OTL logfile created on: 2011-06-10 14:45:59 - Run 2 OTL by OldTimer - Version 3.2.23.0 Folder = C:\Documents and Settings\Rafał\Pulpit\ratuj Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,20 Gb Available Physical Memory | 60,12% Memory free 3,85 Gb Paging File | 3,12 Gb Available in Paging File | 81,10% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 78,13 Gb Total Space | 52,12 Gb Free Space | 66,72% Space Free | Partition Type: NTFS Drive D: | 387,62 Gb Total Space | 374,42 Gb Free Space | 96,59% Space Free | Partition Type: NTFS Drive F: | 1,86 Gb Total Space | 0,21 Gb Free Space | 11,22% Space Free | Partition Type: FAT Computer Name: DUZYR | User Name: Rafał | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-06-09 23:26:28 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rafał\Pulpit\ratuj\OTL.exe PRC - [2011-03-15 12:09:53 | 002,071,904 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgtray.exe PRC - [2011-01-24 12:44:14 | 000,098,304 | ---- | M] (COMARCH S.A.) -- C:\WINDOWS\system32\HASPSrvN.exe PRC - [2011-01-24 04:34:12 | 000,696,320 | ---- | M] (Comarch S.A.) -- C:\WINDOWS\system32\HASPSrv.exe PRC - [2010-11-26 09:19:34 | 000,725,344 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgcsrvx.exe PRC - [2010-10-03 13:55:38 | 000,621,920 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgnsx.exe PRC - [2010-07-15 21:00:07 | 000,515,424 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgrsx.exe PRC - [2010-07-15 21:00:05 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgwdsvc.exe PRC - [2010-07-15 21:00:00 | 001,101,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG9\avgchsvx.exe PRC - [2009-04-08 09:45:10 | 000,114,440 | ---- | M] (Unizeto Technologies SA) -- C:\Program Files\Unizeto\proCertum CardManager\cryptoCertumScanner.exe PRC - [2009-02-05 14:43:26 | 000,068,136 | ---- | M] () -- C:\Program Files\Gigabyte\EasySaver\essvr.exe PRC - [2008-04-15 14:00:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2006-03-29 17:12:06 | 000,364,544 | ---- | M] () -- C:\Program Files\TP-LINK\TWCU\TWCU.exe PRC - [2005-12-30 09:15:16 | 000,036,864 | ---- | M] () -- C:\WINDOWS\system32\acs.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-06-09 23:26:28 | 000,580,096 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rafał\Pulpit\ratuj\OTL.exe MOD - [2010-08-23 18:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2009-05-24 23:41:34 | 000,304,128 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll MOD - [2008-04-15 14:00:00 | 000,586,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mlang.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2011-05-29 03:17:38 | 000,073,600 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\ezGOSvc.dll -- (ezGOSvc) SRV - [2011-03-18 08:11:02 | 000,947,528 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\AVG\AVG9\Toolbar\ToolbarBroker.exe -- (AVG Security Toolbar Service) SRV - [2011-01-24 04:34:12 | 000,696,320 | ---- | M] (Comarch S.A.) [Auto | Running] -- C:\WINDOWS\system32\HASPSrv.exe -- (HASPSrv) SRV - [2010-07-15 21:00:05 | 000,308,136 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG9\avgwdsvc.exe -- (avg9wd) SRV - [2009-02-05 14:43:26 | 000,068,136 | ---- | M] () [Auto | Running] -- C:\Program Files\Gigabyte\EasySaver\ESSVR.EXE -- (ES lite Service) SRV - [2005-12-30 09:15:16 | 000,036,864 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\acs.exe -- (ACS) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-06-10 14:05:00 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2011-05-06 10:41:56 | 000,243,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgtdix.sys -- (AvgTdiX) DRV - [2010-07-15 21:00:02 | 000,216,400 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\System32\Drivers\avgldx86.sys -- (AvgLdx86) DRV - [2010-06-10 09:15:42 | 000,029,584 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\System32\Drivers\avgmfx86.sys -- (AvgMfx86) DRV - [2009-12-15 14:38:33 | 000,047,616 | ---- | M] (Aladdin Knowledge Systems) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\Haspnt.sys -- (Haspnt) DRV - [2009-01-20 12:53:06 | 005,027,840 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008-10-30 15:14:20 | 000,117,888 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2008-01-15 14:39:38 | 000,097,792 | ---- | M] (OMNIKEY) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\cxbu0wdm.sys -- (cxbu0wdm) DRV - [2007-04-16 17:46:34 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM) DRV - [2006-11-22 11:01:48 | 000,693,760 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (Hardlock) DRV - [2006-11-22 11:01:48 | 000,100,096 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\aksusb.sys -- (aksusb) DRV - [2006-11-22 11:01:46 | 000,327,168 | ---- | M] (Aladdin Knowledge Systems Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\akshasp.sys -- (akshasp) DRV - [2005-12-21 11:16:34 | 000,470,048 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ar5211.sys -- (AR5211) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ IE - HKU\.DEFAULT\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1275210071-602162358-682003330-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ IE - HKU\S-1-5-21-1275210071-602162358-682003330-1003\..\URLSearchHook: {0063BF63-BFFF-4B8F-9D26-4267DF7F17DD} - C:\WINDOWS\system32\dvmurl.dll (DeviceVM Inc.) IE - HKU\S-1-5-21-1275210071-602162358-682003330-1003\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () IE - HKU\S-1-5-21-1275210071-602162358-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Yahoo" FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&type=302398" FF - prefs.js..browser.search.selectedEngine: "Yahoo" FF - prefs.js..browser.startup.homepage: "http://www.sgk.gofin.pl/" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: pdfforge@mybrowserbar.com:4.3 FF - prefs.js..extensions.enabledItems: wtxpcom@mybrowserbar.com:4.3 FF - prefs.js..extensions.enabledItems: avg@igeared:6.103.018.001 FF - prefs.js..extensions.enabledItems: SignPlugin@bph.pl:1.4.0.3 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..keyword.URL: "http://search.avg.com/route/?d=4b97d2d2&v=6.103.018.001&i=23&tp=ab&iy=&ychte=us&lng=pl&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\avg@igeared: C:\Program Files\AVG\AVG9\Toolbar\Firefox\avg@igeared [2011-05-10 11:57:24 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-05-01 15:17:09 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 4.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-05-01 15:17:08 | 000,000,000 | ---D | M] [2010-03-10 19:59:18 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Rafał\Dane aplikacji\Mozilla\Extensions [2011-05-23 11:00:27 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Rafał\Dane aplikacji\Mozilla\Firefox\Profiles\pt0w2939.default\extensions [2010-06-26 13:04:58 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Rafał\Dane aplikacji\Mozilla\Firefox\Profiles\pt0w2939.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-05-23 11:00:27 | 000,000,000 | ---D | M] (BPH Sign Plugin) -- C:\Documents and Settings\Rafał\Dane aplikacji\Mozilla\Firefox\Profiles\pt0w2939.default\extensions\SignPlugin@bph.pl [2011-06-10 13:40:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-06-25 23:27:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-10-04 20:57:58 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2011-03-27 01:28:18 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} File not found (No name found) -- File not found (No name found) -- C:\DOCUMENTS AND SETTINGS\RAFAĹ‚\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\PT0W2939.DEFAULT\EXTENSIONS\SIGNPLUGIN@BPH.PL [2011-05-10 11:57:24 | 000,000,000 | ---D | M] ("urn:mozilla:install-manifest" em:id="avg@igeared" em:name="AVG Security Toolbar" em:version="6.103.018.001" em:displayname="AVG Security Toolbar" em:iconURL="chrome://tavgp/skin/logo.ico" em:creator="AVG Technologies" em:description="AVG Security Toolbar" em:homepageURL="http://www.avg.com" >) -- C:\PROGRAM FILES\AVG\AVG9\TOOLBAR\FIREFOX\AVG@IGEARED [2010-06-25 23:27:49 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011-04-14 18:59:14 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browsercomps.dll [2011-02-02 22:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-01-01 10:00:00 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-01-01 10:00:00 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-01-01 10:00:00 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-01-01 10:00:00 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-01-01 10:00:00 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-01-01 10:00:00 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2008-04-15 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll (AVG Technologies CZ, s.r.o.) O2 - BHO: (AVG Security Toolbar BHO) - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O3 - HKLM\..\Toolbar: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O3 - HKU\.DEFAULT\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-18\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found. O3 - HKU\S-1-5-21-1275210071-602162358-682003330-1003\..\Toolbar\WebBrowser: (AVG Security Toolbar) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [AutoRegisterCerts] C:\Program Files\Unizeto\proCertum CardManager\cryptoCertumScanner.exe (Unizeto Technologies SA) O4 - HKLM..\Run: [AVG9_TRAY] C:\Program Files\AVG\AVG9\avgtray.exe (AVG Technologies CZ, s.r.o.) O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [Monitor Serwisu klucza HASP] C:\WINDOWS\system32\HASPSrvN.exe (COMARCH S.A.) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [TWCU] C:\Program Files\TP-LINK\TWCU\TWCU.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1275210071-602162358-682003330-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {92ECE6FA-AC2E-4042-BFAE-0C8608E52A43} https://www.bph.pl/pi/components/bph/SignActivX.cab (SignActivX Control) O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O18 - Protocol\Handler\avgsecuritytoolbar {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - C:\Program Files\AVG\AVG9\Toolbar\IEToolbar.dll () O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dll (AVG Technologies CZ, s.r.o.) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\avgrsstarter: DllName - avgrsstx.dll - C:\WINDOWS\System32\avgrsstx.dll (AVG Technologies CZ, s.r.o.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-12-11 20:16:14 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-06-10 14:38:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafał\Dane aplikacji\AVG9 [2011-06-10 14:01:13 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover [2011-06-10 13:41:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt [2011-06-09 23:43:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafał\Pulpit\ratuj [2011-06-07 15:36:31 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Rafał\Recent [2011-06-03 02:21:56 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2011-05-30 00:25:13 | 000,718,208 | ---- | C] (EasyBits Media) -- C:\WINDOWS\System32\ezGOSvcApp.exe [2011-05-29 03:17:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafał\Dane aplikacji\go [2011-05-29 03:17:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Easybits GO [2011-05-27 13:07:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafał\Pulpit\e-deklaracje przez internet [2010-01-11 17:41:02 | 005,464,080 | ---- | C] (Microsoft Corporation) -- C:\Program Files\WindowsSearch-KB940157-XP-x86-plk.exe [2010-01-08 16:28:50 | 026,204,720 | ---- | C] ( ) -- C:\Program Files\AdbeRdr920_pl_PL.exe [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-06-10 14:05:06 | 000,220,188 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2011-06-10 14:05:00 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) -- C:\WINDOWS\gdrv.sys [2011-06-10 14:04:58 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2011-06-10 14:04:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-06-10 14:04:26 | 006,553,600 | -H-- | M] () -- C:\Documents and Settings\Rafał\NTUSER.DAT [2011-06-10 14:01:14 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\Rafał\Pulpit\AD-R.lnk [2011-06-10 00:25:35 | 000,002,327 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Comarch OPT!MA.lnk [2011-06-09 22:03:20 | 001,264,336 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2011-06-09 22:03:20 | 000,563,960 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2011-06-09 22:03:20 | 000,483,170 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2011-06-09 22:03:20 | 000,112,770 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2011-06-09 22:03:20 | 000,087,000 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011-06-09 18:29:00 | 077,521,539 | ---- | M] () -- C:\WINDOWS\System32\drivers\Avg\incavi.avm [2011-06-09 15:53:26 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl [2011-06-06 13:01:37 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1106061301.BAC [2011-06-06 02:23:30 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1106060223.BAC [2011-06-05 13:47:22 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-06-03 15:29:27 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-05-31 21:36:53 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105312136.BAC [2011-05-31 18:03:56 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105311803.BAC [2011-05-30 19:21:46 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105301921.BAC [2011-05-30 14:04:05 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105301403.BAC [2011-05-29 17:53:40 | 007,424,512 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105291753.BAC [2011-05-29 17:21:48 | 000,127,782 | ---- | M] () -- C:\Documents and Settings\Rafał\Moje dokumenty\l4 rafal05.2011.jpg [2011-05-29 16:27:42 | 000,016,016 | ---- | M] () -- C:\Documents and Settings\Rafał\Pulpit\cracow__sprzed_01_05_2011_ponowne zalod.xml - Notatnik.pdf [2011-05-29 03:17:38 | 000,718,208 | ---- | M] (EasyBits Media) -- C:\WINDOWS\System32\ezGOSvcApp.exe [2011-05-29 03:17:38 | 000,073,600 | ---- | M] () -- C:\WINDOWS\System32\ezGOSvc.dll [2011-05-26 00:09:26 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105260009.BAC [2011-05-25 19:21:59 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105251921.BAC [2011-05-25 09:49:28 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105250949.BAC [2011-05-24 09:50:16 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105240950.BAC [2011-05-24 03:34:03 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105240333.BAC [2011-05-23 19:59:57 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105231959.BAC [2011-05-23 19:44:19 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105231944.BAC [2011-05-23 17:53:07 | 007,293,440 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105231752.BAC [2011-05-19 22:18:40 | 007,227,904 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105192218.BAC [2011-05-17 00:50:33 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105170050.BAC [2011-05-16 17:22:52 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105161722.BAC [2011-05-16 10:44:20 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105161044.BAC [2011-05-14 23:11:22 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105142311.BAC [2011-05-12 12:58:31 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105121258.BAC [2011-05-11 19:33:22 | 007,228,928 | ---- | M] () -- C:\CDN_KNF_Konfiguracja_1708_1105111933.BAC [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-06-10 14:01:14 | 000,001,554 | ---- | C] () -- C:\Documents and Settings\Rafał\Pulpit\AD-R.lnk [2011-06-06 13:01:36 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1106061301.BAC [2011-06-06 02:23:29 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1106060223.BAC [2011-05-31 21:36:52 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105312136.BAC [2011-05-31 18:03:54 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105311803.BAC [2011-05-30 19:21:44 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105301921.BAC [2011-05-30 14:04:04 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105301403.BAC [2011-05-30 00:25:13 | 000,073,600 | ---- | C] () -- C:\WINDOWS\System32\ezGOSvc.dll [2011-05-29 17:53:39 | 007,424,512 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105291753.BAC [2011-05-29 17:21:48 | 000,127,782 | ---- | C] () -- C:\Documents and Settings\Rafał\Moje dokumenty\l4 rafal05.2011.jpg [2011-05-29 16:27:41 | 000,016,016 | ---- | C] () -- C:\Documents and Settings\Rafał\Pulpit\cracow__sprzed_01_05_2011_ponowne zalod.xml - Notatnik.pdf [2011-05-26 00:09:25 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105260009.BAC [2011-05-25 19:21:58 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105251921.BAC [2011-05-25 09:49:27 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105250949.BAC [2011-05-24 09:50:15 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105240950.BAC [2011-05-24 03:34:02 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105240333.BAC [2011-05-23 19:59:56 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105231959.BAC [2011-05-23 19:44:18 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105231944.BAC [2011-05-23 17:53:06 | 007,293,440 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105231752.BAC [2011-05-19 22:18:39 | 007,227,904 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105192218.BAC [2011-05-17 00:50:31 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105170050.BAC [2011-05-16 17:22:51 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105161722.BAC [2011-05-16 10:44:19 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105161044.BAC [2011-05-14 23:11:20 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105142311.BAC [2011-05-12 12:58:30 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105121258.BAC [2011-05-11 19:33:21 | 007,228,928 | ---- | C] () -- C:\CDN_KNF_Konfiguracja_1708_1105111933.BAC [2011-05-02 16:11:03 | 000,723,981 | ---- | C] () -- C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\unins000.exe [2011-05-02 16:11:03 | 000,003,862 | ---- | C] () -- C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\unins000.dat [2011-04-25 13:29:12 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-02-02 13:25:44 | 000,000,079 | ---- | C] () -- C:\WINDOWS\pit2010.ini [2011-02-02 13:25:44 | 000,000,021 | ---- | C] () -- C:\WINDOWS\pit2007.ini [2010-10-25 14:48:52 | 000,116,224 | ---- | C] () -- C:\WINDOWS\System32\pdfcmnnt.dll [2010-03-10 19:59:13 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-01-26 12:49:58 | 000,241,664 | ---- | C] () -- C:\WINDOWS\System32\cmabout.dll [2010-01-26 12:49:58 | 000,010,357 | ---- | C] () -- C:\WINDOWS\System32\cmdiag.ini [2010-01-26 12:49:58 | 000,000,142 | ---- | C] () -- C:\WINDOWS\System32\cmabout.ini [2010-01-26 11:44:20 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\chksvrn.dll [2010-01-15 08:54:57 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2009-12-24 01:00:45 | 000,409,600 | ---- | C] () -- C:\WINDOWS\System32\ZSM1120.exe [2009-12-24 01:00:45 | 000,167,936 | ---- | C] () -- C:\WINDOWS\System32\hpsfs.dll [2009-12-21 16:23:47 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Rafał\Dane aplikacji\wklnhst.dat [2009-12-15 14:43:52 | 000,037,992 | ---- | C] () -- C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2009-12-15 14:40:27 | 000,000,154 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2009-12-15 14:39:05 | 000,131,584 | ---- | C] () -- C:\WINDOWS\System32\HASPXPx64.dll [2009-12-15 14:39:05 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\HASPXPx32.dll [2009-12-15 14:39:05 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\getver.exe [2009-12-15 14:38:33 | 000,000,383 | ---- | C] () -- C:\WINDOWS\System32\haspdos.sys [2009-12-14 22:44:43 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\acs.exe [2009-12-14 22:44:38 | 000,315,392 | ---- | C] () -- C:\WINDOWS\System32\AegisI5.exe [2009-12-14 22:44:38 | 000,249,856 | ---- | C] () -- C:\WINDOWS\System32\wgapi.dll [2009-12-12 03:44:51 | 001,264,336 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2009-12-12 03:44:50 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009-12-12 03:41:57 | 000,187,408 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009-12-11 22:46:56 | 000,164,352 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2009-12-11 22:46:56 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2009-12-11 22:46:54 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2009-12-11 22:46:54 | 000,755,027 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2009-12-11 22:46:54 | 000,159,839 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009-12-11 22:46:53 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2009-12-11 22:46:53 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2009-12-11 22:45:37 | 000,007,168 | ---- | C] () -- C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-12-11 22:17:04 | 006,389,072 | -H-- | C] () -- C:\Documents and Settings\Rafał\Ustawienia lokalne\Dane aplikacji\IconCache.db [2009-12-11 20:18:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009-12-11 20:16:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2009-12-11 20:15:31 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2009-12-11 20:15:27 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2009-12-11 20:13:24 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2009-12-11 20:13:15 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2009-12-11 20:13:15 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2009-12-11 20:12:36 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2009-12-11 20:12:35 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2009-03-08 10:37:00 | 001,724,416 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2009-03-08 10:37:00 | 001,657,376 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe [2009-03-08 10:37:00 | 001,503,232 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2009-03-08 10:37:00 | 001,346,080 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe [2009-03-08 10:37:00 | 001,101,824 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2009-03-08 10:37:00 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2009-03-08 10:37:00 | 000,449,056 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe [2009-03-08 10:37:00 | 000,436,768 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe [2008-10-07 10:13:30 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 10:13:22 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 10:13:20 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2008-05-26 23:22:36 | 000,016,222 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini [2008-05-26 23:22:34 | 000,021,728 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini [2008-05-26 23:22:32 | 000,016,164 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini [2008-05-26 22:59:42 | 000,018,904 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschematrivial.bin [2008-05-26 22:59:40 | 000,106,605 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschema.bin [2008-04-15 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2008-04-15 14:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2008-04-15 14:00:00 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2008-04-15 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2008-04-15 14:00:00 | 000,563,960 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2008-04-15 14:00:00 | 000,483,170 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2008-04-15 14:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2008-04-15 14:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2008-04-15 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2008-04-15 14:00:00 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2008-04-15 14:00:00 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll [2008-04-15 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2008-04-15 14:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2008-04-15 14:00:00 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2008-04-15 14:00:00 | 000,112,770 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2008-04-15 14:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2008-04-15 14:00:00 | 000,087,000 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2008-04-15 14:00:00 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2008-04-15 14:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2008-04-15 14:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2008-04-15 14:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2008-04-15 14:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2008-04-15 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2008-04-15 14:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2008-04-15 14:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2008-04-15 14:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2008-04-15 14:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2008-04-15 14:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2008-04-15 14:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2008-04-15 14:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2008-04-15 14:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2008-04-15 14:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2008-04-15 14:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2008-04-15 14:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2008-04-15 14:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2008-04-15 14:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2008-04-15 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2008-04-15 14:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2008-04-15 14:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2008-04-15 14:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2008-04-15 14:00:00 | 000,020,629 | ---- | C] () -- C:\WINDOWS\System32\mqperf.ini [2008-04-15 14:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2008-04-15 14:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2008-04-15 14:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2008-04-15 14:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2008-04-15 14:00:00 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2008-04-15 14:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2008-04-15 14:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2008-04-15 14:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2008-04-15 14:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2008-04-15 14:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2008-04-15 14:00:00 | 000,010,240 | ---- | C] () -- C:\WINDOWS\System32\scriptpw.dll [2008-04-15 14:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2008-04-15 14:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2008-04-15 14:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2008-04-15 14:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2008-04-15 14:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2008-04-15 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2008-04-15 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2008-04-15 14:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2008-04-15 14:00:00 | 000,003,260 | ---- | C] () -- C:\WINDOWS\System32\nw16.exe [2008-04-15 14:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2008-04-15 14:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2008-04-15 14:00:00 | 000,002,656 | ---- | C] () -- C:\WINDOWS\System32\netware.drv [2008-04-15 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2008-04-15 14:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2008-04-15 14:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2008-04-15 14:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2008-04-15 14:00:00 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\vwipxspx.exe [2008-04-15 14:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2008-04-15 14:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2008-04-15 14:00:00 | 000,000,864 | ---- | C] () -- C:\WINDOWS\win.ini [2008-04-15 14:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2008-04-15 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2008-04-15 14:00:00 | 000,000,435 | ---- | C] () -- C:\WINDOWS\system.ini [2008-04-15 14:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2007-12-14 13:51:58 | 000,163,840 | ---- | C] () -- C:\WINDOWS\System32\hppatusg01.dll [2007-08-16 18:17:50 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\nsldap32v50.dll [2005-12-21 19:57:04 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\nsldappr32v50.dll [2005-12-21 19:54:34 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\nsldapssl32v50.dll [2001-10-26 19:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 19:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [color=#E56717]========== LOP Check ==========[/color] [2010-10-26 13:08:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG Security Toolbar [2010-03-10 19:11:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\avg9 [2011-03-15 12:10:07 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2011-06-10 14:45:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Easybits GO [2010-02-24 15:37:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-02-24 15:45:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-10-09 01:58:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2011-02-23 17:23:05 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{2080C8ED-D132-4876-A6C3-C2EF112B1ED8} [2011-06-10 14:38:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\AVG9 [2011-05-29 16:26:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\com.oxygenxml [2010-02-06 01:12:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\Comarch [2010-01-28 11:24:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\ComArch S.A [2010-03-14 01:14:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\Gadu-Gadu 10 [2011-06-10 13:34:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\go [2011-01-28 19:10:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\ipla [2011-02-21 19:16:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\Notepad++ [2010-02-24 15:59:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\OpenFM [2010-01-11 19:01:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\Windows Desktop Search [2010-01-11 19:51:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafał\Dane aplikacji\Windows Search [color=#E56717]========== Purity Check ==========[/color] < End of report >