Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2015 Ran by asus (administrator) on ASUS-KOMPUTER on 23-02-2015 22:24:41 Running from C:\Users\asus\Desktop\polskie nuty Loaded Profiles: asus (Available profiles: asus) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Polski (Polska) Internet Explorer Version 8 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (AVG) C:\Program Files (x86)\AVG PC TuneUp 2014\TuneUpUtilitiesService64.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (ASUS) C:\Windows\AsScrPro.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Microsoft Corporation) C:\Program Files\Zune\ZuneLauncher.exe (Google Inc.) C:\Users\asus\AppData\Local\Google\Update\GoogleUpdate.exe (Spotify Ltd) C:\Users\asus\AppData\Roaming\Spotify\spotify.exe (Spotify Ltd) C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (AVG) C:\Program Files (x86)\AVG PC TuneUp 2014\TuneUpUtilitiesApp64.exe (Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ASUS) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Users\asus\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\asus\AppData\Local\Google\Chrome\Application\chrome.exe () C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Google Inc.) C:\Users\asus\AppData\Local\Google\Chrome\Application\chrome.exe () C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2587944 2010-12-31] (ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277480 2011-08-16] (Realtek Semiconductor) HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [983200 2011-11-29] (Atheros Communications) HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [800416 2011-11-29] (Atheros Commnucations) HKLM\...\Run: [Zune Launcher] => C:\Program Files\Zune\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation) HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [984400 2010-07-09] (Virage Logic Corporation / Sonic Focus) HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5716608 2011-07-21] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2319536 2011-10-18] (ASUS) HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [37624 2014-10-16] (Panda Security, S.L.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2927441721-3693689410-853391107-1000\...\Run: [Google Update] => C:\Users\asus\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-09-16] (Google Inc.) HKU\S-1-5-21-2927441721-3693689410-853391107-1000\...\Run: [Spotify] => C:\Users\asus\AppData\Roaming\Spotify\Spotify.exe [6737976 2014-12-11] (Spotify Ltd) HKU\S-1-5-21-2927441721-3693689410-853391107-1000\...\Run: [Spotify Web Helper] => C:\Users\asus\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-11] (Spotify Ltd) HKU\S-1-5-21-2927441721-3693689410-853391107-1000\...\MountPoints2: {75579b69-0bb2-11e2-993c-c0188519075a} - F:\AutoRun.exe BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) BHO: IVONA Reader -> {8664889D-ED18-4713-918F-E2BB69D8452B} -> C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2_x64.dll (IVONA Software Sp. z o.o.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: IVONA Reader -> {8664889D-ED18-4713-918F-E2BB69D8452B} -> C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2.dll (IVONA Software Sp. z o.o.) BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Toolbar: HKLM - IVONA Reader - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2_x64.dll (IVONA Software Sp. z o.o.) Toolbar: HKLM-x32 - IVONA Reader - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2.dll (IVONA Software Sp. z o.o.) Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\syswow64\urlmon.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\..\Interfaces\{C513B97F-DB24-4E0E-AAF4-77EF32BF14E9}: [NameServer] FireFox: ======== Chrome: ======= CHR Plugin: (Widevine Content Decryption Module) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\WidevineCDM\\_platform_specific\win_x86\widevinecdmadapter.dll (Google Inc.) CHR Plugin: (Shockwave Flash) - C:\Users\asus\AppData\Local\Google\Chrome\Application\40.0.2214.115\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\asus\AppData\Local\Google\Chrome\Application\40.0.2214.115\internal-nacl-plugin No File CHR Plugin: (Chrome PDF Viewer) - C:\Users\asus\AppData\Local\Google\Chrome\Application\40.0.2214.115\pdf.dll () CHR Profile: C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-08-23] CHR Extension: (Google Drive) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-08-23] CHR Extension: (YouTube) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-08-23] CHR Extension: (Google Search) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-08-23] CHR Extension: (Google Sheets) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-23] CHR Extension: (Google Wallet) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Gmail) - C:\Users\asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-08-23] StartMenuInternet: Google Chrome.WCWKU4Y52TH64IEQZDG7IG5BIY - C:\Users\asus\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [92800 2011-11-30] (ASUS) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [106144 2011-11-29] (Atheros Commnucations) [File not signed] R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [142072 2014-10-13] (Panda Security, S.L.) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [66808 2014-10-09] (Panda Security, S.L.) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2014-10-16] (Panda Security, S.L.) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG PC TuneUp 2014\TuneUpUtilitiesService64.exe [2102072 2013-12-18] (AVG) R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [42808 2013-12-18] (AVG) R2 UxTuneUp; C:\Windows\SysWOW64\uxtuneup.dll [35640 2013-12-18] (AVG) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-11-29] (Atheros) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [96800 2014-06-04] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [162336 2014-06-18] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [112160 2014-06-04] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [115232 2014-06-04] (Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [46336 2014-01-16] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [95776 2014-06-04] (Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [70176 2014-06-04] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [125984 2014-06-04] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [306720 2014-06-04] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [169504 2014-06-04] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [115744 2014-06-04] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [261152 2014-06-04] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [109088 2014-06-04] (Panda Security, S.L.) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [163088 2014-10-13] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121616 2014-10-13] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [195616 2014-07-24] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [122400 2014-07-24] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [132128 2014-07-24] (Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107792 2014-10-13] (Panda Security, S.L.) R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [60400 2014-03-25] (Panda Security, S.L.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG PC TuneUp 2014\TuneUpUtilitiesDriver64.sys [14112 2013-09-18] (TuneUp Software) S3 zte_cdc_acm; C:\Windows\System32\DRIVERS\zte_cdc_acm.sys [79872 2011-08-10] (ZTE) [File not signed] S3 zte_cpo; C:\Windows\System32\DRIVERS\zte_cpo.sys [14336 2011-08-10] (ZTE) [File not signed] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-23 22:14 - 2014-03-25 14:15 - 00060400 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2015-02-23 21:26 - 2015-02-23 21:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-02-23 21:26 - 2015-02-23 21:26 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2015-02-23 21:26 - 2015-02-23 21:26 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2015-02-23 12:45 - 2015-02-23 12:45 - 471449538 _____ () C:\Windows\MEMORY.DMP 2015-02-23 12:45 - 2015-02-23 12:45 - 00262144 _____ () C:\Windows\Minidump\022315-18033-01.dmp 2015-02-23 12:27 - 2015-02-04 13:59 - 00380416 _____ () C:\Users\asus\Desktop\jhnmqgsg.exe 2015-02-23 12:20 - 2015-02-23 22:24 - 00000000 ____D () C:\FRST 2015-02-21 17:06 - 2015-02-21 17:06 - 00000207 _____ () C:\Windows\ 2015-02-21 17:06 - 2015-02-21 17:06 - 00000000 ____D () C:\RegBackup 2015-02-21 13:57 - 2015-02-21 13:57 - 00002159 _____ () C:\Users\asus\Desktop\ - Windows Repair (All in One).lnk 2015-02-21 13:57 - 2015-02-21 13:57 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2015-02-21 13:57 - 2015-02-21 13:57 - 00000000 ____D () C:\Users\asus\AppData\Roaming\Malwarebytes 2015-02-21 13:57 - 2015-02-21 13:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ 2015-02-21 13:57 - 2015-02-21 13:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware 2015-02-21 13:57 - 2015-02-21 13:57 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-21 13:57 - 2015-02-21 13:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2015-02-21 13:57 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-02-21 13:56 - 2015-02-21 13:56 - 00000000 ____D () C:\Program Files (x86)\ 2015-02-14 11:34 - 2015-02-14 11:34 - 00001142 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.1.lnk 2015-02-14 11:34 - 2015-02-14 11:34 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 2015-02-14 11:34 - 2015-02-14 11:34 - 00000000 ____D () C:\Users\asus\AppData\Roaming\OpenOffice 2015-02-14 11:33 - 2015-02-14 11:33 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2015-02-14 11:31 - 2015-02-14 11:32 - 00000000 ____D () C:\Users\asus\Desktop\OpenOffice 4.1.1 (pl) Installation Files 2015-02-14 11:06 - 2015-02-14 11:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2015-02-14 11:01 - 2015-02-14 11:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2015-02-14 11:00 - 2015-02-14 11:00 - 00000000 ____D () C:\Windows\PCHEALTH 2015-02-14 11:00 - 2015-02-14 11:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 2015-02-14 10:57 - 2015-02-14 11:01 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-02-14 10:57 - 2015-02-14 10:57 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-02-14 10:57 - 2015-02-14 10:57 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2015-02-14 10:56 - 2015-02-14 10:56 - 00000000 __RHD () C:\MSOCache 2015-02-14 10:48 - 2015-02-14 10:50 - 00000000 ____D () C:\Users\asus\AppData\Roaming\DAEMON Tools Lite 2015-02-14 10:47 - 2015-02-14 10:50 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2015-02-08 00:30 - 2015-02-08 00:30 - 00002764 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2015-02-07 01:26 - 2015-02-07 01:26 - 00001282 _____ () C:\Users\Public\Desktop\Panda Cloud Cleaner.lnk 2015-02-07 01:26 - 2015-02-07 01:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security 2015-02-07 01:20 - 2015-02-07 01:26 - 00000000 ____D () C:\Program Files (x86)\Panda Security 2015-02-07 01:20 - 2015-02-07 01:20 - 00000000 ____D () C:\Users\asus\AppData\Roaming\Panda Security 2015-02-07 01:20 - 2015-02-07 01:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Internet Security 2015 2015-02-07 01:19 - 2015-02-07 01:20 - 00000000 ____D () C:\ProgramData\Panda Security 2015-02-06 13:51 - 2013-12-18 09:38 - 00042808 _____ (AVG) C:\Windows\system32\uxtuneup.dll 2015-02-06 13:51 - 2013-12-18 09:38 - 00035640 _____ (AVG) C:\Windows\SysWOW64\uxtuneup.dll 2015-02-06 13:49 - 2015-02-23 22:12 - 00000627 _____ () C:\Windows\wininit.ini 2015-02-05 12:08 - 2015-02-05 12:08 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2015-02-05 12:07 - 2015-02-23 22:13 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-02-05 12:07 - 2015-02-23 22:12 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-02-03 23:04 - 2015-02-03 23:04 - 00126928 _____ () C:\Users\asus\Desktop\Bad_Day_by_Anowia_2.JPG.mfjfdmn 2015-02-03 23:04 - 2015-01-30 11:34 - 00217424 _____ () C:\Users\asus\Desktop\Pakistan_wobec_kwestii_afganskiej-libre.PDF.mfjfdmn 2015-02-03 23:04 - 2015-01-30 11:34 - 00178160 _____ () C:\Users\asus\Desktop\DTD.PDF.mfjfdmn 2015-02-03 23:04 - 2015-01-28 12:14 - 00192064 _____ () C:\Users\asus\Desktop\SKANOWANIE0001.PDF.mfjfdmn 2015-02-03 23:04 - 2015-01-25 02:18 - 00396032 _____ () C:\Users\asus\Desktop\KLIMAT HOLANDII A TURYSTYKA. Cichecka M.DOCX.mfjfdmn 2015-02-03 23:04 - 2014-11-10 00:29 - 00519008 _____ () C:\Users\asus\Desktop\cv.DOC.mfjfdmn 2015-02-03 23:04 - 2014-05-12 20:53 - 00064128 _____ () C:\Users\asus\Desktop\his[1].pdf.mfjfdmn 2015-02-03 21:39 - 2015-02-05 11:48 - 00000000 ____D () C:\Users\asus\Desktop\TSM EGZAMIN 2015-01-31 14:35 - 2015-01-31 14:35 - 00000000 ____D () C:\Users\asus\Documents\Notesy programu OneNote 2015-01-30 13:35 - 2015-02-05 11:21 - 00000000 ____D () C:\Users\asus\Desktop\pati 2015-01-30 11:34 - 2015-01-30 11:34 - 01014832 _____ () C:\Users\asus\Desktop\miscelanea-libre.PDF.mfjfdmn 2015-01-30 11:34 - 2015-01-30 11:34 - 00030848 _____ () C:\Users\asus\Desktop\strategiczne-problemy-azji1.DOCX.mfjfdmn 2015-01-30 11:34 - 2015-01-24 21:19 - 00034544 _____ () C:\Users\asus\Desktop\Info for International bank transfer.DOC.mfjfdmn 2015-01-30 11:34 - 2014-12-07 23:02 - 00056560 _____ () C:\Users\asus\Desktop\10850483_608419832597881_312882224_n.JPG.mfjfdmn 2015-01-29 23:26 - 2015-02-05 11:32 - 00000000 ____D () C:\Users\asus\Desktop\BEZPIECZEŃSTWO MIĘDZYNARODOWE 2015-01-29 23:26 - 2015-02-05 11:22 - 00000000 ____D () C:\Users\asus\Desktop\OCHRONA PRAW CZŁOWIEKA ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-23 22:24 - 2014-08-20 20:59 - 00000000 ____D () C:\Users\asus\Desktop\polskie nuty 2015-02-23 22:24 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-02-23 22:24 - 2009-07-14 05:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-02-23 22:23 - 2012-09-15 00:48 - 01635332 _____ () C:\Windows\WindowsUpdate.log 2015-02-23 22:23 - 2011-04-12 14:21 - 00686324 _____ () C:\Windows\system32\perfh015.dat 2015-02-23 22:23 - 2011-04-12 14:21 - 00131302 _____ () C:\Windows\system32\perfc015.dat 2015-02-23 22:23 - 2009-07-14 06:13 - 01549696 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-23 22:21 - 2014-09-15 20:49 - 00000000 ____D () C:\Users\asus\AppData\Roaming\Spotify 2015-02-23 22:21 - 2014-09-15 20:49 - 00000000 ____D () C:\Users\asus\AppData\Local\Spotify 2015-02-23 22:19 - 2014-02-15 21:32 - 00061426 _____ () C:\Windows\PFRO.log 2015-02-23 22:19 - 2014-02-15 21:32 - 00032249 _____ () C:\Windows\setupact.log 2015-02-23 22:19 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-23 22:10 - 2012-09-15 01:45 - 00000000 ____D () C:\Users\asus\AppData\Local\Adobe 2015-02-23 22:10 - 2012-09-15 01:44 - 00000000 ____D () C:\ProgramData\Adobe 2015-02-23 12:45 - 2013-05-14 21:10 - 00000000 ____D () C:\Windows\Minidump 2015-02-21 18:00 - 2012-09-15 01:34 - 00115320 _____ () C:\Users\asus\AppData\Local\GDIPFONTCACHEV1.DAT 2015-02-21 17:59 - 2009-07-14 05:45 - 00487952 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-02-21 17:32 - 2009-07-14 03:34 - 00000514 _____ () C:\Windows\win.ini 2015-02-14 11:50 - 2012-09-15 01:34 - 00002362 _____ () C:\Windows\system32\AutoRunFilter.ini 2015-02-14 11:50 - 2012-09-15 01:34 - 00001469 _____ () C:\Windows\system32\ServiceFilter.ini 2015-02-14 11:39 - 2014-10-14 09:47 - 00000000 ____D () C:\Users\asus\Desktop\ALALALAAA 2015-02-14 11:06 - 2013-03-31 22:50 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-02-14 11:01 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-02-14 11:00 - 2011-04-12 14:32 - 00000000 ____D () C:\Windows\ShellNew 2015-02-14 10:58 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-02-14 10:32 - 2012-09-15 01:42 - 00000000 ____D () C:\Program Files (x86)\ 3 2015-02-08 14:26 - 2014-11-07 20:42 - 00000000 ____D () C:\Users\asus\Desktop\impreza ttur 2015-02-07 00:45 - 2013-08-23 20:28 - 00000000 ____D () C:\AdwCleaner 2015-02-06 14:01 - 2012-09-15 01:35 - 00045056 _____ () C:\Windows\SysWOW64\acovcnt.exe 2015-02-06 13:51 - 2014-02-13 21:50 - 00000000 ____D () C:\Program Files (x86)\AVG PC TuneUp 2014 2015-02-06 13:13 - 2013-12-19 00:47 - 00000180 _____ () C:\Users\asus\AppData\Roaming\WB.CFG 2015-02-05 11:56 - 2012-10-16 23:34 - 00000000 ____D () C:\Users\asus\Documents\TiR 2015-02-05 11:51 - 2013-10-21 22:19 - 00000000 ____D () C:\Users\asus\Desktop\Tir 2 2015-02-05 11:31 - 2014-12-11 16:15 - 00000000 ____D () C:\Users\asus\Desktop\Passaro 2015-02-05 11:21 - 2014-10-06 18:48 - 00000000 ____D () C:\Users\asus\Desktop\Animacja CW w turystyce 2015-02-05 11:21 - 2012-09-16 22:26 - 00000000 ___SD () C:\Users\asus\GG dysk 2015-02-05 11:20 - 2014-12-03 22:19 - 00000000 ____D () C:\Users\asus\Desktop\DIANA 2015-02-05 11:20 - 2014-05-18 17:48 - 00000000 ____D () C:\Users\asus\Desktop\nagraniaa 2015-02-05 11:20 - 2013-07-07 16:26 - 00000000 ___HD () C:\Users\asus\Desktop\.picasaoriginals 2015-02-05 11:20 - 2012-10-24 22:53 - 00000000 ____D () C:\Users\asus\Downloads\p 2015-02-05 10:53 - 2012-09-15 00:53 - 00000000 ____D () C:\Users\asus 2015-02-05 10:50 - 2012-09-15 00:59 - 00000000 ____D () C:\preload64 2015-02-05 00:54 - 2014-09-11 13:42 - 00011408 _____ () C:\Users\asus\Desktop\ZARZĄDZANIE GLOBALNE REFERAT.DOCX.mfjfdmn 2015-01-30 23:22 - 2012-09-26 16:04 - 00033792 _____ () C:\Users\asus\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-01-27 21:30 - 2015-01-19 11:22 - 00000000 ____D () C:\Users\asus\AppData\Roaming\Opera Software 2015-01-27 21:30 - 2015-01-19 11:22 - 00000000 ____D () C:\Users\asus\AppData\Local\Opera Software 2015-01-27 21:30 - 2015-01-19 11:21 - 00000000 ____D () C:\Program Files (x86)\Opera ==================== Files in the root of some directories ======= 2013-12-19 00:47 - 2015-02-06 13:13 - 0000180 _____ () C:\Users\asus\AppData\Roaming\WB.CFG 2012-09-26 16:04 - 2015-01-30 23:22 - 0033792 _____ () C:\Users\asus\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-03 10:25 ==================== End Of Log ============================