OTL logfile created on: 7/26/2011 5:04:21 PM - Run OTLPE by OldTimer - Version 3.1.46.0 Folder = X:\Programs\OTLPE 64bit-Windows 7 Home Premium Service Pack 1 (Version = 6.1.7601) - Type = System Internet Explorer (Version = 9.0.8112.16421) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 89.00% Memory free 3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free Paging file location(s): C:\pagefile.sys 288 2048 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 160.78 Gb Total Space | 31.14 Gb Free Space | 19.37% Space Free | Partition Type: NTFS Drive D: | 967.89 Mb Total Space | 560.98 Mb Free Space | 57.96% Space Free | Partition Type: FAT32 Drive E: | 101.97 Mb Total Space | 77.90 Mb Free Space | 76.39% Space Free | Partition Type: NTFS Drive X: | 436.59 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet001 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2011/07/07 12:27:20 | 002,528,096 | ---- | M] (COMODO) [Auto] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdagent) SRV:[b]64bit:[/b] - [2009/07/13 21:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2007/11/07 04:11:22 | 004,466,688 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe -- (msvsmon90) SRV - [2011/07/10 11:20:46 | 000,413,696 | ---- | M] (Uwe Sieber - www.uwe-sieber.de) [On_Demand] -- C:\USBDLM\USBDLM.exe -- (USBDLM) SRV - [2011/06/06 06:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2011/06/01 08:44:54 | 002,337,144 | ---- | M] (TeamViewer GmbH) [On_Demand] -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe -- (TeamViewer6) SRV - [2011/03/25 02:51:44 | 000,353,288 | ---- | M] (G Data Software AG) [On_Demand] -- C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe -- (GDScan) SRV - [2011/03/25 02:51:14 | 000,409,096 | ---- | M] (G Data Software AG) [Auto] -- C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe -- (AVKService) SRV - [2011/03/25 02:51:10 | 001,422,856 | ---- | M] (G Data Software AG) [Auto] -- C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe -- (AVKProxy) SRV - [2011/03/24 21:26:16 | 001,923,800 | ---- | M] (G Data Software AG) [Auto] -- C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlX64.exe -- (AVKWCtl) SRV - [2010/12/08 09:31:06 | 000,628,736 | ---- | M] (Nokia) [On_Demand] -- C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2010/10/28 08:02:14 | 000,524,248 | ---- | M] () [Auto] -- C:\Program Files (x86)\Zentimo\ZentimoService.exe -- (ZentimoService) SRV - [2010/03/18 08:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2009/06/10 17:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009/03/05 23:23:18 | 000,047,104 | ---- | M] (Atheros Communications) [On_Demand] -- C:\Program Files (x86)\Atheros\AWiCSrvc.exe -- (AWiCSrvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2011/07/07 12:49:40 | 000,254,528 | ---- | M] (DT Soft Ltd) [Kernel | System] -- C:\Windows\System32\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV:[b]64bit:[/b] - [2011/07/07 12:33:50 | 000,016,016 | ---- | M] (COMODO) [File_System | System] -- C:\Windows\System32\drivers\cmderd.sys -- (cmderd) DRV:[b]64bit:[/b] - [2011/07/07 10:03:58 | 000,106,488 | ---- | M] (G Data Software) [Kernel | System] -- C:\Windows\System32\drivers\GRD.sys -- (GRD) DRV:[b]64bit:[/b] - [2011/07/07 08:10:07 | 000,058,584 | ---- | M] (G Data Software AG) [Kernel | On_Demand] -- C:\Windows\System32\drivers\PktIcpt.sys -- (GDPkIcpt) DRV:[b]64bit:[/b] - [2011/07/07 08:08:50 | 000,050,904 | ---- | M] (G Data Software AG) [Kernel | System] -- C:\Windows\System32\drivers\HookCentre.sys -- (HookCentre) DRV:[b]64bit:[/b] - [2011/07/07 08:08:47 | 000,102,616 | ---- | M] (G Data Software AG) [Kernel | System] -- C:\Windows\System32\drivers\MiniIcpt.sys -- (GDMnIcpt) DRV:[b]64bit:[/b] - [2011/07/07 08:08:44 | 000,046,296 | ---- | M] (G Data Software AG) [Kernel | Boot] -- C:\Windows\System32\drivers\GDBehave.sys -- (GDBehave) DRV:[b]64bit:[/b] - [2011/07/07 08:08:38 | 000,063,704 | ---- | M] (G Data Software AG) [Kernel | System] -- C:\Windows\System32\drivers\gdwfpcd64.sys -- (gdwfpcd) DRV:[b]64bit:[/b] - [2011/07/07 08:08:38 | 000,031,448 | ---- | M] (G Data Software AG) [Kernel | On_Demand] -- C:\Windows\System32\drivers\GdNetMon64.sys -- (GdNetMon) DRV:[b]64bit:[/b] - [2011/04/22 08:17:29 | 000,526,392 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2011/02/27 07:39:20 | 000,230,352 | ---- | M] (TrueCrypt Foundation) [Kernel | System] -- C:\Windows\System32\drivers\truecrypt.sys -- (truecrypt) DRV:[b]64bit:[/b] - [2011/01/31 08:30:38 | 000,027,288 | ---- | M] (Ekahau Inc.) [Kernel | Auto] -- C:\Windows\System32\drivers\ekaprot6.sys -- (EkaProt6) DRV:[b]64bit:[/b] - [2010/12/24 05:43:40 | 000,029,288 | ---- | M] (Wondershare) [Kernel | On_Demand] -- C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys -- (Apowersoft_AudioDevice) DRV:[b]64bit:[/b] - [2010/11/20 09:34:04 | 000,360,832 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\Windows\System32\drivers\vpcvmm.sys -- (vpcvmm) DRV:[b]64bit:[/b] - [2010/11/20 09:34:04 | 000,194,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\vpchbus.sys -- (vpcbus) DRV:[b]64bit:[/b] - [2010/11/20 07:35:34 | 000,095,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\vpcusb.sys -- (vpcusb) DRV:[b]64bit:[/b] - [2010/11/20 07:35:26 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\vpcuxd.sys -- (vpcuxd) DRV:[b]64bit:[/b] - [2010/11/20 07:35:22 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | System] -- C:\Windows\System32\drivers\vpcnfltr.sys -- (vpcnfltr) DRV:[b]64bit:[/b] - [2010/11/19 22:07:06 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:[b]64bit:[/b] - [2010/11/13 03:20:00 | 002,647,552 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\athrx.sys -- (athr) DRV:[b]64bit:[/b] - [2010/09/22 19:36:48 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\fssfltr.sys -- (fssfltr) DRV:[b]64bit:[/b] - [2010/08/25 13:36:04 | 010,611,552 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\igdkmd64.sys -- (igfx) DRV:[b]64bit:[/b] - [2010/07/13 06:57:16 | 000,037,392 | ---- | M] (Paragon Software Group) [Kernel | Boot] -- C:\Windows\System32\drivers\hotcore3.sys -- (hotcore3) DRV:[b]64bit:[/b] - [2010/07/01 13:11:24 | 000,012,352 | ---- | M] () [Kernel | "Start" not found.] -- C:\Program Files\Unlocker\UnlockerDriver5.sys -- (UnlockerDriver5) DRV:[b]64bit:[/b] - [2010/06/25 13:07:26 | 000,035,344 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto] -- C:\Windows\System32\drivers\npf.sys -- (NPF) DRV:[b]64bit:[/b] - [2010/02/25 11:51:02 | 000,029,696 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901) DRV:[b]64bit:[/b] - [2009/09/02 04:58:08 | 000,225,280 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV:[b]64bit:[/b] - [2009/08/13 03:38:24 | 000,029,184 | ---- | M] (CSR, plc) [Kernel | On_Demand] -- C:\Windows\System32\drivers\BthAvrcp.sys -- (BthAvrcp) DRV:[b]64bit:[/b] - [2009/07/27 10:04:38 | 000,058,880 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\L1C62x64.sys -- (L1C) NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20) DRV:[b]64bit:[/b] - [2009/06/10 16:38:56 | 000,000,308 | ---- | M] () [File_System | On_Demand] -- C:\Windows\System32\wbem\ntfs.mof -- (Ntfs) DRV:[b]64bit:[/b] - [2009/06/10 16:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\system32\DRIVERS\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009/06/10 16:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\system32\DRIVERS\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009/06/10 16:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand] -- C:\Windows\System32\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2008/08/28 06:44:42 | 000,025,600 | ---- | M] (Nokia) [Kernel | On_Demand] -- C:\Windows\System32\drivers\pccsmcfdx64.sys -- (pccsmcfd) DRV:[b]64bit:[/b] - [2007/02/07 10:51:18 | 000,169,496 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand] -- C:\Windows\System32\drivers\adiusbawx64.sys -- (adiusbaw) DRV:[b]64bit:[/b] - [2007/02/07 10:50:58 | 000,058,264 | ---- | M] (Analog Deivces) [Kernel | Auto] -- C:\Windows\System32\drivers\adildrx64.sys -- (ELOADER) General Purpose USB Driver (adildrx64.sys) DRV - [2011/07/06 14:24:46 | 000,106,224 | ---- | M] (G Data Software) [Kernel | System] -- C:\Windows\SysWOW64\drivers\GRD.sys -- (GRD) DRV - [2011/07/02 03:00:26 | 000,276,184 | ---- | M] (Zemana Ltd.) [Kernel | System] -- C:\Program Files (x86)\AntiLogger\AntiLog64.sys -- (AntiLog32) DRV - [2009/09/02 04:58:08 | 000,225,280 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\Windows\SysWOW64\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV - [2007/02/07 10:51:18 | 000,169,496 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand] -- C:\Windows\SysWOW64\drivers\adiusbawx64.sys -- (adiusbaw) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Piotrek_ON_C\Software\Microsoft\Internet Explorer\Main,Default Download Directory = C:\Users\Piotrek\Desktop IE - HKU\Piotrek_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\Piotrek_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.openintab: true FF - prefs.js..browser.search.suggest.enabled: false FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://www.google.pl|http://www.pajacyk.pl/zlicz.php|http://www.giveawayoftheday.com" FF - prefs.js..network.proxy.backup.ftp: "204.75.178.26" FF - prefs.js..network.proxy.backup.ftp_port: 443 FF - prefs.js..network.proxy.backup.socks: "204.75.178.26" FF - prefs.js..network.proxy.backup.socks_port: 443 FF - prefs.js..network.proxy.backup.ssl: "204.75.178.26" FF - prefs.js..network.proxy.backup.ssl_port: 443 FF - prefs.js..network.proxy.ftp: "207.179.177.216" FF - prefs.js..network.proxy.ftp_port: 80 FF - prefs.js..network.proxy.http: "207.179.177.216" FF - prefs.js..network.proxy.http_port: 80 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "207.179.177.216" FF - prefs.js..network.proxy.socks_port: 80 FF - prefs.js..network.proxy.ssl: "207.179.177.216" FF - prefs.js..network.proxy.ssl_port: 80 [2011/02/27 14:37:00 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Extensions [2011/07/25 14:14:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions [2011/07/16 12:02:23 | 000,000,000 | ---D | M] (Forecastfox) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3} [2011/06/24 04:02:24 | 000,000,000 | ---D | M] (FireShot) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\{0b457cAA-602d-484a-8fe7-c1d894a011ba} [2011/05/14 20:02:04 | 000,000,000 | ---D | M] (IE Tab 2 (FF 3.6+)) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} [2011/07/09 16:19:43 | 000,000,000 | ---D | M] (WOT) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2011/06/22 13:32:44 | 000,000,000 | ---D | M] (DownloadHelper) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2011/06/16 04:25:17 | 000,000,000 | ---D | M] (Zotero) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\zotero@chnm.gmu.edu [2011/06/21 05:01:23 | 000,000,000 | ---D | M] (Zotero WinWord Integration) -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\extensions\zoteroWinWordIntegration@zotero.org [2011/06/03 17:01:41 | 000,006,205 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\searchplugins\filmwebpl---filmy.xml [2011/06/11 02:51:17 | 000,012,703 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Mozilla\Firefox\Profiles\275b4pd9.default\searchplugins\imdb.xml File not found (No name found) -- [2011/07/07 08:09:06 | 000,000,000 | ---D | M] (G Data WebFilter) -- C:\PROGRAM FILES (X86)\MOZILLA FIREFOX 4.0 BETA 12\EXTENSIONS\{9AA46F4F-4DC7-4C06-97AF-5035170633FE} [2011/06/13 12:27:55 | 000,000,000 | ---D | M] (Java Console) -- C:\PROGRAM FILES (X86)\MOZILLA FIREFOX 4.0 BETA 12\EXTENSIONS\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\{73A6FE31-595D-460B-A920-FCC0F8843232}.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\{DC572301-7619-498C-A57D-39143191B318}.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\{E4A8A97B-F2ED-450B-B12D-EE082BA24781}.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\ADBLOCKPOPUPS@JESSEHAKANEN.NET.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\ANTICONTAINER@DOWNTHEMALL.NET.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\CERTPATROL@PSYC.EU.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\COMPATIBILITY@ADDONS.MOZILLA.ORG.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\ELEMHIDEHELPER@ADBLOCKPLUS.ORG.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\FIREGESTURES@XULDEV.ORG.XPI () (No name found) -- C:\USERS\PIOTREK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\275B4PD9.DEFAULT\EXTENSIONS\TESTPILOT@LABS.MOZILLA.COM.XPI O1 HOSTS File: ([2011/05/10 17:07:50 | 000,000,822 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\WebFilter\AvkWebIEx64.dll (G Data Software AG) O2 - BHO: (Octh Class) - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll (Orbitdownloader.com) O2 - BHO: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\WebFilter\AvkWebIE.dll (G Data Software AG) O2 - BHO: (BHO) - {BA3295CF-17ED-4F49-9E95-D999A0ADBFDC} - C:\Program Files (x86)\Common Files\G Data\AVKProxy\BanksafeBHO.dll (G Data Software AG) O3:[b]64bit:[/b] - HKLM\..\Toolbar: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\WebFilter\AvkWebIEx64.dll (G Data Software AG) O3 - HKLM\..\Toolbar: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\WebFilter\AvkWebIE.dll (G Data Software AG) O4:[b]64bit:[/b] - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4:[b]64bit:[/b] - HKLM..\Run: [PLFSetI] C:\Windows\PLFSetI.exe () O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [WTF] C:\Program Files\K2T\WTW\wtw.exe (K2T.eu, Kaworu) O4 - HKLM..\Run: [AntiLogger] C:\Program Files (x86)\AntiLogger\AntiLogger.exe (Zemana Ltd.) O4 - HKLM..\Run: [G Data AntiVirus Tray Application] C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe (G Data Software AG) O4 - HKU\LocalService_ON_C..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\NetworkService_ON_C..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\Piotrek_ON_C..\Run: [] File not found O4 - HKU\Piotrek_ON_C..\Run: [AntiFreeze] C:\Program Files\AntiFreeze\AntiFreeze.exe (Resplendence Software Projects Sp.) O4 - HKU\Piotrek_ON_C..\Run: [DAEMON Tools Pro Agent] C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe (DT Soft Ltd) O4 - HKU\Piotrek_ON_C..\Run: [Zentimo xStorage Manager] C:\Program Files (x86)\Zentimo\Zentimo.exe () O4 - HKU\LocalService_ON_C..\RunOnce: [mctadmin] File not found O4 - HKU\NetworkService_ON_C..\RunOnce: [mctadmin] File not found O4 - Startup: C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Aura.lnk () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O8:[b]64bit:[/b] - Extra context menu item: &Download by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8:[b]64bit:[/b] - Extra context menu item: &Grab video by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8:[b]64bit:[/b] - Extra context menu item: Do&wnload selected by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8:[b]64bit:[/b] - Extra context menu item: Down&load all by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: &Download by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: &Grab video by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Do&wnload selected by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O8 - Extra context menu item: Down&load all by Orbit - C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll (Orbitdownloader.com) O13:[b]64bit:[/b] - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_intel_4.4.22.0.cab (SysInfo Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.204.152.34 194.204.159.1 O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlpg {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - Reg Error: Key error. File not found O20:[b]64bit:[/b] - AppInit_DLLs: (C:\Windows\system32\guard64.dll) - C:\Windows\System32\guard64.dll (COMODO) O20 - AppInit_DLLs: (C:\Windows\SysWOW64\guard32.dll) - C:\Windows\SysWOW64\guard32.dll (COMODO) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O27:[b]64bit:[/b] - HKLM IFEO\taskmgr.exe: Debugger - C:\Users\Piotrek\ComodoCleaner\KillSwitch.exe (COMODO) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010/07/16 21:58:00 | 000,000,016 | -H-- | M] () - D:\AUTORUN.INF -- [ FAT32 ] O32 - AutoRun File - [2010/10/21 23:31:34 | 000,000,000 | ---D | M] - D:\Autoruns -- [ FAT32 ] O32 - AutoRun File - [2011/06/14 20:35:26 | 002,087,962 | ---- | M] () - D:\AutoRuns_Magdon.arn -- [ FAT32 ] O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O33 - MountPoints2\D\Shell - "" = AutoRun O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\reatogoMenu.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found [b]64bit:[/b] O35 - HKLM\..comfile [open] -- "%1" %* File not found [b]64bit:[/b] O35 - HKLM\..exefile [open] -- "%1" %* File not found O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/07/26 09:06:21 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Desktop\bluescreenview [2011/07/24 17:10:05 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Documents\Rainmeter [2011/07/24 17:10:05 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Rainmeter [2011/07/24 17:09:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter [2011/07/24 17:09:29 | 000,000,000 | ---D | C] -- C:\Program Files\Rainmeter [2011/07/24 17:07:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Engelmann Media [2011/07/24 17:07:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Engelmann Media [2011/07/24 17:07:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Engelmann Media [2011/07/24 17:07:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\HDX4 [2011/07/23 16:57:50 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Documents\GTA Vice City User Files [2011/07/22 18:19:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games [2011/07/22 18:17:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games [2011/07/18 07:22:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [2011/07/18 02:30:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Comodo [2011/07/18 02:29:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Comodo [2011/07/16 17:40:12 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Biorytmy [2011/07/16 17:40:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biorytmy [2011/07/16 17:40:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Biorytmy [2011/07/16 17:39:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Numer2 [2011/07/16 17:39:35 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Numer [2011/07/16 17:20:32 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Biorytmix 4.52 [2011/07/16 17:20:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\biorytmix [2011/07/14 05:59:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0 [2011/07/13 05:52:59 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Documents\Streaming Audio Recorder [2011/07/13 05:49:05 | 000,029,288 | ---- | C] (Wondershare) -- C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [2011/07/13 05:49:05 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Apowersoft [2011/07/13 05:49:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft [2011/07/13 05:48:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apowersoft [2011/07/13 05:32:52 | 000,421,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll [2011/07/13 05:32:51 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll [2011/07/13 05:32:51 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll [2011/07/13 05:32:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll [2011/07/13 05:32:51 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll [2011/07/13 05:32:51 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll [2011/07/13 05:32:51 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll [2011/07/13 05:32:44 | 001,162,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll [2011/07/13 05:32:44 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wow64win.dll [2011/07/13 05:32:44 | 000,338,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe [2011/07/13 05:32:44 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wow64.dll [2011/07/13 05:32:44 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll [2011/07/13 05:32:44 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe [2011/07/13 05:32:44 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntvdm64.dll [2011/07/13 05:32:44 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll [2011/07/13 05:32:44 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wow64cpu.dll [2011/07/13 05:32:44 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe [2011/07/13 05:32:44 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll [2011/07/13 05:32:43 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe [2011/07/12 12:15:06 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Local\MetaGeek,_LLC [2011/07/12 11:33:15 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MetaGeek [2011/07/12 11:33:14 | 000,000,000 | ---D | C] -- C:\Program Files\MetaGeek [2011/07/11 11:53:16 | 000,000,000 | ---D | C] -- C:\USBDLM [2011/07/10 19:59:11 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\Desktop\Kar [2011/07/10 07:35:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\JDownloader [2011/07/09 14:06:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Network Stumbler [2011/07/08 05:35:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiFreeze [2011/07/08 05:35:40 | 000,000,000 | ---D | C] -- C:\Program Files\AntiFreeze [2011/07/07 12:49:40 | 000,254,528 | ---- | C] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys [2011/07/07 10:14:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Comodo Downloader [2011/07/07 10:09:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO [2011/07/07 10:03:58 | 000,106,488 | ---- | C] (G Data Software) -- C:\Windows\System32\drivers\GRD.sys [2011/07/07 08:09:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G Data InternetSecurity 2012 [2011/07/07 08:08:50 | 000,050,904 | ---- | C] (G Data Software AG) -- C:\Windows\System32\drivers\HookCentre.sys [2011/07/07 08:08:38 | 000,031,448 | ---- | C] (G Data Software AG) -- C:\Windows\System32\drivers\GdNetMon64.sys [2011/07/05 15:02:01 | 000,000,000 | -H-D | C] -- C:\ProgramData\{7BD01092-3B6F-4E1D-BFBD-ABDDA8096C67} [2011/07/05 15:01:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiLogger [2011/07/05 04:09:33 | 000,169,496 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbawx64.sys [2011/07/05 04:09:33 | 000,146,968 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbawx64.sys [2011/07/05 04:09:33 | 000,118,552 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\adiusbaw.sys [2011/07/05 04:09:33 | 000,104,344 | ---- | C] (Analog Devices Inc.) -- C:\Windows\SysWow64\drivers\e4usbaw.sys [2011/07/05 04:09:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840 [2011/07/05 04:09:30 | 000,071,832 | ---- | C] (Analog Deivces) -- C:\Windows\System32\drivers\e4ldrx64.sys [2011/07/05 04:09:30 | 000,069,656 | ---- | C] (Analog Deivces) -- C:\Windows\System32\drivers\e4ldr.sys [2011/07/05 04:09:30 | 000,056,088 | ---- | C] (Analog Deivces) -- C:\Windows\System32\drivers\adildr.sys [2011/07/05 04:09:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SAGEM [2011/07/05 04:00:56 | 000,169,496 | ---- | C] (Analog Devices Inc.) -- C:\Windows\System32\drivers\adiusbawx64.sys [2011/07/05 04:00:55 | 000,316,416 | ---- | C] (Analog Devices.) -- C:\Windows\System32\unaddrv.x64.exe [2011/07/05 04:00:55 | 000,212,992 | ---- | C] (Analog Devices.) -- C:\Windows\System32\unaddrv.exe [2011/07/05 04:00:55 | 000,155,648 | ---- | C] (Analog Devices Inc.) -- C:\Windows\System32\adadix32.dll [2011/07/05 04:00:55 | 000,004,981 | ---- | C] (SITECSOFT Co., LTD.) -- C:\Windows\System32\ADADIX2K.DLL [2011/07/05 04:00:42 | 000,058,264 | ---- | C] (Analog Deivces) -- C:\Windows\System32\drivers\adildrx64.sys [2011/07/03 11:47:16 | 000,000,000 | ---D | C] -- C:\Users\Piotrek\AppData\Roaming\Gzegzolka XP [2011/07/03 11:47:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gżegżółka XP [2011/07/03 11:47:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gżegżółka XP [2011/07/02 14:29:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Macrovision [2011/07/02 14:23:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Incomedia WebSite X5 v8 - Evolution [2011/07/02 14:11:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WebSite X5 v8 - Evolution [2011/06/29 08:54:05 | 000,028,672 | ---- | C] (Axis) -- C:\Windows\SysWow64\PCWinSoftPBar.ocx [2011/06/29 08:54:04 | 000,630,784 | ---- | C] (Axis) -- C:\Windows\SysWow64\AxisToolBar.ocx [2011/06/29 08:54:04 | 000,420,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg4c32.dll [2011/06/29 08:54:04 | 000,188,416 | ---- | C] (Unreal Streaming Technologies Group.) -- C:\Windows\SysWow64\UScreenCapture.ax [2011/06/29 08:54:04 | 000,126,976 | ---- | C] (Ariel Systems) -- C:\Windows\SysWow64\ArielColorCtrl.ocx [2011/06/29 08:54:04 | 000,073,728 | ---- | C] (PCWinSoft Systems Ltd) -- C:\Windows\SysWow64\TOverlay.ax [2011/06/29 08:54:04 | 000,053,248 | ---- | C] (DeskShare) -- C:\Windows\SysWow64\DSTimeStamp.ax [2011/06/29 08:54:04 | 000,036,864 | ---- | C] (Axis) -- C:\Windows\SysWow64\Sof2FFTPrj.ocx [2011/06/29 08:54:04 | 000,028,672 | ---- | C] (Axis) -- C:\Windows\SysWow64\SpecBarPrj.ocx [2011/06/29 08:54:03 | 000,438,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MSHFLXGD.OCX [2011/06/29 08:54:03 | 000,264,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MPG4DS32.AX [2011/06/29 08:54:02 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\1AVCapture [2011/06/29 08:34:46 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe [2011/06/29 08:34:46 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll [2011/06/29 08:34:44 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll [2011/06/29 08:34:44 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll [2011/06/29 08:34:43 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll [2011/06/29 08:34:43 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll [2011/06/29 08:34:43 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll [2011/06/29 08:34:43 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll [2011/06/29 08:34:43 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll [2011/06/29 08:34:43 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll [2011/06/29 08:34:43 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SearchProtocolHost.exe [2011/06/29 08:34:43 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SearchFilterHost.exe [2011/06/29 08:34:42 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll [2011/06/29 08:34:42 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssphtb.dll [2011/06/29 08:34:42 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscntrs.dll [2011/06/29 08:34:42 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll [2011/06/29 08:12:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\1AVCapture [2011/06/29 08:12:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\1AVCapture [2011/06/29 08:12:11 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP [2011/06/28 20:37:28 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM [2011/06/28 20:37:28 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2011/06/28 20:36:33 | 002,601,816 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesGUILib.dll [2011/06/28 20:36:33 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSX64.dll [2011/06/28 20:36:33 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSH64.dll [2011/06/28 20:36:33 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW64.dll [2011/06/28 20:36:32 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP64.dll [2011/06/28 20:36:31 | 000,220,512 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFNHK64.dll [2011/06/28 20:36:31 | 000,121,744 | ---- | C] (Sony Corporation) -- C:\Windows\System32\SFSS_APO.dll [2011/06/28 20:36:31 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFCOM64.dll [2011/06/28 20:36:31 | 000,078,176 | ---- | C] (Synopsys, Inc.) -- C:\Windows\System32\SFAPO64.dll [2011/06/28 20:36:31 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll [2011/06/28 20:36:30 | 002,405,992 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtPgEx64.dll [2011/06/28 20:36:30 | 001,560,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTSnMg64.cpl [2011/06/28 20:36:29 | 003,114,088 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkAPO64.dll [2011/06/28 20:36:29 | 001,805,928 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkApi64.dll [2011/06/28 20:36:29 | 001,245,288 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTCOM64.dll [2011/06/28 20:36:29 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEP64A.dll [2011/06/28 20:36:29 | 000,332,392 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtlCPAPI64.dll [2011/06/28 20:36:29 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEED64A.dll [2011/06/28 20:36:29 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCfg64.dll [2011/06/28 20:36:29 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEL64A.dll [2011/06/28 20:36:29 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RTEEG64A.dll [2011/06/28 20:36:28 | 001,483,264 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RCoRes64.dat [2011/06/28 20:36:28 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT64.dll [2011/06/28 20:36:28 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA64.dll [2011/06/28 20:36:28 | 000,092,264 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RCoInst64.dll [2011/06/28 20:36:27 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEP64A.dll [2011/06/28 20:36:27 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EED64A.dll [2011/06/28 20:36:27 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEL64A.dll [2011/06/28 20:36:27 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEA64A.dll [2011/06/28 20:36:27 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\System32\R4EEG64A.dll [2011/06/28 20:36:25 | 002,238,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioRealtek.dll [2011/06/28 20:36:25 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxVolumeSDAPO.dll [2011/06/28 20:36:24 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll [2011/06/28 20:36:23 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO30.dll [2011/06/28 20:36:23 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll [2011/06/28 20:36:21 | 000,603,472 | ---- | C] (Knowles Acoustics ) -- C:\Windows\System32\KAAPORT64.dll [2011/06/28 20:36:05 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\Windows\System32\FMAPO64.dll [2011/06/28 20:36:04 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\System32\DTSVoiceClarityDLL64.dll [2011/06/28 20:36:03 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2SpeakerDLL64.dll [2011/06/28 20:36:03 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\System32\DTSS2HeadphoneDLL64.dll [2011/06/28 20:36:03 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\System32\DTSBoostDLL64.dll [2011/06/28 20:36:03 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\System32\DTSSymmetryDLL64.dll [2011/06/28 20:36:03 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\System32\DTSNeoPCDLL64.dll [2011/06/28 20:36:03 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\System32\DTSLimiterDLL64.dll [2011/06/28 20:36:03 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\System32\DTSGainCompensatorDLL64.dll [2011/06/28 20:36:03 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\System32\DTSLFXAPO64.dll [2011/06/28 20:36:03 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPO64.dll [2011/06/28 20:36:03 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\System32\DTSGFXAPONS64.dll [2011/06/28 20:36:02 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\System32\DTSBassEnhancementDLL64.dll [2011/06/28 20:36:02 | 000,200,800 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTAC64.dll [2011/06/28 20:36:02 | 000,108,960 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTAR64.dll [2011/06/28 20:12:33 | 001,284,712 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll [2011/06/28 20:12:33 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp [2011/06/27 17:14:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AntiLogger [2011/06/26 20:24:35 | 000,000,000 | ---D | C] -- C:\CAT-Logs [2011/03/18 16:43:11 | 000,122,368 | ---- | C] ( ) -- C:\Windows\SysWow64\lagarith.dll [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [1 C:\Users\Piotrek\Documents\*.tmp files -> C:\Users\Piotrek\Documents\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/07/26 09:53:09 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011/07/26 09:53:04 | 000,196,608 | ---- | M] () -- C:\Windows\System32\Ikeext.etl [2011/07/26 09:47:46 | 000,740,812 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011/07/26 09:47:46 | 000,654,576 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011/07/26 09:47:46 | 000,155,408 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011/07/26 09:47:46 | 000,121,448 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011/07/26 09:43:00 | 3166,154,752 | -HS- | M] () -- C:\hiberfil.sys [2011/07/26 09:20:52 | 000,034,112 | ---- | M] () -- C:\Windows\System32\drivers\sfi.dat [2011/07/26 08:43:57 | 000,417,760 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2011/07/26 08:00:45 | 000,001,066 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1029965001-3043183447-4189456055-1001UA.job [2011/07/26 06:14:56 | 000,001,014 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-1029965001-3043183447-4189456055-1001Core.job [2011/07/26 06:13:07 | 000,360,894 | ---- | M] () -- C:\Windows\SysWow64\sig.bin [2011/07/26 06:13:07 | 000,031,317 | ---- | M] () -- C:\Windows\SysWow64\nmp.map [2011/07/25 19:43:39 | 000,007,646 | ---- | M] () -- C:\Users\Piotrek\AppData\Local\Resmon.ResmonCfg [2011/07/24 17:09:32 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter [2011/07/24 17:07:20 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Engelmann Media [2011/07/24 09:33:00 | 002,322,224 | ---- | M] () -- C:\Users\Piotrek\Desktop\Dave Hewson - Growing and Knowing.mp3 [2011/07/22 18:19:22 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games [2011/07/22 15:54:30 | 009,921,038 | ---- | M] () -- C:\Users\Piotrek\Desktop\GTA Vice City Solucja - Poradnik Gry-OnLine.pdf [2011/07/22 10:22:31 | 000,022,976 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011/07/22 10:22:31 | 000,022,976 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011/07/22 05:24:33 | 000,000,168 | ---- | M] () -- C:\Windows\adidsl.ini [2011/07/22 05:24:33 | 000,000,033 | ---- | M] () -- C:\Windows\System32\drivers\adidsl.cfg [2011/07/18 07:22:29 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [2011/07/16 17:40:12 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biorytmy [2011/07/14 11:23:33 | 000,403,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl [2011/07/13 18:23:33 | 001,740,843 | ---- | M] () -- C:\Users\Piotrek\Desktop\Robert Foster - Time Rolls By.mp3 [2011/07/13 17:30:09 | 001,752,546 | ---- | M] () -- C:\Users\Piotrek\Desktop\Bob Foster - Toe Rag.mp3 [2011/07/13 17:22:18 | 002,422,952 | ---- | M] () -- C:\Users\Piotrek\Desktop\Bob Foster - Welcome In.mp3 [2011/07/13 09:04:10 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMODO [2011/07/13 05:49:05 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft [2011/07/10 07:37:37 | 000,001,974 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk [2011/07/10 07:37:37 | 000,001,953 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk [2011/07/10 07:37:37 | 000,001,932 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk [2011/07/09 14:06:08 | 000,001,098 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Network Stumbler.lnk [2011/07/08 05:35:41 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiFreeze [2011/07/07 12:49:40 | 000,254,528 | ---- | M] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys [2011/07/07 12:33:59 | 000,363,560 | ---- | M] (COMODO) -- C:\Windows\System32\guard64.dll [2011/07/07 12:33:55 | 000,285,256 | ---- | M] (COMODO) -- C:\Windows\SysWow64\guard32.dll [2011/07/07 12:33:50 | 000,016,016 | ---- | M] (COMODO) -- C:\Windows\System32\drivers\cmderd.sys [2011/07/07 10:03:58 | 000,106,488 | ---- | M] (G Data Software) -- C:\Windows\System32\drivers\GRD.sys [2011/07/07 08:10:07 | 000,058,584 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\PktIcpt.sys [2011/07/07 08:09:14 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G Data InternetSecurity 2012 [2011/07/07 08:08:50 | 000,050,904 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\HookCentre.sys [2011/07/07 08:08:47 | 000,102,616 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\MiniIcpt.sys [2011/07/07 08:08:44 | 000,046,296 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\GDBehave.sys [2011/07/07 08:08:38 | 000,063,704 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\gdwfpcd64.sys [2011/07/07 08:08:38 | 000,031,448 | ---- | M] (G Data Software AG) -- C:\Windows\System32\drivers\GdNetMon64.sys [2011/07/06 14:24:46 | 000,106,224 | ---- | M] (G Data Software) -- C:\Windows\SysWow64\drivers\GRD.sys [2011/07/05 15:01:59 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AntiLogger [2011/07/05 04:10:31 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SAGEM F@st 800-840 [2011/07/05 04:10:06 | 000,001,100 | ---- | M] () -- C:\Windows\adiras.ini [2011/07/05 04:10:06 | 000,000,021 | ---- | M] () -- C:\Windows\Fast800.ini [2011/07/04 11:49:39 | 003,211,630 | ---- | M] () -- C:\Users\Piotrek\Desktop\Volver_-_Barcelona_Nowo_2011.mp3 [2011/07/03 11:47:10 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gżegżółka XP [2011/07/02 14:23:05 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Incomedia WebSite X5 v8 - Evolution [2011/06/29 16:36:11 | 000,001,109 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk [2011/06/29 16:00:28 | 000,001,191 | ---- | M] () -- C:\Users\Piotrek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Aura.lnk [2011/06/29 08:54:53 | 000,000,000 | ---D | M] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\1AVCapture [2011/06/28 03:59:03 | 000,000,325 | ---- | M] () -- C:\Users\Piotrek\Documents\AntiLogger Activation.url [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [1 C:\Users\Piotrek\Documents\*.tmp files -> C:\Users\Piotrek\Documents\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/07/26 06:41:47 | 004,363,107 | ---- | C] () -- C:\Users\Piotrek\Desktop\LMFAO - Rock Party Anthem.mp3 [2011/07/24 09:33:28 | 002,322,224 | ---- | C] () -- C:\Users\Piotrek\Desktop\Dave Hewson - Growing and Knowing.mp3 [2011/07/22 15:54:33 | 009,921,038 | ---- | C] () -- C:\Users\Piotrek\Desktop\GTA Vice City Solucja - Poradnik Gry-OnLine.pdf [2011/07/13 18:39:50 | 001,752,546 | ---- | C] () -- C:\Users\Piotrek\Desktop\Bob Foster - Toe Rag.mp3 [2011/07/13 18:39:43 | 002,422,952 | ---- | C] () -- C:\Users\Piotrek\Desktop\Bob Foster - Welcome In.mp3 [2011/07/13 18:38:34 | 001,740,843 | ---- | C] () -- C:\Users\Piotrek\Desktop\Robert Foster - Time Rolls By.mp3 [2011/07/10 07:37:37 | 000,001,974 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk [2011/07/10 07:37:37 | 000,001,953 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Uninstaller.lnk [2011/07/10 07:37:37 | 000,001,932 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk [2011/07/09 14:06:08 | 000,001,098 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Network Stumbler.lnk [2011/07/07 16:28:41 | 001,944,904 | ---- | C] () -- C:\Users\Piotrek\Desktop\WAG120N-160Nv2-320N-EMEA_UG_C-WEB.pdf [2011/07/07 14:38:01 | 000,360,894 | ---- | C] () -- C:\Windows\SysWow64\sig.bin [2011/07/07 14:38:01 | 000,031,317 | ---- | C] () -- C:\Windows\SysWow64\nmp.map [2011/07/05 04:10:06 | 000,000,168 | ---- | C] () -- C:\Windows\adidsl.ini [2011/07/05 04:10:06 | 000,000,021 | ---- | C] () -- C:\Windows\Fast800.ini [2011/07/05 04:09:40 | 000,194,128 | ---- | C] () -- C:\Windows\adiras.exe [2011/07/05 04:09:34 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbawx64.cat [2011/07/05 04:09:33 | 000,016,254 | ---- | C] () -- C:\Windows\SysWow64\drivers\adiusbaw.cat [2011/07/05 04:09:33 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbawx64.cat [2011/07/05 04:09:33 | 000,013,981 | ---- | C] () -- C:\Windows\SysWow64\drivers\e4usbaw.cat [2011/07/05 04:09:30 | 000,024,576 | ---- | C] () -- C:\Windows\enddisk32.exe [2011/07/05 04:09:30 | 000,012,403 | ---- | C] () -- C:\Windows\System32\drivers\adildrx64.cat [2011/07/05 04:09:30 | 000,012,403 | ---- | C] () -- C:\Windows\System32\drivers\adildr.cat [2011/07/05 04:09:30 | 000,011,399 | ---- | C] () -- C:\Windows\System32\drivers\e4ldrx64.cat [2011/07/05 04:09:30 | 000,011,399 | ---- | C] () -- C:\Windows\System32\drivers\e4ldr.cat [2011/07/05 04:00:57 | 000,253,008 | ---- | C] () -- C:\Windows\adirasx64.exe [2011/07/05 04:00:57 | 000,001,100 | ---- | C] () -- C:\Windows\adiras.ini [2011/07/05 04:00:55 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P2.BIN [2011/07/05 04:00:55 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P1.BIN [2011/07/05 04:00:55 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9P0.BIN [2011/07/05 04:00:55 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I2.BIN [2011/07/05 04:00:55 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I1.BIN [2011/07/05 04:00:55 | 000,127,456 | ---- | C] () -- C:\Windows\System32\IPDETECT.EXE [2011/07/05 04:00:55 | 000,046,892 | ---- | C] () -- C:\Windows\System32\ADADIX16.DLL [2011/07/05 04:00:54 | 000,261,962 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9p3.bnm [2011/07/05 04:00:54 | 000,261,952 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9p1.bnm [2011/07/05 04:00:54 | 000,261,926 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9p2.bnm [2011/07/05 04:00:54 | 000,152,126 | ---- | C] () -- C:\Windows\System32\drivers\L1E9I0.BIN [2011/07/05 04:00:54 | 000,041,620 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9p4.bnm [2011/07/05 04:00:53 | 000,261,964 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9i1.bnm [2011/07/05 04:00:53 | 000,261,960 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9i0.bnm [2011/07/05 04:00:53 | 000,261,930 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9p0.bnm [2011/07/05 04:00:53 | 000,261,918 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9i2.bnm [2011/07/05 04:00:53 | 000,152,220 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I2.BIN [2011/07/05 04:00:53 | 000,152,220 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I1.BIN [2011/07/05 04:00:53 | 000,152,220 | ---- | C] () -- C:\Windows\System32\drivers\L1E4I0.BIN [2011/07/05 04:00:53 | 000,152,132 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P2.BIN [2011/07/05 04:00:53 | 000,152,132 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P1.BIN [2011/07/05 04:00:53 | 000,152,132 | ---- | C] () -- C:\Windows\System32\drivers\L1E4P0.BIN [2011/07/05 04:00:53 | 000,152,036 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D2.BIN [2011/07/05 04:00:53 | 000,152,034 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D0.BIN [2011/07/05 04:00:53 | 000,081,088 | ---- | C] () -- C:\Windows\System32\drivers\rtbldep4.bnm [2011/07/05 04:00:53 | 000,053,590 | ---- | C] () -- C:\Windows\System32\drivers\rtbld9i4.bnm [2011/07/05 04:00:52 | 000,261,964 | ---- | C] () -- C:\Windows\System32\drivers\rtbldep3.bnm [2011/07/05 04:00:52 | 000,261,960 | ---- | C] () -- C:\Windows\System32\drivers\rtbldep1.bnm [2011/07/05 04:00:52 | 000,261,926 | ---- | C] () -- C:\Windows\System32\drivers\rtbldei1.bnm [2011/07/05 04:00:52 | 000,261,918 | ---- | C] () -- C:\Windows\System32\drivers\RTBLD3p3.BNM [2011/07/05 04:00:52 | 000,261,916 | ---- | C] () -- C:\Windows\System32\drivers\rtbldep0.bnm [2011/07/05 04:00:52 | 000,261,916 | ---- | C] () -- C:\Windows\System32\drivers\rtbldei0.bnm [2011/07/05 04:00:52 | 000,261,914 | ---- | C] () -- C:\Windows\System32\drivers\rtbldei2.bnm [2011/07/05 04:00:52 | 000,261,908 | ---- | C] () -- C:\Windows\System32\drivers\rtbldei3.bnm [2011/07/05 04:00:52 | 000,261,892 | ---- | C] () -- C:\Windows\System32\drivers\rtbldep2.bnm [2011/07/05 04:00:52 | 000,078,040 | ---- | C] () -- C:\Windows\System32\drivers\rtbldei4.bnm [2011/07/05 04:00:52 | 000,055,228 | ---- | C] () -- C:\Windows\System32\drivers\rtbld4.bnm [2011/07/05 04:00:52 | 000,022,288 | ---- | C] () -- C:\Windows\System32\drivers\RTBLD3p4.BNM [2011/07/05 04:00:51 | 000,261,952 | ---- | C] () -- C:\Windows\System32\drivers\rtbld3.bnm [2011/07/05 04:00:51 | 000,261,926 | ---- | C] () -- C:\Windows\System32\drivers\RTBLD3p0.BNM [2011/07/05 04:00:51 | 000,261,918 | ---- | C] () -- C:\Windows\System32\drivers\RTBLD3p1.BNM [2011/07/05 04:00:51 | 000,261,900 | ---- | C] () -- C:\Windows\System32\drivers\RTBLD3p2.BNM [2011/07/05 04:00:50 | 000,261,932 | ---- | C] () -- C:\Windows\System32\drivers\rtbld0.bnm [2011/07/05 04:00:50 | 000,261,920 | ---- | C] () -- C:\Windows\System32\drivers\rtbld2.bnm [2011/07/05 04:00:50 | 000,261,894 | ---- | C] () -- C:\Windows\System32\drivers\rtbld1.bnm [2011/07/05 04:00:50 | 000,152,034 | ---- | C] () -- C:\Windows\System32\drivers\L1E4D1.BIN [2011/07/05 04:00:50 | 000,022,395 | ---- | C] () -- C:\Windows\System32\drivers\fpga.bin [2011/07/05 04:00:50 | 000,000,033 | ---- | C] () -- C:\Windows\System32\drivers\adidsl.cfg [2011/07/04 11:49:36 | 003,211,630 | ---- | C] () -- C:\Users\Piotrek\Desktop\Volver_-_Barcelona_Nowo_2011.mp3 [2011/06/29 08:54:04 | 000,040,960 | ---- | C] () -- C:\Windows\SysWow64\wavdest.ax [2011/06/29 08:54:04 | 000,008,608 | ---- | C] () -- C:\Windows\SysWow64\mpeg4ax.cat [2011/06/29 08:54:04 | 000,008,587 | ---- | C] () -- C:\Windows\SysWow64\msaudio.cat [2011/06/28 20:12:42 | 000,173,292 | ---- | C] () -- C:\Windows\System32\drivers\RTConvEQ.dat [2011/06/28 20:12:42 | 000,001,016 | ---- | C] () -- C:\Windows\System32\drivers\RtHdatEx.dat [2011/06/28 20:12:42 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX2.dat [2011/06/28 20:12:42 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX1.dat [2011/06/28 20:12:42 | 000,000,520 | ---- | C] () -- C:\Windows\System32\drivers\RTEQEX0.dat [2011/06/28 20:12:42 | 000,000,008 | ---- | C] () -- C:\Windows\System32\drivers\rtkhdaud.dat [2011/06/28 03:59:03 | 000,000,325 | ---- | C] () -- C:\Users\Piotrek\Documents\AntiLogger Activation.url [2011/06/05 09:59:24 | 000,000,889 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\isomaster.ini [2011/05/28 17:32:01 | 000,001,189 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\vso_ts_preview.xml [2011/04/25 14:27:14 | 000,000,020 | ---- | C] () -- C:\Windows\mafosav.INI [2011/04/12 07:31:46 | 000,003,584 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011/04/07 17:28:51 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2011/03/27 14:31:34 | 000,000,600 | ---- | C] () -- C:\Users\Piotrek\AppData\Roaming\winscp.rnd [2011/03/18 16:43:16 | 000,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini [2011/03/18 16:43:11 | 002,712,064 | ---- | C] () -- C:\Windows\SysWow64\x264vfw.dll [2011/03/18 16:43:10 | 000,183,808 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2011/03/18 16:43:08 | 000,080,896 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll [2011/03/07 16:55:51 | 000,000,173 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\msmathematics.qat.Piotrek [2011/03/01 15:00:17 | 000,165,376 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [2011/03/01 03:10:42 | 000,020,480 | ---- | C] () -- C:\Windows\USB_VIDEO_REG.exe [2011/03/01 03:10:41 | 000,626,688 | ---- | C] () -- C:\Windows\Image.dll [2011/03/01 03:10:41 | 000,200,704 | ---- | C] () -- C:\Windows\PLFSetI.exe [2011/02/28 14:02:33 | 001,623,786 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2011/02/28 12:31:24 | 000,000,404 | ---- | C] () -- C:\Windows\BRWMARK.INI [2011/02/28 12:31:24 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI [2011/02/28 05:42:21 | 000,007,646 | ---- | C] () -- C:\Users\Piotrek\AppData\Local\Resmon.ResmonCfg [2011/02/27 06:43:09 | 000,252,928 | ---- | C] () -- C:\Windows\SysWow64\DShowRdpFilter.dll [2011/01/21 06:30:06 | 000,311,296 | ---- | C] () -- C:\Windows\SysWow64\EMRegSys.dll [2010/08/25 13:34:30 | 000,982,240 | ---- | C] () -- C:\Windows\SysWow64\igkrng500.bin [2010/08/25 13:34:30 | 000,439,308 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng500.bin [2010/08/25 13:34:30 | 000,092,356 | ---- | C] () -- C:\Windows\SysWow64\igfcg500m.bin [2010/08/25 12:52:00 | 000,208,896 | ---- | C] () -- C:\Windows\SysWow64\iglhsip32.dll [2010/08/25 12:52:00 | 000,143,360 | ---- | C] () -- C:\Windows\SysWow64\iglhcp32.dll [2010/06/25 13:03:12 | 000,053,299 | ---- | C] () -- C:\Windows\SysWow64\pthreadVC.dll [2009/07/14 01:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009/07/13 22:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009/07/13 22:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009/07/13 20:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009/07/13 19:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009/07/13 18:25:04 | 000,197,632 | ---- | C] () -- C:\Windows\SysWow64\ir32_32.dll [2009/07/13 17:59:36 | 000,139,824 | ---- | C] () -- C:\Windows\SysWow64\igfcg500.bin [2009/07/13 17:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009/06/10 17:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2006/02/23 11:37:18 | 000,047,104 | ---- | C] () -- C:\Windows\SysWow64\dsfFLACEncoder.dll [2006/02/23 10:37:06 | 000,047,616 | ---- | C] () -- C:\Windows\SysWow64\dsfVorbisDecoder.dll [2006/02/23 10:36:22 | 000,102,400 | ---- | C] () -- C:\Windows\SysWow64\dsfOggDemux2.dll [2006/02/23 10:35:56 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\dsfOGMDecoder.dll [2006/02/23 10:35:44 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\dsfNativeFLACSource.dll [2006/02/23 10:35:40 | 000,049,664 | ---- | C] () -- C:\Windows\SysWow64\dsfFLACDecoder.dll [2006/02/23 10:34:58 | 000,083,456 | ---- | C] () -- C:\Windows\SysWow64\libFLAC++.dll [2006/02/23 10:34:56 | 000,106,496 | ---- | C] () -- C:\Windows\SysWow64\libFishSound.dll [2006/02/23 10:34:38 | 000,029,696 | ---- | C] () -- C:\Windows\SysWow64\libOOOggSeek.dll [2006/02/23 10:34:26 | 001,108,480 | ---- | C] () -- C:\Windows\SysWow64\vorbis.dll [2006/02/23 10:34:16 | 000,049,152 | ---- | C] () -- C:\Windows\SysWow64\libOOogg.dll [2006/02/23 10:33:54 | 000,140,288 | ---- | C] () -- C:\Windows\SysWow64\libFLAC.dll [2002/09/17 18:45:00 | 000,119,808 | ---- | C] () -- C:\Windows\lsb_un20.exe [color=#E56717]========== LOP Check ==========[/color] [2011/02/27 09:27:43 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\.wtw [2011/03/26 12:45:27 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\AnvSoft [2011/07/13 05:49:05 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Apowersoft [2011/03/30 08:04:33 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Ashampoo [2011/06/23 03:30:04 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\BDlot [2011/03/20 09:21:59 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Beenokle [2011/03/14 14:29:53 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Bentley [2011/04/08 15:31:40 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\CDisplayEx [2011/07/04 17:47:48 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\DAEMON Tools Lite [2011/07/24 09:32:18 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\DAEMON Tools Pro [2011/06/23 18:00:28 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Digiarty [2011/05/15 13:31:06 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\EAMData [2011/05/09 12:13:14 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\EurekaLog [2011/05/05 06:35:11 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\FILEminimizer [2011/07/03 08:56:46 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\FireShot [2011/06/05 10:02:44 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\gtk-2.0 [2011/07/03 11:50:01 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Gzegzolka XP [2011/07/26 08:20:12 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ipla [2011/06/21 06:49:33 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\KillSwitch 2 [2011/02/27 14:08:01 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Maxthon2 [2011/07/16 17:43:38 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Numer [2011/05/16 17:27:36 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Opera [2011/06/04 15:01:44 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Orbit [2011/03/22 11:10:48 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\PC Suite [2011/07/24 15:05:06 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ProcessLasso [2011/03/25 19:35:45 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\ProgSense [2011/07/24 17:18:04 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Rainmeter [2011/05/31 13:50:37 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Rovio [2011/03/13 13:53:01 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\S.A.D [2011/07/20 14:59:47 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TeamViewer [2011/05/14 07:40:53 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TeamViewer Manager [2011/06/04 13:10:40 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Tools [2011/06/02 17:16:23 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TransEngPol4 [2011/04/15 08:10:21 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\TrueCrypt [2011/04/21 18:05:21 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\VirtuaWin [2011/06/18 07:16:10 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Vso [2011/03/28 04:50:16 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\WinBatch [2011/02/28 05:37:03 | 000,000,000 | ---D | M] -- C:\Users\Piotrek\AppData\Roaming\Zentimo [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Application Data [2011/03/11 19:28:15 | 000,000,000 | ---D | M] -- C:\ProgramData\ashampoo [2011/03/14 14:29:53 | 000,000,000 | ---D | M] -- C:\ProgramData\Bentley [2011/02/28 05:58:42 | 000,000,000 | ---D | M] -- C:\ProgramData\Cisco Aironet [2011/03/26 12:47:24 | 000,000,000 | ---D | M] -- C:\ProgramData\DAEMON Tools Lite [2011/04/22 07:42:06 | 000,000,000 | ---D | M] -- C:\ProgramData\DAEMON Tools Pro [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Dane aplikacji [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Desktop [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Documents [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Dokumenty [2011/07/24 17:07:18 | 000,000,000 | ---D | M] -- C:\ProgramData\Engelmann Media [2011/03/23 20:16:28 | 000,000,000 | ---D | M] -- C:\ProgramData\explauncher [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Favorites [2011/07/07 08:08:32 | 000,000,000 | ---D | M] -- C:\ProgramData\G DATA [2011/03/30 08:08:23 | 000,000,000 | ---D | M] -- C:\ProgramData\Hitman Pro [2011/04/11 14:40:02 | 000,000,000 | ---D | M] -- C:\ProgramData\Impressions Future Media [2011/03/02 20:27:01 | 000,000,000 | ---D | M] -- C:\ProgramData\InterAction studios [2011/06/21 04:58:41 | 000,000,000 | ---D | M] -- C:\ProgramData\ipla [2011/03/23 20:16:26 | 000,000,000 | ---D | M] -- C:\ProgramData\launcher [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Start Menu [2011/03/22 11:06:38 | 000,000,000 | ---D | M] -- C:\ProgramData\NokiaInstallerCache [2011/02/27 18:58:35 | 000,000,000 | ---D | M] -- C:\ProgramData\Panda Security [2011/03/22 11:13:01 | 000,000,000 | ---D | M] -- C:\ProgramData\PC Suite [2011/06/08 13:53:51 | 000,000,000 | ---D | M] -- C:\ProgramData\ProcessLasso [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Pulpit [2011/07/26 08:42:22 | 000,000,000 | ---D | M] -- C:\ProgramData\RDRM [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Start Menu [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Szablony [2011/06/29 09:04:33 | 000,000,000 | ---D | M] -- C:\ProgramData\TEMP [2009/07/14 01:08:56 | 000,000,000 | -HSD | M] -- C:\ProgramData\Templates [2011/02/27 05:50:43 | 000,000,000 | -HSD | M] -- C:\ProgramData\Ulubione [2011/03/23 05:26:37 | 000,000,000 | ---D | M] -- C:\ProgramData\usb-set [2011/02/28 05:36:11 | 000,000,000 | ---D | M] -- C:\ProgramData\ZentimoService [2011/07/05 15:02:01 | 000,000,000 | -H-D | M] -- C:\ProgramData\{7BD01092-3B6F-4E1D-BFBD-ABDDA8096C67} [2011/04/15 03:46:21 | 000,029,950 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 193 bytes -> C:\ProgramData\TEMP:EEDA5B17 < End of report >