Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:21-07-2014 Ran by Kuba (administrator) on ZZZ-9FD4CB322CA on 23-08-2014 12:49:27 Running from C:\Documents and Settings\Kuba\Moje dokumenty\Pobrane Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 6 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe (Huawei Technologies Co., Ltd.) C:\Program Files\blueconnect\DataCardMonitor.exe () C:\Program Files\Hostless Modem\USB device MF63\CheckNDISPort_df.exe () C:\Program Files\Hostless Modem\USB device MF63\CancelAutoPlay_df.exe (Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe () C:\Documents and Settings\Kuba\buaage.exe (Huawei Technologies Co., Ltd.) C:\Documents and Settings\Kuba\Dane aplikacji\blueconnect\ouc.exe (Electronic Arts) D:\Origin\Origin.exe () C:\Program Files\Hostless Modem\USB device MF63\ShowTip.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Pandora.TV) C:\Program Files\PANDORA.TV\PanService\KMPService.exe (PandoraTV) C:\Program Files\PANDORA.TV\PanService\KMPProcess.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe ==================== Registry (Whitelisted) ================== HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\Run: [HW_OPENEYE_OUC_blueconnect] => C:\Program Files\blueconnect\UpdateDog\ouc.exe [110592 2009-06-23] (Huawei Technologies Co., Ltd.) HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\Run: [buaage] => C:\Documents and Settings\Kuba\buaage.exe [138240 2014-05-22] () HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\Run: [EADM] => D:\Origin\Origin.exe [3600728 2014-08-18] (Electronic Arts) HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: F - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {2717cbcf-d6a7-11e3-9bd9-00235af38e25} - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {2717cbd3-d6a7-11e3-9bd9-00235af38e25} - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {2e3a6516-43df-11e3-9686-00216bb01ed2} - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {474e14c6-9d5f-11e3-bbb9-00216bb01ed2} - I:\LGAutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {62122654-3f29-11e3-9682-00235af38e25} - G:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {62122657-3f29-11e3-9682-00235af38e25} - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {673877c8-d6c2-11e3-9b3d-00235af38e25} - F:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {a375f364-1de8-11e3-964b-c7932c3fa006} - G:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {b088ff56-30e7-11e3-966c-00235af38e25} - G:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {bc08698b-304c-11e3-966b-00235af38e25} - G:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {bc08698e-304c-11e3-966b-00235af38e25} - G:\AutoRun.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {de2af419-30f9-11e3-966e-00235af38e25} - G:\windows\Install\Install.exe HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {de2af41a-30f9-11e3-966e-00235af38e25} - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RuNdLl32.EXE .\RECYCLER\S-5-3-42-2819952290-8240758988-879315005-3665\jwgkvsq.vmx,ahaezedrn HKU\S-1-5-21-2025429265-261478967-682003330-1003\...\MountPoints2: {f15bc840-56aa-11e3-b474-806d6172696f} - F:\autorun.exe BootExecute: autocheck autochk * sdnclean.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=en&pid=NIS&pvid=21.2.0.38 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/ URLSearchHook: HKLM - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D} SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adres - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Łącza - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1408701878984 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Documents and Settings\Kuba\Dane aplikacji\Mozilla\Firefox\Profiles\mkuv28cb.default-1397054972706 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Adblock Plus - C:\Documents and Settings\Kuba\Dane aplikacji\Mozilla\Firefox\Profiles\mkuv28cb.default-1397054972706\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-04-12] ========================== Services (Whitelisted) ================= S3 idsvc; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [741376 2006-10-30] (Microsoft Corporation) [File not signed] R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-01-04] (Oracle Corporation) R2 PanService; C:\Program Files\PANDORA.TV\PanService\KMPService.exe [1922600 2013-07-08] (Pandora.TV) ==================== Drivers (Whitelisted) ==================== S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2009-11-18] (Creative) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) S3 EverestDriver; C:\Program Files\Lavalys\EVEREST Home Edition\kerneld.wnt [7168 2005-08-18] () [File not signed] S3 filtertdidriver; C:\WINDOWS\System32\drivers\ewfiltertdidriver.sys [7552 2009-02-27] (Huawei Technologies Co., Ltd.) [File not signed] S3 L1c; C:\WINDOWS\System32\DRIVERS\l1c51x86.sys [98504 2013-04-26] (Atheros Communications, Inc.) S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2009-11-18] (Creative Technology Ltd.) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R3 NETwNx32; C:\WINDOWS\System32\DRIVERS\NETwNx32.sys [7484656 2013-05-02] (Intel Corporation) R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [466008 2013-11-25] (Duplex Secure Ltd.) S3 AndNetDiag; system32\DRIVERS\lgandnetdiag.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem.sys [X] S3 andnetndis; system32\DRIVERS\lgandnetndis.sys [X] S3 massfilter; system32\drivers\massfilter.sys [X] S3 ryaatjfr; \??\C:\WINDOWS\system32\01.tmp [X] U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) U1 WS2IFSL; U2 wuaserv; S3 ZTEusbnet; system32\DRIVERS\ZTEusbnet.sys [X] S3 ZTEusbnmea; system32\DRIVERS\ZTEusbnmea.sys [X] S3 ZTEusbser6k; system32\DRIVERS\ZTEusbser6k.sys [X] ==================== NetSvcs (Whitelisted) =================== NETSVC: hsrxlhdnv -> No Registry Path. ==================== One Month Created Files and Folders ======== 2014-08-23 12:49 - 2014-08-23 12:49 - 00000000 ____D () C:\FRST 2014-08-23 12:22 - 2014-08-23 12:22 - 00001657 _____ () C:\Documents and Settings\All Users\Pulpit\USB device MF63.lnk 2014-08-23 12:22 - 2014-08-23 12:22 - 00000000 ____D () C:\WINDOWS\system32\SupportAppPBHostless Modem 2014-08-23 12:22 - 2014-08-23 12:22 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\USB device MF63 Hostless Modem 2014-08-23 12:21 - 2014-08-23 12:21 - 00000166 _____ () C:\Documents and Settings\Kuba\UserData.lnk 2014-08-22 13:13 - 2014-08-22 13:13 - 00106496 _____ () C:\WINDOWS\Minidump\Mini082214-01.dmp 2014-08-22 13:07 - 2014-08-23 12:47 - 00000276 _____ () C:\WINDOWS\Tasks\Game_Booster_AutoUpdate.job 2014-08-22 13:07 - 2014-08-22 13:07 - 00000835 _____ () C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk 2014-08-22 13:07 - 2014-08-22 13:07 - 00000823 _____ () C:\Documents and Settings\All Users\Pulpit\Game Booster 3.lnk 2014-08-22 13:07 - 2014-08-22 13:07 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster 3 2014-08-22 13:05 - 2014-08-22 13:06 - 00001776 _____ () C:\WINDOWS\wmsetup.log 2014-08-22 13:05 - 2014-08-22 13:05 - 00000226 _____ () C:\WINDOWS\DtcInstall.log 2014-08-22 13:05 - 2014-08-22 13:05 - 00000187 _____ () C:\WINDOWS\spupdsvc.log.1.log 2014-08-22 13:05 - 2014-08-22 13:05 - 00000090 _____ () C:\WINDOWS\system32\spupdwxp.log 2014-08-22 13:04 - 2014-08-22 13:04 - 00151584 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-08-22 12:56 - 2014-08-22 12:56 - 00000200 _____ () C:\WINDOWS\cmsetacl.log 2014-08-22 12:55 - 2014-08-22 13:06 - 00069508 _____ () C:\WINDOWS\spupdsvc.log 2014-08-22 12:55 - 2014-08-22 12:55 - 00000311 _____ () C:\WINDOWS\sessmgr.setup.log 2014-08-22 12:55 - 2008-04-14 22:50 - 01306624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6.dll 2014-08-22 12:55 - 2008-04-14 22:47 - 00103424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dpcdll.dll 2014-08-22 12:55 - 2008-04-14 22:47 - 00086016 ____C (Sipro Lab Telecom Inc.) C:\WINDOWS\system32\dllcache\sl_anet.acm 2014-08-22 12:55 - 2008-04-14 22:42 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msaud32.acm 2014-08-22 12:55 - 2008-04-14 22:40 - 00290816 ____C (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\dllcache\l3codeca.acm 2014-08-22 12:55 - 2008-04-14 21:52 - 00089600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6r.dll 2014-08-22 12:55 - 2007-06-26 11:30 - 00572557 ____C () C:\WINDOWS\system32\dllcache\rtuner.wmv 2014-08-22 12:55 - 2007-06-26 11:30 - 00457607 ____C () C:\WINDOWS\system32\dllcache\mdlib.wmv 2014-08-22 12:55 - 2007-06-26 11:30 - 00381425 ____C () C:\WINDOWS\system32\dllcache\copycd.wmv 2014-08-22 12:55 - 2007-06-26 11:30 - 00375519 ____C () C:\WINDOWS\system32\dllcache\nuskin.wmv 2014-08-22 12:55 - 2007-06-26 11:30 - 00354468 ____C () C:\WINDOWS\system32\dllcache\wmpaud1.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00343204 ____C () C:\WINDOWS\system32\dllcache\wmpaud7.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00343204 ____C () C:\WINDOWS\system32\dllcache\wmpaud6.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00300969 ____C () C:\WINDOWS\system32\dllcache\viz.wmv 2014-08-22 12:55 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud9.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud8.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00172196 ____C () C:\WINDOWS\system32\dllcache\wmpaud3.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00086196 ____C () C:\WINDOWS\system32\dllcache\wmpaud5.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00086180 ____C () C:\WINDOWS\system32\dllcache\wmpaud4.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00086180 ____C () C:\WINDOWS\system32\dllcache\wmpaud2.wav 2014-08-22 12:55 - 2007-06-26 11:30 - 00022060 ____C () C:\WINDOWS\system32\dllcache\npds.zip 2014-08-22 12:55 - 2007-06-26 11:30 - 00010457 ____C () C:\WINDOWS\system32\dllcache\wmptour.hta 2014-08-22 12:55 - 2007-06-26 11:30 - 00009585 ____C () C:\WINDOWS\system32\dllcache\controls.css 2014-08-22 12:55 - 2007-06-26 11:30 - 00008298 ____C () C:\WINDOWS\system32\dllcache\contents.htm 2014-08-22 12:55 - 2007-06-26 11:30 - 00006878 ____C () C:\WINDOWS\system32\dllcache\controls.js 2014-08-22 12:55 - 2007-06-26 11:30 - 00005971 ____C () C:\WINDOWS\system32\dllcache\events.js 2014-08-22 12:55 - 2007-06-26 11:30 - 00003187 ____C () C:\WINDOWS\system32\dllcache\tour.js 2014-08-22 12:55 - 2007-06-26 11:30 - 00001771 ____C () C:\WINDOWS\system32\dllcache\wmptour.css 2014-08-22 12:55 - 2007-06-26 11:30 - 00001148 ____C () C:\WINDOWS\system32\dllcache\snd.htm 2014-08-22 12:55 - 2007-06-26 11:30 - 00000420 ____C () C:\WINDOWS\system32\dllcache\wmploc.js 2014-08-22 12:55 - 2007-06-26 11:29 - 00097117 ____C () C:\WINDOWS\system32\dllcache\mplayer2.hlp 2014-08-22 12:55 - 2007-06-26 11:29 - 00001885 ____C () C:\WINDOWS\system32\dllcache\mplayer2.cnt 2014-08-22 12:55 - 2007-06-26 11:26 - 00000403 ____C () C:\WINDOWS\system32\dllcache\npdrmv2.zip 2014-08-22 12:55 - 2007-03-14 16:58 - 00071460 ____C () C:\WINDOWS\system32\dllcache\wmplayer.adm 2014-08-22 12:55 - 2007-03-14 16:02 - 00027965 ____C () C:\WINDOWS\system32\dllcache\wmplay.chm 2014-08-22 12:55 - 2007-03-14 15:37 - 00184137 ____C () C:\WINDOWS\system32\dllcache\compact.wmz 2014-08-22 12:55 - 2007-03-14 15:37 - 00066160 ____C () C:\WINDOWS\system32\dllcache\revert.wmz 2014-08-22 12:55 - 2007-03-14 15:37 - 00001482 ____C () C:\WINDOWS\system32\dllcache\plylst6.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001479 ____C () C:\WINDOWS\system32\dllcache\plylst5.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001474 ____C () C:\WINDOWS\system32\dllcache\plylst3.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001471 ____C () C:\WINDOWS\system32\dllcache\plylst12.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001463 ____C () C:\WINDOWS\system32\dllcache\plylst4.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001262 ____C () C:\WINDOWS\system32\dllcache\plylst1.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001046 ____C () C:\WINDOWS\system32\dllcache\plylst7.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001046 ____C () C:\WINDOWS\system32\dllcache\plylst2.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00001041 ____C () C:\WINDOWS\system32\dllcache\plylst8.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000825 ____C () C:\WINDOWS\system32\dllcache\plylst11.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000822 ____C () C:\WINDOWS\system32\dllcache\plylst10.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000808 ____C () C:\WINDOWS\system32\dllcache\plylst13.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000792 ____C () C:\WINDOWS\system32\dllcache\plylst14.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000786 ____C () C:\WINDOWS\system32\dllcache\plylst9.wpl 2014-08-22 12:55 - 2007-03-14 15:37 - 00000738 ____C () C:\WINDOWS\system32\dllcache\plylst15.wpl 2014-08-22 12:55 - 2007-03-14 15:36 - 00693932 ____C () C:\WINDOWS\system32\dllcache\wmplayer.chm 2014-08-22 12:55 - 2007-03-14 15:36 - 00089253 ____C () C:\WINDOWS\system32\dllcache\plyr_err.chm 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\system32\pl 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\system32\bits 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\l2schemas 2014-08-22 12:54 - 2008-04-14 22:51 - 00176640 ____N (Microsoft Corporation) C:\WINDOWS\system32\napstat.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00121856 ____N (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll 2014-08-22 12:54 - 2008-04-14 22:51 - 00073796 ____N (Smart Link) C:\WINDOWS\system32\slserv.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcperf.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00032866 ____N (Smart Link) C:\WINDOWS\system32\slrundll.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00032866 ____N (Smart Link) C:\WINDOWS\slrundll.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00032768 ____N (Microsoft Corporation) C:\WINDOWS\system32\setupn.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe 2014-08-22 12:54 - 2008-04-14 22:51 - 00023040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativmvxx.ax 2014-08-22 12:54 - 2008-04-14 22:51 - 00009728 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativdaxx.ax 2014-08-22 12:54 - 2008-04-14 22:50 - 04274816 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nv4_disp.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 01888992 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3duag.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 01737856 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\mtxparhd.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00870784 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3d1ag.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00651264 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00516768 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ativvaxx.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00397312 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcex.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00397056 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\s3gnb.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00377984 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvaa.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00293376 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagentrt.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00290304 ____N (Microsoft Corporation) C:\WINDOWS\system32\rhttpaa.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00286792 ____N (Smart Link) C:\WINDOWS\system32\slextspk.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00229376 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2cqag.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00201728 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvag.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00196608 ____N (Microsoft Corporation) C:\WINDOWS\system32\napmontr.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00188508 ____N (Smart Link) C:\WINDOWS\system32\slgen.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00184832 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\microsoft.managementconsole.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00181248 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00150528 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagent.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00144896 ____N (Microsoft Corporation) C:\WINDOWS\system32\onex.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00133632 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00126976 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00106496 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcfxcommon.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00094720 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00086016 ____N (Conexant) C:\WINDOWS\system32\mdmxsdk.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\qutil.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00073832 ____N (Smart Link) C:\WINDOWS\system32\slcoinst.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00069120 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00062464 ____N (Microsoft Corporation) C:\WINDOWS\system32\qcliprov.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasqec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00061440 ____N (Microsoft Corporation) C:\WINDOWS\system32\kmsvc.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00059904 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00059392 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapqec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00056832 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00053248 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00050688 ____N (Microsoft Corporation) C:\WINDOWS\system32\tspkg.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00048640 ____N (Microsoft Corporation) C:\WINDOWS\system32\dhcpqec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00037376 ____N (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00032768 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativtmxx.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00032285 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\hsfcisp2.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00031232 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapolqec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00019456 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsntfy.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00010752 ____N (Microsoft Corporation) C:\WINDOWS\system32\smtpapi.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\rwnh.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00009216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll 2014-08-22 12:54 - 2008-04-14 22:50 - 00007168 ____N (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll 2014-08-22 12:54 - 2008-04-14 22:49 - 00136192 ____N (Microsoft Corporation) C:\WINDOWS\system32\aaclient.dll 2014-08-22 12:54 - 2008-04-14 22:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdpash.dll 2014-08-22 12:54 - 2008-04-14 22:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdnepr.dll 2014-08-22 12:54 - 2008-04-14 22:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdiultn.dll 2014-08-22 12:54 - 2008-04-14 22:39 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdbhc.dll 2014-08-22 12:54 - 2008-04-14 21:50 - 00080896 ____N (Microsoft Corporation) C:\WINDOWS\system32\msshavmsg.dll 2014-08-22 12:54 - 2008-04-14 00:15 - 00046592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irbus.sys 2014-08-22 12:54 - 2008-04-14 00:13 - 00009728 ____N (Microsoft Corporation) C:\WINDOWS\system32\comsdupd.exe 2014-08-22 12:54 - 2008-04-14 00:09 - 00757248 ____N (Microsoft Corporation) C:\WINDOWS\system32\xpsp3res.dll 2014-08-22 12:52 - 2014-08-22 12:52 - 00000000 ____D () C:\WINDOWS\ServicePackFiles 2014-08-22 12:52 - 2008-04-14 22:51 - 00294912 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\dlimport.exe 2014-08-22 12:49 - 2014-08-22 12:55 - 00112606 _____ () C:\WINDOWS\updspapi.log 2014-08-22 12:49 - 2008-04-14 22:50 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv04nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00021183 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv01nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00017279 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv10nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00015423 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\ch7xxnt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00014143 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv06nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00011359 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv02nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00011325 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\vchnt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00004255 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv01nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003967 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv02nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003901 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\siint5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003775 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv11nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003711 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv09nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003647 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv07nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003615 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv05nt5.dll 2014-08-22 12:49 - 2008-04-14 22:50 - 00003135 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv08nt5.dll 2014-08-22 12:49 - 2008-04-14 21:39 - 00025728 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2014-08-22 12:49 - 2008-04-14 21:35 - 00273920 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-08-22 12:49 - 2008-04-14 21:30 - 00701440 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtag.sys 2014-08-22 12:49 - 2008-04-14 21:30 - 00327040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtaa.sys 2014-08-22 12:49 - 2008-04-14 00:26 - 00030592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rndismpx.sys 2014-08-22 12:49 - 2008-04-14 00:26 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023x.sys 2014-08-22 12:49 - 2008-04-14 00:21 - 00101120 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2014-08-22 12:49 - 2008-04-14 00:16 - 00059136 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2014-08-22 12:49 - 2008-04-14 00:16 - 00037888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys 2014-08-22 12:49 - 2008-04-14 00:16 - 00036480 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthprint.sys 2014-08-22 12:49 - 2008-04-14 00:16 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthusb.sys 2014-08-22 12:49 - 2008-04-14 00:16 - 00017024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2014-08-22 12:49 - 2008-04-14 00:15 - 00019200 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidir.sys 2014-08-22 12:49 - 2008-04-14 00:13 - 00014208 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys 2014-08-22 12:49 - 2008-04-14 00:13 - 00012672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mutohpen.sys 2014-08-22 12:49 - 2008-04-14 00:10 - 00010240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sffp_mmc.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00046464 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gagp30kx.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00044928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agpcpq.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00044672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uagp35.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00043008 ____N (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdagp.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00042752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\alim1541.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00042368 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agp440.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00042240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viaagp.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00040960 ____N (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\Drivers\sisagp.sys 2014-08-22 12:49 - 2008-04-14 00:06 - 00005888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\smbali.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 01309184 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlstrm.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 01041536 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfdpsp2.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00685056 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfcxts2.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00404990 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slntamr.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00220032 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfbs2s2.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00180360 ____N (Smart Link) C:\WINDOWS\system32\Drivers\ntmtlfax.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00129535 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnt7554.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00126686 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlmnt5.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00095424 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnthal.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00013776 ____N (Smart Link) C:\WINDOWS\system32\Drivers\recagent.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00013240 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slwdmsup.sys 2014-08-22 12:49 - 2008-04-13 23:53 - 00011868 ____N (Conexant) C:\WINDOWS\system32\Drivers\mdmxsdk.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 01897408 ____N (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nv4_mini.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00452736 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\Drivers\mtxparhm.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00166912 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\Drivers\s3gnbm.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00104960 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinrvxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00073216 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atintuxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00063663 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1rvxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00063488 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxsxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00057856 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinbtxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00056623 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1btxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00052224 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinraxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00036463 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1tuxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00034735 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xsxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00031744 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxbxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00030671 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1raxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00029455 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xbxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00028672 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinsnxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00026367 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1snxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv10nt.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00022271 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv06nt.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00021343 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1ttxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00014336 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinpdxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinttxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinmdxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00012047 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1pdxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00011935 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv11nt.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00011871 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv09nt.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00011807 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv07nt.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00011615 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1mdxx.sys 2014-08-22 12:49 - 2008-04-13 22:04 - 00011295 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv08nt.sys 2014-08-22 12:49 - 2007-04-02 21:36 - 00129045 ____N () C:\WINDOWS\system32\Drivers\cxthsfs2.cty 2014-08-22 12:49 - 2006-12-29 20:21 - 00064352 ____N () C:\WINDOWS\system32\Drivers\ativmc20.cod 2014-08-22 12:49 - 2006-12-29 20:02 - 00067866 ____N () C:\WINDOWS\system32\Drivers\netwlan5.img 2014-08-22 12:47 - 2014-08-22 13:06 - 00000794 _____ () C:\WINDOWS\tabletoc.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00006060 _____ () C:\WINDOWS\iis6.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00004708 _____ () C:\WINDOWS\tsoc.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00003588 _____ () C:\WINDOWS\comsetup.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00002675 _____ () C:\WINDOWS\imsins.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00001911 _____ () C:\WINDOWS\ntdtcsetup.log 2014-08-22 12:47 - 2014-08-22 12:59 - 00000591 _____ () C:\WINDOWS\ocmsn.log 2014-08-22 12:47 - 2014-08-22 12:58 - 00012367 _____ () C:\WINDOWS\FaxSetup.log 2014-08-22 12:47 - 2014-08-22 12:58 - 00005821 _____ () C:\WINDOWS\ocgen.log 2014-08-22 12:47 - 2014-08-22 12:58 - 00003708 _____ () C:\WINDOWS\msmqinst.log 2014-08-22 12:47 - 2014-08-22 12:58 - 00001840 _____ () C:\WINDOWS\netfxocm.log 2014-08-22 12:47 - 2014-08-22 12:58 - 00000462 _____ () C:\WINDOWS\msgsocm.log 2014-08-22 12:47 - 2006-12-29 00:31 - 00019569 _____ () C:\WINDOWS\002905_.tmp 2014-08-22 12:44 - 2014-08-22 13:05 - 00002605 _____ () C:\WINDOWS\medctroc.Log 2014-08-22 12:44 - 2014-08-22 12:47 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$ 2014-08-22 12:40 - 2014-08-22 12:59 - 00519885 _____ () C:\WINDOWS\svcpack.log 2014-08-22 12:02 - 2014-08-22 12:02 - 00000000 __SHD () C:\Documents and Settings\Kuba\UserData 2014-08-22 11:57 - 2014-08-23 12:49 - 00000000 ____D () C:\Documents and Settings\Kuba\Moje dokumenty\Pobrane 2014-08-21 23:34 - 2014-08-22 14:35 - 00000000 ____D () C:\Documents and Settings\Kuba\Moje dokumenty\FIFA World 2014-08-21 23:30 - 2014-08-21 23:31 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\EA SPORTS FIFA World 2014-08-21 23:17 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-08-21 23:17 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2014-08-21 23:17 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-08-21 23:17 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-08-21 23:17 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2014-08-21 23:17 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2014-08-21 23:17 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2014-08-21 23:17 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-08-21 23:16 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2014-08-21 23:16 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2014-08-21 23:16 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2014-08-21 23:16 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2014-08-21 23:16 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2014-08-21 23:16 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2014-08-21 23:16 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2014-08-21 23:16 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2014-08-21 23:15 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2014-08-21 23:15 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_42.dll 2014-08-21 23:15 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2014-08-21 19:40 - 2014-08-21 19:42 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-08-20 16:57 - 2014-08-20 16:57 - 00000000 ____D () C:\Program Files\IObit 2014-08-20 16:57 - 2014-08-20 16:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\IObit 2014-08-20 12:05 - 2014-08-20 12:05 - 00000325 _____ () C:\WINDOWS\nsw.log 2014-08-20 11:56 - 2014-08-23 12:22 - 00001404 _____ () C:\WINDOWS\Setup.log 2014-08-18 13:49 - 2014-08-18 20:39 - 00000000 ____D () C:\Documents and Settings\Kuba\Dane aplikacji\Origin 2014-08-18 13:48 - 2014-08-18 13:50 - 00000000 ____D () C:\Documents and Settings\Kuba\Ustawienia lokalne\Dane aplikacji\Origin 2014-08-18 13:47 - 2014-08-18 13:47 - 00000440 _____ () C:\Documents and Settings\All Users\Pulpit\Origin.lnk 2014-08-18 13:47 - 2014-08-18 13:47 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Origin 2014-08-18 11:12 - 2014-08-18 11:12 - 00000000 __SHD () C:\found.001 2014-08-18 10:36 - 2014-08-18 10:36 - 00000000 ____D () C:\Program Files\Hostless Modem 2014-08-09 22:32 - 2014-08-22 13:56 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Origin 2014-08-09 21:39 - 2014-08-09 21:39 - 00010752 __RSH () C:\Documents and Settings\Kuba\zzz.dll 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zys.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zvA.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\ztL.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zSH.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zQl.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zOe.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zMD.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zhh.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zAN.lnk 2014-08-09 21:39 - 2014-05-22 16:57 - 00138240 __RSH () C:\Documents and Settings\Kuba\yiamoq.scr 2014-08-09 21:39 - 2014-05-22 16:57 - 00138240 __RSH () C:\Documents and Settings\Kuba\yiamoq.exe 2014-08-09 21:39 - 2014-05-22 16:57 - 00138240 __RSH () C:\Documents and Settings\Kuba\buaagex.exe 2014-08-09 21:39 - 2014-05-22 16:57 - 00138240 _____ () C:\Documents and Settings\Kuba\x.exe 2014-08-09 21:17 - 2014-08-09 21:18 - 00000000 ____D () C:\Program Files\Origin Games 2014-08-09 19:18 - 2014-08-18 13:25 - 00000000 ____D () C:\Program Files\Origin 2014-07-30 16:31 - 2014-07-30 16:31 - 00138240 __RSH () C:\Documents and Settings\Kuba\alg.exe ==================== One Month Modified Files and Folders ======= 2014-08-23 12:51 - 2013-09-06 19:26 - 00000000 ____D () C:\Documents and Settings\Kuba\Ustawienia lokalne\Temp 2014-08-23 12:49 - 2014-08-23 12:49 - 00000000 ____D () C:\FRST 2014-08-23 12:49 - 2014-08-22 11:57 - 00000000 ____D () C:\Documents and Settings\Kuba\Moje dokumenty\Pobrane 2014-08-23 12:49 - 2014-03-24 17:58 - 00210391 _____ () C:\WINDOWS\WindowsUpdate.log 2014-08-23 12:48 - 2013-11-10 20:48 - 00000420 _____ () C:\WINDOWS\Tasks\At1.job 2014-08-23 12:47 - 2014-08-22 13:07 - 00000276 _____ () C:\WINDOWS\Tasks\Game_Booster_AutoUpdate.job 2014-08-23 12:47 - 2013-11-26 19:38 - 00000290 _____ () C:\WINDOWS\Tasks\Express FilesUpdate.job 2014-08-23 12:47 - 2013-09-06 21:10 - 00000157 _____ () C:\WINDOWS\wiadebug.log 2014-08-23 12:47 - 2013-09-06 21:10 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-08-23 12:47 - 2013-09-06 19:25 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-08-23 12:36 - 2014-01-11 17:17 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-08-23 12:24 - 2014-04-07 20:06 - 00250815 _____ () C:\WINDOWS\setupapi.log 2014-08-23 12:22 - 2014-08-23 12:22 - 00001657 _____ () C:\Documents and Settings\All Users\Pulpit\USB device MF63.lnk 2014-08-23 12:22 - 2014-08-23 12:22 - 00000000 ____D () C:\WINDOWS\system32\SupportAppPBHostless Modem 2014-08-23 12:22 - 2014-08-23 12:22 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\USB device MF63 Hostless Modem 2014-08-23 12:22 - 2014-08-20 11:56 - 00001404 _____ () C:\WINDOWS\Setup.log 2014-08-23 12:22 - 2013-09-06 21:07 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-08-23 12:22 - 2013-09-06 21:07 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-08-23 12:21 - 2014-08-23 12:21 - 00000166 _____ () C:\Documents and Settings\Kuba\UserData.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000186 _____ () C:\Documents and Settings\Kuba\Ustawienia lokalne.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000180 _____ () C:\Documents and Settings\Kuba\.gstreamer-0.10.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000178 _____ () C:\Documents and Settings\Kuba\Moje dokumenty.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000178 _____ () C:\Documents and Settings\Kuba\Dane aplikacji.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000174 _____ () C:\Documents and Settings\Kuba\GDBManager11.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000170 _____ () C:\Documents and Settings\Kuba\New Folder.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000170 _____ () C:\Documents and Settings\Kuba\Menu Start.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000168 _____ () C:\Documents and Settings\Kuba\PrintHood.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000168 _____ () C:\Documents and Settings\Kuba\Passwords.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000168 _____ () C:\Documents and Settings\Kuba\Documents.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000168 _____ () C:\Documents and Settings\Kuba\.gimp-2.6.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000166 _____ () C:\Documents and Settings\Kuba\Ulubione.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000166 _____ () C:\Documents and Settings\Kuba\Szablony.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000166 _____ () C:\Documents and Settings\Kuba\Pictures.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000166 _____ () C:\Documents and Settings\Kuba\.android.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000164 _____ () C:\Documents and Settings\Kuba\NetHood.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000164 _____ () C:\Documents and Settings\Kuba\GG dysk.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000164 _____ () C:\Documents and Settings\Kuba\Cookies.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000162 _____ () C:\Documents and Settings\Kuba\SendTo.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000162 _____ () C:\Documents and Settings\Kuba\Recent.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000162 _____ () C:\Documents and Settings\Kuba\Pulpit.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000160 _____ () C:\Documents and Settings\Kuba\Video.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000160 _____ () C:\Documents and Settings\Kuba\Music.lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000154 _____ () C:\Documents and Settings\Kuba\...lnk 2014-08-23 12:21 - 2014-03-31 19:48 - 00000152 _____ () C:\Documents and Settings\Kuba\..lnk 2014-08-23 12:21 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba 2014-08-22 14:44 - 2013-09-06 19:25 - 00032532 _____ () C:\WINDOWS\SchedLgU.Txt 2014-08-22 14:44 - 2013-09-06 19:25 - 00000188 ___SH () C:\Documents and Settings\LocalService\ntuser.ini 2014-08-22 14:35 - 2014-08-21 23:34 - 00000000 ____D () C:\Documents and Settings\Kuba\Moje dokumenty\FIFA World 2014-08-22 14:11 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\Help 2014-08-22 13:56 - 2014-08-09 22:32 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Origin 2014-08-22 13:37 - 2013-09-06 19:21 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-08-22 13:13 - 2014-08-22 13:13 - 00106496 _____ () C:\WINDOWS\Minidump\Mini082214-01.dmp 2014-08-22 13:07 - 2014-08-22 13:07 - 00000835 _____ () C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk 2014-08-22 13:07 - 2014-08-22 13:07 - 00000823 _____ () C:\Documents and Settings\All Users\Pulpit\Game Booster 3.lnk 2014-08-22 13:07 - 2014-08-22 13:07 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster 3 2014-08-22 13:06 - 2014-08-22 13:05 - 00001776 _____ () C:\WINDOWS\wmsetup.log 2014-08-22 13:06 - 2014-08-22 12:55 - 00069508 _____ () C:\WINDOWS\spupdsvc.log 2014-08-22 13:06 - 2014-08-22 12:47 - 00000794 _____ () C:\WINDOWS\tabletoc.log 2014-08-22 13:06 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba\Ulubione 2014-08-22 13:06 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba\Moje dokumenty 2014-08-22 13:06 - 2013-09-06 19:26 - 00000000 ___SD () C:\Documents and Settings\Kuba\Ustawienia lokalne\Historia 2014-08-22 13:06 - 2013-09-06 19:26 - 00000000 ___RD () C:\Documents and Settings\Kuba\Moje dokumenty\Moje obrazy 2014-08-22 13:06 - 2013-09-06 19:26 - 00000000 ___RD () C:\Documents and Settings\Kuba\Moje dokumenty\Moja muzyka 2014-08-22 13:06 - 2013-09-06 19:22 - 00316640 _____ () C:\WINDOWS\WMSysPr9.prx 2014-08-22 13:05 - 2014-08-22 13:05 - 00000226 _____ () C:\WINDOWS\DtcInstall.log 2014-08-22 13:05 - 2014-08-22 13:05 - 00000187 _____ () C:\WINDOWS\spupdsvc.log.1.log 2014-08-22 13:05 - 2014-08-22 13:05 - 00000090 _____ () C:\WINDOWS\system32\spupdwxp.log 2014-08-22 13:05 - 2014-08-22 12:44 - 00002605 _____ () C:\WINDOWS\medctroc.Log 2014-08-22 13:05 - 2013-09-06 19:26 - 00000792 _____ () C:\Documents and Settings\Kuba\Menu Start\Programy\Windows Media Player.lnk 2014-08-22 13:05 - 2013-09-06 19:26 - 00000767 _____ () C:\Documents and Settings\Kuba\Menu Start\Programy\Internet Explorer.lnk 2014-08-22 13:05 - 2013-09-06 19:26 - 00000738 _____ () C:\Documents and Settings\Kuba\Menu Start\Programy\Outlook Express.lnk 2014-08-22 13:05 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba\Dane aplikacji 2014-08-22 13:05 - 2013-09-06 19:26 - 00000000 ___RD () C:\Documents and Settings\Kuba\Menu Start\Programy 2014-08-22 13:05 - 2001-07-21 22:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-08-22 13:04 - 2014-08-22 13:04 - 00151584 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-08-22 13:04 - 2013-12-28 21:18 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2014-08-22 13:04 - 2013-09-06 19:18 - 00000000 ____D () C:\Program Files\Messenger 2014-08-22 12:59 - 2014-08-22 12:47 - 00006060 _____ () C:\WINDOWS\iis6.log 2014-08-22 12:59 - 2014-08-22 12:47 - 00004708 _____ () C:\WINDOWS\tsoc.log 2014-08-22 12:59 - 2014-08-22 12:47 - 00003588 _____ () C:\WINDOWS\comsetup.log 2014-08-22 12:59 - 2014-08-22 12:47 - 00002675 _____ () C:\WINDOWS\imsins.log 2014-08-22 12:59 - 2014-08-22 12:47 - 00001911 _____ () C:\WINDOWS\ntdtcsetup.log 2014-08-22 12:59 - 2014-08-22 12:47 - 00000591 _____ () C:\WINDOWS\ocmsn.log 2014-08-22 12:59 - 2014-08-22 12:40 - 00519885 _____ () C:\WINDOWS\svcpack.log 2014-08-22 12:59 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\security 2014-08-22 12:59 - 2013-09-06 19:26 - 00000188 ___SH () C:\Documents and Settings\Kuba\ntuser.ini 2014-08-22 12:58 - 2014-08-22 12:47 - 00012367 _____ () C:\WINDOWS\FaxSetup.log 2014-08-22 12:58 - 2014-08-22 12:47 - 00005821 _____ () C:\WINDOWS\ocgen.log 2014-08-22 12:58 - 2014-08-22 12:47 - 00003708 _____ () C:\WINDOWS\msmqinst.log 2014-08-22 12:58 - 2014-08-22 12:47 - 00001840 _____ () C:\WINDOWS\netfxocm.log 2014-08-22 12:58 - 2014-08-22 12:47 - 00000462 _____ () C:\WINDOWS\msgsocm.log 2014-08-22 12:56 - 2014-08-22 12:56 - 00000200 _____ () C:\WINDOWS\cmsetacl.log 2014-08-22 12:55 - 2014-08-22 12:55 - 00000311 _____ () C:\WINDOWS\sessmgr.setup.log 2014-08-22 12:55 - 2014-08-22 12:49 - 00112606 _____ () C:\WINDOWS\updspapi.log 2014-08-22 12:55 - 2013-09-06 21:07 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start 2014-08-22 12:55 - 2013-09-06 19:22 - 00001563 _____ () C:\Documents and Settings\All Users\Menu Start\Określ dostęp do programów i ich ustawienia domyślne.lnk 2014-08-22 12:55 - 2013-09-06 19:16 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy\Akcesoria 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\system32\pl 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\system32\bits 2014-08-22 12:54 - 2014-08-22 12:54 - 00000000 ____D () C:\WINDOWS\l2schemas 2014-08-22 12:54 - 2014-03-07 22:15 - 00000000 ____D () C:\WINDOWS\system32\pl-PL 2014-08-22 12:54 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\system32\usmt 2014-08-22 12:54 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-08-22 12:54 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\PeerNet 2014-08-22 12:54 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\ime 2014-08-22 12:54 - 2013-09-06 19:19 - 00000000 ____D () C:\Program Files\Movie Maker 2014-08-22 12:52 - 2014-08-22 12:52 - 00000000 ____D () C:\WINDOWS\ServicePackFiles 2014-08-22 12:52 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\system32\npp 2014-08-22 12:52 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\msagent 2014-08-22 12:52 - 2013-09-06 19:20 - 00000000 ____D () C:\WINDOWS\srchasst 2014-08-22 12:52 - 2013-09-06 19:19 - 00000000 ____D () C:\WINDOWS\system32\Restore 2014-08-22 12:52 - 2013-09-06 19:19 - 00000000 ____D () C:\Program Files\Outlook Express 2014-08-22 12:52 - 2013-09-06 19:19 - 00000000 ____D () C:\Program Files\NetMeeting 2014-08-22 12:52 - 2013-09-06 19:19 - 00000000 ____D () C:\Program Files\Common Files\System 2014-08-22 12:52 - 2013-09-06 19:17 - 00000000 ____D () C:\WINDOWS\system32\Com 2014-08-22 12:52 - 2013-09-06 19:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-08-22 12:51 - 2013-09-06 20:59 - 00000000 ____D () C:\WINDOWS\system 2014-08-22 12:49 - 2004-08-03 22:59 - 00251152 __RSH () C:\ntldr 2014-08-22 12:47 - 2014-08-22 12:44 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$ 2014-08-22 12:40 - 2014-04-29 14:30 - 00056376 _____ () C:\Documents and Settings\Kuba\Pulpit\untitled.flp 2014-08-22 12:40 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba\Pulpit 2014-08-22 12:07 - 2014-04-12 14:58 - 00000000 ____D () C:\Documents and Settings\Kuba\Dane aplikacji\Winamp 2014-08-22 12:02 - 2014-08-22 12:02 - 00000000 __SHD () C:\Documents and Settings\Kuba\UserData 2014-08-22 11:54 - 2013-12-03 19:50 - 00000000 ____D () C:\Documents and Settings\Kuba\Moje dokumenty\Pobieranie 2014-08-22 11:46 - 2014-03-13 22:18 - 00000000 ____D () C:\Program Files\VirtualDJ 2014-08-22 11:41 - 2013-10-28 18:19 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\SoftPerfect 2014-08-22 11:33 - 2014-04-03 17:13 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Norton 2014-08-22 11:33 - 2013-09-06 21:08 - 00692520 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-08-22 11:33 - 2001-10-26 16:15 - 00103642 _____ () C:\WINDOWS\system32\perfc015.dat 2014-08-22 11:33 - 2001-10-26 16:15 - 00000574 _____ () C:\WINDOWS\system32\perfh015.dat 2014-08-21 23:44 - 2013-10-27 19:15 - 00000000 ___RD () C:\Program Files\Skype 2014-08-21 23:44 - 2013-10-27 19:15 - 00000000 ____D () C:\Documents and Settings\Kuba\Dane aplikacji\Skype 2014-08-21 23:44 - 2013-09-08 11:54 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Skype 2014-08-21 23:31 - 2014-08-21 23:30 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\EA SPORTS FIFA World 2014-08-21 23:21 - 2013-10-18 15:09 - 00000000 ____D () C:\Program Files\Counter-Strike 1.6 2014-08-21 19:42 - 2014-08-21 19:40 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-08-20 16:57 - 2014-08-20 16:57 - 00000000 ____D () C:\Program Files\IObit 2014-08-20 16:57 - 2014-08-20 16:57 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\IObit 2014-08-20 16:57 - 2013-09-06 21:07 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-08-20 12:15 - 2013-12-23 23:25 - 00000664 _____ () C:\WINDOWS\system32\d3d9caps.dat 2014-08-20 12:05 - 2014-08-20 12:05 - 00000325 _____ () C:\WINDOWS\nsw.log 2014-08-20 12:01 - 2013-11-02 15:41 - 00000000 ____D () C:\WINDOWS\Minidump 2014-08-18 20:39 - 2014-08-18 13:49 - 00000000 ____D () C:\Documents and Settings\Kuba\Dane aplikacji\Origin 2014-08-18 14:04 - 2013-12-04 21:17 - 00000000 ____D () C:\Program Files\FreeTime 2014-08-18 14:00 - 2013-10-13 16:03 - 00000000 ____D () C:\Documents and Settings\Kuba\Dane aplikacji\uTorrent 2014-08-18 14:00 - 2013-09-06 19:26 - 00000000 __SHD () C:\Documents and Settings\Kuba\Menu Start 2014-08-18 13:50 - 2014-08-18 13:48 - 00000000 ____D () C:\Documents and Settings\Kuba\Ustawienia lokalne\Dane aplikacji\Origin 2014-08-18 13:48 - 2014-01-20 23:10 - 00000000 ____D () C:\Program Files\CCleaner 2014-08-18 13:48 - 2013-09-06 19:26 - 00000000 ___HD () C:\Documents and Settings\Kuba\Ustawienia lokalne\Dane aplikacji 2014-08-18 13:47 - 2014-08-18 13:47 - 00000440 _____ () C:\Documents and Settings\All Users\Pulpit\Origin.lnk 2014-08-18 13:47 - 2014-08-18 13:47 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Origin 2014-08-18 13:25 - 2014-08-09 19:18 - 00000000 ____D () C:\Program Files\Origin 2014-08-18 11:12 - 2014-08-18 11:12 - 00000000 __SHD () C:\found.001 2014-08-18 10:36 - 2014-08-18 10:36 - 00000000 ____D () C:\Program Files\Hostless Modem 2014-08-09 22:34 - 2014-05-08 14:17 - 00000000 ____D () C:\Program Files\blueconnect 2014-08-09 21:39 - 2014-08-09 21:39 - 00010752 __RSH () C:\Documents and Settings\Kuba\zzz.dll 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zys.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zvA.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\ztL.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zSH.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zQl.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zOe.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zMD.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zhh.lnk 2014-08-09 21:39 - 2014-08-09 21:39 - 00000161 _____ () C:\Documents and Settings\Kuba\zAN.lnk 2014-08-09 21:18 - 2014-08-09 21:17 - 00000000 ____D () C:\Program Files\Origin Games 2014-07-30 16:31 - 2014-07-30 16:31 - 00138240 __RSH () C:\Documents and Settings\Kuba\alg.exe Files to move or delete: ==================== C:\Documents and Settings\Kuba\alg.exe C:\Documents and Settings\Kuba\buaage.exe C:\Documents and Settings\Kuba\buaagex.exe C:\Documents and Settings\Kuba\TempWmicBatchFile.bat C:\Documents and Settings\Kuba\vuocaaj.exe C:\Documents and Settings\Kuba\weaanoq.exe C:\Documents and Settings\Kuba\x.exe C:\Documents and Settings\Kuba\yiamoq.exe C:\Documents and Settings\Kuba\zzz.dll C:\Windows\Tasks\At1.job Some content of TEMP: ==================== C:\Documents and Settings\Kuba\Ustawienia lokalne\Temp\Uninstall.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================