OTL logfile created on: 2014-03-19 18:32:49 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = D:\programy\użytki\bezpieczeństwo_diagnostyka\OTL Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,25 Gb Total Physical Memory | 1,98 Gb Available Physical Memory | 60,84% Memory free 5,09 Gb Paging File | 3,84 Gb Available in Paging File | 75,39% Paging File free Paging file location(s): c:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 195,31 Gb Total Space | 106,13 Gb Free Space | 54,34% Space Free | Partition Type: NTFS Drive D: | 270,44 Gb Total Space | 149,23 Gb Free Space | 55,18% Space Free | Partition Type: NTFS Computer Name: MT-51687E0 | User Name: Marzena i Tomek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-03-19 14:22:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\programy\użytki\bezpieczeństwo_diagnostyka\OTL\OTL.exe PRC - [2014-03-14 12:46:38 | 000,172,624 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe PRC - [2014-03-14 12:46:24 | 000,116,816 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe PRC - [2014-02-26 09:50:46 | 003,234,288 | ---- | M] () -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\fst_pl_72\upfst_pl_72.exe PRC - [2014-02-25 11:41:37 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2014-02-25 11:41:34 | 000,431,672 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2014-02-25 11:41:25 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2014-02-25 11:41:24 | 000,689,744 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2014-02-16 11:54:33 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2013-10-20 12:44:09 | 000,182,696 | ---- | M] (Oracle Corporation) -- C:\Program Files\Java\jre7\bin\jqs.exe PRC - [2013-10-18 02:35:01 | 001,028,384 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe PRC - [2012-11-08 00:37:37 | 001,990,464 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2012-11-08 00:37:11 | 006,756,048 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2009-10-14 13:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe PRC - [2009-10-14 13:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files\Common Files\logishrd\LQCVFX\COCIManager.exe PRC - [2009-10-07 01:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe PRC - [2008-04-15 13:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-06-27 19:04:00 | 001,213,736 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe PRC - [2007-06-27 19:03:40 | 000,152,872 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe PRC - [2000-01-01 01:00:00 | 000,147,456 | ---- | M] () -- C:\Advanced Wheel Mouse\wh_exec.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-03-14 12:46:42 | 000,049,744 | ---- | M] () -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Temp\avgnt.exe\Avira.OE.ExtApi.dll MOD - [2014-03-14 12:46:34 | 000,061,520 | ---- | M] () -- C:\Program Files\Avira\My Avira\Avira.OE.AvConnectorNative.dll MOD - [2014-03-14 12:46:26 | 000,111,696 | ---- | M] () -- C:\Program Files\Avira\My Avira\Avira.OE.NativeCore.dll MOD - [2014-03-03 19:05:28 | 016,265,096 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll MOD - [2014-02-26 09:50:46 | 003,234,288 | ---- | M] () -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\fst_pl_72\upfst_pl_72.exe MOD - [2014-02-25 11:41:37 | 000,394,808 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll MOD - [2014-02-16 11:54:32 | 003,578,992 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll MOD - [2014-02-13 22:06:20 | 000,253,952 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsFormsIntegra#\08889fb98d5fdce5d755c1f3807bb8bf\WindowsFormsIntegration.ni.dll MOD - [2014-02-13 22:05:55 | 001,080,320 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\9505770499b72968d34423094dd4f6ec\System.IdentityModel.ni.dll MOD - [2014-02-13 22:05:48 | 018,155,008 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\59b1be69bf675755c8b43ea862442c96\System.ServiceModel.ni.dll MOD - [2014-02-13 22:05:26 | 001,218,560 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\ecc7743098d7e89031a74a40e0276943\System.Management.ni.dll MOD - [2014-02-13 22:05:03 | 000,221,696 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ServiceProce#\e519ca59f575456843364dcccf306bda\System.ServiceProcess.ni.dll MOD - [2014-02-13 22:04:47 | 001,812,480 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xaml\120a2085471af8c00e7c7b62c4141693\System.Xaml.ni.dll MOD - [2014-02-13 22:04:33 | 000,787,456 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\73c6126a3376432a834c8940286106cc\System.EnterpriseServices.ni.dll MOD - [2014-02-13 22:04:33 | 000,236,032 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.EnterpriseSe#\73c6126a3376432a834c8940286106cc\System.EnterpriseServices.Wrapper.dll MOD - [2014-02-13 22:04:32 | 000,649,728 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Transactions\d4a60ec8142575f539b1c61a18c342ac\System.Transactions.ni.dll MOD - [2014-02-13 22:04:31 | 001,021,952 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Dura#\08eb012707d8d8f6b9af22afa752e287\System.Runtime.DurableInstancing.ni.dll MOD - [2014-02-13 22:04:30 | 000,143,360 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\4b05760d32b99e099051274756353a7a\SMDiagnostics.ni.dll MOD - [2014-02-13 22:04:29 | 002,659,840 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runtime.Seri#\b16885f00acf4fa58857f5bd2dec820f\System.Runtime.Serialization.ni.dll MOD - [2014-02-13 22:04:26 | 000,393,216 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml.Linq\981d5f26908f26f32b55a30cc4e85516\System.Xml.Linq.ni.dll MOD - [2014-02-13 22:02:20 | 018,022,912 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\f5a7366bde9581582a7adaf4d75237be\PresentationFramework.ni.dll MOD - [2014-02-13 22:02:17 | 000,755,712 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationFramewo#\016e52cc92277894c458a64f42f6b2f4\PresentationFramework.Luna.ni.dll MOD - [2014-02-13 22:02:15 | 000,694,272 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.ComponentMod#\24924261741e2b20eb8a41c296e5526d\System.ComponentModel.Composition.ni.dll MOD - [2014-02-13 22:02:14 | 006,843,392 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data\7680a06069f923b0cce0143f3ad70863\System.Data.ni.dll MOD - [2014-02-13 22:02:03 | 013,199,360 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\10fb7026d35bf3f90b898075aafa0955\System.Windows.Forms.ni.dll MOD - [2014-02-13 22:02:02 | 005,628,416 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\926dccd5f3cd72c4d6cc4009648d06d0\System.Xml.ni.dll MOD - [2014-02-13 22:01:59 | 001,014,784 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\66d85425fcbd18e6fecd7339add5b3a0\System.Configuration.ni.dll MOD - [2014-02-13 22:01:57 | 011,527,680 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationCore\074eb623bdbd2e7763862a865b41a681\PresentationCore.ni.dll MOD - [2014-02-13 22:01:55 | 001,667,584 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\47f9d830cefe3a85334c42c02c0a5cc7\System.Drawing.ni.dll MOD - [2014-02-13 22:01:53 | 002,558,464 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\2512e7d45f396a4720b1a601d127a127\System.Data.Linq.ni.dll MOD - [2014-02-13 22:01:50 | 007,070,720 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\a786dc22ec428a2b083d4d631f9d66a1\System.Core.ni.dll MOD - [2014-02-13 22:01:47 | 003,883,008 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsBase\9243906165c8282a7bb8d43717488720\WindowsBase.ni.dll MOD - [2014-02-13 22:01:44 | 009,100,288 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\6456ab920c84162f31dede6e2591275d\System.ni.dll MOD - [2014-02-13 22:01:38 | 000,145,408 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Numerics\a437fcf3d7da648a53ac10602e41ca02\System.Numerics.ni.dll MOD - [2014-02-13 22:01:37 | 014,418,432 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\0f9ba380621c38344628d30fb72d2327\mscorlib.ni.dll MOD - [2011-04-25 12:25:18 | 000,024,064 | ---- | M] () -- C:\WINDOWS\system32\ssj1mlm.dll MOD - [2011-04-11 06:26:33 | 000,024,064 | ---- | M] () -- C:\WINDOWS\system32\spe__l.dll MOD - [2009-10-14 13:36:56 | 002,793,304 | ---- | M] () -- C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe MOD - [2009-10-14 13:34:18 | 000,560,472 | ---- | M] () -- C:\Program Files\Common Files\logishrd\LQCVFX\COCIManager.exe MOD - [2008-04-15 13:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll MOD - [2000-01-01 01:00:00 | 000,147,456 | ---- | M] () -- C:\Advanced Wheel Mouse\wh_exec.exe MOD - [2000-01-01 01:00:00 | 000,036,864 | ---- | M] () -- C:\Advanced Wheel Mouse\wh_hook.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt) SRV - [2014-03-14 12:46:24 | 000,116,816 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe -- (Avira.OE.ServiceHost) SRV - [2014-02-25 11:41:37 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2014-02-25 11:41:34 | 001,017,424 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avwebgrd.exe -- (AntiVirWebService) SRV - [2014-02-25 11:41:25 | 000,440,400 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2014-02-16 11:54:33 | 000,118,896 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-10-23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate) SRV - [2013-10-20 12:44:09 | 000,182,696 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Java\jre7\bin\jqs.exe -- (JavaQuickStarterService) SRV - [2012-11-08 00:37:37 | 001,990,464 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2009-10-07 01:47:34 | 000,154,136 | ---- | M] (Logitech Inc.) [Auto | Running] -- C:\Program Files\Common Files\logishrd\LVMVFM\LVPrcSrv.exe -- (LVPrcSrv) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - File not found [Kernel | On_Demand | Unknown] -- C:\DOCUME~1\MARZEN~1\USTAWI~1\Temp\pwdcifod.sys -- (pwdcifod) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP) DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [File_System | On_Demand | Stopped] -- C:\Program Files\iSafe\iSafeFsFlt.sys -- (iSafeFsFlt) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - [2014-02-27 18:23:34 | 000,013,464 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SWDUMon.sys -- (SWDUMon) DRV - [2014-02-25 11:41:37 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2014-02-25 11:41:28 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2014-02-25 11:41:26 | 000,135,648 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2014-02-25 11:41:24 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2014-02-11 20:52:55 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2012-11-08 00:38:17 | 000,099,080 | ---- | M] (COMODO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\inspect.sys -- (Inspect) DRV - [2012-11-08 00:38:16 | 000,032,640 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2012-11-08 00:38:14 | 000,497,952 | ---- | M] (COMODO) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2012-09-20 05:35:36 | 000,181,344 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudmdm.sys -- (ssudmdm) DRV - [2012-09-20 05:35:36 | 000,083,168 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssudbus.sys -- (dg_ssudbus) DRV - [2012-02-15 14:16:48 | 000,005,120 | ---- | M] (Samsung Electronics) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\SSPORT.sys -- (SSPORT) DRV - [2010-11-01 06:08:46 | 000,014,416 | ---- | M] (OpenLibSys.org) [File_System | On_Demand | Stopped] -- C:\Program Files\IObit\Game Booster 3\Driver\WinRing0.sys -- (WinRing0_1_2_0) DRV - [2009-10-07 01:46:36 | 000,025,752 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVPr2Mon.sys -- (LVPr2Mon) DRV - [2009-04-30 23:01:36 | 000,265,496 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lvrs.sys -- (LVRS) DRV - [2008-10-09 15:42:42 | 000,017,408 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\KMWDFILTER.sys -- (KMWDFILTER) DRV - [2007-04-16 21:46:00 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM) DRV - [2007-02-03 19:32:34 | 000,041,504 | R--- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta) DRV - [2007-02-03 19:27:27 | 000,938,272 | R--- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LV302V32.SYS -- (PID_PEPI) DRV - [2007-02-03 19:27:15 | 000,014,240 | R--- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lv302af.sys -- (pepifilter) DRV - [2000-01-01 01:00:00 | 005,589,720 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2000-01-01 01:00:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2000-01-01 01:00:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2000-01-01 01:00:00 | 000,415,832 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2000-01-01 01:00:00 | 000,043,392 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\usbfilter.sys -- (usbfilter) DRV - [2000-01-01 01:00:00 | 000,007,424 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\whfltr2k.sys -- (whfltr2k) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=ST3500320AS_5QM3TYN8XXXX5QM3TYN8&ts=0 IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://search.qvo6.com/web/?utm_source=b&utm_medium=prs&from=prs&uid=ST3500320AS_5QM3TYN8XXXX5QM3TYN8&ts=0 IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qvo6.com/?utm_source=b&utm_medium=prs&from=prs&uid=ST3500320AS_5QM3TYN8XXXX5QM3TYN8&ts=1369586887 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.pl/ IE - HKCU\..\SearchScopes,DefaultScope = {8EEAC88A-079B-4b2c-80C1-7836F79EB40A} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKCU\..\SearchScopes\{8EEAC88A-079B-4b2c-80C1-7836F79EB40A}: "URL" = http://pl.search.yahoo.com/search?p={searchTerms}&fr=chr-comodo IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/" FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:27.0.1 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_70.dll () FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.450: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2014-02-16 11:54:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 27.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-10-29 20:51:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Mozilla\Extensions [2014-02-16 11:54:26 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions [2014-02-16 11:54:33 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} O1 HOSTS File: ([2008-04-15 13:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O3 - HKLM\..\Toolbar: (no name) - 10 - No CLSID value found. O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [Avira Systray] C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [fst_pl_72] File not found O4 - HKLM..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k File not found O4 - HKLM..\Run: [LogitechQuickCamRibbon] C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [Nvtmru] C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe (NVIDIA Corporation) O4 - HKLM..\Run: [upfst_pl_72.exe] C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\fst_pl_72\upfst_pl_72.exe () O4 - HKLM..\Run: [WheelMouse] C:\Advanced Wheel Mouse\wh_exec.exe () O4 - HKCU..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe (ALLPlayer Group Ltd.) O4 - HKCU..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe (Nero AG) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLinkedConnections = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 221 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1392149689765 (WUWebControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{18F74E1D-2BB9-421E-90E6-8022ECB71E3F}: DhcpNameServer = 192.168.1.254 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O20 - AppInit_DLLs: (C:\WINDOWS\system32\guard32.dll) - C:\WINDOWS\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O27 - HKLM IFEO\bitguard.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\bprotect.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\bpsvc.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\browserdefender.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\browserprotect.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\browsersafeguard.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\dprotectsvc.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\protectedsearch.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\searchprotection.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\searchprotector.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\snapdo.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\stinst32.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\stinst64.exe: Debugger - tasklist.exe File not found O27 - HKLM IFEO\utiljumpflip.exe: Debugger - tasklist.exe File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2014-01-23 19:59:21 | 000,000,040 | ---- | M] () - C:\Autoconfig.ini -- [ NTFS ] O32 - AutoRun File - [2012-10-29 20:04:26 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O36 - AppCertDlls: x64 - (c:\program files\settings manager\systemk\x64\sysapcrt.dll) - File not found O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-03-19 15:01:26 | 000,000,000 | ---D | C] -- C:\FRST [2014-03-19 10:23:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\Skype [2014-03-19 10:23:03 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2014-03-19 10:23:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype [2014-03-13 18:28:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Avira [2014-03-13 18:28:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Avira [2014-03-13 18:27:52 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2014-03-13 18:27:48 | 000,135,648 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys [2014-03-13 18:27:48 | 000,090,400 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2014-03-13 18:27:48 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avkmgr.sys [2014-03-13 18:25:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Avira [2014-03-13 18:25:06 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2014-03-13 18:25:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2014-03-13 18:15:12 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Marzena i Tomek\Recent [2014-03-06 16:21:38 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xp_eos.exe [2014-03-06 16:21:38 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xp_eos.exe [2014-03-04 22:50:15 | 000,000,000 | ---D | C] -- C:\Program Files\predm [2014-03-04 21:18:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\Activision [2014-03-04 21:16:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Activision [2014-03-04 21:10:36 | 000,000,000 | ---D | C] -- C:\Program Files\Activision [2014-03-04 20:53:14 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache [2014-03-04 20:48:54 | 000,000,000 | ---D | C] -- C:\Program Files\fst_pl_72 [2014-03-04 20:48:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\fst_pl_72 [2014-02-27 19:55:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\188F1432-103A-4ffb-80F1-36B633C5C9E1 [2014-02-27 19:46:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\ALLPlayer [2014-02-27 19:46:16 | 000,276,992 | ---- | C] (IntelleSoft) -- C:\WINDOWS\System32\BugTrap.dll [2014-02-27 19:46:13 | 000,000,000 | ---D | C] -- C:\Program Files\ALLPlayer [2014-02-27 19:46:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ALLPlayer [2014-02-27 18:35:54 | 000,043,392 | ---- | C] (Advanced Micro Devices) -- C:\WINDOWS\System32\drivers\usbfilter.sys [2014-02-27 18:23:56 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security [2014-02-27 18:14:56 | 000,938,272 | R--- | C] (Logitech Inc.) -- C:\WINDOWS\System32\drivers\LV302V32.SYS [2014-02-27 18:03:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Menu Start\Programy\Advanced Wheel Mouse [2014-02-27 18:03:30 | 000,000,000 | ---D | C] -- C:\Advanced Wheel Mouse [2014-02-27 17:54:31 | 001,051,080 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3233504.dll [2014-02-27 17:54:31 | 000,896,456 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3233504.dll [2014-02-27 17:39:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\LogiShrd [2014-02-27 17:38:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Leadertech [2014-02-27 17:38:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Logitech [2014-02-27 17:38:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\LogiShrd [2014-02-27 17:38:44 | 000,000,000 | ---D | C] -- C:\Program Files\Logitech [2014-02-27 15:26:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\SlimWare Utilities Inc [2014-02-27 15:26:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\SlimDrivers [2014-02-27 15:26:11 | 000,000,000 | ---D | C] -- C:\Program Files\SlimDrivers [2014-02-27 15:26:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dokumenty\Downloaded Installers [2014-02-26 17:02:50 | 000,000,000 | ---D | C] -- C:\Program Files\Settings Manager [2014-02-26 17:02:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\.android [2014-02-26 17:02:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\cache [2014-02-26 16:26:23 | 000,019,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll [2014-02-21 19:42:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2014-02-21 18:38:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Apple Computer [2014-02-21 18:38:13 | 006,112,864 | ---- | C] (Apple, Inc.) -- C:\WINDOWS\System32\usbaaplrc.dll [2014-02-21 18:18:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marzena i Tomek\Ustawienia lokalne\Dane aplikacji\Macroplant_LLC [2014-02-21 18:15:02 | 000,000,000 | ---D | C] -- C:\Program Files\iExplorer [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-03-19 18:03:25 | 000,015,110 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps [2014-03-19 17:54:00 | 000,001,054 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2014-03-19 14:18:09 | 000,000,298 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_AutoUpdate.job [2014-03-19 14:18:06 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2014-03-19 14:18:05 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-03-19 14:18:05 | 000,000,242 | ---- | M] () -- C:\WINDOWS\tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job [2014-03-19 14:18:03 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-03-19 13:47:28 | 000,565,376 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2014-03-19 13:47:28 | 000,502,414 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2014-03-19 13:47:28 | 000,110,462 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2014-03-19 13:47:28 | 000,088,320 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2014-03-19 10:23:03 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2014-03-18 17:36:43 | 000,000,858 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira.lnk [2014-03-13 18:23:30 | 000,149,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-03-13 17:56:23 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2014-03-09 09:31:39 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job [2014-03-06 20:10:40 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2014-03-04 21:16:48 | 000,001,675 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) - World at War(TM) Multiplayer.lnk [2014-03-04 21:16:48 | 000,001,665 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) - World at War(TM) Solo - Co-op.lnk [2014-03-03 19:05:29 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2014-03-03 19:05:28 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2014-03-03 16:18:30 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2014-02-27 18:23:34 | 000,013,464 | ---- | M] () -- C:\WINDOWS\System32\drivers\SWDUMon.sys [2014-02-27 18:23:31 | 000,002,231 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\SlimDrivers.lnk [2014-02-27 17:55:54 | 001,143,680 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2014-02-27 17:55:54 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin [2014-02-27 17:55:50 | 001,143,680 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2014-02-27 17:38:50 | 000,001,884 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Logitech Webcam Software.lnk [2014-02-27 00:28:46 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\xp_eos.exe [2014-02-27 00:28:46 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xp_eos.exe [2014-02-26 16:26:02 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2014-02-26 16:26:02 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2014-02-25 11:41:37 | 000,028,520 | ---- | M] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2014-02-25 11:41:28 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avkmgr.sys [2014-02-25 11:41:26 | 000,135,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys [2014-02-25 11:41:24 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2014-02-24 17:05:42 | 000,920,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll [2014-02-24 12:35:40 | 006,022,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2014-02-24 12:35:40 | 001,216,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll [2014-02-24 12:35:40 | 000,759,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll [2014-02-24 12:35:40 | 000,611,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mstime.dll [2014-02-24 12:35:40 | 000,611,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll [2014-02-24 12:35:40 | 000,206,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll [2014-02-24 12:35:40 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\url.dll [2014-02-24 12:35:40 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\url.dll [2014-02-24 12:35:40 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll [2014-02-24 12:35:40 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedsbs.dll [2014-02-24 12:35:40 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll [2014-02-24 12:35:39 | 011,113,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll [2014-02-24 12:35:39 | 002,006,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll [2014-02-24 12:35:39 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcpl.cpl [2014-02-24 12:35:39 | 001,469,440 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl [2014-02-24 12:35:39 | 000,743,424 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll [2014-02-24 12:35:39 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeeds.dll [2014-02-24 12:35:39 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll [2014-02-24 12:35:39 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsdbgui.dll [2014-02-24 12:35:39 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll [2014-02-24 12:35:39 | 000,387,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll [2014-02-24 12:35:39 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iepeers.dll [2014-02-24 12:35:39 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll [2014-02-24 12:35:39 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\licmgr10.dll [2014-02-24 12:35:39 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\licmgr10.dll [2014-02-24 12:35:39 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jsproxy.dll [2014-02-24 12:35:39 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll [2014-02-24 12:35:39 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\corpol.dll [2014-02-24 12:35:39 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\corpol.dll [2014-02-24 11:59:13 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe [2014-02-24 11:59:13 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe [2014-02-24 11:59:08 | 000,385,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec [2014-02-23 08:23:14 | 022,888,448 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglnt.dll [2014-02-23 08:23:14 | 017,551,360 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcompiler.dll [2014-02-23 08:23:14 | 009,715,712 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll [2014-02-23 08:23:14 | 009,682,944 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvopencl.dll [2014-02-23 08:23:14 | 004,080,384 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll [2014-02-23 08:23:14 | 002,962,208 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll [2014-02-23 08:23:14 | 002,651,648 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll [2014-02-23 08:23:14 | 002,411,088 | ---- | M] () -- C:\WINDOWS\System32\nvdata.data [2014-02-23 08:23:14 | 002,410,784 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvenc.dll [2014-02-23 08:23:14 | 001,051,080 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3233504.dll [2014-02-23 08:23:14 | 000,896,456 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3233504.dll [2014-02-23 08:23:14 | 000,057,344 | ---- | M] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2014-02-23 08:23:14 | 000,018,700 | ---- | M] () -- C:\WINDOWS\System32\nvinfo.pb [2014-02-23 07:14:15 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrstr.dll [2014-02-23 07:14:15 | 000,229,376 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszhc.dll [2014-02-23 07:14:15 | 000,126,976 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszht.dll [2014-02-23 07:14:14 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspt.dll [2014-02-23 07:14:14 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsnl.dll [2014-02-23 07:14:14 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsja.dll [2014-02-23 07:14:14 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsru.dll [2014-02-23 07:14:14 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsptb.dll [2014-02-23 07:14:14 | 000,266,240 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsko.dll [2014-02-23 07:14:14 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssl.dll [2014-02-23 07:14:14 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssk.dll [2014-02-23 07:14:14 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspl.dll [2014-02-23 07:14:14 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsth.dll [2014-02-23 07:14:14 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssv.dll [2014-02-23 07:14:14 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsno.dll [2014-02-23 07:14:13 | 000,335,872 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshe.dll [2014-02-23 07:14:13 | 000,335,872 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsar.dll [2014-02-23 07:14:13 | 000,286,720 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfr.dll [2014-02-23 07:14:13 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsit.dll [2014-02-23 07:14:13 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrses.dll [2014-02-23 07:14:13 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsel.dll [2014-02-23 07:14:13 | 000,278,528 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsde.dll [2014-02-23 07:14:13 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsesm.dll [2014-02-23 07:14:13 | 000,262,144 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshu.dll [2014-02-23 07:14:13 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsda.dll [2014-02-23 07:14:13 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfi.dll [2014-02-23 07:14:13 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrseng.dll [2014-02-23 07:14:13 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrscs.dll [2014-02-23 07:12:53 | 015,713,624 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcpl.dll [2014-02-23 07:12:53 | 000,054,272 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvwddi.dll [2014-02-23 07:12:52 | 000,377,288 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvmctray.dll [2014-02-23 07:12:52 | 000,145,352 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-03-19 10:23:03 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2014-03-13 18:25:08 | 000,000,858 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira.lnk [2014-03-13 18:23:30 | 000,149,992 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2014-03-07 15:06:42 | 000,000,242 | ---- | C] () -- C:\WINDOWS\tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job [2014-03-07 15:06:41 | 000,000,236 | ---- | C] () -- C:\WINDOWS\tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job [2014-03-04 21:26:31 | 000,002,347 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader XI.lnk [2014-03-04 21:16:48 | 000,001,675 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) - World at War(TM) Multiplayer.lnk [2014-03-04 21:16:48 | 000,001,665 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) - World at War(TM) Solo - Co-op.lnk [2014-02-27 19:46:16 | 002,106,368 | ---- | C] () -- C:\WINDOWS\System32\ac3filter.ax [2014-02-27 19:46:16 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll [2014-02-27 18:03:18 | 000,007,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\whfltr2k.sys [2014-02-27 17:38:50 | 000,001,884 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Logitech Webcam Software.lnk [2014-02-27 15:26:39 | 000,013,464 | ---- | C] () -- C:\WINDOWS\System32\drivers\SWDUMon.sys [2014-02-27 15:26:13 | 000,002,231 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\SlimDrivers.lnk [2014-01-16 21:39:41 | 000,024,064 | ---- | C] () -- C:\WINDOWS\System32\spe__l.dll [2014-01-16 21:39:40 | 000,162,136 | ---- | C] () -- C:\WINDOWS\System32\spe__ci.exe [2013-12-17 21:59:17 | 000,089,816 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2013-10-30 17:57:17 | 001,571,136 | ---- | C] () -- C:\WINDOWS\TotalUninstaller.exe [2013-10-30 17:57:17 | 000,205,312 | ---- | C] () -- C:\WINDOWS\System32\SBuySupplies.exe [2013-10-30 17:57:17 | 000,024,064 | ---- | C] () -- C:\WINDOWS\System32\ssj1mlm.dll [2013-07-15 22:48:51 | 001,843,092 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-839522115-412668190-682003330-1004-0.dat [2013-07-15 22:48:51 | 000,150,138 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2013-07-01 21:34:36 | 000,026,084 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT [2013-06-28 12:08:46 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\ssdevm.dll [2013-01-13 12:27:19 | 001,143,680 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2013-01-13 12:27:19 | 001,143,680 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2013-01-13 12:27:19 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2013-01-13 12:26:49 | 002,411,088 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data [2013-01-13 12:20:40 | 000,000,008 | ---- | C] () -- C:\WINDOWS\System32\drivers\rtkhdaud.dat [2012-12-18 09:06:06 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2012-12-18 09:06:06 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2012-12-18 09:06:06 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2012-12-18 09:06:06 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2012-11-06 16:17:47 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2012-10-29 23:00:58 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2012-10-29 21:20:57 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2012-10-29 20:54:35 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2012-10-29 20:51:09 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2012-10-29 20:35:11 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll [2012-10-29 20:27:30 | 000,050,127 | R--- | C] () -- C:\WINDOWS\System32\lvcoinst.ini [2012-10-29 20:16:31 | 001,657,376 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe [2012-10-29 20:16:30 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2012-10-29 20:16:30 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2012-10-29 20:16:29 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2012-10-29 20:16:29 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2012-10-29 20:16:28 | 001,499,136 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2012-10-29 20:16:28 | 001,346,080 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe [2012-10-29 20:16:24 | 000,449,056 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe [2012-10-29 20:16:21 | 000,436,768 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe [2012-10-29 20:09:16 | 003,932,160 | ---- | C] () -- C:\Documents and Settings\Marzena i Tomek\NTUSER.bak [2012-10-29 20:06:02 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2012-10-29 20:02:18 | 000,023,688 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [color=#E56717]========== ZeroAccess Check ==========[/color] [2013-01-13 12:23:05 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-15 13:00:00 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 11:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-15 13:00:00 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2014-03-03 18:57:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\188F1432-103A-4ffb-80F1-36B633C5C9E1 [2014-02-27 19:46:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ALLPlayer [2013-08-28 12:55:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ArcaBit [2013-11-11 18:43:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG [2013-01-23 18:46:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG January 2013 Campaign [2014-03-13 18:11:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG2014 [2014-02-11 20:42:50 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2013-05-26 17:53:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CPA_VA [2014-03-04 20:53:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2014-02-21 19:42:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2013-10-09 18:51:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit [2012-10-29 22:57:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe [2014-03-13 18:11:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2013-05-17 19:19:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaInstallerCache [2013-05-17 19:32:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NokiaMusic [2014-03-18 17:36:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache [2013-05-17 19:44:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2014-01-23 20:57:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Samsung [2012-11-06 16:19:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2013-11-11 18:39:54 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} [2012-10-29 20:59:55 | 000,000,000 | -HSD | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F} [2013-03-16 18:12:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\.minecraft [2013-02-20 19:52:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Acronis [2013-02-20 23:34:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\ArcaBit [2014-02-27 18:17:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\ArcaVirMicroScan [2013-11-11 18:42:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\AVG [2014-03-13 18:14:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\DAEMON Tools Lite [2014-01-20 20:49:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\ElevatedDiagnostics [2014-02-27 17:38:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Leadertech [2014-02-21 19:51:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Nokia [2013-11-11 18:33:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\OpenCandy [2013-06-21 16:17:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Oracle [2014-02-21 19:51:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\PC Suite [2014-01-23 20:57:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\Samsung [2013-12-17 19:50:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\StepMania 6 [2012-12-14 20:40:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\TuneUp Software [2013-08-22 20:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Marzena i Tomek\Dane aplikacji\wargaming.net [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 121 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C31F31E6 < End of report >