OTL logfile created on: 2011-05-15 06:58:39 - Run 1 OTL by OldTimer - Version 3.2.22.3 Folder = C:\Documents and Settings\Łukasz\Pulpit\kosz Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 364,00 Mb Available Physical Memory | 36,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 74,00% Paging File free Paging file location(s): C:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 40,04 Gb Total Space | 19,16 Gb Free Space | 47,86% Space Free | Partition Type: NTFS Drive D: | 186,31 Gb Total Space | 162,19 Gb Free Space | 87,05% Space Free | Partition Type: NTFS Drive E: | 192,84 Gb Total Space | 75,83 Gb Free Space | 39,32% Space Free | Partition Type: NTFS Computer Name: B041C4735C1B45D | User Name: Łukasz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-05-15 06:57:30 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\kosz\OTL.exe PRC - [2011-05-15 06:40:08 | 000,071,680 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Temp\GLB488.tmp PRC - [2011-05-13 15:49:52 | 043,184,640 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\kosz\FFSetup_260(dobreprogramy.pl).exe PRC - [2011-05-06 06:54:23 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe PRC - [2010-11-04 18:15:32 | 002,219,184 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET Smart Security\egui.exe PRC - [2010-11-04 10:57:00 | 036,895,984 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Temp\FFSetupSoftonic260.exe PRC - [2008-06-20 13:08:08 | 000,065,536 | ---- | M] (France Telecom SA) -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe PRC - [2008-04-14 23:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-01-30 16:58:28 | 001,716,224 | ---- | M] (Gadu-Gadu S.A.) -- C:\Program Files\Gadu-Gadu\gg.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-05-15 06:57:30 | 000,580,608 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Łukasz\Pulpit\kosz\OTL.exe MOD - [2010-08-23 18:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2006-12-21 14:30:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- C:\Program Files\Gadu-Gadu\ggwhook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-11-04 18:18:10 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe -- (EhttpSrv) SRV - [2010-11-04 18:15:50 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET Smart Security\ekrn.exe -- (ekrn) SRV - [2008-06-20 13:08:08 | 000,065,536 | ---- | M] (France Telecom SA) [Auto | Running] -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-03-14 16:01:13 | 000,223,128 | ---- | M] (DT Soft Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\dtscsi.sys -- (dtscsi) DRV - [2011-03-14 15:58:14 | 000,664,064 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-08-04 11:50:36 | 000,140,752 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2010-08-03 13:28:36 | 000,055,256 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdi.sys -- (epfwtdi) DRV - [2010-07-29 13:31:26 | 000,134,512 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\epfw.sys -- (epfw) DRV - [2010-07-29 13:31:26 | 000,115,008 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2010-07-29 13:31:26 | 000,032,608 | ---- | M] (ESET) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\epfwndis.sys -- (Epfwndis) DRV - [2006-03-01 20:53:54 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5) DRV - [2005-07-07 10:14:30 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\P17.sys -- (P17) DRV - [2005-01-10 12:15:30 | 000,106,496 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2005-01-10 12:15:24 | 000,138,752 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k) DRV - [2003-09-23 12:38:34 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1078081533-1547161642-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2206084 IE - HKU\S-1-5-21-1078081533-1547161642-682003330-1003\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Livebox\SearchURLHook\SearchPageURL.dll () IE - HKU\S-1-5-21-1078081533-1547161642-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2206084&SearchSource=13" FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3 FF - prefs.js..extensions.enabledItems: ietab@ip.cn:1.95.20100933 FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2206084&q=" FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-05-06 06:54:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-05-06 06:54:33 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2011-03-14 14:06:49 | 000,000,000 | ---D | M] [2011-03-14 12:16:46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Extensions [2011-05-15 06:31:46 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\5aq1e723.default\extensions [2011-05-15 06:31:45 | 000,000,000 | ---D | M] (Softonic Deutsch FF Community Toolbar) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\5aq1e723.default\extensions\{9d81af43-de53-48d0-a199-42c2a226b24c} [2011-05-15 06:31:25 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\5aq1e723.default\extensions\engine@conduit.com [2011-05-07 11:35:49 | 000,000,000 | ---D | M] (IE Tab Plus) -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\5aq1e723.default\extensions\ietab@ip.cn [2011-03-21 17:08:00 | 000,000,941 | ---- | M] () -- C:\Documents and Settings\Łukasz\Dane aplikacji\Mozilla\Firefox\Profiles\5aq1e723.default\searchplugins\conduit.xml [2011-03-14 12:16:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions File not found (No name found) -- File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\5AQ1E723.DEFAULT\EXTENSIONS\{9D81AF43-DE53-48D0-A199-42C2A226B24C} File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\5AQ1E723.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\5AQ1E723.DEFAULT\EXTENSIONS\ENGINE@CONDUIT.COM File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\ŁUKASZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\5AQ1E723.DEFAULT\EXTENSIONS\IETAB@IP.CN [2011-03-20 16:53:32 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION [2011-05-06 06:54:21 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll [2010-12-09 12:47:06 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll [2011-05-06 06:54:25 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2011-05-06 06:54:25 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2011-05-06 06:54:25 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2011-05-06 06:54:25 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2011-05-06 06:54:25 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2011-05-06 06:54:25 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2004-08-04 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET Smart Security\egui.exe (ESET) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKU\S-1-5-21-1078081533-1547161642-682003330-1003..\Run: [Gadu-Gadu] C:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1078081533-1547161642-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 0.0.0.0 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-03-14 11:36:00 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{0f99e648-4e34-11e0-b701-0015f2d98adf}\Shell - "" = AutoRun O33 - MountPoints2\{0f99e648-4e34-11e0-b701-0015f2d98adf}\Shell\AutoRun\command - "" = "G:\WD SmartWare.exe" autoplay=true O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-05-13 16:22:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\PriceGong [2011-05-13 15:50:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Conduit [2011-05-13 15:50:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Moje dokumenty\FFOutput [2011-05-13 15:50:42 | 000,272,896 | ---- | C] (Progressive Networks) -- C:\WINDOWS\System32\pncrt.dll [2011-05-12 20:59:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Nero [2011-05-12 20:59:39 | 000,125,184 | ---- | C] (Ahead Software AG) -- C:\WINDOWS\System32\drivers\imagesrv.sys [2011-05-12 20:59:39 | 000,005,504 | ---- | C] (Ahead Software AG) -- C:\WINDOWS\System32\drivers\imagedrv.sys [2011-05-12 20:59:24 | 000,106,496 | ---- | C] (Pegasus Software) -- C:\WINDOWS\System32\TwnLib20.dll [2011-05-12 20:59:23 | 001,568,768 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\ImagX7.dll [2011-05-12 20:59:23 | 000,476,320 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\ImagXpr7.dll [2011-05-12 20:59:23 | 000,471,040 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\ImagXRA7.dll [2011-05-12 20:59:23 | 000,262,144 | ---- | C] (Pegasus Imaging Corp.) -- C:\WINDOWS\System32\ImagXR7.dll [2011-05-12 20:59:23 | 000,155,648 | ---- | C] (Ahead Software Gmbh) -- C:\WINDOWS\System32\NeroCheck.exe [2011-05-12 20:59:22 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead [2011-05-12 20:59:22 | 000,000,000 | ---D | C] -- C:\Program Files\Ahead [2011-05-12 19:43:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\CD [2011-05-12 09:31:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Gmail Notifier [2011-05-12 09:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Menu Start\Programy\Gmail Notifier [2011-05-12 09:31:35 | 000,000,000 | ---D | C] -- C:\Program Files\Gmail Notifier [2011-05-10 06:57:43 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Łukasz\IECompatCache [2011-05-07 21:51:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\Temp [2011-04-30 10:42:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\utorrent [2011-04-30 06:57:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\MATMIC Weather [2011-04-30 06:57:52 | 000,000,000 | ---D | C] -- C:\Program Files\MATMIC Weather [2011-04-28 15:40:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Menu Start\Programy\µTorrent [2011-04-28 15:40:11 | 000,000,000 | ---D | C] -- C:\Program Files\uTorrent [2011-04-28 15:37:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Łukasz\Recent [2011-04-28 15:36:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\CCleaner [2011-04-28 15:36:16 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2011-04-28 14:32:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Pulpit\Blokersi_Soundtrack [2011-04-24 11:10:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Profesor Henry 6.0 Słownictwo [2011-04-24 11:10:11 | 000,000,000 | ---D | C] -- C:\Program Files\Edgard [2011-04-20 07:39:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Łukasz\Dane aplikacji\dvdcss [2011-04-18 18:30:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\NapiProjekt [2011-04-18 18:30:51 | 000,000,000 | ---D | C] -- C:\Program Files\NAPI-PROJEKT [2002-04-11 03:41:06 | 000,065,536 | R--- | C] ( ) -- C:\WINDOWS\System32\A3d.dll [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-05-15 06:34:05 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-05-15 06:33:50 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2011-05-15 06:33:46 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-05-15 06:33:05 | 005,505,024 | -H-- | M] () -- C:\Documents and Settings\Łukasz\NTUSER.DAT [2011-05-15 06:32:48 | 000,000,603 | ---- | M] () -- C:\WINDOWS\win.ini [2011-05-15 06:32:48 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini [2011-05-15 06:32:48 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2011-05-14 12:58:54 | 000,184,320 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-05-14 12:58:52 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2011-05-13 15:20:14 | 000,000,012 | ---- | M] () -- C:\Documents and Settings\Łukasz\intlname.ols [2011-05-12 09:31:36 | 000,000,798 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\Gmail Notifier.lnk [2011-05-04 07:10:30 | 000,000,630 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-04-30 11:34:45 | 000,120,544 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-04-30 09:16:51 | 000,012,509 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\utorrent.jpg [2011-04-30 06:57:56 | 000,019,088 | ---- | M] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-04-30 06:57:54 | 000,000,754 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\MATMIC Weather.lnk [2011-04-28 15:40:13 | 000,000,694 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\µTorrent.lnk [2011-04-28 15:36:17 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2011-04-28 15:29:39 | 000,001,729 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2011-04-19 19:46:49 | 086,385,995 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\andersilarliveathive.mp3 [2011-04-18 18:30:52 | 000,000,662 | ---- | M] () -- C:\Documents and Settings\Łukasz\Pulpit\NapiProjekt.lnk [4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-05-14 12:58:51 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2011-05-12 09:31:36 | 000,000,798 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\Gmail Notifier.lnk [2011-05-06 06:54:34 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Mozilla Firefox.lnk [2011-05-04 07:10:30 | 000,000,630 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-04-30 09:16:51 | 000,012,509 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\utorrent.jpg [2011-04-30 06:57:54 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\MATMIC Weather.lnk [2011-04-28 15:40:13 | 000,000,694 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\µTorrent.lnk [2011-04-28 15:36:17 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CCleaner.lnk [2011-04-26 17:51:05 | 023,002,150 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\christian vogel - specific momentific - 05 - cancion sintect.mp3 [2011-04-19 19:41:06 | 086,385,995 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\andersilarliveathive.mp3 [2011-04-18 18:30:52 | 000,000,662 | ---- | C] () -- C:\Documents and Settings\Łukasz\Pulpit\NapiProjekt.lnk [2011-03-14 16:08:35 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2011-03-14 16:02:23 | 000,005,627 | R--- | C] () -- C:\WINDOWS\System32\Ludap17.ini [2011-03-14 16:02:23 | 000,000,039 | R--- | C] () -- C:\WINDOWS\System32\ctzapxx.ini [2011-03-14 15:58:14 | 000,664,064 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2011-03-14 15:58:14 | 000,096,384 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd3261.sys [2011-03-14 14:27:32 | 000,184,320 | ---- | C] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-03-14 12:25:22 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-03-14 12:25:21 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2011-03-14 12:25:21 | 000,183,808 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011-03-14 12:25:21 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011-03-14 12:25:20 | 000,080,896 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-03-14 12:25:20 | 000,000,590 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2011-03-14 12:25:15 | 001,052,554 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2011-03-14 12:25:14 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2011-03-14 12:24:11 | 000,120,544 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-03-14 12:21:33 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2011-03-14 12:21:31 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2011-03-14 12:21:31 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2011-03-14 12:21:26 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2011-03-14 12:16:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2011-03-14 12:06:47 | 000,019,088 | ---- | C] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-03-14 12:06:31 | 000,011,210 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2011-03-14 12:06:28 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2011-03-14 12:04:18 | 005,356,744 | -H-- | C] () -- C:\Documents and Settings\Łukasz\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-03-14 11:38:04 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2011-03-14 11:36:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2011-03-14 11:35:00 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2011-03-14 11:34:54 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2011-03-14 11:33:12 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2011-03-14 11:33:02 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2011-03-14 11:33:02 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2011-03-14 11:32:27 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2011-03-14 11:32:26 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2005-05-03 13:38:42 | 000,064,512 | R--- | C] () -- C:\WINDOWS\System32\P17.dll [2004-08-04 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2004-08-04 14:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2004-08-04 14:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2004-08-04 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2004-08-04 14:00:00 | 000,494,218 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2004-08-04 14:00:00 | 000,435,770 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2004-08-04 14:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2004-08-04 14:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2004-08-04 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2004-08-04 14:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2004-08-04 14:00:00 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll [2004-08-04 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2004-08-04 14:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2004-08-04 14:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2004-08-04 14:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2004-08-04 14:00:00 | 000,085,510 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2004-08-04 14:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2004-08-04 14:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2004-08-04 14:00:00 | 000,068,666 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2004-08-04 14:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2004-08-04 14:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2004-08-04 14:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2004-08-04 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2004-08-04 14:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2004-08-04 14:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2004-08-04 14:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2004-08-04 14:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2004-08-04 14:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2004-08-04 14:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2004-08-04 14:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2004-08-04 14:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2004-08-04 14:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2004-08-04 14:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2004-08-04 14:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2004-08-04 14:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2004-08-04 14:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2004-08-04 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2004-08-04 14:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2004-08-04 14:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2004-08-04 14:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2004-08-04 14:00:00 | 000,020,629 | ---- | C] () -- C:\WINDOWS\System32\mqperf.ini [2004-08-04 14:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2004-08-04 14:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2004-08-04 14:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2004-08-04 14:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2004-08-04 14:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2004-08-04 14:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2004-08-04 14:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2004-08-04 14:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2004-08-04 14:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2004-08-04 14:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2004-08-04 14:00:00 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\scriptpw.dll [2004-08-04 14:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2004-08-04 14:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2004-08-04 14:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2004-08-04 14:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2004-08-04 14:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2004-08-04 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004-08-04 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2004-08-04 14:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2004-08-04 14:00:00 | 000,003,260 | ---- | C] () -- C:\WINDOWS\System32\nw16.exe [2004-08-04 14:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2004-08-04 14:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2004-08-04 14:00:00 | 000,002,656 | ---- | C] () -- C:\WINDOWS\System32\netware.drv [2004-08-04 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2004-08-04 14:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2004-08-04 14:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2004-08-04 14:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2004-08-04 14:00:00 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\vwipxspx.exe [2004-08-04 14:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2004-08-04 14:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2004-08-04 14:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2004-08-04 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2004-08-04 14:00:00 | 000,000,603 | ---- | C] () -- C:\WINDOWS\win.ini [2004-08-04 14:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2004-08-04 14:00:00 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini [2003-10-02 12:48:18 | 000,053,248 | R--- | C] () -- C:\WINDOWS\System32\P17CPI.dll [2003-04-08 12:40:22 | 000,005,679 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI [2001-10-26 19:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 19:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [color=#E56717]========== LOP Check ==========[/color] [2011-03-14 14:06:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET [2011-03-15 11:16:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Soulseek [2011-03-14 14:07:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\ESET [2011-03-24 22:55:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\GHISLER [2011-05-12 09:35:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\Gmail Notifier [2011-05-13 16:23:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\PriceGong [2011-05-14 14:02:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Łukasz\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] < End of report >