OTL logfile created on: 2011-08-02 21:50:17 - Run 1 OTL by OldTimer - Version 3.2.26.1 Folder = C:\Test Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 479,48 Mb Total Physical Memory | 168,58 Mb Available Physical Memory | 35,16% Memory free 1,09 Gb Paging File | 0,63 Gb Available in Paging File | 57,47% Paging File free Paging file location(s): C:\pagefile.sys 720 1440 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 111,81 Gb Total Space | 52,24 Gb Free Space | 46,73% Space Free | Partition Type: NTFS Drive Z: | 916,89 Gb Total Space | 857,48 Gb Free Space | 93,52% Space Free | Partition Type: NTFS Computer Name: MARIAWLODARCZAK | User Name: xp | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-07-26 09:54:00 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Test\OTL.exe PRC - [2011-05-26 23:47:16 | 000,826,896 | ---- | M] (GlavSoft LLC.) -- C:\Program Files\TightVNC\tvnserver.exe PRC - [2010-11-02 22:06:06 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe PRC - [2006-10-11 15:15:46 | 000,339,968 | ---- | M] () -- C:\Program Files\Companion Suite Pro LL\MFServices.exe PRC - [2006-10-11 07:51:52 | 000,073,728 | ---- | M] () -- C:\Program Files\Companion Suite Pro LL\MFPrintServer.exe PRC - [2006-10-04 05:59:22 | 000,151,552 | ---- | M] () -- C:\WINDOWS\system32\LFXGDIPO.EXE PRC - [2006-08-14 18:10:22 | 000,401,408 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files\ProQuestMS\PartsManagerPro\XBaseSrvr\tbmux32.exe PRC - [2006-08-14 18:10:00 | 002,056,192 | ---- | M] (Transaction Software, D 81829 Munich) -- C:\Program Files\ProQuestMS\PartsManagerPro\XBaseSrvr\tbkern32.exe PRC - [2005-09-28 06:10:00 | 000,122,940 | ---- | M] (Sonic Solutions) -- C:\WINDOWS\system32\DLA\DLACTRLW.EXE PRC - [2005-08-04 13:44:56 | 000,114,688 | ---- | M] () -- C:\Program Files\Portrait Displays\forteManager\dtsslsrv.exe PRC - [2005-08-04 13:42:36 | 000,061,440 | ---- | M] () -- C:\Program Files\Portrait Displays\forteManager\DTSRVC.exe PRC - [2005-05-12 01:33:52 | 000,479,232 | ---- | M] (Hewlett-Packard Co.) -- C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe PRC - [2005-04-12 11:11:26 | 000,229,376 | ---- | M] (CST) -- C:\Program Files\lg_fwupdate\fwupdate.exe PRC - [2005-03-22 16:56:24 | 000,073,728 | ---- | M] (EMC Dantz) -- C:\Program Files\Dantz\Retrospect 7.0\retrorun.exe PRC - [2004-10-13 16:17:06 | 002,742,272 | ---- | M] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE PRC - [2004-10-13 14:01:50 | 000,077,824 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE PRC - [2004-08-04 14:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2004-04-23 15:28:00 | 000,077,824 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\Profiler\LWEMon.exe PRC - [2003-12-08 18:35:14 | 000,032,768 | ---- | M] (Cyberlink Corp.) -- C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe PRC - [2003-08-21 15:47:42 | 000,049,152 | ---- | M] (General) -- C:\WINDOWS\system32\umonit.exe PRC - [2002-09-10 17:00:00 | 000,099,840 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPM2SWK.EXE PRC - [2002-09-10 17:00:00 | 000,030,720 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPM2LAK.EXE PRC - [2002-09-10 17:00:00 | 000,028,672 | ---- | M] (CANON INC.) -- C:\WINDOWS\system32\CAPM2RSK.EXE [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-07-26 09:54:00 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Test\OTL.exe MOD - [2011-05-26 23:47:18 | 000,069,136 | ---- | M] () -- C:\Program Files\TightVNC\screenhooks.dll MOD - [2004-08-04 14:00:00 | 001,050,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll MOD - [2004-04-23 15:26:48 | 000,053,248 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\Profiler\LWEHook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- -- (HidServ) SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011-05-26 23:47:16 | 000,826,896 | ---- | M] (GlavSoft LLC.) [Auto | Running] -- C:\Program Files\TightVNC\tvnserver.exe -- (tvnserver) SRV - [2010-11-02 22:06:06 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe -- (AVP) SRV - [2010-06-25 19:07:20 | 000,117,264 | ---- | M] (CACE Technologies, Inc.) [On_Demand | Stopped] -- C:\Program Files\WinPcap\rpcapd.exe -- (rpcapd) Remote Packet Capture Protocol v.0 (experimental) SRV - [2006-08-14 18:10:22 | 000,401,408 | ---- | M] (Transaction Software, D 81829 Munich) [Auto | Running] -- C:\Program Files\ProQuestMS\PartsManagerPro\XBaseSrvr\tbmux32.exe -- (XBaseMS-Service) SRV - [2005-08-04 13:44:56 | 000,114,688 | ---- | M] () [Auto | Running] -- C:\Program Files\Portrait Displays\forteManager\dtsslsrv.exe -- (Asset Management Daemon) SRV - [2005-08-04 13:42:36 | 000,061,440 | ---- | M] () [Auto | Running] -- C:\Program Files\Portrait Displays\forteManager\DTSRVC.exe -- (DTSRVC) SRV - [2005-03-22 16:56:24 | 000,118,784 | ---- | M] (EMC Dantz) [Auto | Stopped] -- C:\Program Files\Dantz\Retrospect 7.0\rthlpsvc.exe -- (Retrospect Helper) SRV - [2005-03-22 16:56:24 | 000,073,728 | ---- | M] (EMC Dantz) [Auto | Running] -- C:\Program Files\Dantz\Retrospect 7.0\retrorun.exe -- (RetroLauncher) SRV - [2004-08-11 01:46:56 | 000,483,328 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- c:\Program Files\Windows Media Connect\mswmccds.exe -- (WmcCds) Windows Media Connect (WMC) SRV - [2004-08-10 22:50:42 | 000,028,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Media Connect\mswmcls.exe -- (WmcCdsLs) Pomocnik programu Windows Media Connect (WMC) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-06-20 08:41:29 | 000,475,736 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2010-06-25 19:07:14 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (NPF) DRV - [2010-06-09 16:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2) DRV - [2010-06-09 16:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\kl1.sys -- (KL1) DRV - [2010-05-07 11:06:26 | 000,032,856 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-11-02 19:27:24 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2006-10-11 05:51:36 | 000,020,672 | ---- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LFXACT.sys -- (LFXACT) DRV - [2006-10-11 05:51:14 | 000,061,740 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\lfxnt.sys -- (lfxnt) DRV - [2006-10-11 05:50:56 | 000,031,879 | ---- | M] (OEM) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\XMLDIUSB.sys -- (XMLDIUSB) DRV - [2005-09-28 06:10:00 | 000,092,700 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDFAM.SYS -- (DLAUDFAM) DRV - [2005-09-28 06:10:00 | 000,087,004 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAUDF_M.SYS -- (DLAUDF_M) DRV - [2005-09-28 06:10:00 | 000,086,524 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAIFS_M.SYS -- (DLAIFS_M) DRV - [2005-09-28 06:10:00 | 000,025,628 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLABOIOM.SYS -- (DLABOIOM) DRV - [2005-09-28 06:10:00 | 000,014,684 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAOPIOM.SYS -- (DLAOPIOM) DRV - [2005-09-28 06:10:00 | 000,006,364 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLAPoolM.SYS -- (DLAPoolM) DRV - [2005-09-28 06:10:00 | 000,002,496 | ---- | M] (Sonic Solutions) [File_System | Auto | Running] -- C:\WINDOWS\system32\DLA\DLADResN.SYS -- (DLADResN) DRV - [2005-08-04 13:45:00 | 000,011,776 | ---- | M] (Portrait Displays, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pdiddcci.sys -- (pdiddcci) DRV - [2005-08-04 13:41:54 | 000,008,960 | ---- | M] (Portrait Displays, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\PdiPorts.sys -- (PdiPorts) DRV - [2005-07-07 10:03:34 | 000,005,628 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLACDBHM.SYS -- (DLACDBHM) DRV - [2005-07-07 10:02:56 | 000,022,684 | ---- | M] (Sonic Solutions) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\DLARTL_N.SYS -- (DLARTL_N) DRV - [2004-12-07 15:00:48 | 000,064,964 | ---- | M] (Sony Corporation) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\sonypvd3.sys -- (sonypvd3) DRV - [2004-12-06 14:26:16 | 000,423,454 | ---- | M] (Sony Corporation) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\sonypvt3.sys -- (sonypvt3) DRV - [2004-11-15 13:55:14 | 000,619,390 | ---- | M] (Sony Corporation) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\sonypvf3.sys -- (sonypvf3) DRV - [2004-10-13 17:33:20 | 002,287,104 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2004-09-22 11:55:38 | 000,018,110 | ---- | M] (Sony Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\sonypvl3.sys -- (sonypvl3) DRV - [2004-08-12 17:45:52 | 000,113,664 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService) DRV - [2004-04-14 12:08:00 | 000,044,064 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore) DRV - [2004-04-14 12:08:00 | 000,021,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter) DRV - [2004-04-14 12:08:00 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum) DRV - [2004-04-14 12:08:00 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid) DRV - [2004-04-13 20:14:12 | 000,070,144 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys -- (RTL8023xp) DRV - [2003-12-05 03:46:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (pfc) DRV - [2003-08-21 15:49:30 | 000,006,016 | ---- | M] (Genesys Logic) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\fixustor.sys -- (fixustor) DRV - [2003-04-15 10:16:48 | 000,008,236 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Program Files\Gigabyte\Gigabyte Windows Utility Manager\ET5\MARKFUN.W32 -- (MarkFun_NT) DRV - [2002-09-10 17:00:00 | 000,023,232 | ---- | M] (CANON INC.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\CAPM2LP.SYS -- (RapidPortM2) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.pl/ IE - HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.vobis.pl/ IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.pl/ IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.vobis.pl/ IE - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.pl/ IE - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\virtualKeyboard@kaspersky.ru [2011-06-20 08:57:28 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\KavAntiBanner@Kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\KavAntiBanner@kaspersky.ru [2011-06-20 08:57:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\FFExt\linkfilter@kaspersky.ru [2011-06-20 08:57:27 | 000,000,000 | ---D | M] O1 HOSTS File: ([2011-06-07 12:34:02 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx () O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ievkbd.dll (Kaspersky Lab ZAO) O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\DLA\DLASHX_W.DLL (Sonic Solutions) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\ALCWZRD.EXE (RealTek Semicoductor Corp.) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\avp.exe (Kaspersky Lab ZAO) O4 - HKLM..\Run: [DLA] C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Sonic Solutions) O4 - HKLM..\Run: [EasyTuneV] File not found O4 - HKLM..\Run: [LGODDFU] C:\Program Files\lg_fwupdate\fwupdate.exe (CST) O4 - HKLM..\Run: [MFPrintServer_Pro_LL] C:\Program Files\Companion Suite Pro LL\MFPrintServer.exe () O4 - HKLM..\Run: [MFServices_Pro_LL] C:\Program Files\Companion Suite Pro LL\MFServices.exe () O4 - HKLM..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [RemoteControl] C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe (Cyberlink Corp.) O4 - HKLM..\Run: [Skrót do strony właściwości High Definition Audio] C:\WINDOWS\System32\Hdaudpropshortcut.exe (Windows (R) Server 2003 DDK provider) O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [tvncontrol] C:\Program Files\TightVNC\tvnserver.exe (GlavSoft LLC.) O4 - HKLM..\Run: [UMonit] C:\WINDOWS\system32\umonit.exe (General) O4 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006..\Run: [NBJ] C:\Program Files\Ahead\Nero BackItUp\NBJ.exe (Ahead Software AG) O4 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006..\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Profiler\lwemon.exe (Logitech Inc.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\HP Image Zone - szybkie uruchamianie.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe (Hewlett-Packard Co.) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Okno stanu Canon iR1200-1300.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAPM2LAK.EXE (CANON INC.) O4 - Startup: C:\Documents and Settings\xp\Menu Start\Programy\Autostart\dysk_z.bat () O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1361759773-2842999037-2571281505-1006\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O8 - Extra context menu item: Dodaj do listy blokowanych banerów - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\ie_banner_deny.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: &Klawiatura wirtualna - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O9 - Extra Button: &Sprawdzanie adresów internetowych - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\klwtbbho.dll (Kaspersky Lab ZAO) O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (Intertrust Technologies, Inc.) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O16 - DPF: {E7544C6C-CFD6-43EA-B4E9-360CEE20BDF7} http://skaner.mks.com.pl/SkanerOnline.cab (MainControl Class) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.204.152.34 194.204.159.1 O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2011\kloehk.dll (Kaspersky Lab ZAO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO) O24 - Desktop Components:0 () - file:///C:/DOCUME~1/xp/USTAWI~1/Temp/msohtml1/01/clip_image002.jpg O24 - Desktop Components:1 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005-07-09 14:17:43 | 000,000,050 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-12-09 17:34:18 | 000,002,360 | ---- | M] () - C:\autorun.PNF -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-08-02 21:49:43 | 000,000,000 | ---D | C] -- C:\Test [2011-08-02 18:14:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\TightVNC [2011-08-02 18:14:23 | 000,000,000 | ---D | C] -- C:\Program Files\TightVNC [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\Documents and Settings\xp\*.tmp files -> C:\Documents and Settings\xp\*.tmp -> ] [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-08-02 18:19:33 | 000,000,259 | ---- | M] () -- C:\WINDOWS\lgfwup.ini [2011-08-02 18:19:30 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn [2011-08-02 18:17:09 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2011-08-02 18:17:05 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011-08-02 18:16:30 | 008,126,464 | ---- | M] () -- C:\Documents and Settings\xp\ntuser.dat [2011-08-02 18:16:04 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\xp\ntuser.ini [2011-08-02 18:14:29 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for [2011-08-01 10:33:01 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011-07-29 13:52:20 | 000,002,539 | ---- | M] () -- C:\Documents and Settings\xp\Pulpit\Microsoft Office Word 2003.lnk [2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\Documents and Settings\xp\*.tmp files -> C:\Documents and Settings\xp\*.tmp -> ] [1 C:\*.tmp files -> C:\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-06-20 08:44:24 | 000,115,369 | ---- | C] () -- C:\WINDOWS\System32\drivers\klin.dat [2011-06-20 08:44:24 | 000,097,859 | ---- | C] () -- C:\WINDOWS\System32\drivers\klick.dat [2011-06-07 12:24:06 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2011-06-07 12:24:06 | 000,208,896 | ---- | C] () -- C:\WINDOWS\MBR.exe [2011-06-07 12:24:06 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2011-06-07 12:24:06 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2011-06-07 12:24:06 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-06-25 19:03:12 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [2010-04-22 12:50:27 | 000,169,059 | ---- | C] () -- C:\WINDOWS\hphins26.dat [2010-04-22 12:50:27 | 000,000,787 | ---- | C] () -- C:\WINDOWS\hphmdl26.dat [2009-12-09 17:35:20 | 000,000,660 | ---- | C] () -- C:\WINDOWS\WINCMD.INI [2009-09-15 09:29:56 | 000,000,284 | ---- | C] () -- C:\Documents and Settings\xp\Dane aplikacji\ViewerApp.dat [2009-09-09 18:01:40 | 000,027,675 | ---- | C] () -- C:\WINDOWS\System32\drivers\klopp.dat [2008-05-29 13:04:19 | 000,039,936 | ---- | C] () -- C:\WINDOWS\System32\LFXPJL2K.DLL [2008-05-29 13:04:18 | 000,151,552 | ---- | C] () -- C:\WINDOWS\System32\LFXGDIPO.EXE [2008-05-29 13:04:18 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\LFXCOINS.DLL [2008-05-29 13:03:42 | 000,061,740 | ---- | C] () -- C:\WINDOWS\System32\drivers\lfxnt.sys [2007-11-22 13:00:50 | 000,076,979 | ---- | C] () -- C:\WINDOWS\hpgins06.dat.temp [2007-11-22 13:00:50 | 000,000,713 | ---- | C] () -- C:\WINDOWS\hpgmdl06.dat [2007-11-22 12:46:04 | 000,076,997 | ---- | C] () -- C:\WINDOWS\hpgins06.dat [2007-07-05 14:13:59 | 000,003,654 | ---- | C] () -- C:\WINDOWS\System32\drivers\Sonyhcp.dll [2007-02-16 11:06:53 | 000,000,259 | ---- | C] () -- C:\WINDOWS\lgfwup.ini [2007-02-16 10:09:14 | 000,000,000 | ---- | C] () -- C:\WINDOWS\OpPrintServer.INI [2007-01-16 14:01:17 | 000,000,167 | ---- | C] () -- C:\WINDOWS\wininit.ini [2006-09-13 14:16:32 | 000,000,669 | ---- | C] () -- C:\WINDOWS\_system.dat [2006-09-13 13:56:02 | 000,000,225 | ---- | C] () -- C:\WINDOWS\_placement.dat [2006-09-13 10:30:13 | 000,210,032 | ---- | C] () -- C:\WINDOWS\System32\DBCLIENT.DLL [2006-09-13 10:19:40 | 000,002,032 | ---- | C] () -- C:\WINDOWS\unins000.dat [2005-12-29 23:47:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini [2005-09-14 09:57:34 | 000,040,960 | ---- | C] () -- C:\Program Files\Uninstall_CDS.exe [2005-07-06 16:42:38 | 000,000,139 | ---- | C] () -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2004-11-24 15:09:40 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2004-11-24 15:05:34 | 001,578,360 | -H-- | C] () -- C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\IconCache.db [2004-11-24 15:05:34 | 000,077,312 | ---- | C] () -- C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2004-11-24 15:05:34 | 000,035,640 | ---- | C] () -- C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2004-11-24 15:05:34 | 000,000,127 | ---- | C] () -- C:\Documents and Settings\xp\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2004-11-15 12:52:45 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini [2004-10-28 08:32:15 | 000,000,703 | ---- | C] () -- C:\WINDOWS\System32\iconcfg.ini [2004-10-25 13:30:59 | 000,156,672 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll [2004-10-25 13:30:59 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2004-10-10 09:00:29 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2004-10-08 23:25:59 | 000,005,696 | ---- | C] () -- C:\WINDOWS\System32\CHKSUM.COM [2004-10-08 23:25:59 | 000,000,736 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2004-10-08 23:25:46 | 000,439,194 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2004-10-08 23:25:46 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2004-10-08 23:25:46 | 000,068,334 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2004-10-08 23:25:46 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2004-10-08 23:25:44 | 000,070,622 | ---- | C] () -- C:\WINDOWS\System32\edit.com [2004-10-08 23:25:33 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\win87em.dll [2004-10-08 23:25:33 | 000,000,624 | ---- | C] () -- C:\WINDOWS\win.ini [2004-10-08 23:25:28 | 000,053,478 | ---- | C] () -- C:\WINDOWS\System32\tcpmon.ini [2004-10-08 23:25:28 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\tsd32.dll [2004-10-08 23:25:28 | 000,000,451 | ---- | C] () -- C:\WINDOWS\system.ini [2004-10-08 23:25:23 | 000,270,848 | ---- | C] () -- C:\WINDOWS\System32\sbe.dll [2004-10-08 23:25:23 | 000,016,024 | ---- | C] () -- C:\WINDOWS\System32\rsvp.ini [2004-10-08 23:25:23 | 000,011,859 | ---- | C] () -- C:\WINDOWS\System32\setver.exe [2004-10-08 23:25:23 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2004-10-08 23:25:23 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe [2004-10-08 23:25:22 | 000,733,696 | ---- | C] () -- C:\WINDOWS\System32\qedwipes.dll [2004-10-08 23:25:22 | 000,383,254 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2004-10-08 23:25:22 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2004-10-08 23:25:22 | 000,053,608 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2004-10-08 23:25:22 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2004-10-08 23:25:22 | 000,013,819 | ---- | C] () -- C:\WINDOWS\System32\pschdprf.ini [2004-10-08 23:25:22 | 000,006,074 | ---- | C] () -- C:\WINDOWS\System32\rasctrs.ini [2004-10-08 23:25:22 | 000,003,346 | ---- | C] () -- C:\WINDOWS\System32\redir.exe [2004-10-08 23:25:22 | 000,002,992 | ---- | C] () -- C:\WINDOWS\System32\perfci.ini [2004-10-08 23:25:22 | 000,002,890 | ---- | C] () -- C:\WINDOWS\System32\perfwci.ini [2004-10-08 23:25:22 | 000,001,295 | ---- | C] () -- C:\WINDOWS\System32\perffilt.ini [2004-10-08 23:25:22 | 000,000,359 | ---- | C] () -- C:\WINDOWS\System32\prodspec.ini [2004-10-08 23:25:19 | 000,004,486 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2004-10-08 23:25:17 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2004-10-08 23:25:17 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\ntio411.sys [2004-10-08 23:25:17 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\ntio412.sys [2004-10-08 23:25:17 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio804.sys [2004-10-08 23:25:17 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\ntio404.sys [2004-10-08 23:25:17 | 000,033,936 | ---- | C] () -- C:\WINDOWS\System32\ntio.sys [2004-10-08 23:25:17 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\ntdos411.sys [2004-10-08 23:25:17 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\ntdos412.sys [2004-10-08 23:25:17 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos804.sys [2004-10-08 23:25:17 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\ntdos404.sys [2004-10-08 23:25:17 | 000,027,898 | ---- | C] () -- C:\WINDOWS\System32\ntdos.sys [2004-10-08 23:25:16 | 000,007,116 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe [2004-10-08 23:25:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [2004-10-08 23:25:10 | 000,094,282 | ---- | C] () -- C:\WINDOWS\System32\msencode.dll [2004-10-08 23:25:10 | 000,014,336 | ---- | C] () -- C:\WINDOWS\System32\msdmo.dll [2004-10-08 23:25:10 | 000,001,405 | ---- | C] () -- C:\WINDOWS\msdfmap.ini [2004-10-08 23:25:09 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe [2004-10-08 23:25:08 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2004-10-08 23:25:08 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2004-10-08 23:25:08 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\key01.sys [2004-10-08 23:25:08 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\keyboard.sys [2004-10-08 23:25:08 | 000,039,434 | ---- | C] () -- C:\WINDOWS\System32\mem.exe [2004-10-08 23:25:08 | 000,001,168 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com [2004-10-08 23:25:07 | 000,199,168 | ---- | C] () -- C:\WINDOWS\System32\ir32_32.dll [2004-10-08 23:25:07 | 000,014,913 | ---- | C] () -- C:\WINDOWS\System32\kb16.com [2004-10-08 23:25:00 | 001,015,477 | ---- | C] () -- C:\WINDOWS\System32\esentprf.ini [2004-10-08 23:25:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2004-10-08 23:25:00 | 000,186,368 | ---- | C] () -- C:\WINDOWS\System32\encdec.dll [2004-10-08 23:25:00 | 000,019,806 | ---- | C] () -- C:\WINDOWS\System32\graphics.com [2004-10-08 23:25:00 | 000,012,866 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe [2004-10-08 23:25:00 | 000,008,520 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe [2004-10-08 23:25:00 | 000,004,976 | ---- | C] () -- C:\WINDOWS\System32\himem.sys [2004-10-08 23:25:00 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe [2004-10-08 23:24:52 | 000,053,920 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe [2004-10-08 23:24:50 | 000,020,986 | ---- | C] () -- C:\WINDOWS\System32\debug.exe [2004-10-08 23:24:50 | 000,001,788 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2004-10-08 23:24:45 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\country.sys [2004-10-08 23:24:44 | 000,253,440 | ---- | C] () -- C:\WINDOWS\System32\compatUI.dll [2004-10-08 23:24:44 | 000,051,823 | ---- | C] () -- C:\WINDOWS\System32\command.com [2004-10-08 23:24:43 | 000,070,656 | ---- | C] () -- C:\WINDOWS\System32\amstream.dll [2004-10-08 23:24:43 | 000,012,594 | ---- | C] () -- C:\WINDOWS\System32\append.exe [2004-10-08 23:24:43 | 000,009,043 | ---- | C] () -- C:\WINDOWS\System32\ansi.sys [2004-10-08 16:35:59 | 000,954,824 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2004-10-08 16:35:57 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2004-10-08 16:35:10 | 000,164,320 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2004-10-08 14:50:54 | 000,000,552 | ---- | C] () -- C:\WINDOWS\System32\d3d8caps.dat [2004-10-08 14:47:52 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2004-10-08 14:43:27 | 000,045,163 | ---- | C] () -- C:\WINDOWS\System32\javaw.exe [2004-10-08 14:43:27 | 000,045,161 | ---- | C] () -- C:\WINDOWS\System32\java.exe [2004-10-08 14:43:04 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini [2004-10-08 14:41:46 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2004-10-08 14:41:40 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2004-10-08 14:41:06 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2004-10-08 14:40:53 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini [2004-10-08 14:40:53 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini [2004-10-08 14:40:06 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini [2004-10-08 14:40:06 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini [2003-04-08 12:40:22 | 000,005,679 | ---- | C] () -- C:\WINDOWS\System32\OUTLPERF.INI [2003-03-25 12:32:28 | 000,062,976 | ---- | C] () -- C:\WINDOWS\System32\SkanerOnlineUninstall.exe [2002-12-10 00:00:00 | 001,708,032 | ---- | C] () -- C:\WINDOWS\System32\MSO97V.DLL [2002-12-10 00:00:00 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\DOCOBJ.DLL [2002-12-10 00:00:00 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\MSORFS.DLL [2002-12-10 00:00:00 | 000,032,768 | ---- | C] () -- C:\WINDOWS\System32\HLINKPRX.DLL [2001-10-26 19:29:54 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\dvdplay.exe [2001-10-26 19:29:42 | 000,157,696 | ---- | C] () -- C:\WINDOWS\System32\paqsp.dll [color=#E56717]========== LOP Check ==========[/color] [2011-06-20 08:17:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2007-09-03 15:54:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software [2010-03-26 13:32:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\JetFlash220 [2004-12-06 18:06:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MSScanAppDataDir [2009-09-02 14:30:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ProQuestMS [2010-10-25 14:37:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Retrospect [2011-08-02 18:14:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\TightVNC [2007-02-14 12:39:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\DisplayTune [2006-11-10 14:48:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\InterTrust [2005-06-30 17:30:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\iShell [2007-01-16 14:06:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\Leadertech [2009-12-07 11:18:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\OpenOffice.org [2011-06-07 11:10:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\xp\Dane aplikacji\Wireshark [color=#E56717]========== Purity Check ==========[/color] < End of report >