OTL logfile created on: 8/2/2011 11:16:53 AM - Run OTLPE by OldTimer - Version 3.1.48.0 Folder = X:\Programs\OTLPE Microsoft Windows XP Dodatek Service Pack 3 (Version = 5.1.2600) - Type = SYSTEM Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3.00 Gb Total Physical Memory | 3.00 Gb Available Physical Memory | 91.00% Memory free 3.00 Gb Paging File | 3.00 Gb Available in Paging File | 98.00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 39.07 Gb Total Space | 10.49 Gb Free Space | 26.85% Space Free | Partition Type: NTFS Drive D: | 193.82 Gb Total Space | 170.45 Gb Free Space | 87.94% Space Free | Partition Type: NTFS Drive E: | 7.47 Gb Total Space | 7.46 Gb Free Space | 99.92% Space Free | Partition Type: FAT32 Drive F: | 3.66 Gb Total Space | 0.55 Gb Free Space | 14.94% Space Free | Partition Type: FAT32 Drive X: | 284.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS Computer Name: REATOGO | User Name: SYSTEM Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days Using ControlSet: ControlSet002 [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto] -- -- (JavaQuickStarterService) SRV - File not found [Auto] -- -- (avgwd) SRV - File not found [Auto] -- -- (AVGIDSAgent) SRV - File not found [Auto] -- -- (avg8wd) SRV - [2011/07/04 07:43:51 | 000,042,184 | ---- | M] (AVAST Software) [Auto] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV - [2011/03/31 10:08:14 | 000,080,896 | ---- | M] () [Auto] -- C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe -- (PassThru Service) SRV - [2009/10/14 10:44:38 | 000,090,112 | ---- | M] (France Telecom SA) [Auto] -- C:\Program Files\Common Files\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe -- (FTRTSVC) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand] -- -- (winachsf) DRV - File not found [Kernel | On_Demand] -- -- (WDICA) DRV - File not found [Kernel | On_Demand] -- -- (PDRFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDRELI) DRV - File not found [Kernel | On_Demand] -- -- (PDFRAME) DRV - File not found [Kernel | On_Demand] -- -- (PDCOMP) DRV - File not found [Kernel | System] -- -- (PCIDump) DRV - File not found [Kernel | Auto] -- -- (mdmxsdk) DRV - File not found [Kernel | System] -- -- (lbrtfdc) DRV - File not found [Kernel | System] -- -- (i2omgmt) DRV - File not found [Kernel | On_Demand] -- -- (HSFHWAZL) DRV - File not found [Kernel | On_Demand] -- -- (HSF_DPV) DRV - File not found [Kernel | System] -- -- (Changer) DRV - [2011/07/20 20:54:03 | 000,135,032 | ---- | M] () [File_System | Boot] -- C:\WINDOWS\system32\drivers\dwprot.sys -- (DwProt) DRV - [2011/07/04 07:36:43 | 000,441,176 | ---- | M] (AVAST Software) [File_System | System] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx) DRV - [2011/07/04 07:36:32 | 000,309,848 | ---- | M] (AVAST Software) [Kernel | System] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP) DRV - [2011/07/04 07:35:23 | 000,043,608 | ---- | M] (AVAST Software) [Kernel | System] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2011/07/04 07:35:12 | 000,102,616 | ---- | M] (AVAST Software) [File_System | Auto] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2) DRV - [2011/07/04 07:32:32 | 000,025,432 | ---- | M] (AVAST Software) [Kernel | System] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2011/07/04 07:32:13 | 000,030,808 | ---- | M] (AVAST Software) [Kernel | System] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2011/07/04 07:32:12 | 000,019,544 | ---- | M] (AVAST Software) [File_System | Auto] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2011/04/14 15:28:42 | 000,134,480 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver) DRV - [2011/04/04 18:59:56 | 000,297,168 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (AvgTdiX) DRV - [2011/03/16 10:03:20 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot] -- C:\WINDOWS\system32\drivers\avgrkx86.sys -- (Avgrkx86) DRV - [2011/03/01 08:25:18 | 000,034,896 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (AvgMfx86) DRV - [2011/02/22 02:13:02 | 000,022,992 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot] -- C:\WINDOWS\system32\drivers\AVGIDSEH.sys -- (AVGIDSEH) DRV - [2011/02/10 01:53:54 | 000,027,216 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim) DRV - [2011/02/10 01:53:52 | 000,024,144 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter) DRV - [2011/01/07 00:41:46 | 000,248,656 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (AvgLdx86) DRV - [2010/06/22 12:01:50 | 000,021,248 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\htcnprot.sys -- (htcnprot) DRV - [2009/08/04 07:04:28 | 000,102,656 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ewusbfake.sys -- (hwusbfake) DRV - [2009/08/04 07:04:28 | 000,102,400 | R--- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2009/08/04 05:04:26 | 000,034,688 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand] -- C:\WINDOWS\system32\pcampr5.sys -- (PCAMPR5) DRV - [2009/08/04 05:04:26 | 000,032,128 | ---- | M] (Printing Communications Assoc., Inc. (PCAUSA)) [Kernel | On_Demand] -- C:\WINDOWS\system32\pcandis5.sys -- (PCANDIS5) DRV - [2009/06/09 18:49:32 | 000,024,576 | ---- | M] (HTC, Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\ANDROIDUSB.sys -- (HTCAND32) DRV - [2008/09/25 04:57:00 | 003,626,112 | ---- | M] (Intel Corporation) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\NETw5x32.sys -- (NETw5x32) Sterownik karty Intel(R) DRV - [2008/08/28 08:24:08 | 000,105,856 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2008/08/28 08:24:04 | 004,703,744 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008/05/02 02:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\Administrator_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\Administrator_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\KRAWIETZ_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\KRAWIETZ_ON_C\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\LocalService_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKU\NetworkService_ON_C\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.google.com/ig" FF - prefs.js..extensions.enabledItems: {3f963a5b-e555-4543-90e2-c3908898db71}:10.0.0.1178 FF - prefs.js..extensions.enabledItems: {02450954-cdd9-410f-b1da-db804e18c671}:0.96.3 FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprphtml5videoshim;version=12.0.1.609: C:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=12.0.1.609: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: FF - HKCU\Software\MozillaPlugins\@talk.google.com/GoogleTalkPlugin: C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Mozilla\plugins\npgoogletalk.dll (Google) FF - HKCU\Software\MozillaPlugins\@talk.google.com/O3DPlugin: C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Mozilla\plugins\npgtpo3dautoplugin.dll () FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.57\npGoogleUpdate3.dll (Google Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{3f963a5b-e555-4543-90e2-c3908898db71}: C:\Program Files\AVG\AVG10\Firefox\ FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011/07/20 05:25:57 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/06/28 01:53:00 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 4.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011/05/06 10:56:27 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2011/06/21 05:40:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 3.1.7\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2011/04/01 16:30:32 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mozilla\Extensions [2011/04/01 16:27:47 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6} [2011/07/19 14:32:21 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mozilla\Firefox\Profiles\9t8uuteb.default\extensions [2011/04/02 09:21:36 | 000,000,000 | ---D | M] (Screengrab) -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mozilla\Firefox\Profiles\9t8uuteb.default\extensions\{02450954-cdd9-410f-b1da-db804e18c671} [2011/06/19 17:00:25 | 000,000,000 | ---D | M] (WebMail Notifier) -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mozilla\Firefox\Profiles\9t8uuteb.default\extensions\{37fa1426-b82d-11db-8314-0800200c9a66} [2011/05/06 10:49:20 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions File not found (No name found) -- () (No name found) -- C:\DOCUMENTS AND SETTINGS\KRAWIETZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\9T8UUTEB.DEFAULT\EXTENSIONS\{53A03D43-5363-4669-8190-99061B2DEBA5}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\KRAWIETZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\9T8UUTEB.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\KRAWIETZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\9T8UUTEB.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI () (No name found) -- C:\DOCUMENTS AND SETTINGS\KRAWIETZ\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\9T8UUTEB.DEFAULT\EXTENSIONS\TABSCOPE@XULDEV.ORG.XPI [2011/07/20 05:25:57 | 000,000,000 | ---D | M] (avast! WebRep) -- C:\PROGRAM FILES\AVAST SOFTWARE\AVAST\WEBREP\FF [2011/06/28 01:52:59 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll [2009/06/16 13:46:22 | 000,056,576 | ---- | M] (Foxit Software Company) -- C:\Program Files\mozilla firefox\plugins\npFoxitReaderPlugin.dll [2011/05/06 10:56:23 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml [2011/05/06 10:56:23 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml [2011/05/06 10:56:23 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml [2011/05/06 10:56:23 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml [2011/05/06 10:56:23 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml [2011/05/06 10:56:23 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009/06/16 14:17:47 | 000,307,165 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 www.007guard.com O1 - Hosts: 127.0.0.1 007guard.com O1 - Hosts: 127.0.0.1 008i.com O1 - Hosts: 127.0.0.1 www.008k.com O1 - Hosts: 127.0.0.1 008k.com O1 - Hosts: 127.0.0.1 www.00hq.com O1 - Hosts: 127.0.0.1 00hq.com O1 - Hosts: 127.0.0.1 010402.com O1 - Hosts: 127.0.0.1 www.032439.com O1 - Hosts: 127.0.0.1 032439.com O1 - Hosts: 127.0.0.1 www.0scan.com O1 - Hosts: 127.0.0.1 0scan.com O1 - Hosts: 127.0.0.1 www.1000gratisproben.com O1 - Hosts: 127.0.0.1 1000gratisproben.com O1 - Hosts: 127.0.0.1 www.1001namen.com O1 - Hosts: 127.0.0.1 1001namen.com O1 - Hosts: 127.0.0.1 100888290cs.com O1 - Hosts: 127.0.0.1 www.100888290cs.com O1 - Hosts: 127.0.0.1 100sexlinks.com O1 - Hosts: 127.0.0.1 www.100sexlinks.com O1 - Hosts: 127.0.0.1 10sek.com O1 - Hosts: 127.0.0.1 www.10sek.com O1 - Hosts: 127.0.0.1 www.1-2005-search.com O1 - Hosts: 127.0.0.1 1-2005-search.com O1 - Hosts: 10574 more lines... O2 - BHO: (FG2CatchUrl) - {1F364306-AA45-47B5-9F9D-39A8B94E7EF1} - File not found O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - File not found O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - File not found O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [BEWINTERNET-PL-IEWSessionManager] C:\Program Files\OrangeBS\BEWInternet-PL-IEW\SessionManager\SessionManager.exe (France Telecom SA) O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.) O4 - HKU\.DEFAULT..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager) O4 - HKU\Administrator_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager) O4 - HKU\KRAWIETZ_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager) O4 - HKU\LocalService_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager) O4 - HKU\NetworkService_ON_C..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (Gerhard Schlager) O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\Administrator_ON_C..\RunOnce: [nltide_2] File not found O4 - HKU\Administrator_ON_C..\RunOnce: [spchecker] File not found O4 - HKU\LocalService_ON_C..\RunOnce: [nltide_2] File not found O4 - HKU\NetworkService_ON_C..\RunOnce: [nltide_2] File not found O4 - Startup: C:\Documents and Settings\KRAWIETZ\Menu Start\Programy\Autostart\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) O4 - Startup: C:\Documents and Settings\KRAWIETZ\Menu Start\Programy\Autostart\ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuMyMusic = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsNetHood = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutorunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\Administrator_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoWindowsUpdate = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuMyMusic = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecentDocsNetHood = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoUserNameInStartMenu = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoStartMenuPinnedList = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSharedDocuments = 1 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\KRAWIETZ_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutorunSetting = 1 O7 - HKU\LocalService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\NetworkService_ON_C\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab (Java Plug-in 1.6.0_15) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: O24 - Desktop BackupWallPaper: O27 - HKLM IFEO\taskmgr.exe: Debugger - "C:\WINDOWS\PROCEXP.EXE" (Sysinternals - www.sysinternals.com) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009/06/16 12:36:47 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009/06/16 13:06:49 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2009/06/16 14:19:58 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ] O32 - AutoRun File - [2006/03/24 07:06:41 | 000,000,053 | R--- | M] () - X:\AUTORUN.INF -- [ CDFS ] O33 - MountPoints2\{02c8fbd8-dfc1-11df-af23-0022faabe19a}\Shell\AutoRun\command - "" = q9.cmd O33 - MountPoints2\{02c8fbd8-dfc1-11df-af23-0022faabe19a}\Shell\open\Command - "" = q9.cmd O33 - MountPoints2\{522ded64-8347-11df-aefb-0022faabe19a}\Shell\AutoRun\command - "" = G:\SEDAMNOCI\\\kadsepoveze.exe O33 - MountPoints2\{522ded64-8347-11df-aefb-0022faabe19a}\Shell\explore\command - "" = G:\SEDAMNOCI\\\kadsepoveze.exe O33 - MountPoints2\{522ded64-8347-11df-aefb-0022faabe19a}\Shell\Install\command - "" = G:\SEDAMNOCI\\\kadsepoveze.exe O33 - MountPoints2\{522ded64-8347-11df-aefb-0022faabe19a}\Shell\open\command - "" = G:\SEDAMNOCI\\\kadsepoveze.exe O33 - MountPoints2\{65b3ff88-5a18-11e0-af6a-0022faabe19a}\Shell - "" = AutoRun O33 - MountPoints2\{65b3ff88-5a18-11e0-af6a-0022faabe19a}\Shell\AutoRun\command - "" = F:\MicroLauncher.exe O33 - MountPoints2\{74f44e66-da95-11de-ae94-0022faabe19a}\Shell\AutoRun\command - "" = F:\tgt.exe O33 - MountPoints2\{74f44e66-da95-11de-ae94-0022faabe19a}\Shell\open\Command - "" = F:\tgt.exe O33 - MountPoints2\{f395beaf-41c4-11e0-af64-0022faabe19a}\Shell\AutoRun\command - "" = F:\iskusna//bajinacura.exe O33 - MountPoints2\{f395beaf-41c4-11e0-af64-0022faabe19a}\Shell\Explore\command - "" = F:\iskusna//bajinacura.exe O33 - MountPoints2\{f395beaf-41c4-11e0-af64-0022faabe19a}\Shell\Open\command - "" = F:\iskusna//bajinacura.exe O33 - MountPoints2\{f395beb0-41c4-11e0-af64-0022faabe19a}\Shell\AutoRun\command - "" = F:\myfolder\myfile.exe O33 - MountPoints2\{f395beb0-41c4-11e0-af64-0022faabe19a}\Shell\open\command - "" = F:\myfolder\myfile.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgchsvx.exe /sync) - File not found O34 - HKLM BootExecute: (C:\PROGRA~1\AVG\AVG10\avgrsx.exe /sync /restart) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011/07/30 00:56:00 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\KRAWIETZ\Recent [2011/07/27 18:25:32 | 000,000,000 | ---D | C] -- D:\Pulpit\gregerg [2011/07/26 12:09:36 | 000,000,000 | ---D | C] -- D:\Moje dokumenty\Escher [2011/07/24 07:37:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\mIRC [2011/07/22 08:06:16 | 000,000,000 | ---D | C] -- D:\Pulpit\emu [2011/07/22 04:49:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\wb [2011/07/21 08:17:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump [2011/07/20 06:56:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Menu Start\Programy\Revo Uninstaller [2011/07/20 06:56:16 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group [2011/07/20 05:28:53 | 000,019,544 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [2011/07/20 05:28:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\avast! Free Antivirus [2011/07/20 05:28:52 | 000,309,848 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2011/07/20 05:28:49 | 000,025,432 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2011/07/20 05:28:48 | 000,441,176 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys [2011/07/20 05:28:48 | 000,102,616 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2011/07/20 05:28:48 | 000,096,344 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2011/07/20 05:28:48 | 000,043,608 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2011/07/20 05:28:47 | 000,030,808 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [2011/07/20 05:25:56 | 000,199,304 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe [2011/07/20 05:25:56 | 000,040,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr [2011/07/20 05:01:48 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software [2011/07/20 05:01:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2011/07/17 10:03:09 | 000,000,000 | R--D | C] -- \I386 [2011/07/17 10:02:33 | 000,000,000 | R--D | C] -- \SFX [2011/07/17 09:58:33 | 000,000,000 | R--D | C] -- \PROGRAMS [2011/07/16 05:52:08 | 000,000,000 | ---D | C] -- C:\games [2011/07/14 09:23:22 | 000,000,000 | ---D | C] -- D:\Moje dokumenty\reakcje [2011/07/14 05:31:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\ooVoo Details [2011/07/14 05:31:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\ooVoo [2011/07/14 05:31:42 | 000,000,000 | ---D | C] -- C:\Program Files\ooVoo [2011/07/13 19:49:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\Google [2011/07/13 05:35:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\.purple [2011/07/13 05:24:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\WapSter [2011/07/13 05:23:54 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2011/07/09 14:12:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1 [2011/07/09 14:02:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\Htc [2011/07/09 14:02:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\HTC [2011/07/09 14:02:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC Sync [2011/07/09 14:01:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC [2011/07/09 14:01:22 | 001,122,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WdfCoInstaller01007.dll [2011/07/09 14:01:22 | 000,024,576 | ---- | C] (HTC, Corporation) -- C:\WINDOWS\System32\drivers\ANDROIDUSB.sys [2011/07/09 14:01:19 | 000,000,000 | ---D | C] -- C:\Program Files\Spirent Communications [2011/07/08 07:56:40 | 000,030,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\rndismpx.sys [2011/07/08 07:56:40 | 000,030,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rndismpx.sys [2011/07/08 07:56:40 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usb8023x.sys [2011/07/08 07:41:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\Downloaded Installations [2011/07/08 07:40:52 | 000,000,000 | ---D | C] -- C:\Program Files\HTC [2011/07/08 07:40:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2011/07/08 07:29:18 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2011/07/06 04:58:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Orange [2011/07/06 04:54:32 | 000,000,000 | ---D | C] -- C:\Program Files\CardDetector [2011/07/03 21:45:32 | 000,000,000 | ---D | C] -- C:\Program Files\Budzik [2011/07/03 21:45:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Budzik [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\KRAWIETZ\*.tmp files -> C:\Documents and Settings\KRAWIETZ\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011/07/30 00:54:02 | 000,001,144 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1417001333-1801674531-1003UA.job [2011/07/29 21:42:05 | 069,305,975 | ---- | M] () -- D:\Pulpit\David_Deutsch_1.wmv [2011/07/29 21:42:03 | 063,169,401 | ---- | M] () -- D:\Pulpit\David_Deutsch_4.wmv [2011/07/29 21:41:53 | 058,452,439 | ---- | M] () -- D:\Pulpit\David_Deutsch_5.wmv [2011/07/29 21:41:40 | 054,966,343 | ---- | M] () -- D:\Pulpit\David_Deutsch_6.wmv [2011/07/29 21:40:26 | 043,779,987 | ---- | M] () -- D:\Pulpit\David_Deutsch_3.wmv [2011/07/29 21:40:16 | 044,007,109 | ---- | M] () -- D:\Pulpit\deutsch_lect_2.wmv [2011/07/29 19:54:00 | 000,001,092 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1417001333-1801674531-1003Core.job [2011/07/27 01:29:56 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-1409082233-1417001333-1801674531-1003.job [2011/07/27 01:28:42 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2011/07/27 01:28:40 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2011/07/27 01:28:37 | 3082,809,344 | -HS- | M] () -- C:\hiberfil.sys [2011/07/26 02:52:00 | 000,000,292 | ---- | M] () -- C:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-1409082233-1417001333-1801674531-1003.job [2011/07/23 10:34:18 | 000,000,512 | ---- | M] () -- D:\Pulpit\snes.lnk [2011/07/21 13:11:26 | 000,639,540 | ---- | M] () -- D:\Pulpit\038B6d01.pdf [2011/07/21 08:51:14 | 000,002,533 | ---- | M] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft FrontPage.lnk [2011/07/20 20:54:03 | 000,135,032 | ---- | M] () -- C:\WINDOWS\System32\drivers\dwprot.sys [2011/07/20 05:28:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\avast! Free Antivirus [2011/07/20 05:28:48 | 000,002,644 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2011/07/20 05:15:25 | 000,000,000 | R--D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\Gry [2011/07/17 15:59:12 | 000,002,521 | ---- | M] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Microsoft Word.lnk [2011/07/17 09:37:31 | 000,124,887 | ---- | M] () -- D:\Moje dokumenty\tumblr_lku5q1Y8yw1qasfhmo1_500.gif [2011/07/16 21:00:00 | 000,000,442 | ---- | M] () -- C:\WINDOWS\tasks\FrontLine Registry Cleaner Scheduled Scan - KRAWIETZ.job [2011/07/14 05:31:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\ooVoo [2011/07/10 17:11:17 | 000,263,257 | ---- | M] () -- D:\Moje dokumenty\5323_d77a.png [2011/07/09 18:28:08 | 000,027,136 | ---- | M] () -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011/07/09 14:24:41 | 006,559,583 | ---- | M] () -- D:\Moje dokumenty\20110415_Wildfire_S_HTC_Polish_UM.pdf [2011/07/09 14:02:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC Sync [2011/07/09 14:01:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\HTC [2011/07/09 11:02:41 | 000,011,500 | ---- | M] () -- D:\Moje dokumenty\5914_51e3.jpeg [2011/07/09 07:29:46 | 000,000,584 | ---- | M] () -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Kadu.lnk [2011/07/09 07:29:44 | 000,001,992 | ---- | M] () -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Orange Free.lnk [2011/07/08 07:58:04 | 000,463,910 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2011/07/08 07:58:04 | 000,406,162 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2011/07/08 07:58:04 | 000,081,256 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2011/07/08 07:58:04 | 000,063,614 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2011/07/08 07:55:34 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ANDROIDUSB_01007.Wdf [2011/07/07 19:50:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\Orange [2011/07/06 05:27:20 | 000,008,304 | RHS- | M] () -- C:\Documents and Settings\All Users\ntuser.pol [2011/07/06 05:26:14 | 010,747,904 | ---- | M] () -- C:\Documents and Settings\KRAWIETZ\NTUSER.bak [2011/07/06 03:00:20 | 121,155,382 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm [2011/07/04 07:43:53 | 000,040,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr [2011/07/04 07:43:51 | 000,199,304 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe [2011/07/04 07:36:43 | 000,441,176 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys [2011/07/04 07:36:32 | 000,309,848 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys [2011/07/04 07:35:23 | 000,043,608 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys [2011/07/04 07:35:12 | 000,102,616 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys [2011/07/04 07:35:09 | 000,096,344 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswmon.sys [2011/07/04 07:32:32 | 000,025,432 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys [2011/07/04 07:32:13 | 000,030,808 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys [2011/07/04 07:32:12 | 000,019,544 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys [2011/07/03 21:45:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Menu Start\Programy\Budzik [2011/07/03 11:57:19 | 000,000,479 | ---- | M] () -- D:\Moje dokumenty\Skrót do miranda32.exe.lnk [3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [1 C:\Documents and Settings\KRAWIETZ\*.tmp files -> C:\Documents and Settings\KRAWIETZ\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011/07/29 21:35:00 | 054,966,343 | ---- | C] () -- D:\Pulpit\David_Deutsch_6.wmv [2011/07/29 21:34:58 | 058,452,439 | ---- | C] () -- D:\Pulpit\David_Deutsch_5.wmv [2011/07/29 21:34:55 | 063,169,401 | ---- | C] () -- D:\Pulpit\David_Deutsch_4.wmv [2011/07/29 21:34:53 | 043,779,987 | ---- | C] () -- D:\Pulpit\David_Deutsch_3.wmv [2011/07/29 21:34:50 | 044,007,109 | ---- | C] () -- D:\Pulpit\deutsch_lect_2.wmv [2011/07/29 21:34:42 | 069,305,975 | ---- | C] () -- D:\Pulpit\David_Deutsch_1.wmv [2011/07/23 10:34:18 | 000,000,512 | ---- | C] () -- D:\Pulpit\snes.lnk [2011/07/21 13:12:16 | 000,639,540 | ---- | C] () -- D:\Pulpit\038B6d01.pdf [2011/07/20 20:54:03 | 000,135,032 | ---- | C] () -- C:\WINDOWS\System32\drivers\dwprot.sys [2011/07/19 19:07:56 | 003,813,420 | ---- | C] () -- D:\Pulpit\VORC001.WAV [2011/07/19 19:05:42 | 713,056,300 | ---- | C] () -- D:\Pulpit\VORC002.WAV [2011/07/17 10:02:02 | 000,001,052 | R--- | C] () -- \reatogoMenu.ini [2011/07/17 09:58:27 | 000,000,000 | R--- | C] () -- \WIN51IP.SP2 [2011/07/17 09:58:26 | 000,000,000 | R--- | C] () -- \WIN51IP [2011/07/17 09:37:31 | 000,124,887 | ---- | C] () -- D:\Moje dokumenty\tumblr_lku5q1Y8yw1qasfhmo1_500.gif [2011/07/13 19:49:05 | 000,001,144 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1417001333-1801674531-1003UA.job [2011/07/13 19:49:05 | 000,001,092 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1409082233-1417001333-1801674531-1003Core.job [2011/07/10 17:11:15 | 000,263,257 | ---- | C] () -- D:\Moje dokumenty\5323_d77a.png [2011/07/09 14:24:40 | 006,559,583 | ---- | C] () -- D:\Moje dokumenty\20110415_Wildfire_S_HTC_Polish_UM.pdf [2011/07/09 11:02:41 | 000,011,500 | ---- | C] () -- D:\Moje dokumenty\5914_51e3.jpeg [2011/07/09 07:29:46 | 000,000,584 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Kadu.lnk [2011/07/09 07:29:44 | 000,001,992 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Microsoft\Internet Explorer\Quick Launch\Orange Free.lnk [2011/07/08 07:55:34 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ANDROIDUSB_01007.Wdf [2011/07/03 11:57:19 | 000,000,479 | ---- | C] () -- D:\Moje dokumenty\Skrót do miranda32.exe.lnk [2011/03/29 20:31:53 | 000,000,016 | ---- | C] () -- C:\WINDOWS\System32\crt.dat [2010/12/04 14:04:55 | 000,005,859 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\gnuplot_history [2010/11/14 12:19:30 | 000,001,469 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\gsview32.ini [2010/10/31 10:19:20 | 000,000,754 | ---- | C] () -- C:\WINDOWS\WORDPAD.INI [2010/09/23 09:06:28 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\PUTTY.RND [2010/07/09 06:32:07 | 000,003,727 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\AdobeFnt10.lst [2009/09/12 09:31:22 | 000,000,133 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2009/07/26 15:06:13 | 000,000,938 | ---- | C] () -- C:\WINDOWS\vampire.ini [2009/07/26 07:06:53 | 000,000,048 | ---- | C] () -- C:\WINDOWS\scmate.ini [2009/06/16 15:06:41 | 000,027,136 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009/06/16 14:26:06 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI [2009/06/16 14:24:43 | 000,183,424 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2009/06/16 14:01:50 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2009/06/16 14:01:49 | 000,000,122 | ---- | C] () -- C:\WINDOWS\mdm.ini [2009/06/16 14:01:42 | 000,000,000 | ---- | C] () -- C:\WINDOWS\NSREX.INI [2009/06/16 13:45:35 | 000,000,014 | ---- | C] () -- C:\WINDOWS\System32\SystemInfo32.sys [2009/06/16 13:44:25 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini [2009/06/16 13:44:24 | 002,402,304 | ---- | C] () -- C:\WINDOWS\System32\x264vfw.dll [2009/06/16 13:44:23 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2009/06/16 13:44:23 | 000,205,824 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll [2009/06/16 13:44:21 | 000,085,504 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll [2009/06/16 13:33:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2009/06/16 13:32:32 | 000,514,408 | ---- | C] () -- C:\WINDOWS\vmmap.exe [2009/06/16 13:32:32 | 000,162,816 | ---- | C] () -- C:\WINDOWS\SysProt.exe [2009/06/16 13:32:31 | 000,095,744 | ---- | C] () -- C:\WINDOWS\RkUnhooker.exe [2009/06/16 13:32:31 | 000,082,944 | ---- | C] () -- C:\WINDOWS\Procwin.EXE [2009/06/16 13:32:31 | 000,045,056 | ---- | C] () -- C:\WINDOWS\Psinfops.dll [2009/06/16 13:32:30 | 000,744,853 | ---- | C] () -- C:\WINDOWS\PAVARK.exe [2009/06/16 13:32:29 | 000,761,856 | ---- | C] () -- C:\WINDOWS\Gmer.exe [2009/06/16 13:32:29 | 000,744,960 | ---- | C] () -- C:\WINDOWS\IceSword.exe [2009/06/16 13:32:29 | 000,036,373 | ---- | C] () -- C:\WINDOWS\ffunlock.exe [2009/06/16 13:32:28 | 000,029,696 | ---- | C] () -- C:\WINDOWS\apm.exe [2009/06/16 13:32:28 | 000,020,480 | ---- | C] () -- C:\WINDOWS\apm.dll [2009/06/16 13:32:27 | 000,695,578 | ---- | C] () -- C:\WINDOWS\unins000.exe [2009/06/16 13:32:27 | 000,003,174 | ---- | C] () -- C:\WINDOWS\unins000.dat [2009/06/16 13:25:08 | 000,036,864 | ---- | C] () -- C:\WINDOWS\System32\ctfmon.exe.backup [2009/06/16 12:54:42 | 000,147,456 | R--- | C] () -- C:\WINDOWS\System32\igfxCoIn_v4953.dll [2009/06/16 12:54:41 | 001,991,464 | R--- | C] () -- C:\WINDOWS\System32\igkrng500.bin [2009/06/16 12:54:41 | 000,432,400 | R--- | C] () -- C:\WINDOWS\System32\igcompkrng500.bin [2009/06/16 12:40:14 | 010,747,904 | ---- | C] () -- C:\Documents and Settings\KRAWIETZ\NTUSER.bak [2009/06/16 12:38:32 | 000,241,664 | -H-- | C] () -- C:\Documents and Settings\NetworkService\NTUSER.bak [2009/06/16 12:37:46 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2009/06/16 12:36:56 | 000,050,105 | ---- | C] () -- C:\WINDOWS\activ.exe [2009/06/16 12:32:59 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2008/05/03 03:24:01 | 000,000,082 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini [2008/04/14 17:16:20 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin [2006/12/31 02:57:08 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat [2006/03/24 07:06:41 | 000,000,053 | R--- | C] () -- \AUTORUN.INF [2005/07/16 17:36:50 | 000,240,128 | R--- | C] () -- \reatogoMenu.exe [2001/10/26 12:15:16 | 000,463,910 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat [2001/10/26 12:15:16 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat [2001/10/26 12:15:16 | 000,081,256 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat [2001/10/26 12:15:16 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat [2001/08/23 09:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin [2001/08/23 09:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat [2001/08/17 17:30:24 | 000,406,162 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat [2001/08/17 17:30:24 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat [2001/08/17 17:30:24 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat [2001/08/17 17:30:22 | 000,063,614 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat [2001/08/17 17:15:38 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin [2001/07/21 18:36:48 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat [2001/07/21 18:36:04 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat [2001/07/21 18:24:16 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat [1999/01/22 12:46:58 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\MSRTEDIT.DLL [color=#E56717]========== LOP Check ==========[/color] [2010/10/22 11:51:57 | 000,000,000 | ---D | M] -- C:\WINDOWS\system32\config\systemprofile\Dane aplikacji\Foxit Software [2011/07/13 05:45:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\.purple [2011/02/11 21:05:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\AVG10 [2011/02/18 11:38:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\BITS [2011/04/09 11:06:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Braid [2010/05/08 05:43:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Dev-Cpp [2010/08/29 05:35:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\fltk.org [2011/07/22 11:42:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\foobar2000 [2009/06/16 13:46:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Foxit [2010/10/23 06:06:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Foxit Software [2010/10/01 11:15:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Gadu-Gadu 10 [2011/07/09 14:02:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\HTC [2011/07/09 14:12:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\HTC.388BC06ACDAB6261375BCE37FBA2E023C0D7EE34.1 [2011/07/12 07:45:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\jStrip [2011/07/29 21:32:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Kadu [2010/07/06 05:59:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Nikon [2011/07/02 05:24:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Nokia [2011/07/14 05:31:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\ooVoo Details [2009/06/16 14:23:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\OpenOffice.org [2011/07/20 07:08:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Opera [2011/07/02 05:25:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\PC Suite [2010/10/04 11:18:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Thunderbird [2010/10/01 11:19:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\KRAWIETZ\Dane aplikacji\Tlen.pl [2010/10/22 10:39:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Foxit Software [2011/07/20 05:25:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software [2011/03/29 23:07:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2011/02/11 21:04:54 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Common Files [2011/02/11 21:43:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\FrontLine Registry Cleaner [2010/10/01 11:15:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2011/07/02 05:21:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2011/05/16 19:34:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MFAData [2010/07/31 03:55:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\muvee Technologies [2011/07/02 05:25:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2011/02/11 20:28:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2009/06/17 11:31:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl [2011/07/16 21:00:00 | 000,000,442 | ---- | M] () -- C:\WINDOWS\Tasks\FrontLine Registry Cleaner Scheduled Scan - KRAWIETZ.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:5C321E34 < End of report >