OTL logfile created on: 2011-07-23 22:53:14 - Run 1 OTL by OldTimer - Version 3.2.26.1 Folder = I:\baciar Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 895,23 Mb Total Physical Memory | 501,60 Mb Available Physical Memory | 56,03% Memory free 2,12 Gb Paging File | 1,80 Gb Available in Paging File | 85,02% Paging File free Paging file location(s): C:\pagefile.sys 1344 2688 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 14,65 Gb Total Space | 2,57 Gb Free Space | 17,56% Space Free | Partition Type: NTFS Drive D: | 29,29 Gb Total Space | 0,50 Gb Free Space | 1,71% Space Free | Partition Type: NTFS Drive E: | 30,58 Gb Total Space | 0,48 Gb Free Space | 1,57% Space Free | Partition Type: NTFS Drive I: | 961,73 Mb Total Space | 64,94 Mb Free Space | 6,75% Space Free | Partition Type: FAT Computer Name: FIRMA-A509C777E | User Name: Serwer | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-23 22:33:36 | 000,579,584 | ---- | M] (OldTimer Tools) -- I:\baciar\OTL.exe PRC - [2010-11-30 18:25:24 | 018,635,264 | ---- | M] (Redefine Sp z o.o.) -- C:\Program Files\ipla\ipla.exe PRC - [2010-01-28 15:19:26 | 003,404,600 | ---- | M] (Samsung Electronics Co., Ltd.) -- C:\Program Files\Samsung\Kies\KiesTrayAgent.exe PRC - [2009-12-22 04:31:26 | 000,217,088 | ---- | M] (Teruten) -- C:\WINDOWS\system32\FsUsbExService.Exe PRC - [2009-12-22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) -- C:\WINDOWS\system32\dgdersvc.exe PRC - [2009-06-04 23:56:22 | 000,869,888 | ---- | M] () -- C:\Program Files\ALLPlayer\ALLUpdate.exe PRC - [2009-01-17 16:48:08 | 005,853,672 | ---- | M] (o2.pl Sp. z o.o.) -- C:\Program Files\Tlen.pl\tlen.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-04-17 13:12:28 | 002,113,536 | ---- | M] (Gadu-Gadu S.A.) -- C:\Program Files\Gadu-Gadu\gg.exe PRC - [2007-02-06 16:14:00 | 000,561,213 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe PRC - [2007-02-06 16:11:50 | 001,409,108 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe PRC - [2006-03-04 18:40:30 | 000,882,176 | ---- | M] () -- C:\Program Files\Kalendarz XP\Kalendarz.exe PRC - [2005-05-07 02:47:08 | 002,224,128 | ---- | M] (www.BitLord.com) -- C:\Program Files\BitLord\BitLord.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-23 22:33:36 | 000,579,584 | ---- | M] (OldTimer Tools) -- I:\baciar\OTL.exe MOD - [2008-04-14 22:29:10 | 001,054,208 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2007-02-06 16:19:44 | 000,077,824 | ---- | M] (Broadcom Corporation.) -- C:\WINDOWS\system32\BtMmHook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [Auto | Stopped] -- -- (famxkotm) SRV - File not found [Auto | Stopped] -- -- (CreateProcess) SRV - [2010-08-03 00:11:31 | 003,732,680 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\WINDOWS\System32\GameMon.des -- (npggsvc) SRV - [2009-12-22 04:31:26 | 000,217,088 | ---- | M] (Teruten) [Auto | Running] -- C:\WINDOWS\system32\FsUsbExService.Exe -- (FsUsbExService) SRV - [2009-12-22 04:31:02 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto | Running] -- C:\WINDOWS\system32\dgdersvc.exe -- (dgdersvc) SRV - [2008-11-11 10:38:06 | 000,620,544 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-05-06 22:49:28 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-05-06 22:49:28 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-02-23 02:58:46 | 001,391,104 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\BCMWL5.SYS -- (BCM43XX) DRV - [2009-12-22 04:31:26 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\FsUsbExDisk.Sys -- (FsUsbExDisk) DRV - [2009-12-22 04:31:02 | 000,018,136 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dgderdrv.sys -- (dgderdrv) DRV - [2009-09-19 07:30:10 | 000,123,648 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdm.sys -- (ss_bmdm) DRV - [2009-09-19 07:30:10 | 000,100,224 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bserd.sys -- (ss_bserd) DRV - [2009-09-19 07:30:10 | 000,098,432 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bbus.sys -- (ss_bbus) SAMSUNG USB Mobile Device (WDM) DRV - [2009-09-19 07:30:10 | 000,014,848 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bmdfl.sys -- (ss_bmdfl) SAMSUNG USB Mobile Modem (Filter) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2007-08-15 12:06:00 | 000,023,217 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- D:\Lineage II\system\npkcrypt.sys -- (npkcrypt) DRV - [2007-02-14 15:21:00 | 000,067,960 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwusb.sys -- (BTWUSB) DRV - [2007-02-14 15:20:58 | 000,868,298 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btkrnl.sys -- (BTKRNL) DRV - [2007-02-14 15:20:58 | 000,149,123 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btwdndis.sys -- (BTWDNDIS) DRV - [2007-02-14 15:20:58 | 000,030,459 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btport.sys -- (BTDriver) DRV - [2007-02-14 15:20:56 | 000,530,861 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\btaudio.sys -- (btaudio) DRV - [2007-02-02 17:03:26 | 001,975,296 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2007-01-02 16:01:40 | 001,160,320 | R--- | M] (Agere Systems) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AGRSM.sys -- (AgereSoftModem) DRV - [2006-12-15 15:44:42 | 000,160,256 | R--- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\b57xp32.sys -- (b57w2k) DRV - [2006-10-19 02:23:00 | 000,033,024 | R--- | M] (Hewlett Packard) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HP24X.sys -- (HP24X) DRV - [2006-07-02 00:32:26 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fmz.qiwa.com IE - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: support@predictad.com:1.11 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll () FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60129.0\npctrl.dll ( Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\support@predictad.com: C:\Program Files\AutocompletePro\support@predictad.com [2010-04-29 23:45:14 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-07-03 12:17:26 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 3.6.18\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-06-23 23:42:47 | 000,000,000 | ---D | M] [2010-02-23 03:03:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Serwer\Dane aplikacji\Mozilla\Extensions [2010-02-23 03:03:04 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Serwer\Dane aplikacji\Mozilla\Firefox\Profiles\06u2l0um.default\extensions [2011-07-19 09:58:34 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-10-20 16:03:50 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} [2010-11-04 19:27:26 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2010-04-29 23:45:14 | 000,000,000 | ---D | M] ("AutocompletePro - Your handy search suggestions tool") -- C:\PROGRAM FILES\AUTOCOMPLETEPRO\SUPPORT@PREDICTAD.COM [2010-10-20 16:03:03 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2010-09-15 05:50:38 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll [2011-06-23 23:42:40 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011-06-23 23:42:40 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011-06-23 23:42:40 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011-06-23 23:42:40 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011-06-23 23:42:40 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011-06-23 23:42:40 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-04-30 23:44:47 | 000,001,109 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: O1 - Hosts: O1 - Hosts: O1 - Hosts: O1 - Hosts: Nie znaleziono obiektu! O1 - Hosts: O1 - Hosts: O1 - Hosts: O1 - Hosts: O1 - Hosts:

Nie znaleziono obiektu!

O1 - Hosts:

O1 - Hosts: Nie znaleziono ż±danego URLa na tym serwerze. O1 - Hosts: O1 - Hosts: Je¶li wpisałe¶ URLa ręcznie, sprawdĽ, czy nie się nie pomyliłe¶. O1 - Hosts: O1 - Hosts:

O1 - Hosts:

O1 - Hosts: Je¶li my¶lisz, że jest to bł±d tego serwera, skontaktuj się z O1 - Hosts: administratorem. O1 - Hosts: 13 more lines... O2 - BHO: (AC-Pro) - {0FB6A909-6086-458F-BD92-1F8EE10042A0} - C:\Program Files\AutocompletePro\AutocompletePro.dll (SimplyGen) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - File not found O4 - HKLM..\Run: [Bron-Spizaetus] File not found O4 - HKLM..\Run: [mhlclyg] File not found O4 - HKLM..\Run: [nhbivui] File not found O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [] File not found O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [ALLUpdate] C:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [BitComet] C:\Program Files\BitLord\BitLord.exe (www.BitLord.com) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [EXPLORER.EXE] C:\WINDOWS\explorer.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [Gadu-Gadu] C:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [Gadu-Gadu 10] D:\pssss\Gadu-Gadu 10\gg.exe (GG Network S.A.) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [IPLA!] C:\Program Files\ipla\ipla.exe (Redefine Sp z o.o.) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [KiesTrayAgent] C:\Program Files\Samsung\Kies\/\KiesTrayAgent.exe () O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [Komunikator] C:\Program Files\Tlen.pl\tlen.exe (o2.pl Sp. z o.o.) O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe () O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [Tok-Cirrhatus] File not found O4 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003..\Run: [wsctf.exe] File not found O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] File not found O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\BTTray.lnk = C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe () O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFolderOptions = 1 O7 - HKU\S-1-5-21-1123561945-2000478354-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.) O8 - Extra context menu item: Nach Microsoft E&xel exportieren - D:\office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyślij do urządzenia &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm () O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\office\Office12\REFIEBAR.DLL (Microsoft Corporation) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - ("C:\WINDOWS\eksplorasi.exe") - File not found O20 - HKLM Winlogon: UserInit - (EXPLORER.EXE) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 () - http://a2.sphotos.ak.fbcdn.net/hphotos-ak-snc6/199793_200357123329606_100000659584275_584919_5768731_n.jpg O24 - Desktop Components:1 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Serwer\Dane aplikacji\Mozilla\Firefox\Tapeta pulpitu.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Serwer\Dane aplikacji\Mozilla\Firefox\Tapeta pulpitu.bmp O27 - HKLM IFEO\360rpt.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\360Safe.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\360tray.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\adam.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\AgentSvr.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\AppSvc32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\ArSwp.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\AST.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\autoruns.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\AvastU3.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\avconsol.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\avgrssvc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\AvMonitor.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\avp.com: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\avp.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\CCenter.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\ccSvcHst.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\EGHOST.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\FileDsty.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\FTCleanerShell.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\FYFireWall.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\ghost.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\HijackThis.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\IceSword.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\iparmo.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Iparmor.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\irsetup.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\isPwdSvc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\kabaload.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KaScrScn.SCR: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KASMain.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KASTask.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAV32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAVDX.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAVPF.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAVPFW.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAVSetup.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KAVStart.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KISLnchr.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KMailMon.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KMFilter.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KPFW32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KPFW32X.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KPfwSvc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KRegEx.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KRepair.com: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KsLoader.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVCenter.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KvDetect.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KvfwMcl.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVMonXP.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVMonXP_1.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\kvol.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\kvolself.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KvReport.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVScan.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVSrvXP.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KVStub.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\kvupload.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\kvwsc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KvXP.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KvXP_1.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KWatch.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KWatch9x.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\KWatchX.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\loaddll.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\MagicSet.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\mcconsol.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\mmqczj.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\mmsk.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Navapsvc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Navapw32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\nod32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\nod32krn.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\nod32kui.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\NPFMntor.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\PFW.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\PFWLiveUpdate.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\QHSET.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\QQDoctor.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\QQKav.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\QQSC.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Ras.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Rav.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RavMon.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RavMonD.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RavStub.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RavTask.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RegClean.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\rfwcfg.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\rfwmain.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\rfwsrv.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\RsAgent.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Rsaupd.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\rstrui.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\runiep.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\safelive.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\scan32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\shcfg32.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\SmartUp.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\SREng.EXE: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\symlcsvc.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\SysSafe.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\TrojanDetector.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\Trojanwall.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\TrojDie.kxp: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UIHost.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UmxAgent.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UmxAttachment.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UmxCfg.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UmxFwHlp.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UmxPol.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\upiea.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\UpLive.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\USBCleaner.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\vsstat.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\webscanx.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\WoptiClean.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O27 - HKLM IFEO\zjb.exe: Debugger - C:\Program Files\Common Files\Microsoft Shared\xnxlufi.exe File not found O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-07-23 18:27:48 | 000,000,007 | -HS- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2011-07-23 19:57:29 | 000,000,068 | RHS- | M] () - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-07-23 20:21:08 | 000,000,068 | RHS- | M] () - E:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2011-06-24 16:25:26 | 000,000,000 | ---D | M] - I:\Autoruns -- [ FAT ] O32 - AutoRun File - [2010-08-26 23:16:12 | 000,000,016 | -H-- | M] () - I:\AUTORUN.INF -- [ FAT ] O33 - MountPoints2\{1cbddaca-d51e-11df-adb3-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{1cbddaca-d51e-11df-adb3-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{3da35f4a-53d8-11df-acf4-001a737ba174}\Shell\AutoRun\command - "" = H:\nhbivui.exe O33 - MountPoints2\{3da35f4a-53d8-11df-acf4-001a737ba174}\Shell\explore\Command - "" = H:\nhbivui.exe O33 - MountPoints2\{3da35f4a-53d8-11df-acf4-001a737ba174}\Shell\open\Command - "" = H:\nhbivui.exe O33 - MountPoints2\{6e0dd7f0-2613-11e0-aeb1-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{6e0dd7f0-2613-11e0-aeb1-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{6e0dd7f1-2613-11e0-aeb1-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{6e0dd7f1-2613-11e0-aeb1-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{7876cd26-28af-11df-ac82-001a4b625e5f}\Shell - "" = AutoRun O33 - MountPoints2\{7876cd26-28af-11df-ac82-001a4b625e5f}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{a2382a52-eda9-11df-ae11-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{a2382a52-eda9-11df-ae11-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{a2382a53-eda9-11df-ae11-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{a2382a53-eda9-11df-ae11-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{ab429695-415c-11df-acc8-001a4b625e5f}\Shell\AutoRun\command - "" = G:\nhbivui.exe O33 - MountPoints2\{ab429695-415c-11df-acc8-001a4b625e5f}\Shell\explore\Command - "" = G:\nhbivui.exe O33 - MountPoints2\{ab429695-415c-11df-acc8-001a4b625e5f}\Shell\open\Command - "" = G:\nhbivui.exe O33 - MountPoints2\{b2149db1-48de-11e0-af06-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{b2149db1-48de-11e0-af06-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{bef5e75c-a332-11e0-b008-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{bef5e75c-a332-11e0-b008-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{c9514b3c-a7d8-11e0-b011-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{c9514b3c-a7d8-11e0-b011-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{e330d130-f653-11df-ae2b-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{e330d130-f653-11df-ae2b-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{ebae999d-200d-11df-8246-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{ebae999d-200d-11df-8246-806d6172696f}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exeopen=(&O) O33 - MountPoints2\{ebae99a0-200d-11df-8246-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{ebae99a0-200d-11df-8246-806d6172696f}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exeopen=(&O) O33 - MountPoints2\{fa0b5273-4aec-11df-acdc-001a4b625e5f}\Shell\AutoRun\command - "" = I:\EXPLORER.EXE O33 - MountPoints2\{fa0b5273-4aec-11df-acdc-001a4b625e5f}\Shell\explore\Command - "" = I:\ -- [2011-07-23 22:45:46 | 000,000,000 | ---D | M] O33 - MountPoints2\{fa0b5273-4aec-11df-acdc-001a4b625e5f}\Shell\open\Command - "" = I:\ -- [2011-07-23 22:45:46 | 000,000,000 | ---D | M] O33 - MountPoints2\{ff8424b0-ffe8-11df-ae44-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{ff8424b0-ffe8-11df-ae44-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O33 - MountPoints2\{ff8424b1-ffe8-11df-ae44-001a6bbc3c7a}\Shell - "" = AutoRun O33 - MountPoints2\{ff8424b1-ffe8-11df-ae44-001a6bbc3c7a}\Shell\AutoRun\command - "" = C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL explore.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-07-23 22:51:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Pulpit\Autoruns [2011-07-23 22:22:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss [2011-07-23 21:57:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Ustawienia lokalne\Dane aplikacji\GHISLER [2011-07-23 21:57:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Dane aplikacji\GHISLER [2011-07-05 12:37:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Pulpit\Cela projekty [2011-06-30 12:19:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Pulpit\sukienki [2011-06-27 11:12:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Serwer\Pulpit\na iPod'a [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-07-23 22:49:20 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-07-23 18:50:29 | 000,000,017 | ---- | M] () -- C:\WINDOWS\System\win32out.dll [2011-07-23 18:50:29 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System\win32in.dll [2011-07-23 18:27:48 | 000,000,007 | -HS- | M] () -- C:\AUTOEXEC.BAT [2011-07-20 12:52:55 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-07-19 22:32:14 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat [2011-07-13 00:14:53 | 000,022,528 | -H-- | M] () -- C:\Documents and Settings\Serwer\Pulpit\photothumb.db [2011-07-05 17:59:58 | 000,003,648 | ---- | M] () -- C:\Documents and Settings\Serwer\Moje dokumenty\image.gif [2011-07-05 16:26:41 | 000,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\iTunes.lnk [2011-06-30 20:59:01 | 000,040,960 | ---- | M] () -- C:\Documents and Settings\Serwer\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-06-27 21:35:44 | 000,916,345 | ---- | M] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51(2).gif [2011-06-27 21:23:44 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51(1).gif [2011-06-27 21:23:07 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51.gif [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-07-05 17:59:57 | 000,003,648 | ---- | C] () -- C:\Documents and Settings\Serwer\Moje dokumenty\image.gif [2011-06-27 21:35:21 | 000,916,345 | ---- | C] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51(2).gif [2011-06-27 21:23:44 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51(1).gif [2011-06-27 21:23:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Serwer\Moje dokumenty\595f79f76b811416e0429c2933732e51.gif [2011-04-05 20:55:50 | 000,327,743 | ---- | C] () -- C:\WINDOWS\System32\drivers\str.sys [2011-02-09 18:22:59 | 000,110,592 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDevice.Dll [2011-02-09 18:22:59 | 000,036,640 | ---- | C] () -- C:\WINDOWS\System32\FsUsbExDisk.Sys [2011-02-09 18:22:47 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Serwer\Dane aplikacji\$_hpcst$.hpc [2011-02-09 18:12:46 | 001,458,440 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2011-01-26 17:49:36 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2010-12-24 16:42:16 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat [2010-12-03 21:18:28 | 000,129,024 | ---- | C] () -- C:\Program Files\UNWISE.EXE [2010-10-24 15:20:02 | 001,970,176 | ---- | C] () -- C:\WINDOWS\System32\d3dx9.dll [2010-10-22 19:38:33 | 002,392,064 | ---- | C] () -- C:\WINDOWS\System32\videotrans.dll [2010-10-22 19:38:33 | 000,215,040 | ---- | C] () -- C:\WINDOWS\System32\videoformat.dll [2010-10-22 19:38:33 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\imgscaler.dll [2010-10-22 19:38:33 | 000,022,016 | ---- | C] () -- C:\WINDOWS\System32\img_utils.dll [2010-10-22 19:38:33 | 000,017,920 | ---- | C] () -- C:\WINDOWS\System32\videocore.dll [2010-10-22 19:38:30 | 000,128,512 | ---- | C] () -- C:\WINDOWS\System32\xvid.dll [2010-10-20 16:39:33 | 006,814,952 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall.exe [2010-10-20 16:39:33 | 000,017,766 | ---- | C] () -- C:\WINDOWS\System32\SpoonUninstall-dBpoweramp Music Converter.dat [2010-09-26 21:54:35 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-05-12 17:26:19 | 000,137,729 | ---- | C] () -- C:\WINDOWS\System32\explorxp.exe [2010-05-12 17:26:19 | 000,001,409 | ---- | C] () -- C:\WINDOWS\System32\settings.dll [2010-05-07 12:37:16 | 000,000,525 | ---- | C] () -- C:\WINDOWS\QIII.INI [2010-05-06 22:49:28 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys [2010-05-06 22:49:28 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-17 13:52:16 | 000,484,352 | ---- | C] () -- C:\WINDOWS\System32\lame_enc.dll [2010-03-28 19:22:33 | 000,040,960 | ---- | C] () -- C:\Documents and Settings\Serwer\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-03-07 16:28:51 | 000,000,112 | ---- | C] () -- C:\WINDOWS\ActiveSkin.INI [2010-02-24 15:33:21 | 000,217,088 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2010-02-23 03:03:00 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-02-23 02:30:56 | 003,107,788 | R--- | C] () -- C:\WINDOWS\System32\ativvaxx.dat [2010-02-23 02:30:56 | 000,128,813 | R--- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2010-02-23 02:20:26 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2010-02-23 02:18:54 | 000,150,792 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-02-23 01:45:00 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-02-23 01:26:26 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2009-11-09 04:08:10 | 000,974,848 | ---- | C] () -- C:\WINDOWS\System32\cis-2.4.dll [2009-11-09 04:08:10 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\issacapi_bs-2.3.dll [2009-11-09 04:08:10 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\issacapi_pe-2.3.dll [2009-11-09 04:08:10 | 000,057,344 | ---- | C] () -- C:\WINDOWS\System32\issacapi_se-2.3.dll [2008-04-14 23:16:20 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2007-02-06 16:20:00 | 002,842,624 | ---- | C] () -- C:\WINDOWS\System32\btwicons.dll [2007-02-06 15:55:52 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\btprn2k.dll [2006-12-31 07:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2006-10-12 17:35:56 | 000,069,632 | ---- | C] () -- C:\WINDOWS\System32\Instx64.exe [2001-11-14 13:56:00 | 001,802,240 | ---- | C] () -- C:\WINDOWS\System32\lcppn21.dll [2001-10-26 18:15:16 | 000,490,866 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2001-10-26 18:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2001-10-26 18:15:16 | 000,084,078 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2001-10-26 18:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2001-08-23 15:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2001-08-23 15:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2001-08-17 23:30:24 | 000,432,690 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2001-08-17 23:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2001-08-17 23:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2001-08-17 23:30:22 | 000,067,646 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2001-08-17 23:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2001-07-22 00:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2001-07-22 00:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2001-07-22 00:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [color=#E56717]========== LOP Check ==========[/color] [2010-04-24 12:36:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-12 17:26:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-12-20 20:36:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2011-07-11 11:56:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2011-02-09 18:28:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011-02-09 18:23:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Samsung [2010-05-06 22:49:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tages [2011-06-11 11:12:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2010-04-15 21:46:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [2010-03-08 22:10:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Cool Record Edit Pro [2010-05-06 22:32:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\DAEMON Tools Lite [2010-10-23 12:15:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\dBpoweramp [2010-11-08 17:18:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\DeepBurner [2010-04-15 21:29:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\FMZilla [2010-03-08 22:10:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Free Sound Recorder [2010-04-17 13:52:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\FreeAudioPack [2010-02-23 03:02:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Gadu-Gadu [2010-05-12 18:27:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Gadu-Gadu 10 [2011-07-23 21:57:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\GHISLER [2011-07-23 22:49:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\ipla [2011-02-21 19:04:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\OpenFM [2011-02-09 18:28:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\PC Suite [2011-01-31 22:06:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\PhotoScape [2011-05-14 13:10:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\RDRM [2011-02-09 18:18:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Samsung [2011-06-11 11:13:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\Tlen.pl [2011-03-10 16:04:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Serwer\Dane aplikacji\TS3Client [color=#E56717]========== Purity Check ==========[/color] < End of report >