Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 07-12-2014 01 Ran by user (administrator) on ASUS-49AF923247 on 07-12-2014 14:21:48 Running from D:\Moje dokumenty\Pobrane Loaded Profile: user (Available profiles: user) Platform: Microsoft Windows XP Professional Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 6 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Corporation) C:\WINDOWS\system32\savedump.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe (Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe (Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe (Cyberlink Corp.) C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe (Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe (Microsoft Corporation) C:\WINDOWS\vVX3000.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Windows Live\Messenger\msnmsgr.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (Redefine Sp z o.o.) C:\Documents and Settings\user\Pulpit\ipla\ipla.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Apache Software Foundation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe (Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE (Microsoft Corporation) C:\Program Files\Microsoft LifeCam\MSCamS32.exe (Apache Software Foundation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\Apache.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe (NVIDIA) C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (O&O Software GmbH) C:\WINDOWS\system32\oodag.exe (Protexis Inc.) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe () C:\Program Files\CyberLink\Shared Files\RichVideo.exe (Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe () D:\Moje dokumenty\Downloads\adwcleaner_4.102.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [nTrayFw] => C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nTrayFw.exe [270336 2006-02-17] (NVIDIA Corporation) HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16270848 2006-11-14] (Realtek Semiconductor Corp.) HKLM\...\Run: [SkyTel] => C:\WINDOWS\SkyTel.EXE [2879488 2006-05-16] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\JM\JMInsIDE.exe [36864 2006-10-30] () HKLM\...\Run: [JMB36X Configure] => C:\WINDOWS\system32\JMRaidSetup.exe [1953792 2006-10-30] (JMicron Technology Corp.) HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup HKLM\...\Run: [nwiz] => nwiz.exe /install HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG) HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG) HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG) HKLM\...\Run: [RemoteControl] => C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe [56928 2006-11-23] (Cyberlink Corp.) HKLM\...\Run: [LanguageShortcut] => C:\Program Files\CyberLink\PowerDVD\Language\Language.exe [54832 2006-12-05] () HKLM\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM\...\Run: [NvMediaCenter] => RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit HKLM\...\Run: [OODefragTray] => C:\WINDOWS\system32\oodtray.exe [2512392 2007-05-11] (O&O Software GmbH) HKLM\...\Run: [WinampAgent] => "C:\Program Files\Winamp\winampa.exe" HKLM\...\Run: [VX3000] => C:\WINDOWS\vVX3000.exe [709992 2007-04-10] (Microsoft Corporation) HKLM\...\Run: [LifeCam] => C:\Program Files\Microsoft LifeCam\LifeExp.exe [279912 2007-05-17] (Microsoft Corporation) HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-01-28] (Apple Inc.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [152392 2013-02-20] (Apple Inc.) HKLM\...\Run: [KernelFaultCheck] => %systemroot%\system32\dumprep 0 -k HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\Run: [MsnMsgr] => C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe [5724184 2007-10-18] (Microsoft Corporation) HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\Run: [Skype] => C:\Program Files\Skype\\Phone\Skype.exe [13351304 2010-09-02] (Skype Technologies S.A.) HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\Run: [IPLA!] => C:\Documents and Settings\user\Pulpit\ipla\ipla.exe [21353568 2014-10-20] (Redefine Sp z o.o.) HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\MountPoints2: {52fe108e-8c18-11dd-b264-806d6172696f} - D:\.\Bin\ASSETUP.exe HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\MountPoints2: {ddfe88c0-d17c-11df-81ae-0022152ad706} - "F:\WD SmartWare.exe" autoplay=true HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\MountPoints2: {ddfe88c1-d17c-11df-81ae-0022152ad706} - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL CeIOzUg.exe HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\MountPoints2: {e2d2ef53-1b3b-11e2-8b1c-0022152ad706} - F:\Install_Nokia_Ovi_Suite.exe HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\MountPoints2: {f708c137-7b62-11e2-a75b-0022152ad706} - F:\Samsung_Drive_Manager.exe AppInit_DLLs: c:\docume~1\alluse~1\daneap~1\intere~1\intere~1.dll => c:\docume~1\alluse~1\daneap~1\intere~1\intere~1.dll File Not Found Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) Startup: C:\Documents and Settings\user\Menu Start\Programy\Autostart\Adobe Gamma.lnk ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) BootExecute: autocheck autochk * OODBS CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2025429265-562591055-725345543-1003\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2025429265-562591055-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.sweet-page.com/web/?type=ds&ts=1414772260&from=cor&uid=SAMSUNGXHD502IJ_S13TJ90Q847410&q={searchTerms} HKU\S-1-5-21-2025429265-562591055-725345543-1003\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-2025429265-562591055-725345543-1003\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.sweet-page.com/web/?type=ds&ts=1414772260&from=cor&uid=SAMSUNGXHD502IJ_S13TJ90Q847410&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank URLSearchHook: HKU\S-1-5-21-2025429265-562591055-725345543-1003 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation) SearchScopes: HKLM -> DefaultScope value is missing. SearchScopes: HKU\S-1-5-21-2025429265-562591055-725345543-1003 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) BHO: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: websaver -> {78cb945c-561a-4448-84e7-04c4113cbb42} -> C:\Documents and Settings\All Users\Dane aplikacji\websaver\nT73wTaoTbjrfx.dll No File BHO: No Name -> {7E853D72-626A-48EC-A868-BA8D5E23E045} -> No File BHO: Pomocnik rejestracji usługi Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live Toolbar Helper -> {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} -> C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll (Kaspersky Lab ZAO) Toolbar: HKLM - Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation) Toolbar: HKU\S-1-5-21-2025429265-562591055-725345543-1003 -> Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (Microsoft Corporation) DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation) Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.) Winsock: Catalog9 01 %SYSTEMROOT%\system32\nvappfilter.dll [131072] (NVIDIA) Winsock: Catalog9 02 %SYSTEMROOT%\system32\nvappfilter.dll [131072] (NVIDIA) Winsock: Catalog9 03 %SYSTEMROOT%\system32\nvappfilter.dll [131072] (NVIDIA) Winsock: Catalog9 09 %SYSTEMROOT%\system32\nvappfilter.dll [131072] (NVIDIA) Tcpip\Parameters: [DhcpNameServer] 194.204.152.34 217.98.63.164 FireFox: ======== FF ProfilePath: C:\Documents and Settings\user\Dane aplikacji\Mozilla\Firefox\Profiles\q3s2ngl1.default FF Homepage: https://www.google.pl/ FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_189.dll () FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.) FF Plugin: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com () FF Plugin: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com () FF Plugin: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npdivx32.dll (DivX,Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Extension: Skype extension for Firefox - C:\Program Files\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1} [2014-11-03] FF HKLM\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Модуль блокування небезпечних веб-сайтів - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-29] FF HKLM\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Віртуальна клавіатура - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-29] FF HKLM\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Безпечні платежі - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-29] FF HKU\S-1-5-21-2025429265-562591055-725345543-1003\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\Documents and Settings\All Users\Dane aplikacji\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi FF Extension: McAfee Security Scan Plus - C:\Documents and Settings\All Users\Dane aplikacji\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] FF Extension: No Name - content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com [Not Found] FF Extension: No Name - virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com [Not Found] FF Extension: No Name - online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com [Not Found] Chrome: ======= CHR dev: Chrome dev build detected! <======= ATTENTION CHR DefaultSearchKeyword: Default -> 8DE66B8AB5C98B4B2B84FA00DA36AC050699CB8873E7D0BB655F757EA78A2034 CHR DefaultSearchURL: Default -> F7421951098C446629B32111C41A0FA1F0D0587511DCA951B6AA50239A0893F5 CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\38.0.2125.111\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\38.0.2125.111\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\38.0.2125.111\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (DivX Web Player) - C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll (DivX,Inc.) CHR Plugin: (Microsoft Office 2003) - C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll No File CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.0.61118.0\npctrl.dll No File CHR Plugin: (Default Plug-in) - default_plugin No File CHR Profile: C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default CHR Extension: (Kaspersky Protection) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dbhjdbfgekjfcfkkfjjmlmojhbllhbho [2014-12-03] CHR Extension: (saveitkeep.) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\epgfckjijnckkmgafhdooajbhcoohcig [2014-11-22] CHR Extension: (Parental Control App) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\fbkcmiiikbnoldnlanjaoakakibelich [2014-11-22] CHR Extension: (History Calendar Button) - C:\Documents and Settings\user\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\jndhhfkgkmpbnepfodnmmigomenknlcg [2014-11-21] CHR HKLM\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - No Path CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho [Not Found] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2008-09-27] (Adobe Systems) [File not signed] R2 AVP15.0.1; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcAppFlt.exe [139264 2006-02-17] () [File not signed] R2 ForcewareWebInterface; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\Apache Group\Apache2\bin\apache.exe [20543 2006-02-17] (Apache Software Foundation) [File not signed] R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [235696 2014-04-09] (McAfee, Inc.) R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcIp.exe [127035 2006-02-17] (NVIDIA Corporation) [File not signed] R2 nSvcLog; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin\nSvcLog.exe [61503 2006-02-17] (NVIDIA) [File not signed] R2 O&O Defrag; C:\WINDOWS\system32\oodag.exe [1050120 2007-05-11] (O&O Software GmbH) R2 RichVideo; C:\Program Files\CyberLink\Shared Files\RichVideo.exe [167936 2005-08-08] () [File not signed] S3 usnjsvc; C:\Program Files\Windows Live\Messenger\usnsvc.exe [98328 2007-10-18] (Microsoft Corporation) S3 WLSetupSvc; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [266240 2007-10-25] (Microsoft Corporation) S2 a7ca495b; "C:\WINDOWS\system32\rundll32.exe" "c:\docume~1\alluse~1\daneap~1\intere~1\InterenetOptimizerSvc.dll",service S2 IePluginServices; C:\Documents and Settings\All Users\Dane aplikacji\IePluginServices\PluginService.exe -service [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) R0 cm_km_w; C:\WINDOWS\System32\DRIVERS\cm_km_w.sys [189136 2013-01-14] (Kaspersky Lab UK Ltd) S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [21664 2004-10-25] (EnTech Taiwan) [File not signed] R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG) R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG) U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG) R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG) R0 JGOGO; C:\WINDOWS\System32\DRIVERS\JGOGO.sys [6912 2006-02-07] (JMicron ) R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [43648 2006-10-30] (JMicron Technology Corp.) R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [143968 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\WINDOWS\System32\DRIVERS\kldisk.sys [36928 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\WINDOWS\System32\DRIVERS\klflt.sys [116744 2014-12-02] (Kaspersky Lab ZAO) R1 klhk; C:\WINDOWS\System32\DRIVERS\klhk.sys [36024 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [671432 2014-12-02] (Kaspersky Lab ZAO) R3 klim5; C:\WINDOWS\System32\DRIVERS\klim5.sys [36448 2013-04-19] (Kaspersky Lab ZAO) R3 klkbdflt; C:\WINDOWS\System32\DRIVERS\klkbdflt.sys [23648 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\WINDOWS\System32\DRIVERS\klmouflt.sys [24672 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [14432 2013-04-12] (Kaspersky Lab ZAO) R1 kltdf; C:\WINDOWS\System32\DRIVERS\kltdf.sys [60552 2014-08-21] (Kaspersky Lab ZAO) R1 kltdi; C:\WINDOWS\System32\DRIVERS\kltdi.sys [44992 2014-06-05] (Kaspersky Lab ZAO) R1 kneps; C:\WINDOWS\System32\DRIVERS\kneps.sys [146240 2014-07-09] (Kaspersky Lab ZAO) R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ASACPI.sys [5810 2004-08-13] () S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) R0 nvata; C:\WINDOWS\System32\DRIVERS\nvata.sys [100736 2006-04-24] (NVIDIA Corporation) R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [34176 2006-02-17] (NVIDIA Corporation) R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [13056 2006-02-17] (NVIDIA Corporation) S2 ADILOADER; System32\Drivers\adildr.sys [X] S3 adiusbaw; system32\DRIVERS\adiusbaw.sys [X] S4 IntelIde; No ImagePath U4 klkbdflt2; system32\DRIVERS\klkbdflt2.sys [X] U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-07 14:16 - 2014-12-07 14:16 - 00122880 _____ () C:\WINDOWS\Minidump\Mini120714-01.dmp 2014-12-07 14:06 - 2014-12-07 14:15 - 00001987 _____ () C:\Documents and Settings\user\Pulpit\na strone fixit.txt 2014-12-07 13:35 - 2014-12-07 13:35 - 00000000 ____D () C:\Program Files\Magical Jelly Bean 2014-12-07 13:35 - 2014-12-07 13:35 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\KeyFinder 2014-11-30 13:26 - 2014-12-07 14:08 - 00269614 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-2025429265-562591055-725345543-1003-0.dat 2014-11-29 19:58 - 2014-12-07 14:08 - 00269614 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat 2014-11-29 14:21 - 2014-11-29 19:58 - 00065536 _____ () C:\WINDOWS\system32\config\Doctor Web.evt 2014-11-29 14:10 - 2014-11-29 14:10 - 00001977 _____ () C:\Documents and Settings\user\Pulpit\Bezpieczne pieniądze.lnk 2014-11-29 14:10 - 2014-11-29 14:10 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Kaspersky Internet Security 2014-11-29 14:10 - 2014-11-29 14:09 - 00001883 _____ () C:\Documents and Settings\All Users\Pulpit\Kaspersky Internet Security.lnk 2014-11-29 14:08 - 2014-12-07 14:17 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab 2014-11-29 14:07 - 2014-12-02 17:03 - 00671432 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klif.sys 2014-11-29 14:07 - 2014-12-02 17:02 - 00116744 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klflt.sys 2014-11-29 14:07 - 2014-08-12 18:32 - 00036024 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klhk.sys 2014-11-29 13:59 - 2014-11-29 14:44 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-11-29 13:48 - 2014-11-29 13:48 - 00065536 _____ () C:\WINDOWS\system32\config\Doctor W.evt 2014-11-29 13:48 - 2014-11-29 13:48 - 00000000 ____D () C:\Documents and Settings\user\Doctor Web 2014-11-29 13:34 - 2014-12-07 13:36 - 00114904 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-11-29 13:34 - 2014-11-29 13:34 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware 2014-11-29 13:34 - 2014-11-29 13:34 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes Anti-Malware 2014-11-29 13:34 - 2014-11-29 13:34 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2014-11-29 13:34 - 2014-10-01 11:20 - 00054360 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-11-29 13:34 - 2014-10-01 11:20 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-11-29 13:28 - 2014-11-29 13:28 - 00090112 _____ () C:\WINDOWS\Minidump\Mini112914-02.dmp 2014-11-29 13:17 - 2014-11-29 13:17 - 00090112 _____ () C:\WINDOWS\Minidump\Mini112914-01.dmp 2014-11-29 13:04 - 2014-12-07 14:21 - 00000000 ____D () C:\FRST 2014-11-29 13:04 - 2014-12-07 14:21 - 00000000 ____D () C:\AdwCleaner 2014-11-19 16:14 - 2014-11-19 16:14 - 00090112 _____ () C:\WINDOWS\Minidump\Mini111914-01.dmp ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-07 14:22 - 2008-09-26 15:32 - 00000000 ____D () C:\Documents and Settings\user\Ustawienia lokalne\Temp 2014-12-07 14:18 - 2013-06-06 15:12 - 01328107 _____ () C:\Documents and Settings\user\debug.log 2014-12-07 14:17 - 2008-09-26 23:21 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-12-07 14:17 - 2008-09-26 23:21 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-12-07 14:17 - 2008-09-26 15:36 - 00000000 _____ () C:\WINDOWS\system32\nmp.log 2014-12-07 14:17 - 2008-09-26 15:28 - 01072433 _____ () C:\WINDOWS\WindowsUpdate.log 2014-12-07 14:16 - 2014-11-03 18:42 - 00001028 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-12-07 14:16 - 2011-11-21 15:36 - 00000000 ____D () C:\Documents and Settings\user\Dane aplikacji\ipla 2014-12-07 14:16 - 2008-09-27 07:43 - 06355629 _____ () C:\WINDOWS\system32\oodbs.lor 2014-12-07 14:16 - 2008-09-26 18:49 - 00000000 ____D () C:\WINDOWS\Minidump 2014-12-07 14:16 - 2008-09-26 17:32 - 00000000 ____D () C:\Documents and Settings\user\Menu Start\Programy\CyberLink DVD Suite 2014-12-07 14:16 - 2008-09-26 17:07 - 00194283 _____ () C:\WINDOWS\system32\nvapps.xml 2014-12-07 14:16 - 2008-09-26 15:31 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-12-07 14:10 - 2008-12-11 19:47 - 00000000 ____D () C:\Documents and Settings\user\Dane aplikacji\Skype 2014-12-07 14:08 - 2008-12-12 11:28 - 00000268 ____H () C:\sqmdata00.sqm 2014-12-07 14:08 - 2008-12-12 11:28 - 00000244 ____H () C:\sqmnoopt00.sqm 2014-12-07 14:08 - 2008-09-26 15:31 - 00032636 _____ () C:\WINDOWS\SchedLgU.Txt 2014-12-07 14:06 - 2008-09-26 15:32 - 00000000 ____D () C:\Documents and Settings\user\Pulpit 2014-12-07 14:05 - 2008-09-26 15:27 - 00000000 ____D () C:\WINDOWS\srchasst 2014-12-07 13:48 - 2008-12-12 11:23 - 00000252 _____ () C:\WINDOWS\Tasks\Sprawdź aktualizacje paska narzędzi Windows Live Toolbar.job 2014-12-07 13:47 - 2014-11-03 18:42 - 00001032 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-12-07 13:35 - 2008-09-26 23:19 - 00000000 ___RD () C:\Documents and Settings\All Users\Menu Start\Programy 2014-12-07 09:22 - 2008-12-17 11:44 - 00000268 ____H () C:\sqmdata19.sqm 2014-12-07 09:22 - 2008-12-17 11:44 - 00000244 ____H () C:\sqmnoopt19.sqm 2014-12-07 09:03 - 2008-09-26 20:23 - 00002561 _____ () C:\Documents and Settings\user\Pulpit\Microsoft Office Outlook 2003.lnk 2014-12-06 20:38 - 2008-12-17 09:09 - 00000268 ____H () C:\sqmdata18.sqm 2014-12-06 20:38 - 2008-12-17 09:09 - 00000244 ____H () C:\sqmnoopt18.sqm 2014-12-05 20:37 - 2008-12-17 01:18 - 00000268 ____H () C:\sqmdata17.sqm 2014-12-05 20:37 - 2008-12-17 01:18 - 00000244 ____H () C:\sqmnoopt17.sqm 2014-12-05 18:03 - 2013-03-05 18:24 - 00000000 ____D () C:\Documents and Settings\user\Pulpit\OTKZ 2014-12-05 17:02 - 2008-09-29 21:23 - 00000012 _____ () C:\Documents and Settings\user\intlname.ols 2014-12-05 11:43 - 2008-12-16 21:48 - 00000268 ____H () C:\sqmdata16.sqm 2014-12-05 11:43 - 2008-12-16 21:48 - 00000244 ____H () C:\sqmnoopt16.sqm 2014-12-04 19:20 - 2008-12-16 10:51 - 00000268 ____H () C:\sqmdata15.sqm 2014-12-04 19:20 - 2008-12-16 10:51 - 00000244 ____H () C:\sqmnoopt15.sqm 2014-12-04 13:06 - 2008-12-15 20:06 - 00000268 ____H () C:\sqmdata14.sqm 2014-12-04 13:06 - 2008-12-15 20:06 - 00000244 ____H () C:\sqmnoopt14.sqm 2014-12-04 10:14 - 2008-12-15 15:30 - 00000268 ____H () C:\sqmdata13.sqm 2014-12-04 10:14 - 2008-12-15 15:30 - 00000244 ____H () C:\sqmnoopt13.sqm 2014-12-03 19:36 - 2008-12-15 14:31 - 00000268 ____H () C:\sqmdata12.sqm 2014-12-03 19:36 - 2008-12-15 14:31 - 00000244 ____H () C:\sqmnoopt12.sqm 2014-12-03 08:36 - 2008-12-15 09:13 - 00000268 ____H () C:\sqmdata11.sqm 2014-12-03 08:36 - 2008-12-15 09:13 - 00000244 ____H () C:\sqmnoopt11.sqm 2014-12-03 00:51 - 2008-12-15 00:58 - 00000268 ____H () C:\sqmdata10.sqm 2014-12-03 00:51 - 2008-12-15 00:58 - 00000244 ____H () C:\sqmnoopt10.sqm 2014-12-02 17:06 - 2008-09-26 23:18 - 00739937 _____ () C:\WINDOWS\setupapi.log 2014-12-02 16:57 - 2008-09-26 15:32 - 00000000 ___HD () C:\Documents and Settings\user\Ustawienia lokalne 2014-12-02 08:28 - 2008-12-14 22:33 - 00000268 ____H () C:\sqmdata09.sqm 2014-12-02 08:28 - 2008-12-14 22:33 - 00000244 ____H () C:\sqmnoopt09.sqm 2014-12-01 19:20 - 2008-12-14 14:41 - 00000268 ____H () C:\sqmdata08.sqm 2014-12-01 19:20 - 2008-12-14 14:41 - 00000244 ____H () C:\sqmnoopt08.sqm 2014-12-01 13:37 - 2008-12-14 10:35 - 00000268 ____H () C:\sqmdata07.sqm 2014-12-01 13:37 - 2008-12-14 10:35 - 00000244 ____H () C:\sqmnoopt07.sqm 2014-12-01 12:58 - 2008-12-13 22:57 - 00000268 ____H () C:\sqmdata06.sqm 2014-12-01 12:58 - 2008-12-13 22:57 - 00000244 ____H () C:\sqmnoopt06.sqm 2014-12-01 12:36 - 2013-04-20 18:35 - 00000284 _____ () C:\WINDOWS\Tasks\AppleSoftwareUpdate.job 2014-12-01 10:26 - 2013-05-21 15:17 - 00000000 ____D () C:\Documents and Settings\user\Pulpit\cv marek 2014-12-01 09:13 - 2008-12-13 20:59 - 00000268 ____H () C:\sqmdata05.sqm 2014-12-01 09:13 - 2008-12-13 20:59 - 00000244 ____H () C:\sqmnoopt05.sqm 2014-11-30 13:26 - 2008-12-13 17:26 - 00000268 ____H () C:\sqmdata04.sqm 2014-11-30 13:26 - 2008-12-13 17:26 - 00000244 ____H () C:\sqmnoopt04.sqm 2014-11-29 19:58 - 2008-12-13 13:03 - 00000268 ____H () C:\sqmdata03.sqm 2014-11-29 19:58 - 2008-12-13 13:03 - 00000244 ____H () C:\sqmnoopt03.sqm 2014-11-29 14:10 - 2008-09-26 23:19 - 00000000 ____D () C:\Documents and Settings\All Users\Pulpit 2014-11-29 14:08 - 2008-09-27 07:52 - 00000000 ____D () C:\Program Files\Kaspersky Lab 2014-11-29 14:08 - 2008-09-26 23:18 - 00000000 __RHD () C:\Documents and Settings\All Users\Dane aplikacji 2014-11-29 14:07 - 2008-09-26 23:19 - 01003942 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-11-29 14:07 - 2001-10-26 19:15 - 00463036 _____ () C:\WINDOWS\system32\perfh015.dat 2014-11-29 14:07 - 2001-10-26 19:15 - 00068958 _____ () C:\WINDOWS\system32\perfc015.dat 2014-11-29 13:59 - 2008-09-26 20:17 - 00000000 ____D () C:\Program Files\Microsoft.NET 2014-11-29 13:43 - 2008-12-12 20:26 - 00000268 ____H () C:\sqmdata02.sqm 2014-11-29 13:43 - 2008-12-12 20:26 - 00000244 ____H () C:\sqmnoopt02.sqm 2014-11-29 13:16 - 2008-09-26 15:32 - 00000000 __RHD () C:\Documents and Settings\user\Dane aplikacji 2014-11-29 12:09 - 2008-12-12 14:11 - 00000268 ____H () C:\sqmdata01.sqm 2014-11-29 12:09 - 2008-12-12 14:11 - 00000244 ____H () C:\sqmnoopt01.sqm 2014-11-25 17:17 - 2001-07-22 01:17 - 00002206 _____ () C:\WINDOWS\system32\wpa.dbl 2014-11-23 17:49 - 2014-11-03 15:49 - 00000000 ____D () C:\Documents and Settings\user\Pulpit\PRACA Some content of TEMP: ==================== C:\Documents and Settings\user\Ustawienia lokalne\Temp\Install_Nokia_Ovi_Suite.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl1003.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl1020.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl11C8.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl11D1.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl11D2.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl139D.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl1D0.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl2A5.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl3.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl4.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\ipl5.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplA36.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplA37.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplA45.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplB99.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplE44.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplF71.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplF86.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\iplFDC.tmp.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\NEventMessages.dll C:\Documents and Settings\user\Ustawienia lokalne\Temp\Quarantine.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\SkypeSetup.exe C:\Documents and Settings\user\Ustawienia lokalne\Temp\sqlite3.dll C:\Documents and Settings\user\Ustawienia lokalne\Temp\uninst1.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================