rar 2014-01-20 11:25 - 2014-01-20 11:24 - 00013085 _____ () C:\Users\agusia\Downloads\Windows XP Professional SP3 [PL].torrent 2014-01-20 11:21 - 2014-01-20 11:21 - 00000814 _____ () C:\Users\agusia\Desktop\µTorrent.lnk 2014-01-20 11:21 - 2014-01-20 11:21 - 00000794 _____ () C:\Users\agusia\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-01-20 11:20 - 2014-01-20 11:20 - 01307736 _____ (BitTorrent Inc.) C:\Users\agusia\Downloads\utorrent.exe 2014-01-20 11:19 - 2014-01-20 11:19 - 00013109 _____ () C:\Users\agusia\Downloads\Windows_XP_SP3_[PL]_[ iso].torrent 2014-01-20 11:13 - 2014-01-20 11:13 - 00001076 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-01-20 11:12 - 2014-01-20 11:12 - 00000000 ____D () C:\Program Files\Oracle 2014-01-20 11:10 - 2014-01-20 11:10 - 106322704 _____ (Oracle Corporation) C:\Users\agusia\Downloads\VirtualBox-4.3.6-91406-Win.exe 2014-01-19 17:43 - 2014-01-19 17:43 - 00002614 _____ () C:\Users\agusia\Downloads\www-addonsbestgame-com_20140119T164309Z_DisavowLinks.csv 2014-01-19 17:34 - 2014-01-19 17:34 - 00002641 _____ () C:\Users\agusia\Downloads\Critical Backlinks 2014-01-19 17:32 - 2014-01-19 17:32 - 00007250 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (2).xlsx 2014-01-19 17:31 - 2014-01-19 17:31 - 00007426 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19 (1).xlsx 2014-01-19 17:30 - 2014-01-19 17:30 - 00007427 _____ () C:\Users\agusia\Downloads\nnnn-2014-January-19.xlsx 2014-01-19 14:44 - 2014-01-19 14:44 - 02347384 _____ (ESET) C:\Users\agusia\Downloads\esetsmartinstaller_plk.exe 2014-01-19 14:44 - 2014-01-19 14:44 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-01-19 08:33 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe Some content of TEMP: ==================== C:\Users\agusia\AppData\Local\Temp\adb.exe C:\Users\agusia\AppData\Local\Temp\AdbWinApi.dll C:\Users\agusia\AppData\Local\Temp\AdbWinUsbApi.dll C:\Users\agusia\AppData\Local\Temp\appshat_generic.exe C:\Users\agusia\AppData\Local\Temp\AutoItX3.dll C:\Users\agusia\AppData\Local\Temp\bitool.dll C:\Users\agusia\AppData\Local\Temp\Creative Cloud Helper.exe C:\Users\agusia\AppData\Local\Temp\DeviceRooter.exe C:\Users\agusia\AppData\Local\Temp\DIFxAPI.dll C:\Users\agusia\AppData\Local\Temp\ews-setup.exe C:\Users\agusia\AppData\Local\Temp\Extract.exe C:\Users\agusia\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\agusia\AppData\Local\Temp\ggdrive-menu.exe C:\Users\agusia\AppData\Local\Temp\ggdrive-overlay.exe C:\Users\agusia\AppData\Local\Temp\GoogleSetup.exe C:\Users\agusia\AppData\Local\Temp\HPHelpUpdater.exe C:\Users\agusia\AppData\Local\Temp\installstats.exe C:\Users\agusia\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe C:\Users\agusia\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\agusia\AppData\Local\Temp\LiveSupport_setup.exe C:\Users\agusia\AppData\Local\Temp\Mobogenie_Setup_2.1.37_515.exe C:\Users\agusia\AppData\Local\Temp\OneClickRoot.exe C:\Users\agusia\AppData\Local\Temp\OptimizerPro.exe C:\Users\agusia\AppData\Local\Temp\Quarantine.exe C:\Users\agusia\AppData\Local\Temp\Resource.exe C:\Users\agusia\AppData\Local\Temp\setup_fst_pl.exe C:\Users\agusia\AppData\Local\Temp\Show-Password_1030-8102.exe C:\Users\agusia\AppData\Local\Temp\sp58915.exe C:\Users\agusia\AppData\Local\Temp\SP59202.exe C:\Users\agusia\AppData\Local\Temp\sp64126.exe C:\Users\agusia\AppData\Local\Temp\SpeedUpMyComputer.exe C:\Users\agusia\AppData\Local\Temp\uninst.exe C:\Users\agusia\AppData\Local\Temp\uninst1.exe C:\Users\agusia\AppData\Local\Temp\UninstallHPSA.exe C:\Users\agusia\AppData\Local\Temp\unlockrootsetup.exe C:\Users\agusia\AppData\Local\Temp\UpdateCheckerSetup.exe C:\Users\agusia\AppData\Local\Temp\Updater.exe C:\Users\agusia\AppData\Local\Temp\vmark_setup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-20 14:54 ==================== End Of Log ============================