OTL logfile created on: 2011-07-31 15:46:06 - Run 4 OTL by OldTimer - Version 3.2.22.3 Folder = E:\Install\Diagnostyka Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 74,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 86,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 100,00 Gb Total Space | 72,77 Gb Free Space | 72,78% Space Free | Partition Type: NTFS Drive D: | 60,07 Gb Total Space | 54,90 Gb Free Space | 91,41% Space Free | Partition Type: NTFS Drive E: | 305,69 Gb Total Space | 110,41 Gb Free Space | 36,12% Space Free | Partition Type: NTFS Computer Name: DOMOWY | User Name: Peterek64 | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-04 12:43:54 | 003,493,720 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe PRC - [2011-07-04 12:43:51 | 000,042,184 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe PRC - [2011-07-01 17:37:04 | 000,947,056 | ---- | M] (Opera Software) -- D:\Opera\opera.exe PRC - [2011-06-19 21:16:16 | 001,931,776 | ---- | M] (K2T.eu, Kaworu) -- C:\Program Files\K2T\WTW\wtw.exe PRC - [2011-05-12 21:27:52 | 000,535,752 | ---- | M] (Murray Hurps Corp Pty Ltd) -- D:\Ad Muncher\AdMunch.exe PRC - [2011-05-12 15:53:27 | 000,826,916 | ---- | M] (C. Ghisler & Co.) -- D:\totalcmd\TOTALCMD.EXE PRC - [2011-05-10 18:00:16 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Install\Diagnostyka\OTL.exe PRC - [2011-02-06 21:06:46 | 000,099,840 | ---- | M] () -- D:\Rainmeter\Rainmeter.exe PRC - [2011-02-04 14:24:32 | 002,346,496 | ---- | M] () -- D:\Rainlendar2\Rainlendar2.exe PRC - [2010-10-03 00:13:42 | 000,470,544 | ---- | M] () -- D:\CoreTemp\Core Temp.exe PRC - [2010-07-04 20:51:26 | 000,017,408 | ---- | M] () -- D:\Unlocker\UnlockerAssistant.exe PRC - [2009-11-22 15:44:16 | 002,384,240 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\system32\ZoneLabs\vsmon.exe PRC - [2009-11-22 15:42:50 | 001,037,192 | ---- | M] (Check Point Software Technologies LTD) -- D:\Zone Labs\ZoneAlarm\zlclient.exe PRC - [2009-08-20 21:16:54 | 005,782,528 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe PRC - [2008-11-03 10:45:46 | 001,332,480 | ---- | M] (O&O Software GmbH) -- C:\WINDOWS\system32\oodag.exe PRC - [2008-11-03 10:45:04 | 002,540,800 | ---- | M] (O&O Software GmbH) -- C:\WINDOWS\system32\oodtray.exe PRC - [2008-04-14 18:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2007-09-02 12:58:52 | 000,495,616 | ---- | M] () -- D:\RocketDock\RocketDock.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-04 12:43:51 | 000,199,792 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\snxhk.dll MOD - [2011-05-12 21:27:52 | 000,070,344 | ---- | M] (Murray Hurps Corp Pty Ltd) -- D:\Ad Muncher\AM32-32562.dll MOD - [2011-05-10 18:00:16 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Install\Diagnostyka\OTL.exe MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2010-07-04 22:32:36 | 000,004,608 | ---- | M] () -- D:\Unlocker\UnlockerHook.dll MOD - [2007-09-02 12:57:36 | 000,069,632 | ---- | M] () -- D:\RocketDock\RocketDock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [Disabled | Stopped] -- -- (AppMgmt) SRV - [2011-07-04 12:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV - [2009-11-22 15:44:16 | 002,384,240 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\WINDOWS\System32\ZoneLabs\vsmon.exe -- (vsmon) SRV - [2008-11-03 10:45:46 | 001,332,480 | ---- | M] (O&O Software GmbH) [Auto | Running] -- C:\WINDOWS\system32\oodag.exe -- (O&O Defrag) SRV - [2005-07-06 15:04:20 | 000,466,944 | ---- | M] (Lexmark International, Inc.) [On_Demand | Stopped] -- C:\WINDOWS\System32\lxcccoms.exe -- (lxcc_device) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- -- (ALSysIO) DRV - [2011-07-04 12:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx) DRV - [2011-07-04 12:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2011-07-04 12:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2011-07-04 12:35:12 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2) DRV - [2011-07-04 12:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2011-07-04 12:32:13 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2011-07-04 12:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2011-04-06 05:06:40 | 006,575,616 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2010-11-17 13:03:56 | 000,101,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtihdXP3.sys -- (AtiHDAudioService) DRV - [2009-11-22 15:42:54 | 000,486,280 | ---- | M] (Check Point Software Technologies LTD) [Kernel | System | Running] -- C:\WINDOWS\system32\vsdatant.sys -- (vsdatant) DRV - [2009-08-17 12:16:06 | 001,390,976 | R--- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2009-05-25 08:21:28 | 000,142,336 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-12-17 10:14:06 | 000,012,400 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO) DRV - [2007-04-16 15:46:34 | 000,033,792 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdPPM.sys -- (AmdPPM) DRV - [2007-01-25 21:04:30 | 000,005,273 | ---- | M] (Arrowkey) [Kernel | Auto | Running] -- D:\Quintessential Media Player\cdrpdacc.sys -- (CDRPDACC) Quinnware CDDA Driver (by InfinaDyne) DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-1292428093-362288127-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\S-1-5-21-1292428093-362288127-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKLM\software\mozilla\Firefox\Extensions\\{3ED591BC-7CC7-495B-A526-B2431356EDC1}: d:\Ad Muncher\FirefoxExtension_2.0 [2011-05-12 21:27:53 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\SeaMonkey\Extensions\\{3ED591BC-7CC7-495B-A526-B2431356EDC1}: d:\Ad Muncher\FirefoxExtension_2.0 [2011-05-12 21:27:53 | 000,000,000 | ---D | M] O1 HOSTS File: ([2011-05-29 15:11:38 | 000,434,588 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 14958 more lines... O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O4 - HKLM..\Run: [Ad Muncher] d:\Ad Muncher\AdMunch.exe (Murray Hurps Corp Pty Ltd) O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [LXCCCATS] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCCtime.DLL () O4 - HKLM..\Run: [OODefragTray] C:\WINDOWS\system32\oodtray.exe (O&O Software GmbH) O4 - HKLM..\Run: [Six Engine] C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe (ASUSTeK Computer Inc.) O4 - HKLM..\Run: [UnlockerAssistant] D:\Unlocker\UnlockerAssistant.exe () O4 - HKLM..\Run: [ZoneAlarm Client] D:\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD) O4 - HKU\S-1-5-21-1292428093-362288127-839522115-1004..\Run: [Core Temp] D:\CoreTemp\Core Temp.exe () O4 - HKU\S-1-5-21-1292428093-362288127-839522115-1004..\Run: [Rainlendar2] d:\Rainlendar2\Rainlendar2.exe () O4 - HKU\S-1-5-21-1292428093-362288127-839522115-1004..\Run: [RocketDock] D:\RocketDock\RocketDock.exe () O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\AutorunsDisabled [2011-05-17 18:20:42 | 000,000,000 | -H-D | M] O4 - Startup: C:\Documents and Settings\Peterek64\Menu Start\Programy\Autostart\Rainmeter.lnk = D:\Rainmeter\Rainmeter.exe () O4 - Startup: C:\Documents and Settings\Shooter\Menu Start\Programy\Autostart\PandaUSBVaccine.lnk = C:\Program Files\Panda USB Vaccine\USBVaccine.exe (Panda Security) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1292428093-362288127-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.) O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1305150963437 (WUWebControl Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.168.4.100 194.168.8.100 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 () - O24 - Desktop WallPaper: C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2011-05-11 21:07:44 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (OODBS) - C:\WINDOWS\System32\OODBS.exe (O&O Software GmbH) O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-07-31 02:05:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2011-07-31 02:05:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Panda Security [2011-07-31 02:05:25 | 000,000,000 | ---D | C] -- C:\Program Files\Panda USB Vaccine [2011-07-28 18:07:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype [2011-07-20 23:26:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Origin [2011-07-20 23:26:24 | 000,000,000 | ---D | C] -- C:\Program Files\Origin Games [2011-07-20 23:26:06 | 000,000,000 | ---D | C] -- C:\Program Files\Origin [2011-07-17 09:55:19 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Peterek64\Recent [2011-07-05 22:20:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Peterek64\Dane aplikacji\.wtw [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-07-31 15:42:36 | 001,160,139 | ---- | M] () -- C:\Documents and Settings\Peterek64\Moje dokumenty\ISO1.nrb [2011-07-31 14:38:28 | 000,002,126 | ---- | M] () -- C:\WINDOWS\wincmd.ini [2011-07-31 12:56:27 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2011-07-31 12:56:13 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-07-31 12:56:10 | 001,501,598 | ---- | M] () -- C:\WINDOWS\System32\oodbs.lor [2011-07-30 22:10:48 | 000,140,024 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2011-07-30 22:10:39 | 000,280,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2011-07-30 22:02:44 | 007,340,032 | -H-- | M] () -- C:\Documents and Settings\Peterek64\NTUSER.DAT [2011-07-30 22:02:44 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Peterek64\ntuser.ini [2011-07-30 13:00:34 | 000,002,739 | ---- | M] () -- C:\WINDOWS\bestplayer.ini [2011-07-30 13:00:34 | 000,000,133 | ---- | M] () -- C:\WINDOWS\bestplayer.bbt [2011-07-30 13:00:34 | 000,000,068 | ---- | M] () -- C:\WINDOWS\bestplayer.bpp [2011-07-28 20:32:43 | 000,280,768 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.ex0 [2011-07-20 17:00:56 | 000,006,656 | ---- | M] () -- C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-07-17 09:54:03 | 000,004,872 | ---- | M] () -- C:\Documents and Settings\Peterek64\Moje dokumenty\cc_20110717_095359.reg [2011-07-14 17:31:13 | 000,119,744 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-07-06 17:11:21 | 000,002,644 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2011-07-04 16:49:16 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-07-04 12:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr [2011-07-04 12:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe [2011-07-04 12:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys [2011-07-04 12:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2011-07-04 12:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2011-07-04 12:35:12 | 000,102,616 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2011-07-04 12:35:09 | 000,096,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2011-07-04 12:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2011-07-04 12:32:13 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [2011-07-04 12:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-07-31 15:42:36 | 001,160,139 | ---- | C] () -- C:\Documents and Settings\Peterek64\Moje dokumenty\ISO1.nrb [2011-07-17 09:54:01 | 000,004,872 | ---- | C] () -- C:\Documents and Settings\Peterek64\Moje dokumenty\cc_20110717_095359.reg [2011-06-18 12:01:41 | 000,006,656 | ---- | C] () -- C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-06-03 16:54:05 | 000,837,192 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe [2011-06-01 16:50:13 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2011-05-29 15:51:32 | 000,000,118 | ---- | C] () -- C:\WINDOWS\wininit.ini [2011-05-17 18:11:30 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\LXPRMON.DLL [2011-05-17 18:11:30 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\LXPMONUI.DLL [2011-05-17 18:11:10 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\LXPMONRC.DLL [2011-05-17 18:08:34 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\lxccvs.dll [2011-05-17 18:08:29 | 000,135,168 | ---- | C] () -- C:\WINDOWS\System32\lxccjswr.dll [2011-05-17 18:08:28 | 000,098,304 | ---- | C] () -- C:\WINDOWS\System32\lxccinsr.dll [2011-05-17 18:08:27 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\lxcccur.dll [2011-05-15 21:08:21 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2011-05-15 20:00:55 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OODCNT.INI [2011-05-14 22:27:58 | 000,140,024 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2011-05-14 22:27:24 | 000,280,768 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2011-05-14 22:27:19 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2011-05-14 22:27:18 | 002,434,856 | ---- | C] () -- C:\WINDOWS\System32\pbsvc_bc2.exe [2011-05-14 19:27:27 | 000,000,266 | ---- | C] () -- C:\WINDOWS\game.ini [2011-05-14 15:59:32 | 000,002,739 | ---- | C] () -- C:\WINDOWS\bestplayer.ini [2011-05-14 15:49:15 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll [2011-05-14 15:49:15 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2011-05-14 15:49:11 | 000,881,664 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll [2011-05-14 15:49:11 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2011-05-14 15:49:10 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2011-05-14 15:49:07 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2011-05-14 15:49:07 | 000,000,547 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest [2011-05-13 21:15:16 | 000,018,416 | ---- | C] () -- C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-05-13 15:52:27 | 000,000,048 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2011-05-12 19:07:03 | 000,186,880 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2011-05-12 19:07:02 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2011-05-12 19:06:58 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatui.dll [2011-05-12 19:06:58 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2011-05-12 19:06:57 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2011-05-12 19:06:56 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2011-05-12 19:06:55 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2011-05-12 15:55:12 | 000,000,120 | ---- | C] () -- C:\WINDOWS\wcx_ftp.ini [2011-05-12 15:51:23 | 000,002,126 | ---- | C] () -- C:\WINDOWS\wincmd.ini [2011-05-11 22:55:41 | 001,071,182 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2011-05-11 22:55:40 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2011-05-11 22:54:27 | 000,119,744 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2011-05-11 22:16:35 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat [2011-05-11 21:39:31 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2011-05-11 21:39:25 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat [2011-05-11 21:39:24 | 000,231,925 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat [2011-05-11 21:39:24 | 000,000,003 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat [2011-05-11 21:23:52 | 005,360,700 | -H-- | C] () -- C:\Documents and Settings\Peterek64\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-05-11 21:19:52 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\RtNicProp32.dll [2011-05-11 21:19:27 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll [2011-05-11 21:19:27 | 000,012,400 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys [2011-05-11 21:19:26 | 000,011,832 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys [2011-05-11 21:19:26 | 000,010,216 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys [2011-05-11 21:17:52 | 000,046,080 | ---- | C] () -- C:\WINDOWS\Ascd_log.ini [2011-05-11 21:12:59 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys [2011-05-11 21:12:56 | 000,001,769 | ---- | C] () -- C:\WINDOWS\Language_trs.ini [2011-05-11 21:12:54 | 000,036,893 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini [2011-05-11 21:12:54 | 000,010,296 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2011-05-11 21:08:58 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2011-05-11 21:07:44 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2011-05-11 21:07:06 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2011-05-11 21:07:03 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2011-05-11 21:05:16 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2011-05-11 21:05:08 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2011-05-11 21:05:08 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2011-05-11 21:04:19 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2011-05-11 21:04:18 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2011-04-17 20:57:54 | 000,041,872 | ---- | C] () -- C:\WINDOWS\System32\xfcodec.dll [2011-04-05 21:09:48 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\OVDecode.dll [2004-08-04 13:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2004-08-04 13:00:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2004-08-04 13:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2004-08-04 13:00:00 | 000,500,288 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2004-08-04 13:00:00 | 000,441,260 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2004-08-04 13:00:00 | 000,355,112 | ---- | C] () -- C:\WINDOWS\System32\msjetoledb40.dll [2004-08-04 13:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2004-08-04 13:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2004-08-04 13:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2004-08-04 13:00:00 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2004-08-04 13:00:00 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2004-08-04 13:00:00 | 000,088,822 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2004-08-04 13:00:00 | 000,071,196 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2004-08-04 13:00:00 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2004-08-04 13:00:00 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2004-08-04 13:00:00 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2004-08-04 13:00:00 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2004-08-04 13:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2004-08-04 13:00:00 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2004-08-04 13:00:00 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2004-08-04 13:00:00 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2004-08-04 13:00:00 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2004-08-04 13:00:00 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2004-08-04 13:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2004-08-04 13:00:00 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2004-08-04 13:00:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2004-08-04 13:00:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2004-08-04 13:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2004-08-04 13:00:00 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2004-08-04 13:00:00 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2004-08-04 13:00:00 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2004-08-04 13:00:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2004-08-04 13:00:00 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2004-08-04 13:00:00 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2004-08-04 13:00:00 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2004-08-04 13:00:00 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2004-08-04 13:00:00 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2004-08-04 13:00:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2004-08-04 13:00:00 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2004-08-04 13:00:00 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2004-08-04 13:00:00 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2004-08-04 13:00:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2004-08-04 13:00:00 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2004-08-04 13:00:00 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2004-08-04 13:00:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2004-08-04 13:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004-08-04 13:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2004-08-04 13:00:00 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2004-08-04 13:00:00 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2004-08-04 13:00:00 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2004-08-04 13:00:00 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2004-08-04 13:00:00 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2004-08-04 13:00:00 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2004-08-04 13:00:00 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2004-08-04 13:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2004-08-04 13:00:00 | 000,000,507 | ---- | C] () -- C:\WINDOWS\win.ini [2004-08-04 13:00:00 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2004-08-04 13:00:00 | 000,000,227 | ---- | C] () -- C:\WINDOWS\system.ini [2001-10-26 18:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [color=#E56717]========== LOP Check ==========[/color] [2011-05-12 21:28:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ad Muncher [2011-05-11 22:11:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2011-07-20 23:26:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2011-07-20 23:26:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Origin [2011-07-31 02:05:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Panda Security [2011-07-05 22:20:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peterek64\Dane aplikacji\.wtw [2011-07-07 19:00:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peterek64\Dane aplikacji\KeePass [2011-05-12 22:29:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peterek64\Dane aplikacji\Opera [2011-05-13 21:33:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Peterek64\Dane aplikacji\Rainmeter [2011-06-26 19:15:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\.wtw [2011-05-11 22:16:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\CheckPoint [2011-06-07 19:35:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\IrfanView [2011-05-30 16:33:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\KeePass [2011-07-10 01:15:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\Opera [2011-07-20 23:26:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\Origin [2011-06-11 20:25:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\TS3Client [2011-06-04 23:32:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Shooter\Dane aplikacji\ts3overlay [color=#E56717]========== Purity Check ==========[/color] < End of report >