OTL logfile created on: 2011-07-09 11:50:51 - Run 5 OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\nowy\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.11) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,16 Gb Available Physical Memory | 58,10% Memory free 2,60 Gb Paging File | 1,76 Gb Available in Paging File | 67,53% Paging File free Paging file location(s): C:\pagefile.sys 768 1536 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 29,29 Gb Total Space | 11,46 Gb Free Space | 39,13% Space Free | Partition Type: NTFS Drive D: | 39,06 Gb Total Space | 0,20 Gb Free Space | 0,52% Space Free | Partition Type: NTFS Drive E: | 43,43 Gb Total Space | 4,03 Gb Free Space | 9,29% Space Free | Partition Type: NTFS Computer Name: NOWY-561E6AC45C | User Name: nowy | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-07 13:13:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\nowy\Pulpit\OTL.exe PRC - [2011-07-01 11:23:20 | 000,947,056 | ---- | M] (Opera Software) -- C:\Program Files\Opera\opera.exe PRC - [2011-05-06 15:49:18 | 000,013,824 | ---- | M] () -- C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe PRC - [2011-02-24 16:57:28 | 018,636,800 | ---- | M] (Redefine Sp z o.o.) -- C:\Program Files\ipla\ipla.exe PRC - [2011-01-29 23:11:36 | 003,372,856 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe PRC - [2010-12-06 09:31:52 | 001,910,152 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe PRC - [2010-12-06 09:31:48 | 001,238,408 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2010-11-17 16:09:27 | 001,242,448 | ---- | M] (Valve Corporation) -- E:\a\Steam.exe PRC - [2010-10-07 10:04:26 | 012,661,344 | ---- | M] (GG Network S.A.) -- C:\Program Files\Gadu-Gadu 10\gg.exe PRC - [2010-07-04 20:07:40 | 000,238,952 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe PRC - [2008-11-11 10:38:06 | 000,620,544 | ---- | M] (Nokia.) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2008-11-04 16:29:36 | 000,419,448 | ---- | M] (Emsi Software GmbH) -- C:\Program Files\a-squared Free\a2service.exe PRC - [2008-10-27 15:08:04 | 000,128,000 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclMSBTSrv.exe PRC - [2008-09-19 09:52:04 | 000,130,560 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2008-06-03 09:02:34 | 000,119,808 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2008-06-03 09:02:22 | 000,089,600 | ---- | M] () -- C:\Program Files\PC Connectivity Solution\Transports\NclIrSrv.exe PRC - [2008-02-20 12:08:46 | 000,472,320 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2008-02-20 12:06:58 | 001,443,072 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2007-10-17 21:30:07 | 000,974,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-04-16 15:28:22 | 000,577,536 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe PRC - [2007-02-14 10:42:06 | 000,380,928 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\GamerOSD\GamerOSD.exe PRC - [2006-11-15 11:40:10 | 000,258,560 | ---- | M] (ASUSTeK COMPUTER INC.) -- C:\WINDOWS\ATKKBService.exe PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- D:\activesync\wcescomm.exe PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- D:\activesync\rapimgr.exe PRC - [2006-10-10 16:49:42 | 000,270,336 | ---- | M] () -- C:\WINDOWS\tsnp325.exe PRC - [2006-10-10 15:11:08 | 000,827,392 | ---- | M] () -- C:\WINDOWS\vsnp325.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-07 13:13:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\nowy\Pulpit\OTL.exe MOD - [2006-08-25 12:51:14 | 001,054,208 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2982_x-ww_ac3f9c03\comctl32.dll MOD - [2006-05-03 23:53:54 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\framedyn.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (ERSvc) SRV - File not found [On_Demand | Stopped] -- -- (CiSvc) SRV - [2010-12-06 09:31:48 | 001,238,408 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2010-07-04 20:07:40 | 000,238,952 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2008-11-11 10:38:06 | 000,620,544 | ---- | M] (Nokia.) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2008-11-04 16:29:36 | 000,419,448 | ---- | M] (Emsi Software GmbH) [Auto | Running] -- C:\Program Files\a-squared Free\a2service.exe -- (a2free) SRV - [2008-02-20 12:14:52 | 000,019,200 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2008-02-20 12:08:46 | 000,472,320 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) SRV - [2006-11-15 11:40:10 | 000,258,560 | ---- | M] (ASUSTeK COMPUTER INC.) [Auto | Running] -- C:\WINDOWS\ATKKBService.exe -- (ATKKeyboardService) SRV - [2001-10-26 23:30:00 | 000,003,584 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\System32\regedt32.exe -- (NOD32FiXTemDono) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-05-07 18:01:25 | 000,002,048 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\portio32.sys -- (portio32) DRV - [2010-11-09 15:35:30 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135) DRV - [2010-06-14 10:32:54 | 000,036,608 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2010-04-27 04:25:16 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2010-04-27 04:25:16 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2010-04-27 04:25:16 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2009-04-27 22:08:45 | 000,010,454 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\parldr2k.sys -- (PARLDR2K) DRV - [2009-04-27 22:08:38 | 000,034,048 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\flsvcom.sys -- (FLSVCOM) DRV - [2009-04-27 22:08:38 | 000,016,314 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\flspar.sys -- (FLSPAR) DRV - [2009-04-27 22:08:38 | 000,013,440 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\flsiface.sys -- (FLSIFACE) DRV - [2009-04-27 22:08:38 | 000,008,344 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\flsser.sys -- (FLSSER) DRV - [2009-04-27 22:08:37 | 000,033,404 | ---- | M] (Data Encryption Systems Limited) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\fle5wnnt.sys -- (FLE5WNNT) DRV - [2009-04-27 22:08:35 | 000,049,720 | ---- | M] (Data Encryption Systems Limited) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dk2drv.sys -- (dk2drv) DRV - [2009-04-23 11:15:06 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2008-09-24 10:40:22 | 004,122,368 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM) DRV - [2008-09-01 15:30:30 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2008-09-01 15:30:30 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-02-20 12:11:16 | 000,033,800 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2008-02-20 12:02:22 | 000,029,704 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\easdrv.sys -- (easdrv) DRV - [2008-02-20 12:01:30 | 000,039,944 | ---- | M] (ESET) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\eamon.sys -- (eamon) DRV - [2008-01-23 23:25:32 | 000,027,136 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tapvpn.sys -- (tapvpn) DRV - [2007-12-12 15:04:56 | 000,034,963 | ---- | M] (Compuware Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid7906.sys -- (hid7906) DRV - [2007-12-03 09:46:12 | 000,037,024 | ---- | M] (Compuware Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid8101.sys -- (hid8101) DRV - [2007-11-29 10:39:52 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2007-11-29 10:39:42 | 000,016,896 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2007-11-29 10:39:42 | 000,008,064 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2007-11-29 10:39:40 | 000,019,328 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2007-11-28 11:52:46 | 000,034,587 | ---- | M] (Compuware Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hid8103.sys -- (hid8103) DRV - [2007-10-17 20:23:18 | 000,100,736 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvata.sys -- (nvata) DRV - [2007-10-17 20:23:17 | 000,089,856 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvatabus.sys -- (nvatabus) DRV - [2007-10-17 20:23:17 | 000,016,640 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvcchflt.sys -- (nvcchflt) DRV - [2007-10-17 20:22:34 | 000,034,176 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2007-10-17 20:22:34 | 000,013,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2007-10-09 02:02:27 | 000,035,840 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) DRV - [2007-09-25 16:59:46 | 000,015,152 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\MediaCoder\SysInfo.sys -- (CrystalSysInfo) DRV - [2007-04-03 14:55:26 | 010,251,904 | ---- | M] (Sonix Co. Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\snp325.sys -- (SNP325) USB PC Camera (SNPSTD325) DRV - [2007-02-14 16:09:08 | 000,011,136 | ---- | M] (ASUSTeK COMPUTER INC.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\atkkbnt.sys -- (asuskbnt) DRV - [2006-10-01 20:37:02 | 000,026,624 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\tap0801.sys -- (tap0801) DRV - [2006-09-29 11:06:26 | 000,010,752 | ---- | M] (ASUSTeK COMPUTER INC.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Video3D32.sys -- (Video3D) DRV - [2006-07-24 17:05:00 | 000,005,632 | ---- | M] () [File_System | System | Running] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen) DRV - [2006-06-14 14:44:30 | 000,012,288 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\EIO.sys -- (EIO) DRV - [2005-10-20 17:25:58 | 000,012,416 | ---- | M] (ASUSTeK Computer Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\asusgsb32.sys -- (asusgsb) DRV - [2004-11-18 11:49:14 | 000,045,534 | ---- | M] (EUTRON) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\eusk3usb.sys -- (eusk3usb) DRV - [2004-11-18 11:49:14 | 000,024,786 | ---- | M] (EUTRON) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\eusk2par.sys -- (eusk2par) DRV - [2004-05-02 10:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv) DRV - [2001-08-17 23:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "qooqlle" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: vshare@toolbar:1.0.0 FF - prefs.js..network.proxy.backup.ftp: "127.0.0.1" FF - prefs.js..network.proxy.backup.ftp_port: 9666 FF - prefs.js..network.proxy.backup.gopher: "127.0.0.1" FF - prefs.js..network.proxy.backup.gopher_port: 9666 FF - prefs.js..network.proxy.backup.socks: "127.0.0.1" FF - prefs.js..network.proxy.backup.socks_port: 9666 FF - prefs.js..network.proxy.backup.ssl: "127.0.0.1" FF - prefs.js..network.proxy.backup.ssl_port: 9666 FF - prefs.js..network.proxy.ftp: "127.0.0.1" FF - prefs.js..network.proxy.ftp_port: 9666 FF - prefs.js..network.proxy.gopher: "127.0.0.1" FF - prefs.js..network.proxy.gopher_port: 9666 FF - prefs.js..network.proxy.http: "127.0.0.1" FF - prefs.js..network.proxy.http_port: 9666 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "127.0.0.1" FF - prefs.js..network.proxy.socks_port: 9666 FF - prefs.js..network.proxy.ssl: "127.0.0.1" FF - prefs.js..network.proxy.ssl_port: 9666 FF - prefs.js..network.proxy.type: 0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.51204.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.3088: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.11.3006: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@veetle.com/vbp;version=0.9.17: C:\Program Files\Veetle\VLCBroadcast\npvbp.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetleCorePlugin,version=0.9.17: C:\Program Files\Veetle\plugins\npVeetle.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\@veetle.com/veetlePlayerPlugin,version=0.9.17: C:\Program Files\Veetle\Player\npvlc.dll (Veetle Inc) FF - HKLM\Software\MozillaPlugins\yaxmpb@yahoo.com/YahooActiveXPluginBridge;version=1.0.0.1: C:\Program Files\Yahoo!\Common\npyaxmpb.dll (Yahoo! Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn2 [2009-02-03 19:22:15 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-07-01 11:42:51 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-07-01 11:42:51 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn2 [2009-02-03 19:22:15 | 000,000,000 | ---D | M] [2008-11-12 17:24:31 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\nowy\Dane aplikacji\Mozilla\Extensions [2011-07-08 21:17:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\nowy\Dane aplikacji\Mozilla\Firefox\Profiles\xncuvf0q.default\extensions [2010-01-03 21:40:44 | 000,000,000 | ---D | M] (IE Tab) -- C:\Documents and Settings\nowy\Dane aplikacji\Mozilla\Firefox\Profiles\xncuvf0q.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9} [2011-07-08 21:17:01 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\nowy\Dane aplikacji\Mozilla\Firefox\Profiles\xncuvf0q.default\extensions\vshare@toolbar [2010-04-19 16:20:59 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2008-12-22 20:03:48 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2010-02-21 12:22:32 | 000,712,704 | ---- | M] (BitComet) -- C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll [2011-03-10 17:49:25 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-03-10 17:49:25 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-03-10 17:49:25 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-03-10 17:49:25 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-03-10 17:49:25 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-03-10 17:49:25 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2001-10-26 21:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Expressivo) - {85F685C3-20D9-4943-95E4-EB4224056C3F} - E:\Expressivo\integr\ih-iexplorer\IH_iexplorer.dll (IVO Software Sp. z o.o.) O3 - HKLM\..\Toolbar: (Expressivo) - {85F685C3-20D9-4943-95E4-EB4224056C3F} - E:\Expressivo\integr\ih-iexplorer\IH_iexplorer.dll (IVO Software Sp. z o.o.) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {043C5167-00BB-4324-AF7E-62013FAEDACF} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [GamerOSD] C:\Program Files\ASUS\GamerOSD\GamerOSD.exe (ASUSTeK Computer Inc.) O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation) O4 - HKLM..\Run: [NVRTCLK] C:\WINDOWS\system32\NVRTClk\NVRTClk.exe () O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe () O4 - HKLM..\Run: [snp325] C:\WINDOWS\vsnp325.exe () O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [tsnp325] C:\WINDOWS\tsnp325.exe () O4 - HKCU..\Run: [AutoStartNPSAgent] C:\Program Files\Samsung\Samsung New PC Studio\NPSAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKCU..\Run: [Gadu-Gadu 10] C:\Program Files\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKCU..\Run: [H/PC Connection Agent] D:\activesync\wcescomm.exe (Microsoft Corporation) O4 - HKCU..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - HKCU..\Run: [KiesHelper] C:\Program Files\Samsung\Kies\KiesHelper.exe (Samsung) O4 - HKCU..\Run: [KiesPDLR] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe () O4 - HKCU..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\KiesTrayAgent.exe (Samsung Electronics Co., Ltd.) O4 - HKCU..\Run: [Steam] E:\a\Steam.exe (Valve Corporation) O4 - HKLM..\RunOnce: [] File not found O4 - Startup: C:\Documents and Settings\nowy\Menu Start\Programy\Autostart\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: NoInternetOpenWith = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: VerboseStatus = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMConfigurePrograms = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMHelp = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\activesync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\activesync\INetRepl.dll (Microsoft Corporation) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\nowy\Moje dokumenty\Moje obrazy\wyzj4o.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\nowy\Moje dokumenty\Moje obrazy\wyzj4o.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-07-16 19:05:49 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-10-23 15:38:20 | 000,226,623 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2009-09-25 20:14:19 | 000,000,000 | ---D | M] - E:\AutoMapa v.5.3 -- [ NTFS ] O32 - AutoRun File - [2010-03-27 00:28:35 | 000,000,000 | ---D | M] - E:\Automapa5.5.1 eu -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-07-09 11:44:08 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover [2011-07-09 02:22:33 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\nowy\Recent [2011-07-08 22:20:14 | 000,472,064 | ---- | C] ( ) -- C:\Documents and Settings\nowy\Pulpit\RootRepeal.exe [2011-07-08 21:38:29 | 000,607,288 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\nowy\Pulpit\SPTDinst-v178-x86.exe [2011-07-08 21:10:53 | 000,000,000 | ---D | C] -- C:\_OTL [2011-07-07 14:21:35 | 000,000,000 | --SD | C] -- C:\ComboFix [2011-07-07 13:55:08 | 000,000,000 | RHSD | C] -- C:\cmdcons [2011-07-07 13:54:48 | 000,060,416 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2011-07-07 13:54:12 | 004,608,744 | ---- | C] (Microsoft Corporation) -- C:\Documents and Settings\nowy\Pulpit\WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe [2011-07-07 13:38:18 | 000,000,000 | R--D | C] -- C:\Documents and Settings\nowy\Menu Start\Programy\Narzędzia administracyjne [2011-07-07 13:36:41 | 004,133,895 | R--- | C] (Swearware) -- C:\Documents and Settings\nowy\Pulpit\ComboFix.exe [2011-07-07 13:13:52 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\nowy\Pulpit\OTL.exe [2011-06-13 16:38:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\nowy\Moje dokumenty\AdobeStockPhotos [2011-06-12 22:16:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Magix [2011-06-12 22:16:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\nowy\Moje dokumenty\Xara_Xara Xtreme 5 [2011-06-12 22:14:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\nowy\Dane aplikacji\MAGIX [2011-06-12 22:14:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\Xara [2011-06-12 22:13:30 | 000,000,000 | ---D | C] -- C:\Program Files\Xara [2011-06-12 22:13:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Xara [2011-06-12 22:13:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Xara [2011-06-12 21:14:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\ST Thumbnails Explorer 1.2.2350 [2011-06-12 21:13:58 | 000,000,000 | ---D | C] -- C:\Program Files\SFTech [2010-10-08 16:10:43 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnpstd.dll [2010-10-08 16:10:43 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd.dll [2010-10-08 16:10:43 | 000,036,864 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd.dll [2009-03-23 17:41:45 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\nowy\Dane aplikacji\pcouffin.sys [2009-02-20 15:09:25 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnp325.dll [2009-02-20 15:09:25 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\csnp325.dll [2009-02-20 15:09:24 | 000,147,456 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnp325.dll [1 C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\*.tmp files -> C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-07-09 11:44:12 | 000,001,554 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\AD-R.lnk [2011-07-09 11:29:53 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-07-08 22:38:26 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\settings.dat [2011-07-08 22:19:58 | 000,465,298 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\RootRepeal.rar [2011-07-08 21:53:04 | 000,293,977 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\gm.zip [2011-07-08 21:38:29 | 000,607,288 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\nowy\Pulpit\SPTDinst-v178-x86.exe [2011-07-08 21:26:10 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{EB359CEA-0D77-4867-A483-8A647859DF2E} [2011-07-08 21:26:10 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{8025C35F-1C3E-4FD1-8ABB-608143EE3535} [2011-07-08 21:22:44 | 000,302,592 | ---- | M] () -- C:\j9mk5lfl.exe [2011-07-08 00:02:45 | 000,057,990 | ---- | M] () -- C:\WINDOWS\System32\screen.jpg [2011-07-07 22:10:34 | 000,196,608 | ---- | M] () -- C:\WINDOWS\System32\drivers\nStandard.bin [2011-07-07 21:11:40 | 000,001,984 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-07-07 14:07:01 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{729F258D-6CF0-4FD7-83B7-BDD95311C41C} [2011-07-07 14:07:00 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{42FAE784-BA86-41BA-B43D-7E21AB87953A} [2011-07-07 13:55:12 | 000,000,327 | RHS- | M] () -- C:\boot.ini [2011-07-07 13:54:28 | 004,608,744 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\nowy\Pulpit\WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe [2011-07-07 13:37:09 | 004,133,895 | R--- | M] (Swearware) -- C:\Documents and Settings\nowy\Pulpit\ComboFix.exe [2011-07-07 13:13:52 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\nowy\Pulpit\OTL.exe [2011-07-06 20:40:08 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2011-07-06 20:24:43 | 000,030,208 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-07-06 19:32:34 | 000,014,420 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\Weekend.2011.PL.[dvdRip,Xvid kamyk28] ZTR.torrent [2011-07-05 19:32:49 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{8DB78826-D277-4C7B-85CB-AD19F3D2A983} [2011-07-05 19:31:30 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{792388AA-3A71-438F-9FC5-371E2F92774A} [2011-07-05 19:31:30 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{58EA98C0-85D8-457F-AEA6-5851C4D09FD5} [2011-07-05 19:30:18 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{4D67E4D4-6382-4649-A00F-6B33EDFBB800} [2011-07-05 11:32:24 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{72A5870C-00C7-4B18-903F-F254EFA82F7B} [2011-07-05 11:32:23 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{BF91B7E9-B85A-44AE-99D7-CE80A44A142F} [2011-07-03 12:52:15 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{56635769-14D6-4CEF-A32D-59E759F26C44} [2011-07-03 12:15:46 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-06-26 08:45:56 | 000,256,000 | ---- | M] () -- C:\WINDOWS\PEV.exe [2011-06-22 13:34:03 | 002,595,493 | ---- | M] () -- C:\Documents and Settings\nowy\Pulpit\Robert M - Just Little Bit (Radio Edit)_www.electro-city.pl.mp3 [2011-06-13 16:40:10 | 000,004,288 | -HS- | M] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2011-06-13 15:19:46 | 000,293,272 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [1 C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\*.tmp files -> C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-07-09 11:44:12 | 000,001,554 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\AD-R.lnk [2011-07-08 22:38:26 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\settings.dat [2011-07-08 22:19:55 | 000,465,298 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\RootRepeal.rar [2011-07-08 21:53:16 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\gmer.exe [2011-07-08 21:53:04 | 000,293,977 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\gm.zip [2011-07-08 21:26:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{EB359CEA-0D77-4867-A483-8A647859DF2E} [2011-07-08 21:26:10 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{8025C35F-1C3E-4FD1-8ABB-608143EE3535} [2011-07-08 21:22:44 | 000,302,592 | ---- | C] () -- C:\j9mk5lfl.exe [2011-07-07 14:07:01 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{729F258D-6CF0-4FD7-83B7-BDD95311C41C} [2011-07-07 14:07:00 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{42FAE784-BA86-41BA-B43D-7E21AB87953A} [2011-07-06 19:32:34 | 000,014,420 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\Weekend.2011.PL.[dvdRip,Xvid kamyk28] ZTR.torrent [2011-07-05 19:32:49 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{8DB78826-D277-4C7B-85CB-AD19F3D2A983} [2011-07-05 19:31:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{792388AA-3A71-438F-9FC5-371E2F92774A} [2011-07-05 19:31:30 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{58EA98C0-85D8-457F-AEA6-5851C4D09FD5} [2011-07-05 19:30:18 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{4D67E4D4-6382-4649-A00F-6B33EDFBB800} [2011-07-05 11:32:24 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{72A5870C-00C7-4B18-903F-F254EFA82F7B} [2011-07-05 11:32:23 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{BF91B7E9-B85A-44AE-99D7-CE80A44A142F} [2011-07-03 12:52:15 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{56635769-14D6-4CEF-A32D-59E759F26C44} [2011-06-22 13:33:55 | 002,595,493 | ---- | C] () -- C:\Documents and Settings\nowy\Pulpit\Robert M - Just Little Bit (Radio Edit)_www.electro-city.pl.mp3 [2011-05-31 15:09:58 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{5CA07887-5CCF-4179-A42B-E88F764F2AA0} [2011-05-30 21:35:45 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{CC267BD2-413E-49E6-AA8C-1BEF2B8593ED} [2011-05-30 21:34:20 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\{80A2EE79-B4BC-44A8-99AB-4C884D0E7E0E} [2011-05-22 16:14:57 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin [2011-05-22 16:14:52 | 000,252,080 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin [2011-05-22 16:14:52 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin [2011-05-22 16:14:25 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2011-05-08 22:43:01 | 001,297,684 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-S-1-5-21-1993962763-725345543-698203770-1003-0.dat [2011-05-07 18:01:28 | 000,002,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\portio32.sys [2011-05-06 18:40:11 | 000,286,750 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\WPFFontCache_v0400-System.dat [2011-02-27 14:45:48 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\SI.bin [2011-01-29 17:00:24 | 000,030,568 | ---- | C] () -- C:\WINDOWS\MusiccityDownload.exe [2011-01-29 17:00:22 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2011-01-29 17:00:22 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2011-01-29 17:00:22 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2011-01-29 17:00:22 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2011-01-12 16:46:18 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LauncherAccess.dt [2011-01-11 23:34:10 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll [2011-01-11 23:34:10 | 000,036,608 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys [2010-10-12 20:08:22 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\.zreglib [2010-10-08 17:06:52 | 000,000,016 | ---- | C] () -- C:\WINDOWS\SCN.ini [2010-10-08 16:10:49 | 000,339,968 | ---- | C] () -- C:\WINDOWS\vsnpstd.exe [2010-10-08 16:10:49 | 000,015,541 | ---- | C] () -- C:\WINDOWS\snpstd.ini [2010-10-08 16:10:46 | 000,390,656 | ---- | C] () -- C:\WINDOWS\System32\drivers\snpstd.sys [2010-10-08 16:10:43 | 000,020,480 | ---- | C] () -- C:\WINDOWS\usnpstd.exe [2010-07-18 21:38:59 | 000,049,152 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-07-18 21:37:38 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll [2010-07-17 10:20:25 | 000,000,046 | ---- | C] () -- C:\WINDOWS\adiras.ini [2010-04-19 16:01:00 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010-04-19 16:00:55 | 000,256,000 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010-04-19 16:00:54 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010-04-19 16:00:54 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-04-19 16:00:53 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2009-11-11 13:37:18 | 002,542,458 | ---- | C] () -- C:\WINDOWS\System32\abgx360.exe [2009-08-26 22:44:37 | 000,632,344 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2009-08-24 20:27:21 | 001,003,520 | ---- | C] () -- C:\WINDOWS\System32\ltmm_n.dll [2009-08-24 20:20:00 | 000,000,184 | ---- | C] () -- C:\WINDOWS\System32\buyurl_rm.dat [2009-08-21 16:33:49 | 000,005,106 | ---- | C] () -- C:\Program Files\keygen.nfo [2009-08-20 10:50:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\CorelDrw.INI [2009-08-20 10:49:17 | 000,000,394 | ---- | C] () -- C:\WINDOWS\capture.ini [2009-08-19 10:28:31 | 000,000,008 | RHS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\D578E2404A.sys [2009-08-19 10:28:30 | 000,002,516 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\KGyGaAvL.sys [2009-08-03 00:21:54 | 000,197,912 | ---- | C] () -- C:\WINDOWS\System32\physxcudart_20.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSwedish.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSpanish.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelPortugese.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelKorean.dll [2009-08-03 00:21:54 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelJapanese.dll [2009-08-03 00:21:52 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelGerman.dll [2009-08-03 00:21:52 | 000,058,648 | ---- | C] () -- C:\WINDOWS\System32\AgCPanelFrench.dll [2009-05-29 20:21:58 | 001,970,176 | ---- | C] () -- C:\WINDOWS\System32\d3dx9.dll [2009-05-22 19:53:39 | 000,000,056 | RHS- | C] () -- C:\WINDOWS\System32\4A40E278D5.sys [2009-05-22 19:53:36 | 000,004,288 | -HS- | C] () -- C:\WINDOWS\System32\KGyGaAvL.sys [2009-04-28 19:40:33 | 000,004,430 | ---- | C] () -- C:\WINDOWS\System32\FLSINSTU.INI [2009-04-27 22:08:38 | 000,091,696 | ---- | C] () -- C:\WINDOWS\System32\FLSDEVCP.EXE [2009-04-27 22:08:38 | 000,004,263 | ---- | C] () -- C:\WINDOWS\System32\flsinst.ini [2009-04-27 22:08:38 | 000,000,064 | ---- | C] () -- C:\WINDOWS\FLS1.INI [2009-04-27 22:08:37 | 001,990,656 | ---- | C] () -- C:\WINDOWS\System32\FLSINST.DLL [2009-04-27 22:08:36 | 000,092,984 | ---- | C] () -- C:\WINDOWS\System32\dkcpanel.exe [2009-04-27 22:08:34 | 002,325,304 | ---- | C] () -- C:\WINDOWS\System32\DK2INST.DLL [2009-04-22 01:19:06 | 000,172,173 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat [2009-03-30 14:58:20 | 000,903,389 | ---- | C] () -- C:\WINDOWS\IVO Glossary Uninstaller.exe [2009-03-23 17:42:08 | 000,000,671 | ---- | C] () -- C:\Documents and Settings\nowy\Dane aplikacji\vso_ts_preview.xml [2009-03-23 17:41:45 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\nowy\Dane aplikacji\pcouffin.cat [2009-03-23 17:41:45 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\nowy\Dane aplikacji\pcouffin.inf [2009-02-20 15:09:38 | 000,020,480 | ---- | C] () -- C:\WINDOWS\FixCamera.exe [2009-02-20 15:09:35 | 000,827,392 | ---- | C] () -- C:\WINDOWS\vsnp325.exe [2009-02-20 15:09:35 | 000,827,392 | ---- | C] () -- C:\WINDOWS\vsnp325(2).exe [2009-02-20 15:09:34 | 000,270,336 | ---- | C] () -- C:\WINDOWS\tsnp325.exe [2009-02-20 15:09:31 | 000,015,498 | ---- | C] () -- C:\WINDOWS\snp325.ini [2009-02-10 18:41:44 | 000,643,142 | ---- | C] () -- C:\WINDOWS\aticlocklib.dll [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nVivid.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nStandard.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAsmedia.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\nAdvanced.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aVivid.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aStandard.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAsmedia.bin [2009-02-10 18:41:44 | 000,196,608 | ---- | C] () -- C:\WINDOWS\System32\drivers\aAdvanced.bin [2009-02-10 18:41:44 | 000,110,592 | ---- | C] () -- C:\WINDOWS\R5ClkLib.dll [2009-02-10 18:41:44 | 000,020,480 | ---- | C] () -- C:\WINDOWS\HyperDrive.exe [2009-02-10 18:41:44 | 000,000,018 | ---- | C] () -- C:\WINDOWS\System32\atkid.ini [2009-02-10 18:41:43 | 000,046,592 | ---- | C] () -- C:\WINDOWS\System32\asfrench.dll [2009-02-10 18:41:43 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\asrussian.dll [2009-02-10 18:41:43 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\asgerman.dll [2009-02-10 18:41:43 | 000,046,080 | ---- | C] () -- C:\WINDOWS\System32\aseng.dll [2009-02-10 18:41:43 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\askorean.dll [2009-02-10 18:41:43 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\asjapan.dll [2009-02-10 18:41:43 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\ASCHT.dll [2009-02-10 18:41:43 | 000,045,568 | ---- | C] () -- C:\WINDOWS\System32\aschs.dll [2009-02-03 23:39:59 | 000,000,150 | ---- | C] () -- C:\WINDOWS\WSST_Screen_Saver.ini [2009-02-03 20:31:46 | 000,178,218 | ---- | C] () -- C:\WINDOWS\hpoins28.dat [2009-02-03 20:31:45 | 000,000,796 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat [2009-02-03 19:11:11 | 000,176,862 | ---- | C] () -- C:\WINDOWS\hpoins28.dat.temp [2009-02-03 19:11:11 | 000,000,796 | ---- | C] () -- C:\WINDOWS\hpomdl28.dat.temp [2008-12-30 17:18:21 | 000,001,984 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2008-12-24 21:39:58 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\nowy\Dane aplikacji\$_hpcst$.hpc [2008-11-12 18:09:42 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2008-11-01 10:47:33 | 000,073,220 | ---- | C] () -- C:\WINDOWS\System32\EPPICPrinterDB.dat [2008-11-01 10:47:33 | 000,031,053 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern131.dat [2008-11-01 10:47:33 | 000,029,114 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern1.dat [2008-11-01 10:47:33 | 000,027,417 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern121.dat [2008-11-01 10:47:33 | 000,021,021 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern3.dat [2008-11-01 10:47:33 | 000,015,670 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern5.dat [2008-11-01 10:47:33 | 000,013,280 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern2.dat [2008-11-01 10:47:33 | 000,010,673 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern4.dat [2008-11-01 10:47:33 | 000,004,943 | ---- | C] () -- C:\WINDOWS\System32\EPPICPattern6.dat [2008-11-01 10:47:33 | 000,001,140 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_PT.dat [2008-11-01 10:47:33 | 000,001,140 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_BP.dat [2008-11-01 10:47:33 | 000,001,137 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_ES.dat [2008-11-01 10:47:33 | 000,001,130 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_FR.dat [2008-11-01 10:47:33 | 000,001,130 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_CF.dat [2008-11-01 10:47:33 | 000,001,104 | ---- | C] () -- C:\WINDOWS\System32\EPPICPresetData_EN.dat [2008-11-01 10:47:33 | 000,000,097 | ---- | C] () -- C:\WINDOWS\System32\PICSDK.ini [2008-10-27 16:31:55 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2008-10-11 17:46:42 | 000,319,488 | R--- | C] () -- C:\WINDOWS\System32\MafiaSetup.exe [2008-09-16 14:29:21 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2008-09-12 14:28:12 | 000,000,028 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2008-09-08 15:55:36 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2008-09-02 16:08:19 | 000,000,108 | ---- | C] () -- C:\WINDOWS\System32\imon1.dat [2008-09-01 15:30:30 | 000,271,360 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2008-09-01 15:30:30 | 000,018,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2008-08-20 19:02:33 | 000,022,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2008-08-20 19:02:33 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\nowy\Dane aplikacji\PnkBstrK.sys [2008-08-20 19:02:15 | 000,103,736 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2008-08-20 19:02:12 | 000,066,872 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2008-07-21 14:36:56 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2008-07-20 12:15:29 | 000,030,208 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2008-07-16 20:59:53 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2008-07-16 20:58:48 | 000,293,272 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2008-07-16 20:51:01 | 000,000,129 | ---- | C] () -- C:\Documents and Settings\nowy\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2008-07-16 19:15:16 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\NVRTClk.exe [2008-07-16 19:15:06 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys [2008-07-16 19:06:36 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2008-07-16 19:03:24 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2008-02-20 12:11:16 | 000,033,800 | ---- | C] () -- C:\WINDOWS\System32\drivers\epfwtdir.sys [2007-10-25 18:26:10 | 000,005,632 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys [2007-04-27 11:43:58 | 000,120,200 | ---- | C] () -- C:\WINDOWS\System32\DLLDEV32i.dll [2007-04-19 07:26:00 | 000,212,992 | ---- | C] () -- C:\WINDOWS\System32\nvapi(4).dll [2007-03-29 23:00:40 | 000,203,264 | R--- | C] () -- C:\WINDOWS\System32\CddbCdda.dll [2005-08-30 00:00:00 | 000,781,312 | ---- | C] () -- C:\WINDOWS\System32\RGSS102J.dll [2005-08-30 00:00:00 | 000,778,752 | ---- | C] () -- C:\WINDOWS\System32\RGSS102E.dll [2005-08-30 00:00:00 | 000,771,584 | ---- | C] () -- C:\WINDOWS\System32\RGSS100J.dll [2004-08-04 04:56:48 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2004-08-02 18:20:40 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2002-07-24 23:43:46 | 000,667,648 | ---- | C] () -- C:\WINDOWS\System32\FreeImage.dll [2001-10-26 22:15:16 | 000,623,536 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2001-10-26 22:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2001-10-26 22:15:16 | 000,116,052 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2001-10-26 22:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2001-09-19 19:18:01 | 000,008,389 | ---- | C] () -- C:\WINDOWS\Zmodeler.ini [2001-08-29 14:11:40 | 000,398,848 | R--- | C] () -- C:\WINDOWS\System32\dk2win32.dll [2001-08-23 19:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2001-08-23 19:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2001-08-18 03:30:24 | 000,550,776 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2001-08-18 03:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2001-08-18 03:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2001-08-18 03:30:22 | 000,091,804 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2001-08-18 03:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2001-07-22 04:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2001-07-22 04:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 498 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:05EE1EEF @Alternate Data Stream - 48 bytes -> C:\Documents and Settings\All Users\DRM:مهندسة @Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:6CC69D3C @Alternate Data Stream - 103 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:4F8F308F < End of report >