OTL logfile created on: 2011-07-18 15:17:32 - Run 4 OTL by OldTimer - Version 3.2.26.1 Folder = C:\Users\Piotrek\Downloads Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,50 Gb Total Physical Memory | 2,46 Gb Available Physical Memory | 70,45% Memory free 7,00 Gb Paging File | 5,82 Gb Available in Paging File | 83,17% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 39,06 Gb Total Space | 10,41 Gb Free Space | 26,64% Space Free | Partition Type: NTFS Drive D: | 109,98 Gb Total Space | 3,26 Gb Free Space | 2,96% Space Free | Partition Type: NTFS Drive E: | 6,51 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: PIOTR | User Name: Piotrek | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-18 10:45:02 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Piotrek\Downloads\OTL.exe PRC - [2011-07-09 06:51:19 | 001,012,792 | ---- | M] (Google Inc.) -- C:\Program Files\Google\Chrome\Application\chrome.exe PRC - [2011-07-06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) -- C:\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2011-07-05 19:46:22 | 000,484,520 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\fsav32.exe PRC - [2011-07-05 19:46:17 | 000,061,088 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\ORSP Client\fsorsp.exe PRC - [2011-07-05 19:45:22 | 000,983,592 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\fssm32.exe PRC - [2011-07-05 19:45:22 | 000,508,456 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\fsgk32.exe PRC - [2011-07-05 19:36:58 | 000,529,064 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\FWES\program\fsdfwd.exe PRC - [2011-07-05 19:36:55 | 000,221,864 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\fsgk32st.exe PRC - [2011-07-05 19:36:54 | 000,201,384 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Common\FSM32.EXE PRC - [2011-07-05 19:36:54 | 000,189,096 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Common\FSMA32.EXE PRC - [2011-07-05 19:36:54 | 000,090,792 | ---- | M] (F-Secure Corporation) -- D:\Programy\Zainstalowane\F-secure\F-Secure\Common\FSHDLL32.EXE PRC - [2011-06-15 13:11:00 | 002,214,504 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe PRC - [2011-06-15 13:11:00 | 000,839,272 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe PRC - [2011-06-06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2011-04-12 13:45:20 | 000,527,371 | ---- | M] () -- C:\Program Files\Ad-Remover\main.exe PRC - [2011-02-25 07:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2010-11-20 23:29:19 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2010-02-01 13:24:46 | 002,342,608 | ---- | M] (IObit) -- D:\Programy\Zainstalowane\Advanced Care pro\Advanced SystemCare 3\AWC.exe PRC - [2009-03-05 16:07:20 | 002,260,480 | RHS- | M] (Safer-Networking Ltd.) -- C:\Spybot - Search & Destroy\TeaTimer.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-18 10:45:02 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Users\Piotrek\Downloads\OTL.exe MOD - [2011-07-05 19:37:08 | 000,332,456 | ---- | M] (F-Secure Corporation) -- d:\Programy\Zainstalowane\F-secure\F-Secure\HIPS\fshook32.dll MOD - [2010-11-20 23:29:06 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2011-07-06 19:52:38 | 000,366,640 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2011-07-05 19:46:17 | 000,061,088 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\ORSP Client\fsorsp.exe -- (FSORSPClient) SRV - [2011-07-05 19:36:58 | 000,529,064 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\FWES\Program\fsdfwd.exe -- (FSDFWD) SRV - [2011-07-05 19:36:55 | 000,221,864 | ---- | M] (F-Secure Corporation) [Auto | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter) SRV - [2011-07-05 19:36:54 | 000,189,096 | ---- | M] (F-Secure Corporation) [Auto | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Common\FSMA32.EXE -- (FSMA) SRV - [2011-07-05 17:58:58 | 001,343,400 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc) SRV - [2011-06-15 13:11:00 | 002,214,504 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService) SRV - [2011-06-06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2011-03-01 18:29:58 | 000,130,976 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:\Program Files\Futuremark\Futuremark SystemInfo\FMSISvc.exe -- (Futuremark SystemInfo Service) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-01-26 15:31:10 | 001,153,368 | ---- | M] (Safer Networking Ltd.) [Auto | Stopped] -- C:\Spybot - Search & Destroy\SDWinSec.exe -- (SBSDWSCService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-07-06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector) DRV - [2011-07-05 19:48:33 | 000,042,664 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\system32\Drivers\fsbts.sys -- (fsbts) DRV - [2011-07-05 19:46:10 | 000,148,648 | ---- | M] () [Kernel | On_Demand | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper) DRV - [2011-07-05 19:37:08 | 000,072,520 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\HIPS\drivers\fshs.sys -- (F-Secure HIPS) DRV - [2011-07-05 19:37:06 | 000,037,832 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\fses.sys -- (FSES) DRV - [2011-07-05 19:36:58 | 000,072,840 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\fsdfw.sys -- (FSFW) DRV - [2011-07-05 19:36:55 | 000,041,896 | ---- | M] () [Kernel | Disabled | Stopped] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\win2k\fsfilter.sys -- (F-Secure Filter) DRV - [2011-07-05 19:36:55 | 000,027,304 | ---- | M] () [Kernel | Disabled | Stopped] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\win2k\fsrec.sys -- (F-Secure Recognizer) DRV - [2011-07-05 19:36:55 | 000,014,504 | ---- | M] () [Kernel | System | Running] -- D:\Programy\Zainstalowane\F-secure\F-Secure\Anti-Virus\minifilter\fsvista.sys -- (fsvista) DRV - [2011-06-15 13:11:00 | 010,589,800 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2011-05-10 11:41:28 | 000,139,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA) DRV - [2010-11-20 23:29:34 | 000,015,872 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV - [2010-11-20 23:29:24 | 000,052,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV - [2010-11-20 23:29:03 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\vmbus.sys -- (vmbus) DRV - [2010-11-20 23:29:03 | 000,112,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\tsusbhub.sys -- (tsusbhub) DRV - [2010-11-20 23:29:03 | 000,077,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\Synth3dVsc.sys -- (Synth3dVsc) DRV - [2010-11-20 23:29:03 | 000,062,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\dmvsc.sys -- (dmvsc) DRV - [2010-11-20 23:29:03 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\drivers\vmstorfl.sys -- (storflt) DRV - [2010-11-20 23:29:03 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb) DRV - [2010-11-20 23:29:03 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\storvsc.sys -- (storvsc) DRV - [2010-11-20 23:29:03 | 000,027,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\TsUsbGD.sys -- (TsUsbGD) DRV - [2010-11-20 23:29:03 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\terminpt.sys -- (terminpt) DRV - [2010-11-20 23:29:03 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\VMBusHID.sys -- (VMBusHID) DRV - [2010-11-20 23:29:03 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\vms3cap.sys -- (s3cap) DRV - [2010-11-09 15:35:30 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cpuz135_x32.sys -- (cpuz135) DRV - [2009-12-21 17:30:30 | 000,043,520 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtTeam60.sys -- (TEAM) Realtek Virtual Miniport Driver for Teaming (NDIS 6.0) DRV - [2009-12-21 17:30:30 | 000,043,520 | ---- | M] (Realtek Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtTeam60.sys -- (RTTEAMPT) Realtek Teaming Protocol Driver (NDIS 6.0) DRV - [2009-07-20 04:26:40 | 000,027,648 | ---- | M] (Realtek ) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\RtNdPt60.sys -- (RtNdPt60) DRV - [2008-11-04 20:21:04 | 000,083,296 | ---- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2008-01-19 05:49:30 | 000,030,208 | ---- | M] (SigmaTel, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\irstusb.sys -- (STIrUsb) DRV - [2007-12-03 04:19:42 | 000,019,968 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtVlan60.sys -- (RTVLANPT) Realtek Vlan Protocol Driver (NDIS 6.2) DRV - [2007-08-01 04:43:56 | 000,270,464 | ---- | M] (AVerMedia Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cx88vid.sys -- (CX23880) DRV - [2007-08-01 04:43:56 | 000,032,096 | ---- | M] (AVerMedia Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cx88tune.sys -- (CXTUNE) AVerMedia AVerTV Tuner Service (88x) DRV - [2007-08-01 04:43:56 | 000,009,440 | ---- | M] (AVerMedia Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\cx88xbar.sys -- (CX88XBAR) AVerMedia, AVerTV Crossbar (88x) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ayuwage.com/ IE - HKCU\..\URLSearchHook: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - Reg Error: Key error. File not found IE - HKCU\..\URLSearchHook: {ee4c73ff-7a1b-4330-acec-45e409118cc1} - Reg Error: Key error. File not found IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultthis.engineName: "LogiTool Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2771935&SearchSource=3&q={searchTerms}" FF - prefs.js..browser.search.selectedEngine: "LogiTool Customized Web Search" FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2771935&q=" FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\litmus-ff@f-secure.com: D:\Programy\Zainstalowane\F-secure\F-Secure\NRS\litmus-ff@f-secure.com [2011-07-13 18:31:41 | 000,000,000 | ---D | M] [2011-07-05 15:00:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Extensions [2011-07-18 15:11:43 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\0rlp8b07.default\extensions [2011-07-06 14:27:40 | 000,000,000 | ---D | M] (LogiTool Community Toolbar) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\0rlp8b07.default\extensions\{481f306a-420c-4673-be90-543b7d62a78e} [2011-07-05 18:54:50 | 000,000,000 | ---D | M] (uTorrentBar Community Toolbar) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\0rlp8b07.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} [2011-07-18 15:12:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\mozilla\Firefox\Profiles\0rlp8b07.default\extensions\staged [2011-06-19 11:23:22 | 000,000,919 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\0rlp8b07.default\searchplugins\conduit.xml File not found (No name found) -- [2010-04-24 21:46:30 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-08-23 11:50:50 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-11-13 14:28:48 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011-01-09 11:25:03 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011-02-26 21:13:43 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2011-07-01 15:28:00 | 000,000,000 | ---D | M] (Java Console) -- D:\PROGRAMY\ZAINSTALOWANE\FIREFOX\EXTENSIONS\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} [2011-07-13 18:31:41 | 000,000,000 | ---D | M] ("Browsing Protection") -- D:\PROGRAMY\ZAINSTALOWANE\F-SECURE\F-SECURE\NRS\LITMUS-FF@F-SECURE.COM O1 HOSTS File: ([2009-06-10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (Browsing Protection Class) - {C6867EB7-8350-4856-877F-93CF8AE3DC9C} - D:\Programy\Zainstalowane\F-secure\F-Secure\NRS\iescript\baselitmus.dll (F-Secure Corporation) O3 - HKLM\..\Toolbar: (Browsing Protection Toolbar) - {265EEE8E-3228-44D3-AEA5-F7FDF5860049} - D:\Programy\Zainstalowane\F-secure\F-Secure\NRS\iescript\baselitmus.dll (F-Secure Corporation) O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No CLSID value found. O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {EE4C73FF-7A1B-4330-ACEC-45E409118CC1} - No CLSID value found. O4 - HKLM..\Run: [F-Secure Manager] D:\Programy\Zainstalowane\F-secure\F-Secure\Common\FSM32.EXE (F-Secure Corporation) O4 - HKLM..\Run: [F-Secure TNB] D:\Programy\Zainstalowane\F-secure\F-Secure\FSGUI\TNBUtil.exe (F-Secure Corporation) O4 - HKLM..\Run: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware (reboot)] C:\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation) O4 - HKCU..\Run: [31908D594CED5854D19D92F49DDC940669DDCEEB._service_run] C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) O4 - HKCU..\Run: [AWC.exe] D:\Programy\Zainstalowane\Advanced Care pro\Advanced SystemCare 3\AWC.exe (IObit) O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Spybot - Search & Destroy\TeaTimer.exe (Safer-Networking Ltd.) O4 - HKLM..\RunOnce: [] File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - D:\Programy\Zainstalowane\F-secure\F-Secure\FSPS\program\FSLSP.DLL (F-Secure Corporation) O13 - gopher Prefix: missing O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Utility Class) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} Reg Error: Value error. (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2010-09-27 20:23:35 | 000,000,000 | ---D | M] - E:\AutoRun -- [ CDFS ] O32 - AutoRun File - [2010-09-27 15:21:17 | 000,439,056 | R--- | M] (Electronic Arts) - E:\AutoRun.exe -- [ CDFS ] O32 - AutoRun File - [2010-09-27 15:21:16 | 008,098,816 | R--- | M] () - E:\autorun.dat -- [ CDFS ] O32 - AutoRun File - [2010-09-27 14:57:43 | 000,000,141 | R--- | M] () - E:\autorun.inf -- [ CDFS ] O33 - MountPoints2\{8d9ef286-a708-11e0-926d-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{8d9ef286-a708-11e0-926d-806e6f6e6963}\Shell\AutoRun\command - "" = E:\AutoRun.exe -- [2010-09-27 15:21:17 | 000,439,056 | R--- | M] (Electronic Arts) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-07-18 15:14:02 | 000,000,000 | ---D | C] -- C:\Program Files\Ad-Remover [2011-07-18 13:32:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2011-07-18 13:32:13 | 000,000,000 | ---D | C] -- C:\CCleaner [2011-07-18 13:13:10 | 000,000,000 | ---D | C] -- C:\_OTL [2011-07-18 12:40:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy [2011-07-18 12:39:54 | 000,000,000 | ---D | C] -- C:\Spybot - Search & Destroy [2011-07-18 10:38:37 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Malwarebytes [2011-07-18 10:38:31 | 000,041,272 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2011-07-18 10:38:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2011-07-18 10:38:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011-07-18 10:38:27 | 000,022,712 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2011-07-18 10:38:27 | 000,000,000 | ---D | C] -- C:\Malwarebytes' Anti-Malware [2011-07-18 10:33:01 | 000,101,720 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2011-07-18 10:23:29 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Sunbelt Software [2011-07-18 08:44:40 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2011-07-18 08:38:37 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft [2011-07-17 20:58:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight [2011-07-17 20:58:05 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight [2011-07-15 23:39:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2011-07-15 19:10:54 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline [2011-07-15 18:06:36 | 000,000,000 | -HSD | C] -- C:\Windows\System32\%APPDATA% [2011-07-15 18:06:22 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Futuremark_Corporation [2011-07-15 18:05:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\IsolatedStorage [2011-07-15 17:43:05 | 000,000,000 | ---D | C] -- C:\Program Files\Futuremark [2011-07-15 12:09:08 | 000,000,000 | RH-D | C] -- C:\Users\Piotrek\AppData\Roaming\SecuROM [2011-07-15 11:51:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome [2011-07-15 11:50:33 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2011-07-14 19:52:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike Source [2011-07-14 19:34:33 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games [2011-07-14 19:20:10 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Documents\FIFA 11 [2011-07-14 19:18:58 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Leadertech [2011-07-14 19:00:43 | 000,000,000 | ---D | C] -- C:\EA Sports [2011-07-14 14:49:42 | 000,865,896 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhdagenco322040.dll [2011-07-14 14:49:42 | 000,139,368 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvhda32v.sys [2011-07-14 14:49:42 | 000,026,216 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvhdap32.dll [2011-07-14 14:49:40 | 016,456,296 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll [2011-07-14 14:49:40 | 013,011,560 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll [2011-07-14 14:49:40 | 010,589,800 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys [2011-07-14 14:49:40 | 005,301,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll [2011-07-14 14:49:40 | 002,804,328 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll [2011-07-14 14:49:40 | 002,082,408 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll [2011-07-14 14:49:40 | 000,057,960 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll [2011-07-14 14:49:40 | 000,012,392 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvBridge.kmd [2011-07-14 14:37:16 | 003,693,672 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll [2011-07-14 14:37:16 | 002,560,616 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll [2011-07-14 14:37:16 | 002,557,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll [2011-07-14 14:37:16 | 000,111,208 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll [2011-07-14 14:37:16 | 000,066,664 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvshext.dll [2011-07-14 14:37:15 | 000,543,336 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\easyupdatusapiu.dll [2011-07-14 14:25:31 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA [2011-07-14 14:23:07 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2011-07-14 14:22:36 | 000,944,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco3220140.dll [2011-07-14 14:22:36 | 000,855,656 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvgenco322060.dll [2011-07-13 11:41:01 | 000,021,992 | ---- | C] (CPUID) -- C:\Windows\System32\drivers\cpuz135_x32.sys [2011-07-13 11:41:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID [2011-07-13 11:41:00 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID [2011-07-10 20:14:17 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\XnView [2011-07-10 20:14:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView [2011-07-10 20:14:00 | 000,000,000 | ---D | C] -- C:\XnView [2011-07-10 19:46:09 | 000,327,168 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUninst.exe [2011-07-10 19:46:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe [2011-07-10 19:43:49 | 000,000,000 | ---D | C] -- C:\Adobe [2011-07-10 19:43:35 | 000,327,168 | ---- | C] (InstallShield Software Corporation) -- C:\Windows\IsUn0415.exe [2011-07-08 20:05:29 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Adobe [2011-07-06 20:09:08 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Media Player Classic [2011-07-06 19:58:00 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\BESTplayer [2011-07-06 19:57:13 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR [2011-07-06 19:57:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR [2011-07-06 19:57:05 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\WinRAR [2011-07-06 18:09:15 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2011-07-06 17:33:03 | 000,000,000 | ---D | C] -- C:\Windows\System32\Adobe [2011-07-06 17:31:04 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Vagex [2011-07-06 17:28:54 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Desktop\Vagex [2011-07-06 13:50:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2011-07-06 13:50:10 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2011-07-06 13:44:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2011-07-06 10:21:55 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonBJ [2011-07-06 09:49:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Canon [2011-07-05 20:52:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office [2011-07-05 20:52:13 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works [2011-07-05 20:51:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio [2011-07-05 20:51:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2011-07-05 20:51:34 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2011-07-05 20:51:34 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2011-07-05 20:49:28 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Microsoft Help [2011-07-05 20:49:25 | 000,000,000 | ---D | C] -- C:\Microsoft Office [2011-07-05 20:49:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help [2011-07-05 20:49:03 | 000,000,000 | RH-D | C] -- C:\MSOCache [2011-07-05 19:50:47 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SopCast [2011-07-05 19:50:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SopCast [2011-07-05 19:48:27 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ [2011-07-05 19:48:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ [2011-07-05 19:48:17 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Documents\VirtualDJ [2011-07-05 19:46:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Real Alternative [2011-07-05 19:46:12 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\Windows\System32\pncrt.dll [2011-07-05 19:46:12 | 000,185,920 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\System32\rmoc3260.dll [2011-07-05 19:46:12 | 000,006,656 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\System32\pndx5016.dll [2011-07-05 19:46:12 | 000,005,632 | ---- | C] (RealNetworks, Inc.) -- C:\Windows\System32\pndx5032.dll [2011-07-05 19:46:11 | 000,000,000 | ---D | C] -- C:\Real Alternative [2011-07-05 19:46:11 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Real [2011-07-05 19:46:11 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Real [2011-07-05 19:46:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Real [2011-07-05 19:38:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\F-Secure Internet Security 2011 [2011-07-05 19:37:26 | 000,037,832 | ---- | C] (F-Secure Corporation) -- C:\Windows\System32\drivers\fses.sys [2011-07-05 19:37:23 | 000,072,840 | ---- | C] (F-Secure Corporation) -- C:\Windows\System32\drivers\fsdfw.sys [2011-07-05 19:36:26 | 000,000,000 | ---D | C] -- C:\ProgramData\fssg [2011-07-05 19:35:17 | 000,000,000 | ---D | C] -- C:\ProgramData\f-secure [2011-07-05 18:56:41 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\IObit [2011-07-05 18:54:50 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Google [2011-07-05 18:54:49 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit [2011-07-05 18:54:48 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Conduit [2011-07-05 18:53:50 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\uTorrent [2011-07-05 18:11:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java [2011-07-05 18:11:16 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaws.exe [2011-07-05 18:11:16 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\javaw.exe [2011-07-05 18:11:16 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\java.exe [2011-07-05 18:03:07 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat [2011-07-05 17:58:16 | 000,294,912 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll [2011-07-05 17:58:16 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll [2011-07-05 17:54:38 | 000,472,808 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\System32\deployJava1.dll [2011-07-05 17:16:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Macromedia [2011-07-05 17:16:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\cache [2011-07-05 17:16:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Adobe [2011-07-05 17:15:19 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\RDRM [2011-07-05 17:15:19 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\ipla [2011-07-05 17:15:19 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla [2011-07-05 17:15:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ipla [2011-07-05 17:15:13 | 000,000,000 | ---D | C] -- C:\Program Files\ipla [2011-07-05 17:14:40 | 000,000,000 | ---D | C] -- C:\Program Files\AVerMedia [2011-07-05 17:12:27 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Gadu-Gadu 10 [2011-07-05 17:12:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10 [2011-07-05 17:12:25 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed [2011-07-05 17:11:58 | 000,000,000 | ---D | C] -- C:\Gadu-Gadu 10 [2011-07-05 17:10:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2011-07-05 17:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2011-07-05 16:50:52 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2011-07-05 15:33:15 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2011-07-05 15:33:01 | 000,000,000 | -HSD | C] -- C:\Boot [2011-07-05 15:32:32 | 001,093,632 | ---- | C] (Karol Winnicki) -- C:\Users\Piotrek\Desktop\BESTplayer.exe [2011-07-05 15:11:11 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2011-07-05 15:10:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack [2011-07-05 15:10:08 | 000,000,000 | ---D | C] -- C:\K-Lite Codec Pack [2011-07-05 15:08:52 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2011-07-05 15:08:34 | 000,000,000 | ---D | C] -- C:\NVIDIA [2011-07-05 15:08:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gigabyte Technology Corp [2011-07-05 15:08:20 | 001,966,080 | ---- | C] (Gigabyte Technology Corp.) -- C:\Windows\System32\xRaidSetup.exe [2011-07-05 15:08:20 | 000,151,552 | ---- | C] (JMicron Technology Corp.) -- C:\Windows\System32\xRaidAPI.dll [2011-07-05 15:08:20 | 000,000,000 | ---D | C] -- C:\RaidTool [2011-07-05 15:08:16 | 000,000,000 | ---D | C] -- C:\Windows\RaidTool [2011-07-05 15:07:08 | 000,043,520 | ---- | C] (Realtek Corporation) -- C:\Windows\System32\drivers\RtTeam60.sys [2011-07-05 15:07:08 | 000,027,648 | ---- | C] (Realtek ) -- C:\Windows\System32\drivers\RtNdPt60.sys [2011-07-05 15:07:08 | 000,019,968 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\drivers\RtVlan60.sys [2011-07-05 15:07:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek [2011-07-05 15:06:31 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll [2011-07-05 15:06:31 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2011-07-05 15:06:23 | 000,000,000 | ---D | C] -- C:\Intel [2011-07-05 15:06:04 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM [2011-07-05 15:05:54 | 004,169,832 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkAPO.dll [2011-07-05 15:05:54 | 002,164,840 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkPgExt.dll [2011-07-05 15:05:54 | 001,783,056 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll [2011-07-05 15:05:54 | 001,084,008 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTSndMgr.cpl [2011-07-05 15:05:54 | 000,485,992 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkApoApi.dll [2011-07-05 15:05:54 | 000,345,328 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll [2011-07-05 15:05:54 | 000,185,584 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll [2011-07-05 15:05:54 | 000,173,296 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll [2011-07-05 15:05:54 | 000,140,528 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll [2011-07-05 15:05:54 | 000,072,808 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoInst.dll [2011-07-05 15:05:53 | 001,938,704 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2011-07-05 15:05:53 | 001,740,352 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO.dll [2011-07-05 15:05:53 | 000,738,392 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\MBAPO32.dll [2011-07-05 15:05:53 | 000,359,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEP32A.dll [2011-07-05 15:05:53 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll [2011-07-05 15:05:53 | 000,295,768 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll [2011-07-05 15:05:53 | 000,232,792 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2011-07-05 15:05:53 | 000,175,200 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTACap.dll [2011-07-05 15:05:53 | 000,170,840 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEED32A.dll [2011-07-05 15:05:53 | 000,132,368 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll [2011-07-05 15:05:53 | 000,096,160 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTARen.dll [2011-07-05 15:05:53 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEL32A.dll [2011-07-05 15:05:53 | 000,070,232 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\MBWrp32.dll [2011-07-05 15:05:53 | 000,064,856 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEG32A.dll [2011-07-05 15:05:53 | 000,053,848 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\MBppld32.dll [2011-07-05 15:05:53 | 000,050,776 | ---- | C] (Creative Technology Ltd.) -- C:\Windows\System32\MBPPCn32.dll [2011-07-05 15:05:53 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2011-07-05 15:05:53 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2011-07-05 15:05:52 | 001,284,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll [2011-07-05 15:05:52 | 000,000,000 | -H-D | C] -- C:\Program Files\Temp [2011-07-05 15:05:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2011-07-05 15:05:41 | 000,083,296 | ---- | C] (JMicron Technology Corp.) -- C:\Windows\System32\drivers\jraid.sys [2011-07-05 15:01:18 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Opera [2011-07-05 15:01:18 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Opera [2011-07-05 14:59:55 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Mozilla [2011-07-05 14:59:55 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Mozilla [2011-07-05 14:40:56 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2011-07-05 14:40:56 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Searches [2011-07-05 14:40:56 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2011-07-05 14:40:47 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Identities [2011-07-05 14:40:46 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Contacts [2011-07-05 14:40:39 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\VirtualStore [2011-07-05 14:40:38 | 000,000,000 | --SD | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Videos [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Saved Games [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Pictures [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Music [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Links [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Favorites [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Downloads [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Documents [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\Desktop [2011-07-05 14:40:38 | 000,000,000 | R--D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Ustawienia lokalne [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\AppData\Local\Temporary Internet Files [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Szablony [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\SendTo [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Recent [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\PrintHood [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\NetHood [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Documents\Moje wideo [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Documents\Moje obrazy [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Moje dokumenty [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Documents\Moja muzyka [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Menu Start [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\AppData\Local\Historia [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Dane aplikacji [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\AppData\Local\Dane aplikacji [2011-07-05 14:40:38 | 000,000,000 | -HSD | C] -- C:\Users\Piotrek\Cookies [2011-07-05 14:40:38 | 000,000,000 | -H-D | C] -- C:\Users\Piotrek\AppData [2011-07-05 14:40:38 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Temp [2011-07-05 14:40:38 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\Microsoft [2011-07-05 14:40:38 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Media Center Programs [2011-07-05 14:40:22 | 000,000,000 | -HSD | C] -- C:\Recovery [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2011-07-05 14:40:21 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2011-07-05 14:37:02 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2011-07-05 14:34:54 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2011-07-05 14:34:07 | 000,000,000 | -HSD | C] -- C:\System Volume Information [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-07-18 15:14:03 | 000,001,837 | ---- | M] () -- C:\Users\Piotrek\Desktop\AD-R.lnk [2011-07-18 15:11:37 | 000,026,576 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011-07-18 15:11:37 | 000,026,576 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011-07-18 15:02:51 | 000,000,464 | ---- | M] () -- C:\Windows\tasks\AWC AutoSweep.job [2011-07-18 15:02:25 | 000,001,034 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-07-18 15:02:23 | 000,000,458 | ---- | M] () -- C:\Windows\tasks\AWC Startup.job [2011-07-18 15:02:14 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-07-18 15:02:13 | 2817,384,448 | -HS- | M] () -- C:\hiberfil.sys [2011-07-18 14:55:00 | 000,001,038 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-07-18 14:10:17 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{CB66578B-E9D1-4DDC-8E09-AC7DF64E6954} [2011-07-18 13:32:16 | 000,000,606 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011-07-18 13:20:19 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{F4D11597-98BA-454C-8FBF-7BA252397599} [2011-07-18 12:42:27 | 000,000,887 | ---- | M] () -- C:\Users\Piotrek\Desktop\Spybot - Search & Destroy.lnk [2011-07-18 12:33:26 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{50B32921-657E-4E1F-BCE3-1A41E8391A8C} [2011-07-18 10:41:58 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{D6774945-E704-40BD-B595-AB22B8240109} [2011-07-18 10:38:31 | 000,000,708 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011-07-18 10:32:59 | 000,101,720 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2011-07-18 10:09:12 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{93232217-0E80-4005-BF68-8628A687F5C5} [2011-07-18 08:52:26 | 000,342,072 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011-07-17 17:00:41 | 000,000,470 | ---- | M] () -- C:\Windows\tasks\AWC AutoCare.job [2011-07-16 18:14:32 | 230,017,149 | ---- | M] () -- C:\Users\Piotrek\Desktop\Armin_van_Buuren_presents_-_A_State_of_Trance_Episode_517.mp3 [2011-07-16 18:14:03 | 000,704,802 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-07-16 18:14:03 | 000,622,938 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-07-16 18:14:03 | 000,138,028 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-07-16 18:14:03 | 000,109,434 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-07-15 19:02:18 | 000,000,000 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\{25C0614D-45D4-4B5C-960D-6B78511BB899} [2011-07-15 16:56:53 | 000,002,286 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2011-07-15 12:09:56 | 000,001,167 | ---- | M] () -- C:\Users\Piotrek\Desktop\fifa — skrót.lnk [2011-07-15 11:43:50 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl [2011-07-14 19:52:21 | 000,000,997 | ---- | M] () -- C:\Users\Piotrek\Desktop\Counter-Strike Source.lnk [2011-07-14 19:52:21 | 000,000,997 | ---- | M] () -- C:\Users\Piotrek\Desktop\Counter-Strike Source - Autoupdate.lnk [2011-07-13 11:41:01 | 000,001,022 | ---- | M] () -- C:\Users\Public\Desktop\CPUID CPU-Z.lnk [2011-07-12 00:08:46 | 000,006,144 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-07-11 20:56:58 | 000,001,130 | ---- | M] () -- C:\Users\Piotrek\Desktop\K!TV — skrót.lnk [2011-07-10 20:14:35 | 000,000,558 | ---- | M] () -- C:\Users\Piotrek\Desktop\XnView.lnk [2011-07-10 19:46:04 | 000,001,223 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.exe.lnk [2011-07-10 15:01:52 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2011-07-06 19:52:42 | 000,041,272 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2011-07-06 19:52:42 | 000,022,712 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2011-07-05 19:50:47 | 000,000,783 | ---- | M] () -- C:\Users\Piotrek\Desktop\SopCast.lnk [2011-07-05 19:48:33 | 000,042,664 | ---- | M] () -- C:\Windows\System32\drivers\fsbts.sys [2011-07-05 19:48:27 | 000,000,938 | ---- | M] () -- C:\Users\Piotrek\Desktop\Virtual DJ Pro.lnk [2011-07-05 19:38:02 | 000,001,116 | ---- | M] () -- C:\Users\Public\Desktop\F-Secure Internet Security 2011.lnk [2011-07-05 19:37:06 | 000,037,832 | ---- | M] (F-Secure Corporation) -- C:\Windows\System32\drivers\fses.sys [2011-07-05 19:36:58 | 000,072,840 | ---- | M] (F-Secure Corporation) -- C:\Windows\System32\drivers\fsdfw.sys [2011-07-05 18:55:58 | 000,000,978 | ---- | M] () -- C:\Users\Piotrek\Desktop\shutdown.lnk [2011-07-05 18:02:14 | 000,072,822 | ---- | M] () -- C:\Windows\System32\ieuinit.inf [2011-07-05 17:28:28 | 000,309,974 | RHS- | M] () -- C:\IFEYW [2011-07-05 17:28:28 | 000,000,020 | RHS- | M] () -- C:\win7.ld [2011-07-05 17:15:17 | 000,000,909 | ---- | M] () -- C:\Users\Public\Desktop\ipla.lnk [2011-07-05 17:12:46 | 000,000,598 | ---- | M] () -- C:\Users\Public\Desktop\Gadu-Gadu 10.lnk [2011-07-05 15:33:03 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK [2011-07-05 14:42:12 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2011-07-05 14:41:19 | 000,000,363 | ---- | M] () -- C:\Users\Piotrek\Desktop\Komputer.lnk [2011-07-05 14:37:45 | 000,188,313 | ---- | M] () -- C:\Windows\System32\license.rtf [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-07-18 15:14:03 | 000,001,837 | ---- | C] () -- C:\Users\Piotrek\Desktop\AD-R.lnk [2011-07-18 14:10:17 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{CB66578B-E9D1-4DDC-8E09-AC7DF64E6954} [2011-07-18 13:32:16 | 000,000,606 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk [2011-07-18 13:20:19 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{F4D11597-98BA-454C-8FBF-7BA252397599} [2011-07-18 12:40:04 | 000,000,887 | ---- | C] () -- C:\Users\Piotrek\Desktop\Spybot - Search & Destroy.lnk [2011-07-18 12:33:26 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{50B32921-657E-4E1F-BCE3-1A41E8391A8C} [2011-07-18 10:41:58 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{D6774945-E704-40BD-B595-AB22B8240109} [2011-07-18 10:38:31 | 000,000,708 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011-07-18 10:09:12 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{93232217-0E80-4005-BF68-8628A687F5C5} [2011-07-16 18:06:40 | 230,017,149 | ---- | C] () -- C:\Users\Piotrek\Desktop\Armin_van_Buuren_presents_-_A_State_of_Trance_Episode_517.mp3 [2011-07-15 19:02:18 | 000,000,000 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\{25C0614D-45D4-4B5C-960D-6B78511BB899} [2011-07-15 12:08:54 | 000,001,167 | ---- | C] () -- C:\Users\Piotrek\Desktop\fifa — skrót.lnk [2011-07-15 11:51:14 | 000,002,286 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk [2011-07-15 11:50:47 | 000,001,038 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2011-07-15 11:50:46 | 000,001,034 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2011-07-14 19:52:21 | 000,000,997 | ---- | C] () -- C:\Users\Piotrek\Desktop\Counter-Strike Source.lnk [2011-07-14 19:52:21 | 000,000,997 | ---- | C] () -- C:\Users\Piotrek\Desktop\Counter-Strike Source - Autoupdate.lnk [2011-07-14 14:22:36 | 000,004,364 | ---- | C] () -- C:\Windows\System32\nvinfo.pb [2011-07-13 11:41:01 | 000,001,022 | ---- | C] () -- C:\Users\Public\Desktop\CPUID CPU-Z.lnk [2011-07-11 20:56:58 | 000,001,130 | ---- | C] () -- C:\Users\Piotrek\Desktop\K!TV — skrót.lnk [2011-07-10 20:14:08 | 000,000,558 | ---- | C] () -- C:\Users\Piotrek\Desktop\XnView.lnk [2011-07-10 19:46:04 | 000,001,223 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.exe.lnk [2011-07-10 15:01:52 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2011-07-06 19:32:44 | 000,006,144 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-07-06 13:50:24 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk [2011-07-05 20:20:53 | 000,000,464 | ---- | C] () -- C:\Windows\tasks\AWC AutoSweep.job [2011-07-05 20:19:51 | 000,000,470 | ---- | C] () -- C:\Windows\tasks\AWC AutoCare.job [2011-07-05 19:50:47 | 000,000,783 | ---- | C] () -- C:\Users\Piotrek\Desktop\SopCast.lnk [2011-07-05 19:48:27 | 000,000,938 | ---- | C] () -- C:\Users\Piotrek\Desktop\Virtual DJ Pro.lnk [2011-07-05 19:38:02 | 000,001,116 | ---- | C] () -- C:\Users\Public\Desktop\F-Secure Internet Security 2011.lnk [2011-07-05 19:37:45 | 000,042,664 | ---- | C] () -- C:\Windows\System32\drivers\fsbts.sys [2011-07-05 19:00:59 | 000,000,458 | ---- | C] () -- C:\Windows\tasks\AWC Startup.job [2011-07-05 18:55:58 | 000,000,978 | ---- | C] () -- C:\Users\Piotrek\Desktop\shutdown.lnk [2011-07-05 18:02:14 | 000,072,822 | ---- | C] () -- C:\Windows\System32\ieuinit.inf [2011-07-05 17:28:28 | 000,309,974 | RHS- | C] () -- C:\IFEYW [2011-07-05 17:15:17 | 000,000,909 | ---- | C] () -- C:\Users\Public\Desktop\ipla.lnk [2011-07-05 17:12:46 | 000,000,598 | ---- | C] () -- C:\Users\Public\Desktop\Gadu-Gadu 10.lnk [2011-07-05 17:12:28 | 000,000,610 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadu-Gadu 10.lnk [2011-07-05 16:50:52 | 000,001,787 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2011-07-05 15:33:03 | 000,008,192 | RHS- | C] () -- C:\BOOTSECT.BAK [2011-07-05 15:33:02 | 000,383,786 | RHS- | C] () -- C:\bootmgr [2011-07-05 15:18:21 | 000,000,020 | RHS- | C] () -- C:\win7.ld [2011-07-05 15:10:11 | 000,175,616 | ---- | C] () -- C:\Windows\System32\unrar.dll [2011-07-05 15:10:10 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2011-07-05 14:42:12 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2011-07-05 14:41:19 | 000,000,363 | ---- | C] () -- C:\Users\Piotrek\Desktop\Komputer.lnk [2011-07-05 14:40:56 | 000,001,421 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2011-07-05 14:37:26 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk [2011-07-05 14:37:21 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk [2011-07-05 14:34:07 | 2817,384,448 | -HS- | C] () -- C:\hiberfil.sys [2011-05-20 22:35:28 | 000,304,744 | ---- | C] () -- C:\Windows\System32\nvStreaming.exe [2010-11-21 04:32:44 | 000,704,802 | ---- | C] () -- C:\Windows\System32\perfh015.dat [2010-11-21 04:32:44 | 000,337,158 | ---- | C] () -- C:\Windows\System32\perfi015.dat [2010-11-21 04:32:44 | 000,138,028 | ---- | C] () -- C:\Windows\System32\perfc015.dat [2010-11-21 04:32:44 | 000,038,710 | ---- | C] () -- C:\Windows\System32\perfd015.dat [2010-11-20 23:29:34 | 000,080,896 | ---- | C] () -- C:\Windows\System32\RDVGHelper.exe [2010-11-20 23:29:26 | 000,066,048 | ---- | C] () -- C:\Windows\System32\PrintBrmUi.exe [2009-07-14 06:57:37 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009-07-14 06:33:53 | 000,342,072 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT [2009-07-14 04:05:48 | 000,622,938 | ---- | C] () -- C:\Windows\System32\perfh009.dat [2009-07-14 04:05:48 | 000,291,294 | ---- | C] () -- C:\Windows\System32\perfi009.dat [2009-07-14 04:05:48 | 000,109,434 | ---- | C] () -- C:\Windows\System32\perfc009.dat [2009-07-14 04:05:48 | 000,031,548 | ---- | C] () -- C:\Windows\System32\perfd009.dat [2009-07-14 04:05:05 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT [2009-07-14 04:04:11 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat [2009-07-14 01:55:01 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009-07-14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009-06-10 23:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat [color=#E56717]========== LOP Check ==========[/color] [2011-07-06 22:04:53 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\BESTplayer [2011-07-05 17:29:04 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Gadu-Gadu 10 [2011-07-05 18:56:41 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\IObit [2011-07-18 11:25:04 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ipla [2011-07-14 19:18:58 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Leadertech [2011-07-05 15:01:18 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Opera [2011-07-05 17:15:21 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\RDRM [2011-07-17 00:01:13 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\uTorrent [2011-07-10 20:20:01 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\XnView [2011-07-17 17:00:41 | 000,000,470 | ---- | M] () -- C:\Windows\Tasks\AWC AutoCare.job [2011-07-18 15:02:51 | 000,000,464 | ---- | M] () -- C:\Windows\Tasks\AWC AutoSweep.job [2011-07-18 15:02:23 | 000,000,458 | ---- | M] () -- C:\Windows\Tasks\AWC Startup.job [2009-07-14 06:53:46 | 000,019,056 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report >