OTL logfile created on: 2014-08-12 02:58:54 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Documents and Settings\Mrozie\Pulpit\OTL Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,24 Gb Total Physical Memory | 2,76 Gb Available Physical Memory | 85,06% Memory free 4,73 Gb Paging File | 4,06 Gb Available in Paging File | 85,74% Paging File free Paging file location(s): C:\pagefile.sys 1684 2600 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 14,65 Gb Total Space | 3,44 Gb Free Space | 23,49% Space Free | Partition Type: NTFS Drive D: | 218,23 Gb Total Space | 17,97 Gb Free Space | 8,24% Space Free | Partition Type: NTFS Computer Name: PPP-3ED5B2D7091 | User Name: Mrozie | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2014-08-08 17:09:34 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Mrozie\Pulpit\OTL\OTL.exe PRC - [2014-08-08 02:28:21 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2014-08-08 02:27:52 | 000,426,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2014-08-08 02:27:43 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2014-08-08 02:27:42 | 000,750,160 | ---- | M] (Avira Operations GmbH & Co. KG) -- D:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2014-07-20 12:18:23 | 000,230,792 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Update\1.3.24.15\GoogleCrashHandler.exe PRC - [2014-06-24 10:41:42 | 001,738,168 | ---- | M] (Safer-Networking Ltd.) -- D:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe PRC - [2013-10-11 03:40:20 | 007,558,464 | ---- | M] (Emsisoft GmbH) -- D:\Program Files\Online Armor\oaui.exe PRC - [2013-10-11 03:40:20 | 004,457,688 | ---- | M] (Emsisoft GmbH) -- D:\Program Files\Online Armor\oasrv.exe PRC - [2013-10-11 03:40:16 | 003,976,672 | ---- | M] (Emsisoft GmbH) -- D:\Program Files\Online Armor\oahlp.exe PRC - [2013-10-11 03:40:14 | 000,584,864 | ---- | M] (Emsisoft GmbH) -- D:\Program Files\Online Armor\oacat.exe PRC - [2012-07-06 08:45:36 | 004,942,336 | ---- | M] (FNet Co., Ltd.) -- C:\Program Files\XFastUsb\XFastUsb.exe PRC - [2011-02-01 13:20:48 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe PRC - [2011-02-01 13:20:46 | 000,326,168 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe PRC - [2010-01-26 13:46:14 | 000,939,272 | ---- | M] (Raxco Software, Inc.) -- D:\Program Files\Raxco\PerfectDisk10\PDAgent.exe PRC - [2007-06-13 15:23:49 | 001,034,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2005-02-11 17:53:34 | 003,723,776 | ---- | M] (Cream Software - Rafał Płatek) -- D:\Program Files\Cream Software\Pajaczek 5 NxG\Pajaczek.exe PRC - [2004-03-18 10:33:26 | 000,892,928 | ---- | M] (Logitech Inc.) -- D:\Program Files\Logitech\iTouch\iTouch.exe [color=#E56717]========== Modules (No Company Name) ==========[/color] MOD - [2014-05-13 12:04:48 | 000,167,768 | ---- | M] () -- D:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl MOD - [2014-05-13 12:04:46 | 000,109,400 | ---- | M] () -- D:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl MOD - [2014-05-13 12:04:42 | 000,416,600 | ---- | M] () -- D:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl MOD - [2014-05-08 13:22:24 | 000,300,544 | ---- | M] () -- C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.POL MOD - [2012-08-23 10:38:24 | 000,574,840 | ---- | M] () -- D:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll MOD - [2012-04-03 17:06:14 | 000,565,640 | ---- | M] () -- D:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll MOD - [2011-05-19 20:34:22 | 000,056,224 | ---- | M] () -- \\?\D:\Program Files\Spybot - Search & Destroy 2\av\avxdisk.dll MOD - [2004-08-28 18:16:12 | 000,187,392 | ---- | M] () -- D:\Program Files\Cream Software\Pajaczek 5 NxG\LPng.dll [color=#E56717]========== Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- D:\Program Files\Spybot -- (SDWSCService) SRV - File not found [On_Demand | Stopped] -- D:\Program Files\Spybot -- (SDUpdateService) SRV - File not found [On_Demand | Running] -- D:\Program Files\Spybot -- (SDScannerService) SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService) SRV - File not found [Auto | Stopped] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service) SRV - [2014-08-08 02:28:21 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2014-08-08 02:27:43 | 000,430,160 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- D:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2014-07-17 07:42:17 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2013-10-11 03:40:20 | 004,457,688 | ---- | M] (Emsisoft GmbH) [Auto | Running] -- D:\Program Files\Online Armor\oasrv.exe -- (SvcOnlineArmor) SRV - [2013-10-11 03:40:14 | 000,584,864 | ---- | M] (Emsisoft GmbH) [Auto | Running] -- D:\Program Files\Online Armor\oacat.exe -- (OAcat) SRV - [2011-09-23 18:37:42 | 000,641,832 | ---- | M] (Nero AG) [Auto | Stopped] -- C:\Program Files\Nero\Update\NASvc.exe -- (NAUpdate) SRV - [2011-03-16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2011-02-01 13:20:48 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) SRV - [2011-02-01 13:20:46 | 000,326,168 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) SRV - [2010-01-26 13:46:16 | 001,033,480 | ---- | M] (Raxco Software, Inc.) [On_Demand | Stopped] -- D:\Program Files\Raxco\PerfectDisk10\PDEngine.exe -- (PDEngine) SRV - [2010-01-26 13:46:14 | 000,939,272 | ---- | M] (Raxco Software, Inc.) [Auto | Running] -- D:\Program Files\Raxco\PerfectDisk10\PDAgent.exe -- (PDAgent) SRV - [2008-12-26 04:58:42 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA) DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc) DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt) DRV - File not found [Kernel | System | Stopped] -- -- (Changer) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (aq2iqiqw) DRV - File not found [Kernel | On_Demand | Unknown] -- -- (aklpwetu) DRV - [2014-08-08 02:27:46 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avkmgr.sys -- (avkmgr) DRV - [2014-08-08 02:27:44 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2014-08-08 02:27:43 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2014-08-08 02:27:31 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2014-07-25 22:14:24 | 000,129,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvhda32.sys -- (NVHDA) DRV - [2014-04-13 18:11:13 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV - [2013-10-11 03:41:04 | 000,044,984 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\oahlp32.sys -- (oahlpXX) DRV - [2013-10-11 03:40:50 | 000,034,856 | ---- | M] (Emsisoft) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\OAmon.sys -- (OAmon) DRV - [2013-10-11 03:40:50 | 000,031,912 | ---- | M] (Emsisoft) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\OAnet.sys -- (OAnet) DRV - [2013-10-11 03:40:48 | 000,210,360 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\system32\drivers\OADriver.sys -- (OADevice) DRV - [2013-04-03 09:58:08 | 000,153,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdm.sys -- (ssadmdm) DRV - [2013-04-03 09:58:08 | 000,136,904 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadbus.sys -- (ssadbus) DRV - [2013-04-03 09:58:08 | 000,130,248 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadserd.sys -- (ssadserd) DRV - [2013-04-03 09:58:08 | 000,017,864 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ssadmdfl.sys -- (ssadmdfl) DRV - [2012-07-23 21:21:57 | 000,477,240 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd) DRV - [2012-07-06 11:00:12 | 000,029,248 | ---- | M] (FNet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\FNETTBOH_305.SYS -- (FNETTBOH_305) DRV - [2012-07-06 08:45:36 | 000,014,656 | ---- | M] (FNet Co., Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\FNETURPX.SYS -- (FNETURPX) DRV - [2012-05-10 15:05:36 | 000,021,624 | ---- | M] (REALiX(tm)) [Kernel | System | Running] -- D:\Program Files\HWiNFO32\HWiNFO32.SYS -- (HWiNFO32) DRV - [2010-11-30 11:06:04 | 006,261,352 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) DRV - [2010-10-19 16:33:40 | 000,041,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HECI.sys -- (MEI) DRV - [2010-10-14 18:29:14 | 000,260,864 | R--- | M] (Intel(R) Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\IntcDAud.sys -- (IntcDAud) DRV - [2010-08-24 11:56:01 | 000,063,088 | R--- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\l1c51x86.sys -- (L1c) DRV - [2010-08-12 14:15:20 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\WINDOWS\system32\drivers\Lbd.sys -- (Lbd) DRV - [2009-11-18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-08-31 10:23:28 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-08-20 11:11:30 | 000,073,232 | ---- | M] (Raxco Software, Inc.) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\DefragFs.sys -- (DefragFS) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2006-07-24 17:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2006-03-22 08:24:02 | 000,018,944 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2006-03-22 08:24:00 | 000,052,736 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2005-03-09 08:53:00 | 000,036,352 | R--- | M] (Advanced Micro Devices) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2004-03-10 14:42:24 | 000,012,953 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\itchfltr.sys -- (itchfltr) DRV - [2004-03-03 10:50:00 | 000,037,887 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LHidUsb.sys -- (LHidUsb) DRV - [2004-03-03 10:50:00 | 000,014,095 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LCcfltr.sys -- (LCcfltr) DRV - [2001-08-17 23:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir) DRV - [1996-04-03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{52262020-72A7-498F-BC44-70E8A0F035BF}: "URL" = ${SEARCH_URL}{searchTerms} IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = www.bing.com IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE10SR IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://enklawanetwork.pl/ IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-746137067-1454471165-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local IE - HKU\S-1-5-21-746137067-1454471165-682003330-500\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "" FF - prefs.js..browser.search.order.1: "" FF - prefs.js..browser.search.selectedEngine: "" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:31.0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1213153.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.67.2: D:\Program Files\Java\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.67.2: D:\Program Files\Java\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2014-08-01 19:28:41 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 31.0\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2014-08-07 20:09:30 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Components: D:\Program Files\Mozilla Thunderbird\components [2014-06-12 18:58:37 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 24.6.0\extensions\\Plugins: D:\Program Files\Mozilla Thunderbird\plugins [2014-08-07 20:09:30 | 000,000,000 | ---D | M] [2010-04-10 01:35:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Extensions [2010-04-10 01:35:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2014-08-12 02:34:49 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Firefox\Profiles\wc2kbnjv.default-1397922440250\extensions [2014-07-31 09:53:43 | 004,218,184 | ---- | M] () (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Firefox\Profiles\wc2kbnjv.default-1397922440250\extensions\firebug@software.joehewitt.com.xpi [2014-08-07 14:11:50 | 000,197,043 | ---- | M] () (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Firefox\Profiles\wc2kbnjv.default-1397922440250\extensions\jid0-GjwrPchS3Ugt7xydvqVK4DQk8Ls@jetpack.xpi [2014-07-31 09:54:32 | 000,541,094 | ---- | M] () (No name found) -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mozilla\Firefox\Profiles\wc2kbnjv.default-1397922440250\extensions\{1280606b-2510-4fe0-97ef-9b5a22eafe30}.xpi [2014-08-07 17:43:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-04-25 11:31:12 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-08-04 18:00:20 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-11-20 17:48:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011-01-03 02:37:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011-03-11 16:00:14 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2009-07-31 13:06:48 | 001,654,784 | ---- | M] (LizardTech) -- C:\Program Files\mozilla firefox\plugins\npdjvu.dll O1 HOSTS File: ([2001-10-26 17:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - D:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - D:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\bin\ssv.dll (Oracle Corporation) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - D:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O4 - HKLM..\Run: [@OnlineArmor GUI] D:\Program Files\Online Armor\OAui.exe (Emsisoft GmbH) O4 - HKLM..\Run: [avgnt] D:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\nvmctray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nview\nwiz.exe () O4 - HKLM..\Run: [SDTray] D:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) O4 - HKLM..\Run: [XFastUsb] C:\Program Files\XFastUsb\XFastUsb.exe (FNet Co., Ltd.) O4 - HKLM..\Run: [zBrowser Launcher] D:\Program Files\Logitech\iTouch\iTouch.exe (Logitech Inc.) O4 - HKU\S-1-5-21-746137067-1454471165-682003330-1003..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-746137067-1454471165-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-746137067-1454471165-682003330-500\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm () O9 - Extra Button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - D:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm () O9 - Extra 'Tools' menuitem : Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm () O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.7.0/jinstall-1_7_0_65-windows-i586.cab (Java Plug-in 10.67.2) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.179.1.61 62.179.1.63 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DE90DB3E-4C42-4FAA-8D18-31F0FF70B068}: DhcpNameServer = 62.179.1.61 62.179.1.63 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F0DBF0CE-9B89-4D7E-B4C4-8772DD464637}: DhcpNameServer = 62.179.1.62 62.179.1.63 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\System32\Userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {4F07DA45-8170-4859-9B5F-037EF2970034} - D:\Program Files\Online Armor\oaevent.dll (Emsisoft GmbH) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-12-26 00:16:03 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (PDBoot.exe) O34 - HKLM BootExecute: (autocheck autochk *) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2014-08-15 00:01:49 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies [2014-08-12 01:44:48 | 000,000,000 | ---D | C] -- C:\_OTL [2014-08-12 01:43:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Pulpit\OTL [2014-08-08 21:37:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Doctor Web [2014-08-08 21:11:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Doctor Web [2014-08-08 04:15:11 | 000,000,000 | -H-D | C] -- C:\WINDOWS\PIF [2014-08-08 02:39:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2014-08-08 02:34:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Avira [2014-08-08 02:32:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Avira [2014-08-08 02:32:08 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2014-08-08 02:32:03 | 000,136,216 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys [2014-08-08 02:32:03 | 000,097,648 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2014-08-08 02:32:03 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avkmgr.sys [2014-08-08 02:32:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2014-08-08 02:31:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Mrozie\Moje dokumenty\Nowy folder (2) [2014-08-08 02:30:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Mrozie\Moje dokumenty\Avira [2014-08-08 02:30:24 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Mrozie\Moje dokumenty\Nowy folder [2014-08-08 02:05:55 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2014-08-08 02:05:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\MFAData [2014-08-08 02:05:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2014-08-08 02:05:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\Avg2014 [2014-08-08 01:42:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache [2014-08-08 01:42:48 | 000,000,000 | ---D | C] -- C:\OETemp [2014-08-08 00:26:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Pulpit\Process Explorer [2014-08-07 20:11:36 | 000,699,056 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2014-08-07 20:11:36 | 000,071,344 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2014-08-07 20:08:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2014-08-07 19:31:35 | 000,000,000 | ---D | C] -- C:\AdwCleaner [2014-08-07 18:48:14 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service [2014-08-07 18:47:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2014-08-07 18:46:58 | 000,272,808 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-08-07 18:46:58 | 000,145,408 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2014-08-07 18:46:52 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-08-07 18:46:52 | 000,175,528 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-08-07 18:46:52 | 000,096,680 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-08-07 18:46:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Java [2014-08-07 15:55:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Dane aplikacji\OnlineArmor [2014-08-07 15:55:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\OnlineArmor [2014-08-07 15:54:59 | 000,034,856 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAmon.sys [2014-08-07 15:54:59 | 000,031,912 | ---- | C] (Emsisoft) -- C:\WINDOWS\System32\drivers\OAnet.sys [2014-08-07 15:54:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Online Armor [2014-08-07 15:03:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CheckPoint [2014-08-06 22:54:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\Adobe [2014-08-03 21:12:03 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2 [2014-08-03 21:10:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Spybot - Search & Destroy 2 [2014-08-03 21:10:37 | 000,018,968 | ---- | C] (Safer Networking Limited) -- C:\WINDOWS\System32\sdnclean.exe [2014-08-03 21:10:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Spybot - Search & Destroy [2014-08-03 16:27:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\Nvidia Corporation [2014-08-03 16:19:59 | 000,335,872 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshe.dll [2014-08-03 16:19:59 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsit.dll [2014-08-03 16:19:59 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspt.dll [2014-08-03 16:19:59 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsnl.dll [2014-08-03 16:19:59 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsja.dll [2014-08-03 16:19:59 | 000,270,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsru.dll [2014-08-03 16:19:59 | 000,270,336 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsptb.dll [2014-08-03 16:19:59 | 000,266,240 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsko.dll [2014-08-03 16:19:59 | 000,262,144 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrshu.dll [2014-08-03 16:19:59 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrstr.dll [2014-08-03 16:19:59 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssl.dll [2014-08-03 16:19:59 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssk.dll [2014-08-03 16:19:59 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrspl.dll [2014-08-03 16:19:59 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsth.dll [2014-08-03 16:19:59 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrssv.dll [2014-08-03 16:19:59 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsno.dll [2014-08-03 16:19:59 | 000,229,376 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszhc.dll [2014-08-03 16:19:59 | 000,126,976 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrszht.dll [2014-08-03 16:19:58 | 015,724,320 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcpl.dll [2014-08-03 16:19:58 | 000,376,096 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvmctray.dll [2014-08-03 16:19:58 | 000,335,872 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsar.dll [2014-08-03 16:19:58 | 000,286,720 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfr.dll [2014-08-03 16:19:58 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrses.dll [2014-08-03 16:19:58 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsel.dll [2014-08-03 16:19:58 | 000,278,528 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsde.dll [2014-08-03 16:19:58 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsesm.dll [2014-08-03 16:19:58 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsda.dll [2014-08-03 16:19:58 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrsfi.dll [2014-08-03 16:19:58 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrseng.dll [2014-08-03 16:19:58 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvrscs.dll [2014-08-03 16:19:58 | 000,145,352 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcolor.exe [2014-08-03 16:19:56 | 000,054,272 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvwddi.dll [2014-08-03 16:19:33 | 000,065,536 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2014-08-03 16:18:15 | 000,895,264 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdagenco3220103.dll [2014-08-03 16:18:15 | 000,028,448 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdap32.dll [2014-08-03 16:18:14 | 000,129,312 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvhda32.sys [2014-08-03 16:18:13 | 011,169,792 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvopencl.dll [2014-08-03 16:18:13 | 004,122,880 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nv4_disp.dll [2014-08-03 16:18:12 | 023,658,496 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvoglnt.dll [2014-08-03 16:18:12 | 015,286,272 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcompiler.dll [2014-08-03 16:18:12 | 011,108,352 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuda.dll [2014-08-03 16:18:12 | 002,977,568 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvcuvid.dll [2014-08-03 16:18:12 | 002,747,392 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvapi.dll [2014-08-03 16:18:12 | 001,054,552 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispco3234052.dll [2014-08-03 16:18:12 | 000,906,584 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvdispgenco3234052.dll [2014-08-01 03:29:37 | 000,110,296 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [2014-08-01 00:19:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes Anti-Malware [2014-08-01 00:19:01 | 000,053,208 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [2014-08-01 00:19:01 | 000,023,256 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2014-08-01 00:18:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2014-08-01 00:02:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Menu Start\Programy\HiJackThis [2014-07-31 16:03:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\Mrozie\Moje dokumenty\Pobrane [2014-07-28 09:33:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Pulpit\Faktury [2014-07-21 20:42:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Mrozie\Pulpit\Archiwistyka [2008-10-27 20:01:06 | 000,075,032 | ---- | C] (Diskeeper Corporation) -- C:\Documents and Settings\Mrozie\Autorun.exe [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2014-08-20 09:30:09 | 000,257,775 | ---- | M] () -- C:\Documents and Settings\Mrozie\Pulpit\Alterpop_dla_autorow_publikacji.pdf [2014-08-16 11:33:02 | 000,070,608 | ---- | M] () -- C:\Documents and Settings\Mrozie\Pulpit\minsc.jpg [2014-08-14 22:39:37 | 000,000,952 | ---- | M] () -- C:\Documents and Settings\Mrozie\Pulpit\Skyrim (SKSE).lnk [2014-08-14 18:20:55 | 000,046,965 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\goebbels.jpg [2014-08-13 11:27:58 | 000,060,261 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\suarez_barca.jpg [2014-08-12 02:30:54 | 000,005,174 | ---- | M] () -- C:\WINDOWS\System32\nvAppTimestamps [2014-08-12 02:23:47 | 000,000,644 | ---- | M] () -- C:\WINDOWS\tasks\Check for updates (Spybot - Search & Destroy).job [2014-08-12 02:23:10 | 000,000,051 | ---- | M] () -- C:\WINDOWS\iTouch.ini [2014-08-12 02:22:53 | 000,000,442 | ---- | M] () -- C:\WINDOWS\tasks\Opera scheduled Autoupdate 1407454020.job [2014-08-12 02:22:41 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job [2014-08-12 02:22:27 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014-08-12 02:20:18 | 000,110,296 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [2014-08-11 20:00:16 | 000,030,809 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\SWTOMASZ.jpg [2014-08-11 00:54:15 | 000,034,182 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\cardiff.jpg [2014-08-08 02:27:46 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avkmgr.sys [2014-08-08 02:27:44 | 000,136,216 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avipbb.sys [2014-08-08 02:27:43 | 000,097,648 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2014-08-08 02:27:31 | 000,028,520 | ---- | M] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2014-08-08 01:27:07 | 000,000,557 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Opera 23.lnk [2014-08-07 22:12:37 | 000,002,323 | ---- | M] () -- C:\Documents and Settings\Mrozie\Pulpit\HiJackThis.lnk [2014-08-07 20:11:36 | 000,699,056 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe [2014-08-07 20:11:36 | 000,071,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2014-08-07 18:46:42 | 000,096,680 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\WindowsAccessBridge.dll [2014-08-07 18:46:41 | 000,272,808 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaws.exe [2014-08-07 18:46:40 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javaw.exe [2014-08-07 18:46:40 | 000,175,528 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\java.exe [2014-08-07 18:46:40 | 000,145,408 | ---- | M] (Oracle Corporation) -- C:\WINDOWS\System32\javacpl.cpl [2014-08-07 16:12:50 | 000,059,961 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\love_fus_ro_dah.jpg [2014-08-07 15:55:09 | 000,560,238 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2014-08-07 15:55:09 | 000,496,580 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2014-08-07 15:55:09 | 000,108,154 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2014-08-07 15:55:09 | 000,086,348 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2014-08-06 22:14:59 | 000,000,223 | RHS- | M] () -- C:\boot.ini [2014-08-06 18:49:22 | 000,118,813 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\piersi.jpg [2014-08-06 00:55:35 | 000,000,616 | ---- | M] () -- C:\WINDOWS\tasks\Refresh immunization (Spybot - Search & Destroy).job [2014-08-06 00:00:16 | 000,052,736 | ---- | M] () -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2014-08-04 10:26:42 | 000,058,552 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\tolerujalbogin.jpg [2014-08-04 10:24:55 | 000,284,216 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\tolerujalbogin.htm [2014-08-03 21:10:55 | 000,000,446 | ---- | M] () -- C:\WINDOWS\tasks\Scan the system (Spybot - Search & Destroy).job [2014-08-03 21:10:42 | 000,000,902 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk [2014-08-03 16:23:23 | 000,000,001 | ---- | M] () -- C:\WINDOWS\System32\nvdrssel.bin [2014-08-03 16:23:12 | 001,399,116 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2014-08-03 16:19:31 | 001,163,700 | ---- | M] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2014-08-03 16:19:29 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\nvdrswr.lk [2014-08-01 00:19:13 | 000,000,645 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2014-07-25 22:14:25 | 000,028,448 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdap32.dll [2014-07-25 22:14:24 | 000,895,264 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\nvhdagenco3220103.dll [2014-07-25 22:14:24 | 000,129,312 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\System32\drivers\nvhda32.sys [2014-07-25 10:00:16 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2014-07-19 13:01:07 | 000,145,852 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\25_lat_wolnosci.png [2014-07-19 13:00:37 | 000,053,023 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\WOLNOSC.jpg [2014-07-18 20:46:54 | 000,033,499 | ---- | M] () -- C:\Documents and Settings\Mrozie\Pulpit\ksiega.jpg [2014-07-16 10:18:54 | 000,090,799 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\Srebrny1.pdf [2014-07-16 05:09:15 | 000,030,162 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\Srebrny1.odt [2014-07-15 12:34:15 | 000,024,941 | ---- | M] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\nigga_wat.jpg [color=#E56717]========== Files Created - No Company Name ==========[/color] [2014-08-20 09:30:08 | 000,257,775 | ---- | C] () -- C:\Documents and Settings\Mrozie\Pulpit\Alterpop_dla_autorow_publikacji.pdf [2014-08-16 11:33:01 | 000,070,608 | ---- | C] () -- C:\Documents and Settings\Mrozie\Pulpit\minsc.jpg [2014-08-14 22:39:37 | 000,000,952 | ---- | C] () -- C:\Documents and Settings\Mrozie\Pulpit\Skyrim (SKSE).lnk [2014-08-14 18:20:55 | 000,046,965 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\goebbels.jpg [2014-08-13 11:27:58 | 000,060,261 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\suarez_barca.jpg [2014-08-11 20:00:16 | 000,030,809 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\SWTOMASZ.jpg [2014-08-11 00:54:14 | 000,034,182 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\cardiff.jpg [2014-08-08 01:27:07 | 000,000,557 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Opera 23.lnk [2014-08-08 01:27:07 | 000,000,557 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Opera 23.lnk [2014-08-08 01:27:07 | 000,000,442 | ---- | C] () -- C:\WINDOWS\tasks\Opera scheduled Autoupdate 1407454020.job [2014-08-07 18:48:15 | 000,000,606 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2014-08-07 16:12:50 | 000,059,961 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\love_fus_ro_dah.jpg [2014-08-07 15:54:59 | 000,210,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\OADriver.sys [2014-08-07 15:54:59 | 000,044,984 | ---- | C] () -- C:\WINDOWS\System32\drivers\oahlp32.sys [2014-08-06 18:49:22 | 000,118,813 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\piersi.jpg [2014-08-04 10:26:42 | 000,058,552 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\tolerujalbogin.jpg [2014-08-04 10:24:55 | 000,284,216 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\tolerujalbogin.htm [2014-08-03 21:10:55 | 000,000,446 | ---- | C] () -- C:\WINDOWS\tasks\Scan the system (Spybot - Search & Destroy).job [2014-08-03 21:10:54 | 000,000,616 | ---- | C] () -- C:\WINDOWS\tasks\Refresh immunization (Spybot - Search & Destroy).job [2014-08-03 21:10:52 | 000,000,644 | ---- | C] () -- C:\WINDOWS\tasks\Check for updates (Spybot - Search & Destroy).job [2014-08-03 21:10:42 | 000,000,902 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Spybot-S&D Start Center.lnk [2014-08-03 21:10:42 | 000,000,902 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Spybot-S&D Start Center.lnk [2014-08-03 16:25:20 | 000,005,174 | ---- | C] () -- C:\WINDOWS\System32\nvAppTimestamps [2014-08-03 16:19:58 | 003,826,628 | ---- | C] () -- C:\WINDOWS\System32\nvcoproc.bin [2014-08-03 16:19:29 | 001,399,116 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2014-08-03 16:19:29 | 001,163,700 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2014-08-03 16:19:29 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2014-08-03 16:19:29 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\nvdrswr.lk [2014-08-03 16:18:13 | 000,019,681 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2014-08-03 16:18:12 | 002,422,304 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data [2014-08-01 00:19:13 | 000,000,645 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes Anti-Malware.lnk [2014-08-01 00:02:05 | 000,002,323 | ---- | C] () -- C:\Documents and Settings\Mrozie\Pulpit\HiJackThis.lnk [2014-07-19 13:01:06 | 000,145,852 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\25_lat_wolnosci.png [2014-07-19 13:00:37 | 000,053,023 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\WOLNOSC.jpg [2014-07-18 20:46:54 | 000,033,499 | ---- | C] () -- C:\Documents and Settings\Mrozie\Pulpit\ksiega.jpg [2014-07-16 10:18:52 | 000,090,799 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\Srebrny1.pdf [2014-07-15 14:34:16 | 000,030,162 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\Srebrny1.odt [2014-07-15 12:34:14 | 000,024,941 | ---- | C] () -- D:\Documents and Settings\Mrozie\Moje dokumenty\nigga_wat.jpg [2013-12-20 00:26:59 | 000,153,320 | ---- | C] () -- C:\WINDOWS\hpoins14.dat [2013-12-20 00:26:59 | 000,002,000 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat [2013-12-19 22:59:46 | 000,152,837 | ---- | C] () -- C:\WINDOWS\hpoins14.dat.temp [2013-12-19 22:59:46 | 000,002,000 | ---- | C] () -- C:\WINDOWS\hpomdl14.dat.temp [2013-05-12 02:33:52 | 000,982,366 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-746137067-1454471165-682003330-1003-0.dat [2013-05-12 02:33:52 | 000,321,694 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2013-04-18 19:06:46 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2013-04-18 19:06:46 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2013-04-18 19:06:46 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2013-04-18 19:06:46 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2012-12-26 01:40:00 | 000,151,552 | ---- | C] () -- C:\WINDOWS\System32\nvRegDev.dll [2010-07-22 04:40:09 | 000,147,720 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-01-28 17:39:44 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2010-01-13 01:03:08 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Mrozie\Dane aplikacji\$_hpcst$.hpc [2010-01-12 23:06:48 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LauncherAccess.dt [2009-01-18 03:09:54 | 000,052,736 | ---- | C] () -- C:\Documents and Settings\Mrozie\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-01-11 15:15:26 | 000,000,013 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\1ĚŘ13.sys [2009-01-09 13:05:19 | 000,014,587 | ---- | C] () -- C:\Documents and Settings\Mrozie\Dane aplikacji\phpdesigner2007.xml [color=#E56717]========== ZeroAccess Check ==========[/color] [2009-01-21 22:40:57 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shdocvw.dll -- [2008-10-16 12:35:51 | 001,499,136 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 12:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2004-08-04 01:44:14 | 000,273,920 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [color=#E56717]========== LOP Check ==========[/color] [2012-06-09 12:47:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Opera [2012-06-10 11:22:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Administrator\Dane aplikacji\Thunderbird [2012-09-13 20:31:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ashampoo [2014-08-08 01:49:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2008-12-26 02:57:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Azureus [2012-12-17 01:40:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BioWare [2014-08-07 15:03:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CheckPoint [2014-08-08 02:05:55 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2012-07-10 10:41:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2014-08-08 21:37:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Doctor Web [2011-12-05 19:10:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Core [2011-12-05 19:10:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2012-07-06 08:45:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\FNET [2009-01-27 19:36:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GlobalSCAPE [2013-01-15 20:30:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Last.fm [2014-08-08 02:13:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2014-08-07 16:07:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OnlineArmor [2014-08-08 02:35:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache [2010-01-13 01:05:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2014-07-31 15:54:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Samsung [2014-08-04 01:24:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-09-26 22:19:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUpMedia [2009-03-18 15:29:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3} [2010-04-07 14:45:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2009-09-16 14:33:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{755AC846-7372-4AC8-8550-C52491DAA8BD} [2009-06-11 14:14:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906} [2012-09-13 20:32:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Ashampoo [2012-07-25 14:18:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Auslogics [2014-07-29 19:44:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Azureus [2009-01-27 18:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\CoreFTP [2010-01-22 18:20:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Cream Software [2009-01-26 00:06:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\DAEMON Tools [2012-07-10 10:41:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\DAEMON Tools Lite [2009-11-09 20:47:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Dragon Age Toolset [2009-12-21 17:52:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Feedreader [2014-08-11 18:56:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\foobar2000 [2010-09-22 16:49:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\GetRight [2009-01-27 19:35:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\GlobalSCAPE [2010-04-08 20:52:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\iSproggler [2012-07-09 15:32:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\JAM Software [2009-06-03 18:31:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Mobipocket [2012-07-09 17:12:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\NapiProjekt [2009-01-13 00:13:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\ODF [2014-08-07 15:55:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\OnlineArmor [2009-01-13 00:37:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\OpenOffice.org [2008-12-26 00:47:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Opera [2014-08-01 17:23:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Opera Software [2012-05-14 18:09:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Oracle [2010-01-13 01:05:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\PC Suite [2008-12-26 05:16:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\PHP Designer 2007 [2009-01-10 02:34:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\phpDesigner 2008 [2013-04-29 18:27:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\PIT Projekt 2012 [2012-04-26 22:00:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Podatnik.info [2011-04-02 22:22:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Raptr [2014-07-31 15:54:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Samsung [2014-01-14 20:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\TheBannerSaga [2010-04-10 01:35:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Thunderbird [2010-10-08 17:37:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Tlen.pl [2011-04-22 13:43:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\TuneUpMedia [2010-01-29 15:46:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\Turbine [2009-06-03 18:30:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Mrozie\Dane aplikacji\XnView [2008-12-26 00:56:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Opera [2013-11-19 10:35:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Opera Software [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 487 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:05EE1EEF @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2 @Alternate Data Stream - 102 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:430C6D84 @Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:D00F0074 < End of report >