Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-04-2015 01 Ran by b (administrator) on TWOJA-DAA59EC5F on 29-04-2015 08:30:20 Running from C:\Documents and Settings\b\Pulpit Loaded Profiles: b (Available profiles: b & Administrator) Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) OS Language: Polski Internet Explorer Version 8 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe (ATI Technologies Inc.) C:\WINDOWS\System32\Ati2evxx.exe (ATI Technologies Inc.) C:\WINDOWS\System32\Ati2evxx.exe (Bitdefender) C:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exe (Atheros) C:\WINDOWS\System32\ACS.EXE (France Telecom) C:\WINDOWS\System32\FTRTSVC.EXE (Microsoft Corporation) C:\WINDOWS\System32\locator.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE (Syntek America Inc.) C:\WINDOWS\System32\StkCSrv.exe (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (© 2015 Microsoft Corporation) C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\Microsoft\BingSvc\BingSvc.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16269312 2006-10-30] (Realtek Semiconductor Corp.) HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.) HKLM\...\Run: [konsola dotykowa] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [786521 2006-05-25] (Synaptics, Inc.) Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll [2006-08-08] (ATI Technologies Inc.) HKU\S-1-5-21-2874177158-2959955418-955568760-1006\...\Run: [BingSvc] => C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\Microsoft\BingSvc\BingSvc.exe [144008 2015-04-07] (© 2015 Microsoft Corporation) HKU\S-1-5-21-2874177158-2959955418-955568760-1006\...\MountPoints2: {114bf2d4-1ee0-11e0-be59-00221536dee9} - F:\LaunchU3.exe -a HKU\S-1-5-21-2874177158-2959955418-955568760-1006\...\MountPoints2: {1bd33c8c-08c4-11e3-82bf-00221536dee9} - F:\LGAutoRun.exe HKU\S-1-5-21-2874177158-2959955418-955568760-1006\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\sstext3d.scr [679936 2008-04-14] (Microsoft Corporation) CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com HKU\S-1-5-21-2874177158-2959955418-955568760-1006\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURLs,Tabs: "http://www.google.com" <======= ATTENTION SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2874177158-2959955418-955568760-1006 -> {3695670C-C5D3-48DF-B3A7-46BC3559402B} URL = https://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2874177158-2959955418-955568760-1006 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-21-2874177158-2959955418-955568760-1006 -> {A592F7B2-574F-4E8E-B920-D13028BB9C98} URL = http://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q={searchTerms}&src=IE-SearchBox DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll [2014-03-06] (Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll [2014-03-06] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Documents and Settings\b\Dane aplikacji\Mozilla\Firefox\Profiles\86qb5dn4.default-1393005419328 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-18] () FF Extension: Bing Search - C:\Documents and Settings\b\Dane aplikacji\Mozilla\Firefox\Profiles\86qb5dn4.default-1393005419328\Extensions\bingsearch.full@microsoft.com [2015-04-17] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 ACS; C:\WINDOWS\system32\acs.exe [278613 2006-03-25] (Atheros) [File not signed] S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [1310720 2015-04-16] () [File not signed] R2 FTRTSVC; C:\WINDOWS\System32\FTRTSVC.exe [40960 2004-06-10] (France Telecom) [File not signed] R2 gzserv; C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [57520 2013-10-23] (Bitdefender) R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [File not signed] R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [File not signed] R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [660992 2009-05-21] (Hewlett-Packard Co.) [File not signed] S3 IDriverT; c:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] S3 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [170912 2013-02-28] (Oracle Corporation) S3 Net Driver HPZ12; C:\WINDOWS\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed] S3 Pml Driver HPZ12; C:\WINDOWS\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed] R2 StkSSrv; C:\WINDOWS\System32\StkCSrv.exe [24576 2007-02-07] (Syntek America Inc.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21275 2009-06-20] (Meetinghouse Data Communications) [File not signed] S3 AndNetDiag; C:\WINDOWS\System32\DRIVERS\lgandnetdiag.sys [23040 2012-03-06] (LG Electronics Inc.) S3 ANDNetModem; C:\WINDOWS\System32\DRIVERS\lgandnetmodem.sys [27776 2012-03-06] (LG Electronics Inc.) S3 andnetndis; C:\WINDOWS\System32\DRIVERS\lgandnetndis.sys [70400 2012-03-06] (LG Electronics Inc.) R3 AR5211; C:\WINDOWS\System32\DRIVERS\ar5211.sys [494080 2006-07-17] (Atheros Communications, Inc.) S3 ASNDIS5; C:\WINDOWS\ATK0100\ASNDIS5.SYS [16269 2004-05-27] (Printing Communications Assoc., Inc. (PCAUSA)) R3 AtcL002; C:\WINDOWS\System32\DRIVERS\atl02_xp.sys [27776 2006-08-13] (Attansic Technology corporation.) R0 avc3; C:\WINDOWS\System32\DRIVERS\avc3.sys [633344 2013-04-17] (BitDefender) R3 avchv; C:\WINDOWS\System32\DRIVERS\avchv.sys [242504 2012-11-02] (BitDefender) R3 avckf; C:\WINDOWS\System32\DRIVERS\avckf.sys [486536 2013-04-17] (BitDefender) R1 bdftdif; C:\Program Files\Bitdefender\Antivirus Free Edition\bdftdif.sys [148600 2013-04-17] (Bitdefender SRL) R1 bdselfpr; C:\Program Files\Bitdefender\Antivirus Free Edition\bdselfpr.sys [135472 2013-07-16] (BitDefender LLC) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-14] (Microsoft Corporation) R1 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [164952 2013-04-22] (BitDefender LLC) S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49920 2008-10-28] (HP) S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2008-10-28] (HP) S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2008-10-28] (HP) S3 ipswuio; C:\WINDOWS\System32\DRIVERS\ipswuio.sys [34944 2006-01-24] (Windows (R) 2000 DDK provider) [File not signed] R3 MTsensor; C:\WINDOWS\System32\DRIVERS\ATKACPI.sys [5632 2005-02-17] () S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-14] (Microsoft Corporation) S3 PCANDIS5; C:\WINDOWS\system32\PCANDIS5.SYS [16128 2003-08-04] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed] S3 s1018mgmt; C:\WINDOWS\System32\DRIVERS\s1018mgmt.sys [106208 2009-03-25] (MCCI Corporation) [File not signed] S3 s1018obex; C:\WINDOWS\System32\DRIVERS\s1018obex.sys [104744 2009-03-25] (MCCI Corporation) R3 StkCMini; C:\WINDOWS\System32\Drivers\StkCMini.sys [1245056 2007-02-13] (Syntek) R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [355744 2013-05-28] (BitDefender S.R.L.) S4 IntelIde; No ImagePath S3 k750bus; system32\DRIVERS\k750bus.sys [X] S3 k750mdfl; system32\DRIVERS\k750mdfl.sys [X] S3 k750mdm; system32\DRIVERS\k750mdm.sys [X] S3 k750mgmt; system32\DRIVERS\k750mgmt.sys [X] S3 k750obex; system32\DRIVERS\k750obex.sys [X] S3 PCAMPR5; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) U1 WS2IFSL; No ImagePath U3 uxkdyfod; \??\C:\DOCUME~1\b\USTAWI~1\Temp\uxkdyfod.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-29 08:29 - 2015-04-29 08:29 - 00413676 _____ () C:\Documents and Settings\b\Pulpit\GMER.txt 2015-04-29 08:09 - 2015-04-29 08:30 - 00010225 _____ () C:\Documents and Settings\b\Pulpit\FRST.txt 2015-04-29 08:09 - 2015-04-29 08:09 - 00000000 ____D () C:\FRST 2015-04-29 08:00 - 2015-04-29 08:00 - 01140736 _____ (Farbar) C:\Documents and Settings\b\Pulpit\FRST.exe 2015-04-29 07:59 - 2015-04-29 08:00 - 00380416 _____ () C:\Documents and Settings\b\Pulpit\j7h88d0k.exe 2015-04-28 21:46 - 2015-04-28 21:12 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042815-03.dmp 2015-04-28 21:12 - 2015-04-28 21:05 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042815-02.dmp 2015-04-28 21:05 - 2015-04-28 21:00 - 00065536 _____ () C:\WINDOWS\Minidump\Mini042815-01.dmp 2015-04-24 17:38 - 2015-04-24 17:38 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2015-04-19 15:47 - 2015-04-19 15:47 - 00000000 __SHD () C:\FOUND.000 2015-04-18 20:10 - 2015-04-18 20:10 - 00142512 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2015-04-18 20:04 - 2015-04-18 10:05 - 00065536 _____ () C:\WINDOWS\Minidump\Mini041815-01.dmp 2015-04-18 13:38 - 2015-04-18 13:38 - 00000060 _____ () C:\WINDOWS\setupact.log 2015-04-17 21:14 - 2015-04-17 21:14 - 00000000 ____D () C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\Skype 2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ___RD () C:\Program Files\Skype 2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\Program Files\Common Files\Skype 2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\Documents and Settings\b\Dane aplikacji\Skype 2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Skype 2015-04-17 21:13 - 2015-04-17 21:13 - 00000000 ____D () C:\Documents and Settings\All Users\Dane aplikacji\Skype 2015-04-17 19:55 - 2015-04-17 19:55 - 00000000 ____D () C:\Documents and Settings\b\Dane aplikacji\HD Tune Pro 2015-04-13 13:00 - 2015-04-29 07:49 - 00123880 _____ () C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat 2015-04-13 10:30 - 2007-02-13 06:41 - 01245056 ____R (Syntek) C:\WINDOWS\system32\Drivers\StkCMini.sys 2015-04-13 10:30 - 2007-02-07 13:21 - 00077824 ____R (Syntek America Inc.) C:\WINDOWS\system32\StkCProp.ax 2015-04-13 10:30 - 2007-02-07 12:51 - 00069632 ____R (Syntek America Inc.) C:\WINDOWS\system32\StkCWIA.dll 2015-04-13 10:30 - 2007-02-07 12:44 - 00024576 ____R (Syntek America Inc.) C:\WINDOWS\system32\StkCSrv.exe 2015-04-13 10:30 - 2007-02-07 12:32 - 00106496 ____R (Syntek America Inc.) C:\WINDOWS\StkC112X.exe 2015-04-13 10:30 - 2007-01-11 11:04 - 12367616 ____R (Syntek America Inc.) C:\WINDOWS\system32\Drivers\StkCPipe.sys 2015-04-13 10:30 - 2006-12-10 18:33 - 00049152 ____R (Syntek America Inc.) C:\WINDOWS\system32\StkSSrv.dll 2015-04-13 10:30 - 2005-12-26 19:11 - 00172032 ____R (Syntek Corporation) C:\WINDOWS\VideoView.exe 2015-04-13 10:25 - 2015-04-13 10:25 - 00224053 _____ () C:\Documents and Settings\All Users\Dane aplikacji\1428913265.bdinstall.bin 2015-04-13 10:25 - 2015-04-13 10:25 - 00001771 _____ () C:\Documents and Settings\All Users\Pulpit\Bitdefender Antivirus Free Edition.lnk 2015-04-13 10:25 - 2015-04-13 10:25 - 00000000 ___HD () C:\WINDOWS\$NtUninstallWdf01009$ 2015-04-13 10:25 - 2015-04-13 10:25 - 00000000 ____H () C:\WINDOWS\system32\Drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf 2015-04-13 10:25 - 2015-04-13 10:25 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2015-04-13 10:25 - 2015-04-13 10:25 - 00000000 ____D () C:\Documents and Settings\All Users\Menu Start\Programy\Antivirus Free Edition 2015-04-13 10:25 - 2008-11-07 18:55 - 00016928 ____N (Microsoft Corporation) C:\WINDOWS\system32\spmsgXP_2k3.dll 2015-04-13 10:22 - 2013-04-17 14:59 - 00633344 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avc3.sys 2015-04-13 10:22 - 2013-04-17 14:59 - 00486536 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avckf.sys 2015-04-13 10:22 - 2012-11-02 14:17 - 00242504 _____ (BitDefender) C:\WINDOWS\system32\Drivers\avchv.sys 2015-04-13 10:22 - 2009-07-14 23:27 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01009.dll 2015-04-13 10:21 - 2015-04-13 10:21 - 00000000 ____D () C:\Program Files\Bitdefender 2015-04-13 10:21 - 2015-04-13 10:21 - 00000000 ____D () C:\Documents and Settings\b\Dane aplikacji\QuickScan 2015-04-13 10:21 - 2013-05-28 12:11 - 00355744 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys 2015-04-13 10:21 - 2013-04-22 13:20 - 00164952 _____ (BitDefender LLC) C:\WINDOWS\system32\Drivers\gzflt.sys 2015-04-13 09:47 - 2015-04-13 09:47 - 00000234 _____ () C:\Documents and Settings\b\Pulpit\Skrót do olx.lnk 2015-04-13 08:37 - 2015-04-29 07:58 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2015-04-13 08:37 - 2015-04-29 07:49 - 00032634 _____ () C:\WINDOWS\SchedLgU.Txt 2015-04-13 08:37 - 2015-04-29 07:49 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2015-04-13 08:37 - 2015-04-13 08:37 - 00000000 ____N () C:\WINDOWS\Sti_Trace.log 2015-04-11 19:37 - 2015-04-11 19:37 - 00000704 _____ () C:\Cert.cer 2015-04-11 18:55 - 2015-04-11 18:55 - 00000664 _____ () C:\WINDOWS\system32\d3d9caps.dat 2015-04-10 21:12 - 2015-04-29 07:49 - 00597524 _____ () C:\WINDOWS\WindowsUpdate.log 2015-04-10 21:04 - 2015-04-10 21:04 - 00000552 _____ () C:\WINDOWS\system32\d3d8caps.dat 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Moje dokumenty\Moje obrazy 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Moje dokumenty\Moja muzyka 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Moje dokumenty 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Menu Start\Programy\Autostart 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Menu Start\Programy\Akcesoria 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Menu Start\Programy 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ___RD () C:\Documents and Settings\Administrator\Menu Start 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ____D () C:\Documents and Settings\Administrator\Ustawienia lokalne\Temp 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ____D () C:\Documents and Settings\Administrator\Pulpit 2015-04-10 20:21 - 2015-04-10 20:21 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\TuneUp Software 2015-04-10 19:44 - 2015-04-10 19:44 - 00000000 __SHD () C:\Documents and Settings\Administrator\IETldCache 2015-04-10 19:44 - 2015-04-10 19:44 - 00000000 ____D () C:\Documents and Settings\Administrator 2015-04-10 19:44 - 2009-06-20 10:02 - 00000188 ___SH () C:\Documents and Settings\Administrator\ntuser.ini 2015-04-10 19:44 - 2009-06-20 09:57 - 00001424 _____ () C:\Documents and Settings\Administrator\Pulpit\ASUS Camera ScreenSaver.lnk 2015-04-10 19:44 - 2009-06-20 09:57 - 00000000 ____D () C:\Documents and Settings\Administrator\Dane aplikacji\Macromedia 2015-04-10 19:44 - 2009-06-20 09:52 - 00012328 _____ () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2015-04-10 19:44 - 2009-06-20 09:35 - 00001311 _____ () C:\Documents and Settings\Administrator\Pulpit\NTFS converter.lnk 2015-04-10 19:44 - 2009-06-20 09:27 - 00000671 _____ () C:\Documents and Settings\Administrator\Menu Start\Programy\Internet Explorer.lnk 2015-04-10 19:44 - 2009-06-20 09:27 - 00000642 _____ () C:\Documents and Settings\Administrator\Menu Start\Programy\Outlook Express.lnk 2015-04-10 19:44 - 2009-06-20 09:27 - 00000000 ___RD () C:\Documents and Settings\Administrator\Ulubione 2015-04-10 19:44 - 2009-06-20 09:23 - 00000135 _____ () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\fusioncache.dat 2015-04-10 19:44 - 2009-06-20 09:09 - 00001503 _____ () C:\Documents and Settings\Administrator\Menu Start\Programy\Pomoc zdalna.lnk 2015-04-10 19:44 - 2009-06-20 09:02 - 00000000 __SHD () C:\Documents and Settings\Administrator\Ustawienia lokalne\Historia 2015-04-10 19:44 - 2009-06-20 09:02 - 00000000 __RHD () C:\Documents and Settings\Administrator\Dane aplikacji 2015-04-10 19:44 - 2009-06-20 09:02 - 00000000 ___HD () C:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji 2015-04-10 19:44 - 2009-06-20 09:02 - 00000000 ___HD () C:\Documents and Settings\Administrator\Ustawienia lokalne 2015-04-10 19:44 - 2009-06-20 09:02 - 00000000 ___HD () C:\Documents and Settings\Administrator\Szablony 2015-04-08 22:10 - 2015-04-08 22:10 - 00000000 ____D () C:\Documents and Settings\b\Pulpit\opony 2015-04-05 17:05 - 2015-04-05 17:05 - 01460214 _____ () C:\Documents and Settings\b\Pulpit\biblioteka Raczyńskich.bmp ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-04-29 07:57 - 2014-03-12 12:18 - 00000214 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2015-04-29 07:57 - 2009-06-20 09:14 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-04-29 07:50 - 2009-06-20 08:57 - 00065536 _____ () C:\WINDOWS\DUMP5d33.tmp 2015-04-29 07:49 - 2009-06-20 10:16 - 00000292 ___SH () C:\Documents and Settings\b\ntuser.ini 2015-04-29 07:38 - 2013-06-28 11:16 - 00000930 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-04-28 15:55 - 2011-10-09 11:46 - 00000454 ____H () C:\WINDOWS\Tasks\User_Feed_Synchronization-{ED74665B-F61E-40BD-A0A0-7CAF75920C58}.job 2015-04-25 22:29 - 2006-08-27 11:39 - 00001158 _____ () C:\WINDOWS\system32\wpa.dbl 2015-04-18 21:56 - 2010-02-03 20:44 - 00146944 _____ () C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-04-18 20:10 - 2012-10-12 13:00 - 00778416 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2015-04-15 20:41 - 2010-05-13 15:52 - 00000233 _____ () C:\Documents and Settings\b\Dane aplikacji\burnaware.ini 2015-04-13 10:25 - 2009-06-20 10:16 - 00049536 _____ () C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2015-04-13 09:22 - 2006-08-27 11:39 - 00000643 _____ () C:\WINDOWS\win.ini 2015-04-13 09:22 - 2006-08-27 11:39 - 00000227 _____ () C:\WINDOWS\system.ini 2015-04-13 09:22 - 2006-08-27 11:39 - 00000211 __RSH () C:\boot.ini 2015-04-13 09:16 - 2009-06-20 09:02 - 00223224 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-04-09 16:35 - 2014-10-27 14:21 - 00460761 _____ () C:\Documents and Settings\b\debug.log 2015-04-08 15:00 - 2014-03-12 12:18 - 00000208 _____ () C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2015-04-01 11:22 - 2011-10-07 19:34 - 125832184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Files in the root of some directories ======= 2010-05-13 15:52 - 2015-04-15 20:41 - 0000233 _____ () C:\Documents and Settings\b\Dane aplikacji\burnaware.ini 2009-06-20 10:16 - 2009-06-20 10:16 - 0000126 _____ () C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\fusioncache.dat 2010-02-03 20:44 - 2015-04-18 21:56 - 0146944 _____ () C:\Documents and Settings\b\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed ==================== End Of Log ============================