Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-03-2014 02 Ran by Robert (administrator) on ROBERT-VAIO on 04-03-2014 23:19:48 Running from C:\Users\Robert\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polish Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (AMD) C:\Windows\system32\atieclxx.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VAIOCareService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jusched.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Sony Corporation) c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Sony Corporation) C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe (Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe (Sony Corporation) C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCsystray.exe (ALPS) C:\Program Files\Apoint\Apvfb.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apntex.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () C:\monitor.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Softonic) C:\Users\Robert\AppData\Local\Softonic\Softonic.exe (Microsoft Corporation) C:\Program Files (x86)\Internet Explorer\IELowutil.exe () C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\system32\consent.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9636896 2009-12-16] (Realtek Semiconductor) HKLM\...\Run: [Apoint] - C:\Program Files\Apoint\Apoint.exe [208384 2009-11-04] (Alps Electric Co., Ltd.) HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Java\jre6\bin\jusched.exe [171520 2013-06-24] (Sun Microsystems, Inc.) HKLM\...\Run: [] - [X] HKLM\...\Run: [AdAwareTray] - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe [4114264 2014-01-23] () HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-11-20] (Intel Corporation) HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [320880 2009-08-26] (Sony Corporation) HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-01-13] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [NortonOnlineBackupReminder] - C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe [538472 2009-06-17] (Symantec Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] - c:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2009-10-24] (Sony Corporation) HKLM-x32\...\Run: [MarketingTools] - C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2013-06-24] (Sony Corporation) HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058912 2012-04-02] (SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [Ad-Aware Browsing Protection] - C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe HKLM-x32\...\Runonce: [Del5787496] - cmd.exe /Q /D /c del "C:\Users\Robert\AppData\Local\Temp\0.del" [X] Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\Run: [swg] - C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-06-24] (Google Inc.) HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\Run: [msnmsgr] - C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [3883856 2009-07-26] (Microsoft Corporation) HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\Run: [FDPRO-516] - C:\Program Files (x86)\Fighters\FighterLauncher.exe FDPRO HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\Run: [Softonic for Windows] - C:\Users\Robert\AppData\Local\Softonic\Softonic.exe [4144112 2014-02-14] (Softonic) HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {3d8ad59a-6eca-11e3-9b1e-f07bcbeffa1a} - H:\AutoRun.exe HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {8c71e11e-df71-11e2-bd48-f07bcbeffa1a} - H:\AutoRun.exe HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {8c71e12a-df71-11e2-bd48-f07bcbeffa1a} - H:\AutoRun.exe HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {a7efc140-dcae-11e2-9211-806e6f6e6963} - G:\InstallNavi.exe HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {b6550566-6f3c-11e3-937f-f07bcbeffa1a} - H:\AutoRun.exe HKU\S-1-5-21-4168593835-3853781545-1588647507-1000\...\MountPoints2: {f9ae622c-dfc3-11e2-89c4-f07bcbeffa1a} - H:\AutoRun.exe Startup: C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2010.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.buenosearch.com/?babsrc=HP_ss&mntrId=B0C9F07BCBEFFA1A&affID=128491&tsp=5176 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKCU - DefaultScope {96E8FA73-10CB-4593-87DF-682186FD9603} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SVEC_plPL542 SearchScopes: HKCU - {04A7DBEC-5769-4DCF-A37D-2B2D7346C443} URL = http://rover.ebay.com/rover/1/710-42480-16445-5/4?satitle={searchTerms} SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = http://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=B0C9F07BCBEFFA1A&affID=128491&tsp=5176 SearchScopes: HKCU - {53AB5C4B-6876-4E5A-B73D-35666D24B795} URL = http://uk.shopping.com/?linkin_id=8056359 SearchScopes: HKCU - {732A6CF9-D634-44EC-90E9-732CACE033AC} URL = http://www.zinio.com/search/index.jsp?s={searchTerms}&rf=sonyie8search SearchScopes: HKCU - {96E8FA73-10CB-4593-87DF-682186FD9603} URL = http://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7SVEC_plPL542 BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll No File BHO: Windows Live Family Safety Browser Helper Class - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll (Microsoft Corporation) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO-x32: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Robert\AppData\Local\SaveSense\SaveSenseIE.dll No File BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll No File Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll (SEIKO EPSON CORPORATION) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: ipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11D1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll (Microsoft Corporation) Winsock: Catalog9-x64 01 C:\Windows\system32\PCProtect64.dll [330624] (Objectify Media Inc) Winsock: Catalog9-x64 02 C:\Windows\system32\PCProtect64.dll [330624] (Objectify Media Inc) Winsock: Catalog9-x64 03 C:\Windows\system32\PCProtect64.dll [330624] (Objectify Media Inc) Winsock: Catalog9-x64 04 C:\Windows\system32\PCProtect64.dll [330624] (Objectify Media Inc) Winsock: Catalog9-x64 16 C:\Windows\system32\PCProtect64.dll [330624] (Objectify Media Inc) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Chrome: ======= CHR HomePage: hxxp://www.onet.pl/ CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.160.1) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeploytk.dll No File CHR Plugin: (Java(TM) Platform SE 6 U16) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Windows Live® Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Extension: (Dokumenty Google) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-06-27] CHR Extension: (Dysk Google) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-06-27] CHR Extension: (YouTube) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-06-27] CHR Extension: (Szukaj w Google) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-06-27] CHR Extension: (Foxtab Speed Dial) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchmpbaclbiioedakpcldenooikekokm [2013-10-30] CHR Extension: (Block site) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiimnmioipafcokbfikbljfdeojpcgbh [2014-02-23] CHR Extension: (AdBlock) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-10] CHR Extension: (Google Wallet) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Widget context) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\ombmmloebnfnpehgjnmkcgoegfachobp [2014-02-17] CHR Extension: (Gmail) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-06-27] CHR HKLM\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\Robert\AppData\Local\foxtab_speeddial.crx [2013-10-30] CHR HKCU\...\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\Robert\AppData\Local\foxtab_speeddial.crx [2013-10-30] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION CHR HKCU\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [135824 2011-12-12] (Seiko Epson Corporation) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-06-17] () R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe [702744 2014-01-23] () S2 ProtectMonitor; C:\monitorsvc.exe [34244 2014-02-13] () S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-08-31] (Sonic Solutions) S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-08-31] (Sonic Solutions) S3 SampleCollector; C:\Program Files\Sony\VAIO Care\collsvc.exe [167424 2009-09-16] (Intel Corporation) S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-10-15] (Sony Corporation) S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-10-15] (Sony Corporation) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-09-14] (Sony Corporation) R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642416 2009-09-14] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1368624 2013-08-01] (Sony Corporation) R2 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-09-14] (Sony Corporation) ==================== Drivers (Whitelisted) ==================== R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\2.6.0.0\gzflt.sys [138232 2013-07-17] (BitDefender LLC) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [239104 2012-09-18] (Huawei Technologies Co., Ltd.) R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [329800 2013-07-17] (BitDefender S.R.L.) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-11-12] () R3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-04 23:19 - 2014-03-04 23:20 - 00022675 _____ () C:\Users\Robert\Downloads\FRST.txt 2014-03-04 23:03 - 2014-03-04 23:03 - 01145344 _____ (Farbar) C:\Users\Robert\Downloads\FRST.exe 2014-03-04 22:49 - 2014-03-04 22:49 - 00143320 _____ () C:\Users\Robert\Downloads\OTL.Txt 2014-03-04 22:44 - 2014-03-04 23:19 - 00000000 ____D () C:\FRST 2014-03-04 22:43 - 2014-03-04 22:43 - 02156544 _____ (Farbar) C:\Users\Robert\Downloads\FRST64.exe 2014-03-04 22:22 - 2014-03-04 22:22 - 00602112 _____ (OldTimer Tools) C:\Users\Robert\Downloads\OTL.exe 2014-03-04 21:48 - 2014-03-04 21:48 - 00000000 _____ () C:\autoexec.bat 2014-03-04 21:47 - 2014-03-04 21:47 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-03-04 21:46 - 2014-03-04 22:12 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-03-04 21:44 - 2014-03-04 21:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Robert\Downloads\SpyHunter-Installer.exe 2014-03-04 21:23 - 2014-03-04 21:23 - 00000302 _____ () C:\AdwCleaner[S1].txt 2014-03-04 21:22 - 2014-03-04 21:22 - 00001562 _____ () C:\AdwCleaner[R1].txt 2014-03-04 21:21 - 2014-03-04 21:21 - 00618227 _____ () C:\Users\Robert\Downloads\adwcleaner14.08.exe 2014-03-04 20:11 - 2014-03-04 22:04 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\iSafe 2014-03-04 20:11 - 2014-03-04 20:11 - 09982968 _____ () C:\Users\Robert\Downloads\yet_another_cleaner (1).exe 2014-03-04 18:56 - 2014-03-04 18:56 - 11873098 _____ (PortableAppZ.blogspot.com) C:\Users\Robert\Desktop\SpybotSD_Portable_1.6.2.46_MultiLang.paf.exe 2014-03-04 18:56 - 2014-03-04 18:56 - 00401768 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_spybot-search-destroy-portable.exe 2014-03-04 18:37 - 2014-03-04 18:37 - 00000000 ____D () C:\Program Files (x86)\VuuPC 2014-03-04 18:34 - 2014-03-04 22:35 - 00000296 _____ () C:\Windows\Tasks\SaveSense.job 2014-03-04 18:34 - 2014-03-04 18:35 - 00003244 _____ () C:\Windows\System32\Tasks\SaveSense 2014-03-04 18:34 - 2014-03-04 18:34 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\SaveSense 2014-03-04 18:22 - 2014-03-04 18:36 - 00000000 ____D () C:\Users\Robert\AppData\Local\Mobogenie 2014-03-04 18:22 - 2014-03-04 18:33 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\VOPackage 2014-03-04 18:22 - 2014-03-04 18:24 - 00000000 ____D () C:\Users\Robert\AppData\Local\cache 2014-03-04 18:22 - 2014-03-04 18:22 - 00001062 _____ () C:\Users\Robert\Desktop\Softonic.lnk 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\Documents\Mobogenie 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Softonic 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\Softonic 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\CrashRpt 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\.android 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 _____ () C:\Users\Robert\daemonprocess.txt 2014-03-04 18:21 - 2014-03-04 18:21 - 00599823 _____ (Media Player Classic) C:\Users\Robert\Desktop\Media_Player_Classic.exe 2014-03-04 18:21 - 2014-03-04 18:21 - 00401744 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_media-player-classic.exe 2014-03-04 18:21 - 2014-03-04 18:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-04 18:17 - 2014-03-04 18:17 - 01029080 _____ (CyberLink) C:\Users\Robert\Downloads\CyberLink_PowerDVD_Downloader (1).exe 2014-03-04 18:17 - 2014-03-04 18:17 - 00000868 _____ () C:\Users\Robert\Desktop\CyberLink_PowerDVD_Downloader (1).lnk 2014-03-04 18:16 - 2014-03-04 18:16 - 00000000 ____D () C:\ProgramData\install_clap 2014-03-04 18:00 - 2014-03-04 18:00 - 00000000 ____D () C:\ProgramData\CyberLink 2014-03-04 17:59 - 2014-03-04 17:59 - 01029080 _____ (CyberLink) C:\Users\Robert\Downloads\CyberLink_PowerDVD_Downloader.exe 2014-03-04 17:54 - 2014-03-04 17:54 - 00003976 _____ () C:\Windows\SysWOW64\PCProtect.ini 2014-03-04 17:54 - 2014-03-04 17:54 - 00002184 _____ () C:\Windows\SysWOW64\PCProtectOff.ini 2014-03-04 17:54 - 2014-03-04 17:54 - 00002184 _____ () C:\Windows\system32\PCProtectOff.ini 2014-03-04 17:54 - 2014-01-08 06:08 - 00330624 _____ (Objectify Media Inc) C:\Windows\system32\PCProtect64.dll 2014-03-04 17:53 - 2014-03-04 18:34 - 00000000 ____D () C:\Program Files (x86)\Web Protect 2014-03-04 17:53 - 2014-03-04 17:53 - 00000571 _____ () C:\Windows\system32\MyDefrag.debuglog 2014-03-04 17:52 - 2014-03-04 18:27 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Fighters 2014-03-04 17:52 - 2014-03-04 18:27 - 00000000 ____D () C:\ProgramData\Fighters 2014-03-04 17:51 - 2014-03-04 17:51 - 00220456 _____ (Premium Installer ) C:\Users\Robert\Downloads\setup.exe 2014-02-26 06:10 - 2014-02-26 06:12 - 00000000 ____D () C:\AdwCleaner 2014-02-26 06:10 - 2014-02-26 06:10 - 01241834 _____ () C:\Users\Robert\Downloads\adwcleaner.exe 2014-02-26 06:10 - 2014-02-26 06:10 - 01241834 _____ () C:\Users\Robert\Downloads\adwcleaner (1).exe 2014-02-25 22:34 - 2014-02-25 22:38 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-25 22:34 - 2014-02-04 19:09 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-25 22:31 - 2014-02-26 23:10 - 01641484 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-25 21:21 - 2014-02-25 21:21 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\LavasoftStatistics 2014-02-25 21:16 - 2014-02-25 21:16 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Lavasoft 2014-02-25 21:10 - 2014-03-04 17:01 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2014-02-25 21:10 - 2014-02-25 21:10 - 00000000 ____D () C:\Program Files\Lavasoft 2014-02-25 21:09 - 2014-02-25 21:10 - 00000000 ____D () C:\Users\Robert\AppData\Local\adawarebp 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\SecureSearch 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\Program Files (x86)\Lavasoft 2014-02-25 21:08 - 2014-02-25 21:08 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft 2014-02-25 21:07 - 2014-02-25 21:07 - 01727624 _____ () C:\Users\Robert\Downloads\Adaware_Installer.exe 2014-02-25 21:07 - 2014-02-25 21:07 - 00673248 _____ ( ) C:\Users\Robert\Downloads\AdAware-Free-Antivirus(12969).exe 2014-02-25 21:07 - 2014-02-25 21:07 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-02-25 09:26 - 2014-02-25 09:26 - 00000000 ____D () C:\Users\Robert\Documents\Notesy programu OneNote 2014-02-25 07:43 - 2014-02-25 07:43 - 00985600 _____ () C:\Users\Robert\Downloads\MicrosoftFixit50123.msi 2014-02-24 21:10 - 2014-03-04 20:42 - 00064437 _____ () C:\Users\Robert\Desktop\Baza robert (1).xlsx 2014-02-24 20:31 - 2014-02-24 20:31 - 00059656 _____ () C:\Users\Robert\Downloads\Baza robert (1).xlsx 2014-02-24 08:35 - 2014-02-24 08:35 - 00059656 _____ () C:\Users\Robert\Downloads\Baza robert.xlsx 2014-02-23 09:59 - 2014-03-04 11:10 - 00002149 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-02-23 09:58 - 2014-02-23 09:58 - 00847848 _____ (Google Inc.) C:\Users\Robert\Downloads\ChromeSetup.exe 2014-02-21 09:22 - 2014-02-21 09:22 - 00012235 _____ () C:\Users\Robert\Downloads\kalkulator_do_samodzielnego_wyliczania_prowizji.xlsx 2014-02-19 09:46 - 2014-03-04 17:01 - 00003136 _____ () C:\Windows\setupact.log 2014-02-19 09:46 - 2014-02-26 05:34 - 00585742 _____ () C:\Windows\PFRO.log 2014-02-19 09:46 - 2014-02-19 09:46 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-19 06:48 - 2014-02-19 06:48 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\eCyber 2014-02-19 06:47 - 2014-02-19 06:47 - 00000000 ____D () C:\Windows\system32\log 2014-02-19 06:45 - 2014-02-19 06:46 - 09741752 _____ () C:\Users\Robert\Downloads\yet_another_cleaner.exe 2014-02-13 14:12 - 2014-02-13 14:12 - 00487517 _____ () C:\monitor.exe 2014-02-13 13:43 - 2014-02-13 13:43 - 00034244 _____ () C:\monitorsvc.exe 2014-02-13 06:25 - 2013-12-21 09:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 06:25 - 2013-12-21 08:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 06:24 - 2014-02-06 12:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-13 06:24 - 2014-02-06 11:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-13 06:24 - 2014-02-06 11:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-13 06:24 - 2014-02-06 11:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-13 06:24 - 2014-02-06 11:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-13 06:24 - 2014-02-06 11:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-13 06:24 - 2014-02-06 10:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-13 06:24 - 2014-02-06 10:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-13 06:24 - 2014-02-06 10:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-13 06:24 - 2014-02-06 10:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-13 06:24 - 2014-02-06 10:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-13 06:24 - 2014-02-06 10:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-13 06:24 - 2014-02-06 10:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-13 06:24 - 2014-02-06 10:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-13 06:24 - 2014-02-06 10:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-13 06:24 - 2014-02-06 10:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-13 06:24 - 2014-02-06 10:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-13 06:24 - 2014-02-06 10:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-13 06:24 - 2014-02-06 10:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-13 06:24 - 2014-02-06 09:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-13 06:24 - 2014-02-06 09:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-13 06:24 - 2014-02-06 09:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-13 06:24 - 2014-02-06 09:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-13 06:24 - 2014-02-06 09:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-13 06:24 - 2014-02-06 09:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-13 06:24 - 2014-02-06 09:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-13 06:24 - 2014-02-06 09:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-13 06:24 - 2014-02-06 09:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-13 06:24 - 2014-02-06 09:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-13 06:24 - 2014-02-06 09:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-13 06:24 - 2014-02-06 09:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-13 06:24 - 2014-02-06 09:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-13 06:24 - 2014-02-06 09:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-13 06:24 - 2014-02-06 09:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-13 06:24 - 2014-02-06 08:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-13 06:24 - 2014-02-06 08:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-13 06:24 - 2014-02-06 08:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-13 06:24 - 2014-02-06 08:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-13 06:24 - 2014-02-06 08:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-13 04:39 - 2013-12-31 23:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 04:39 - 2013-12-31 23:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 04:39 - 2013-12-24 23:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 04:39 - 2013-12-24 22:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 04:39 - 2013-12-06 02:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 04:39 - 2013-12-06 02:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 04:39 - 2013-12-06 02:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 04:39 - 2013-12-06 02:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 04:39 - 2013-12-04 02:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 04:39 - 2013-12-04 02:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 04:39 - 2013-12-04 02:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 04:39 - 2013-12-04 02:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 04:39 - 2013-12-04 02:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 04:39 - 2013-12-04 02:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 04:39 - 2013-12-04 02:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 04:39 - 2013-12-04 02:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 04:39 - 2013-12-04 02:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 04:39 - 2013-12-04 02:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 04:39 - 2013-12-04 02:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 04:39 - 2013-12-04 02:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 04:39 - 2013-12-04 02:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 04:39 - 2013-12-04 02:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 04:39 - 2013-12-04 01:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 04:39 - 2013-12-04 01:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 04:39 - 2013-12-04 01:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 04:39 - 2013-12-04 01:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 04:39 - 2013-11-26 08:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 04:39 - 2013-11-22 22:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-02-11 07:07 - 2014-02-11 07:07 - 00000000 ____D () C:\Program Files\Free Opener 2014-02-11 07:07 - 2014-02-11 07:07 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack 2014-02-11 07:07 - 2010-03-15 10:31 - 00165376 _____ () C:\Windows\SysWOW64\unrar.dll 2014-02-11 07:06 - 2014-02-11 07:06 - 21372992 _____ (EZ Freeware ) C:\Users\Robert\Desktop\freeopener_setup.exe 2014-02-11 07:05 - 2014-02-11 07:05 - 00401728 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_free-opener.exe 2014-02-10 10:24 - 2014-02-10 10:24 - 00002131 _____ () C:\Users\Public\Desktop\Epson Easy Photo Print.lnk 2014-02-10 10:24 - 2014-02-10 10:24 - 00000000 ____D () C:\ProgramData\UDL 2014-02-10 10:23 - 2014-02-10 10:23 - 00000308 _____ () C:\Windows\setup.iss 2014-02-10 10:09 - 2014-02-10 10:09 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-02-10 10:00 - 2014-02-10 11:28 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Epson 2014-02-10 08:43 - 2014-02-10 10:22 - 00002301 _____ () C:\Users\Public\Desktop\Epson Przewodnik pracy w sieci L355 Series.lnk 2014-02-10 08:43 - 2014-02-10 10:22 - 00000273 _____ () C:\Users\Public\Desktop\Epson Przewodnik użytkownika L355 Series.url 2014-02-10 08:43 - 2014-02-10 10:22 - 00000256 _____ () C:\Users\Public\Desktop\Instrukcja obsługi programu Epson Connect.url 2014-02-10 08:42 - 2014-02-10 10:24 - 00000000 ____D () C:\Program Files (x86)\Epson Software 2014-02-10 08:42 - 2014-02-10 08:42 - 00000000 ____D () C:\Program Files\EpsonNet 2014-02-10 08:42 - 2012-11-12 20:41 - 00535552 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\ensppui.dll 2014-02-10 08:42 - 2012-11-12 20:41 - 00535552 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\enppui.dll 2014-02-10 08:42 - 2012-11-12 15:15 - 00558592 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\ensppmon.dll 2014-02-10 08:42 - 2012-11-12 15:15 - 00558592 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\enppmon.dll 2014-02-10 08:42 - 2012-10-22 17:19 - 00219648 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\enspres.dll 2014-02-10 08:42 - 2012-10-22 17:19 - 00219648 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\enpres.dll 2014-02-10 08:41 - 2014-02-10 08:42 - 00000000 ____D () C:\Program Files (x86)\epson 2014-02-10 08:41 - 2014-02-10 08:41 - 00000934 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-02-10 08:41 - 2012-07-24 00:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2014-02-10 08:41 - 2011-12-12 00:00 - 00135824 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2014-02-10 08:39 - 2014-02-10 10:24 - 00000000 ____D () C:\ProgramData\EPSON 2014-02-10 08:39 - 2011-04-19 03:03 - 00120320 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YLMI4E.DLL 2014-02-10 08:39 - 2011-03-14 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YD4BI4E.DLL 2014-02-10 08:39 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2014-02-09 07:50 - 2014-02-19 10:06 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Mozilla 2014-02-06 07:51 - 2014-02-28 20:52 - 00000000 ____D () C:\Users\Robert\Desktop\RZet ==================== One Month Modified Files and Folders ======= 2014-03-04 23:20 - 2014-03-04 23:19 - 00022675 _____ () C:\Users\Robert\Downloads\FRST.txt 2014-03-04 23:19 - 2014-03-04 22:44 - 00000000 ____D () C:\FRST 2014-03-04 23:19 - 2013-09-11 16:51 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-04 23:07 - 2013-06-27 21:48 - 00001048 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-04 23:03 - 2014-03-04 23:03 - 01145344 _____ (Farbar) C:\Users\Robert\Downloads\FRST.exe 2014-03-04 22:49 - 2014-03-04 22:49 - 00143320 _____ () C:\Users\Robert\Downloads\OTL.Txt 2014-03-04 22:43 - 2014-03-04 22:43 - 02156544 _____ (Farbar) C:\Users\Robert\Downloads\FRST64.exe 2014-03-04 22:35 - 2014-03-04 18:34 - 00000296 _____ () C:\Windows\Tasks\SaveSense.job 2014-03-04 22:22 - 2014-03-04 22:22 - 00602112 _____ (OldTimer Tools) C:\Users\Robert\Downloads\OTL.exe 2014-03-04 22:12 - 2014-03-04 21:46 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP 2014-03-04 22:06 - 2013-06-24 09:20 - 01250244 _____ () C:\Windows\WindowsUpdate.log 2014-03-04 22:05 - 2009-07-14 03:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-03-04 22:04 - 2014-03-04 20:11 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\iSafe 2014-03-04 21:48 - 2014-03-04 21:48 - 00000000 _____ () C:\autoexec.bat 2014-03-04 21:47 - 2014-03-04 21:47 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-03-04 21:44 - 2014-03-04 21:44 - 00728960 _____ (Enigma Software Group USA, LLC.) C:\Users\Robert\Downloads\SpyHunter-Installer.exe 2014-03-04 21:23 - 2014-03-04 21:23 - 00000302 _____ () C:\AdwCleaner[S1].txt 2014-03-04 21:22 - 2014-03-04 21:22 - 00001562 _____ () C:\AdwCleaner[R1].txt 2014-03-04 21:21 - 2014-03-04 21:21 - 00618227 _____ () C:\Users\Robert\Downloads\adwcleaner14.08.exe 2014-03-04 21:14 - 2009-07-14 03:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-03-04 20:42 - 2014-02-24 21:10 - 00064437 _____ () C:\Users\Robert\Desktop\Baza robert (1).xlsx 2014-03-04 20:11 - 2014-03-04 20:11 - 09982968 _____ () C:\Users\Robert\Downloads\yet_another_cleaner (1).exe 2014-03-04 19:59 - 2013-06-24 13:20 - 00003982 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{ECFF4CA8-255D-4688-A167-5B86014855B3} 2014-03-04 18:56 - 2014-03-04 18:56 - 11873098 _____ (PortableAppZ.blogspot.com) C:\Users\Robert\Desktop\SpybotSD_Portable_1.6.2.46_MultiLang.paf.exe 2014-03-04 18:56 - 2014-03-04 18:56 - 00401768 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_spybot-search-destroy-portable.exe 2014-03-04 18:50 - 2013-10-30 06:25 - 00000000 ____D () C:\ProgramData\Skype 2014-03-04 18:48 - 2013-06-24 13:19 - 00000000 ___RD () C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-03-04 18:40 - 2013-10-30 06:25 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Skype 2014-03-04 18:37 - 2014-03-04 18:37 - 00000000 ____D () C:\Program Files (x86)\VuuPC 2014-03-04 18:36 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\Mobogenie 2014-03-04 18:35 - 2014-03-04 18:34 - 00003244 _____ () C:\Windows\System32\Tasks\SaveSense 2014-03-04 18:35 - 2013-12-19 08:23 - 00000140 _____ () C:\Users\Robert\AppData\Roaming\WB.CFG 2014-03-04 18:34 - 2014-03-04 18:34 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\SaveSense 2014-03-04 18:34 - 2014-03-04 17:53 - 00000000 ____D () C:\Program Files (x86)\Web Protect 2014-03-04 18:33 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\VOPackage 2014-03-04 18:27 - 2014-03-04 17:52 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Fighters 2014-03-04 18:27 - 2014-03-04 17:52 - 00000000 ____D () C:\ProgramData\Fighters 2014-03-04 18:24 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\cache 2014-03-04 18:22 - 2014-03-04 18:22 - 00001062 _____ () C:\Users\Robert\Desktop\Softonic.lnk 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\Documents\Mobogenie 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Softonic 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\Softonic 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\AppData\Local\CrashRpt 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 ____D () C:\Users\Robert\.android 2014-03-04 18:22 - 2014-03-04 18:22 - 00000000 _____ () C:\Users\Robert\daemonprocess.txt 2014-03-04 18:22 - 2013-06-24 11:35 - 00000000 ____D () C:\Users\Robert 2014-03-04 18:21 - 2014-03-04 18:21 - 00599823 _____ (Media Player Classic) C:\Users\Robert\Desktop\Media_Player_Classic.exe 2014-03-04 18:21 - 2014-03-04 18:21 - 00401744 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_media-player-classic.exe 2014-03-04 18:21 - 2014-03-04 18:21 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-03-04 18:17 - 2014-03-04 18:17 - 01029080 _____ (CyberLink) C:\Users\Robert\Downloads\CyberLink_PowerDVD_Downloader (1).exe 2014-03-04 18:17 - 2014-03-04 18:17 - 00000868 _____ () C:\Users\Robert\Desktop\CyberLink_PowerDVD_Downloader (1).lnk 2014-03-04 18:16 - 2014-03-04 18:16 - 00000000 ____D () C:\ProgramData\install_clap 2014-03-04 18:16 - 2010-05-05 22:21 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-04 18:07 - 2013-06-27 21:48 - 00001044 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-04 18:00 - 2014-03-04 18:00 - 00000000 ____D () C:\ProgramData\CyberLink 2014-03-04 17:59 - 2014-03-04 17:59 - 01029080 _____ (CyberLink) C:\Users\Robert\Downloads\CyberLink_PowerDVD_Downloader.exe 2014-03-04 17:54 - 2014-03-04 17:54 - 00003976 _____ () C:\Windows\SysWOW64\PCProtect.ini 2014-03-04 17:54 - 2014-03-04 17:54 - 00002184 _____ () C:\Windows\SysWOW64\PCProtectOff.ini 2014-03-04 17:54 - 2014-03-04 17:54 - 00002184 _____ () C:\Windows\system32\PCProtectOff.ini 2014-03-04 17:53 - 2014-03-04 17:53 - 00000571 _____ () C:\Windows\system32\MyDefrag.debuglog 2014-03-04 17:51 - 2014-03-04 17:51 - 00220456 _____ (Premium Installer ) C:\Users\Robert\Downloads\setup.exe 2014-03-04 17:06 - 2009-07-14 04:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-04 17:06 - 2009-07-14 04:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-04 17:01 - 2014-02-25 21:10 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2014-03-04 17:01 - 2014-02-19 09:46 - 00003136 _____ () C:\Windows\setupact.log 2014-03-04 16:59 - 2013-09-25 18:41 - 00000000 ____D () C:\Users\Robert\Tracing 2014-03-04 16:58 - 2009-07-14 05:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-04 11:10 - 2014-02-23 09:59 - 00002149 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-03-03 05:21 - 2013-12-27 11:40 - 00000000 ____D () C:\Users\Robert\Desktop\Natlii 2014-02-28 21:08 - 2013-08-28 18:15 - 00000000 ____D () C:\Users\Robert\Desktop\Motywacje 2014-02-28 20:54 - 2013-11-11 20:14 - 00000000 ____D () C:\Users\Robert\Desktop\Ja 2014-02-28 20:53 - 2013-08-10 17:06 - 00000000 ____D () C:\Users\Robert\Desktop\GIG 2014-02-28 20:52 - 2014-02-06 07:51 - 00000000 ____D () C:\Users\Robert\Desktop\RZet 2014-02-28 20:47 - 2013-08-05 17:07 - 00000000 ____D () C:\Users\Robert\Desktop\Faktury 2014-02-26 23:10 - 2014-02-25 22:31 - 01641484 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-26 23:10 - 2010-05-05 20:01 - 00740266 _____ () C:\Windows\system32\perfh015.dat 2014-02-26 23:10 - 2010-05-05 20:01 - 00155808 _____ () C:\Windows\system32\perfc015.dat 2014-02-26 23:10 - 2009-07-14 05:13 - 01641484 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-26 06:12 - 2014-02-26 06:10 - 00000000 ____D () C:\AdwCleaner 2014-02-26 06:10 - 2014-02-26 06:10 - 01241834 _____ () C:\Users\Robert\Downloads\adwcleaner.exe 2014-02-26 06:10 - 2014-02-26 06:10 - 01241834 _____ () C:\Users\Robert\Downloads\adwcleaner (1).exe 2014-02-26 05:34 - 2014-02-19 09:46 - 00585742 _____ () C:\Windows\PFRO.log 2014-02-25 22:38 - 2014-02-25 22:34 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-25 22:16 - 2013-07-19 20:21 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-02-25 21:21 - 2014-02-25 21:21 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\LavasoftStatistics 2014-02-25 21:16 - 2014-02-25 21:16 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Lavasoft 2014-02-25 21:10 - 2014-02-25 21:10 - 00000000 ____D () C:\Program Files\Lavasoft 2014-02-25 21:10 - 2014-02-25 21:09 - 00000000 ____D () C:\Users\Robert\AppData\Local\adawarebp 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\SecureSearch 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\ProgramData\Ad-Aware Browsing Protection 2014-02-25 21:09 - 2014-02-25 21:09 - 00000000 ____D () C:\Program Files (x86)\Lavasoft 2014-02-25 21:08 - 2014-02-25 21:08 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft 2014-02-25 21:07 - 2014-02-25 21:07 - 01727624 _____ () C:\Users\Robert\Downloads\Adaware_Installer.exe 2014-02-25 21:07 - 2014-02-25 21:07 - 00673248 _____ ( ) C:\Users\Robert\Downloads\AdAware-Free-Antivirus(12969).exe 2014-02-25 21:07 - 2014-02-25 21:07 - 00000000 ____D () C:\ProgramData\Lavasoft 2014-02-25 09:26 - 2014-02-25 09:26 - 00000000 ____D () C:\Users\Robert\Documents\Notesy programu OneNote 2014-02-25 07:43 - 2014-02-25 07:43 - 00985600 _____ () C:\Users\Robert\Downloads\MicrosoftFixit50123.msi 2014-02-24 20:31 - 2014-02-24 20:31 - 00059656 _____ () C:\Users\Robert\Downloads\Baza robert (1).xlsx 2014-02-24 08:35 - 2014-02-24 08:35 - 00059656 _____ () C:\Users\Robert\Downloads\Baza robert.xlsx 2014-02-23 09:58 - 2014-02-23 09:58 - 00847848 _____ (Google Inc.) C:\Users\Robert\Downloads\ChromeSetup.exe 2014-02-21 09:22 - 2014-02-21 09:22 - 00012235 _____ () C:\Users\Robert\Downloads\kalkulator_do_samodzielnego_wyliczania_prowizji.xlsx 2014-02-21 07:19 - 2013-09-11 16:51 - 00003868 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-02-21 07:19 - 2013-09-11 16:50 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-02-21 07:19 - 2013-09-11 16:50 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-02-19 13:55 - 2013-06-26 14:31 - 00000000 ____D () C:\Users\Robert\AppData\Local\Google 2014-02-19 10:06 - 2014-02-09 07:50 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Mozilla 2014-02-19 09:46 - 2014-02-19 09:46 - 00000000 _____ () C:\Windows\setuperr.log 2014-02-19 09:44 - 2013-10-03 08:00 - 00002382 _____ () C:\Users\Robert\Desktop\Program uruchamiający aplikacje Chrome.lnk 2014-02-19 09:05 - 2013-07-05 07:57 - 00000000 ____D () C:\Program Files (x86)\Mister Capital 2014-02-19 06:51 - 2013-09-03 08:28 - 00000000 ____D () C:\Windows\Minidump 2014-02-19 06:48 - 2014-02-19 06:48 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\eCyber 2014-02-19 06:47 - 2014-02-19 06:47 - 00000000 ____D () C:\Windows\system32\log 2014-02-19 06:46 - 2014-02-19 06:45 - 09741752 _____ () C:\Users\Robert\Downloads\yet_another_cleaner.exe 2014-02-13 18:02 - 2013-06-27 21:48 - 00004044 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-13 18:02 - 2013-06-27 21:48 - 00003792 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-02-13 17:22 - 2009-07-14 03:20 - 00000000 ____D () C:\Windows\rescache 2014-02-13 14:12 - 2014-02-13 14:12 - 00487517 _____ () C:\monitor.exe 2014-02-13 13:43 - 2014-02-13 13:43 - 00034244 _____ () C:\monitorsvc.exe 2014-02-13 06:38 - 2013-06-26 12:36 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-02-13 06:25 - 2009-07-14 02:34 - 00000510 _____ () C:\Windows\win.ini 2014-02-12 07:40 - 2009-07-14 05:08 - 00032604 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-02-11 07:07 - 2014-02-11 07:07 - 00000000 ____D () C:\Program Files\Free Opener 2014-02-11 07:07 - 2014-02-11 07:07 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack 2014-02-11 07:06 - 2014-02-11 07:06 - 21372992 _____ (EZ Freeware ) C:\Users\Robert\Desktop\freeopener_setup.exe 2014-02-11 07:05 - 2014-02-11 07:05 - 00401728 _____ (Softonic ) C:\Users\Robert\Downloads\SoftonicDownloader_dla_free-opener.exe 2014-02-10 11:44 - 2013-08-21 06:50 - 00000000 ____D () C:\Users\Robert\Desktop\Sezon 2013 2014-02-10 11:28 - 2014-02-10 10:00 - 00000000 ____D () C:\Users\Robert\AppData\Roaming\Epson 2014-02-10 10:24 - 2014-02-10 10:24 - 00002131 _____ () C:\Users\Public\Desktop\Epson Easy Photo Print.lnk 2014-02-10 10:24 - 2014-02-10 10:24 - 00000000 ____D () C:\ProgramData\UDL 2014-02-10 10:24 - 2014-02-10 08:42 - 00000000 ____D () C:\Program Files (x86)\Epson Software 2014-02-10 10:24 - 2014-02-10 08:39 - 00000000 ____D () C:\ProgramData\EPSON 2014-02-10 10:23 - 2014-02-10 10:23 - 00000308 _____ () C:\Windows\setup.iss 2014-02-10 10:22 - 2014-02-10 08:43 - 00002301 _____ () C:\Users\Public\Desktop\Epson Przewodnik pracy w sieci L355 Series.lnk 2014-02-10 10:22 - 2014-02-10 08:43 - 00000273 _____ () C:\Users\Public\Desktop\Epson Przewodnik użytkownika L355 Series.url 2014-02-10 10:22 - 2014-02-10 08:43 - 00000256 _____ () C:\Users\Public\Desktop\Instrukcja obsługi programu Epson Connect.url 2014-02-10 10:21 - 2009-07-14 05:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-02-10 10:09 - 2014-02-10 10:09 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2014-02-10 08:42 - 2014-02-10 08:42 - 00000000 ____D () C:\Program Files\EpsonNet 2014-02-10 08:42 - 2014-02-10 08:41 - 00000000 ____D () C:\Program Files (x86)\epson 2014-02-10 08:41 - 2014-02-10 08:41 - 00000934 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-02-07 19:21 - 2013-08-31 20:52 - 00413504 _____ () C:\test.xml 2014-02-06 12:16 - 2014-02-13 06:24 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-02-06 11:30 - 2014-02-13 06:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-02-06 11:30 - 2014-02-13 06:24 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-02-06 11:12 - 2014-02-13 06:24 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-02-06 11:07 - 2014-02-13 06:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-02-06 11:06 - 2014-02-13 06:24 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-02-06 10:57 - 2014-02-13 06:24 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-02-06 10:56 - 2014-02-13 06:24 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-02-06 10:52 - 2014-02-13 06:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-02-06 10:49 - 2014-02-13 06:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-02-06 10:48 - 2014-02-13 06:24 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-02-06 10:48 - 2014-02-13 06:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-02-06 10:38 - 2014-02-13 06:24 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-02-06 10:32 - 2014-02-13 06:24 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-02-06 10:20 - 2014-02-13 06:24 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-02-06 10:17 - 2014-02-13 06:24 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-02-06 10:11 - 2014-02-13 06:24 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-02-06 10:01 - 2014-02-13 06:24 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-02-06 10:00 - 2014-02-13 06:24 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-02-06 09:57 - 2014-02-13 06:24 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-02-06 09:57 - 2014-02-13 06:24 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-02-06 09:52 - 2014-02-13 06:24 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-02-06 09:52 - 2014-02-13 06:24 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-02-06 09:50 - 2014-02-13 06:24 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-02-06 09:49 - 2014-02-13 06:24 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-02-06 09:47 - 2014-02-13 06:24 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-02-06 09:46 - 2014-02-13 06:24 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-02-06 09:25 - 2014-02-13 06:24 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-02-06 09:25 - 2014-02-13 06:24 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-02-06 09:24 - 2014-02-13 06:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-02-06 09:22 - 2014-02-13 06:24 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-02-06 09:13 - 2014-02-13 06:24 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-02-06 09:09 - 2014-02-13 06:24 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-02-06 09:03 - 2014-02-13 06:24 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-02-06 08:55 - 2014-02-13 06:24 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-02-06 08:41 - 2014-02-13 06:24 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-02-06 08:40 - 2014-02-13 06:24 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-02-06 08:36 - 2014-02-13 06:24 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-02-06 08:34 - 2014-02-13 06:24 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-04 19:09 - 2014-02-25 22:34 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe Some content of TEMP: ==================== C:\Users\Robert\AppData\Local\Temp\6_Offer_3.exe C:\Users\Robert\AppData\Local\Temp\9557b53e-2687-4c7a-9f1d-9efad03ddaeb.exe C:\Users\Robert\AppData\Local\Temp\aff_setup.exe C:\Users\Robert\AppData\Local\Temp\BackupSetup.exe C:\Users\Robert\AppData\Local\Temp\BuenoSearchTB.exe C:\Users\Robert\AppData\Local\Temp\DownloadManager.exe C:\Users\Robert\AppData\Local\Temp\FULL-DISKfighterSetup_partner516_1.3.61Full.exe C:\Users\Robert\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Robert\AppData\Local\Temp\Mobogenie_INT.exe C:\Users\Robert\AppData\Local\Temp\Quarantine.exe C:\Users\Robert\AppData\Local\Temp\SettingsManagerSetup.exe C:\Users\Robert\AppData\Local\Temp\SHSetup.exe C:\Users\Robert\AppData\Local\Temp\Softonic_PL_1-5-9_PL-Production_10_CleanRelease.exe C:\Users\Robert\AppData\Local\Temp\uninst1.exe C:\Users\Robert\AppData\Local\Temp\vcredist_x64.exe C:\Users\Robert\AppData\Local\Temp\VuuPCSetup_full.exe C:\Users\Robert\AppData\Local\Temp\wp-adk.104i.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-02-28 10:15 ==================== End Of Log ============================