x-kom hosting

Wirus wylacza antywirusa i utrudnia prace - logi

Kordikk
utworzono
utworzono

Witam. Chcialbym, aby ktos rzucil okiem na moje logi z OTL'a, poniewaz od wczoraj mam wielki problem... Do tej pory mialem AVG antywirusa, darmowa wersje, ale bez wirusow. Wszystko pieknie az do wczoraj. AVG przestal dzialac po tym jak go wylaczylem. Zauwazylem ze nie moge wlaczyc menadzera zadan: Administrator wylaczyl ta funkcje. Dowiedzialem sie, ze to jest wirus. Sciagnalem Avire, zrobilem skan, lecz podczas naprawiania plikow wylaczyl sie sam i juz nie moge go wlaczyc... Poczytalem troche i zdecydowalem sie wrzucic tutaj logi po tym jak nie zadzialalo uruchomienie: Virus Remover for Win32/Sality (rmslt.exe) od AVG. LOGI z OTL.txt:

[log]OTL logfile created on: 2010-06-19 08:47:23 - Run 1
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 81,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,54 Gb Free Space | 50,26% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 91,89 Gb Free Space | 22,04% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2010-06-19 08:34:53 | 000,008,704 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\winegko.exe
PRC - [2010-06-19 08:24:14 | 001,238,352 | ---- | M] (Valve Corporation) -- H:\Gry\Steam\steam.exe
PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2010-04-01 20:05:59 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2009-10-09 13:11:12 | 025,725,736 | ---- | M] (Skype Technologies S.A.) -- C:\Program Files\Skype\Phone\Skype.exe
PRC - [2009-10-09 13:11:12 | 000,078,008 | R--- | M] (Skype Technologies) -- C:\Program Files\Skype\Plugin Manager\skypePM.exe
PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:50 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiapsrv.exe
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-01-29 05:20:27 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe
PRC - [2007-09-07 15:54:54 | 000,233,472 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe
PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe
PRC - [2007-02-04 12:02:14 | 000,157,224 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe
PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe
PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
MOD - [2007-02-05 09:29:04 | 000,139,264 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpHookSE4.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5)
DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm






IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M]

[2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions
[2010-06-18 12:06:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions
[2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe ()
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG)
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] File not found
O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [VeohPlugin] C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe (Veoh Networks)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm ()
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtoPLay\COmMAnd - "" = K:\bdxkro.cmd -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\bdxkro.cmd -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\ExPlOre\ComMaNd - "" = K:\bdxkro.cmd -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\open\CommANd - "" = K:\bdxkro.cmd -- File not found
O34 - HKLM BootExecute: (rmslt.nt) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found




[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2010-06-19 05:52:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Avira
[2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2010-06-19 05:34:00 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2010-06-19 05:33:57 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2010-06-19 05:33:57 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2010-06-19 05:33:57 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2010-06-19 05:33:57 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira
[2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5
[2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun
[2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2
[2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC
[2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks
[2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead
[2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz
[2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation
[2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll
[2010-06-12 18:27:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\BITS
[2010-06-12 18:26:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO
[2010-06-12 17:08:41 | 012,466,044 | ---- | C] (DBSW) -- C:\Documents and Settings\Kordian\Pulpit\dbsw_www.przeklej.pl.exe
[2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3
[2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio
[2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails
[2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
[2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo
[2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota
[2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6
[2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
[2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys
[2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys
[2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl
[2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer
[2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client
[2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-04 13:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\POP3Profiles
[2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client
[2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
[2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO
[2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO
[2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate
[2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia
[2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
[2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla
[2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe
[2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company
[2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2
[2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia
[2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi
[2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects
[2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft
[2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM
[2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys
[2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter
[2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype
[2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative
[2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype
[2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe
[2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp
[2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks
[2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo
[2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010-05-29 22:05:13 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR
[2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage
[2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData
[2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities
[2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead
[2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe
[2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-05-29 21:38:44 | 002,043,904 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe
[2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield
[2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities
[2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne
[2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-06-19 08:46:09 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-06-19 08:31:36 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010-06-19 08:30:33 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-06-19 08:30:31 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-06-19 08:29:39 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-06-19 08:28:13 | 044,089,904 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\avira_antivir_personal_en.exe
[2010-06-19 08:04:20 | 000,000,300 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-06-19 05:34:12 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-06-18 22:27:12 | 000,000,268 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-18 15:11:20 | 000,000,512 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat
[2010-06-18 15:07:23 | 000,002,063 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat
[2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 21:04:30 | 011,505,789 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sparking V.10.exe
[2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 23:55:24 | 000,025,937 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 19:37:48 | 009,885,646 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DBFO.exe
[2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 20:33:54 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-06-13 09:03:27 | 000,000,076 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Team Fortress 2.url
[2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-06-12 17:10:27 | 012,466,044 | ---- | M] (DBSW) -- C:\Documents and Settings\Kordian\Pulpit\dbsw_www.przeklej.pl.exe
[2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 22:37:50 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini
[2010-06-09 17:28:18 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini
[2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 13:55:46 | 000,000,692 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Prince of Persia T2T.lnk
[2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-05-29 21:16:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-06-19 08:28:05 | 044,089,904 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\avira_antivir_personal_en.exe
[2010-06-19 05:34:12 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-06-18 19:17:03 | 011,505,789 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sparking V.10.exe
[2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 23:55:24 | 000,025,937 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
[2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010-06-13 20:28:31 | 000,000,300 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-13 09:03:27 | 000,000,076 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Team Fortress 2.url
[2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 19:50:04 | 001,736,704 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\GoMan.exe
[2010-06-12 18:40:14 | 000,000,512 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat
[2010-06-12 18:27:26 | 000,002,063 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat
[2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini
[2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini
[2010-06-04 13:55:45 | 000,000,692 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Prince of Persia T2T.lnk
[2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-31 13:29:57 | 009,885,646 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DBFO.exe
[2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:11:45 | 000,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-05-29 23:07:53 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn
[2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl
[2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab
[2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl
[2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl
[2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl
[2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab
[2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl
[2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl
[2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl
[2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl
[2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls
[2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl
[2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP
[2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP
[2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl
[2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB
[2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB
[2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls
[2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-05-29 21:24:41 | 000,040,960 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG
[2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc

[color=#E56717]========== LOP Check ==========[/color]

[2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-06-04 13:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\POP3Profiles
[2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-06-18 15:11:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\BITS
[2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-12 18:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO
[2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-15 23:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-18 11:44:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-05-29 21:16:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-06-19 08:30:28 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]

Mateusz J.
komentarz
komentarz

[code]DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5)[/code]Usługa groźnego wirusa Sality. Infekuje on pliki .exe, .scr, .DLL.
Jest to ciężka infekcja, na początek używasz trzech skanerów, którymi starasz się leczyć zainfekowane pliki:
1. http://www.freedrweb.com/cureit/
2. http://support.kaspersky.com/avptool2010/main?qid=208280888
3. http://www.forumpc.pl/index.php?showtopic=107753
Raporty umieść na forum.

Następnie wykonujesz nowy log, tym razem z ComboFix + OTL.

Kordikk
komentarz
komentarz (edytowane)

Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/
Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Logi z MBAM
[log]Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Wersja bazy: 4215

Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2010-06-19 11:56:29
mbam-log-2010-06-19 (11-56-29).txt

Typ skanowania: Pełne skanowanie (C:\|H:\|)
Przeskanowano obiektów: 387955
Upłynęło: 59 minut(y), 3 sekund(y)

Zainfekowanych procesów w pamięci: 1
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 5
Zainfekowanych folderów: 1
Zainfekowanych plików: 14

Zainfekowanych procesów w pamięci:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal.

Zainfekowanych folderów:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal.

Zainfekowanych plików:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal.
H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal.
H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal.
H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal.
[/log]

[quote name='Kordikk' date='19 czerwiec 2010 - 10:59' timestamp='1276941673' post='1037856']
Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/
Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Logi z MBAM
[log]Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Wersja bazy: 4215

Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2010-06-19 11:56:29
mbam-log-2010-06-19 (11-56-29).txt

Typ skanowania: Pełne skanowanie (C:\|H:\|)
Przeskanowano obiektów: 387955
Upłynęło: 59 minut(y), 3 sekund(y)

Zainfekowanych procesów w pamięci: 1
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 5
Zainfekowanych folderów: 1
Zainfekowanych plików: 14

Zainfekowanych procesów w pamięci:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal.

Zainfekowanych folderów:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal.

Zainfekowanych plików:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal.
H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal.
H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal.
H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal.
[/log]
[log]ComboFix 10-06-18.03 - Kordian 2010-06-19 14:41:28.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2601 [GMT 2:00]
Uruchomiony z: c:\documents and settings\Kordian\Moje dokumenty\Pobieranie\ComboFix.exe
AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\docume~1\Kordian\USTAWI~1\Temp\E_N4
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\eAPI.fne
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\HtmlView.fne
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\iext2.fne
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\internet.fne
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\krnln.fnr
c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\xplib.fne
c:\documents and settings\Kordian\Dane aplikacji\BITS
c:\documents and settings\Kordian\Dane aplikacji\BITS\BITS.ini
c:\documents and settings\Kordian\Dane aplikacji\BITS\DHTTable.dat
c:\documents and settings\Kordian\Dane aplikacji\BITS\ProxyList.ini
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182717.torrent
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182717.torrent.filelist
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182805.torrent
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182805.torrent.filelist
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182807.torrent
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182807.torrent.filelist
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.filelist
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.hybridlist
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.statistic
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100613002916.torrent
c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100613002916.torrent.filelist
c:\documents and settings\Kordian\Dane aplikacji\BITS\UPnP.ini
c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO
c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll
c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetHook.dll
c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm
c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm
c:\windows\Alcmtr.exe
c:\windows\system32\secushr.dat
c:\windows\system32\secustat.dat

.
((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_ABP470N5
-------\Service_abp470n5


((((((((((((((((((((((((( Pliki utworzone od 2010-05-19 do 2010-06-19 )))))))))))))))))))))))))))))))
.

2010-06-19 10:11 . 2010-06-19 10:11 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb
2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes
2010-06-19 08:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-06-19 08:54 . 2010-06-19 08:55 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes
2010-06-19 08:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner
2010-06-19 03:52 . 2010-06-19 03:52 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Avira
2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData
2010-06-19 03:33 . 2010-03-01 08:05 124784 ----a-w- c:\windows\system32\drivers\avipbb.sys
2010-06-19 03:33 . 2010-02-16 12:24 60936 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-06-19 03:33 . 2009-05-11 10:49 51992 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2010-06-19 03:33 . 2009-05-11 10:49 17016 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\program files\Avira
2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Avira
2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5
2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV
2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe
2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead
2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz
2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe
2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation
2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll
2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA
2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat
2010-06-11 18:53 . 2010-06-15 21:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0
2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails
2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe
2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
2010-06-11 15:22 . 2010-06-16 19:24 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6
2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys
2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles
2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache
2010-06-09 13:07 . 2010-06-09 13:07 -------- d-----w- c:\program files\DIFX
2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys
2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys
2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer
2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire
2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia
2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios
2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL
2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B
2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO
2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate
2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia
2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0
2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll
2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome
2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll
2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat
2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla

.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-19 12:46 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype
2010-06-19 12:31 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM
2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp
2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp
2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat
2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat
2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi
2010-06-01 21:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies
2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company
2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared
2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft
2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON
2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ
2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks
2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010)
2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe
2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype
2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype
2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView
2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0
2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero
2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys
2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek
2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield
2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe
2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG
2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage
2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online
2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll
2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll
2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe
2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll
2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll
2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE
.

------- Sigcheck -------

[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys
[7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"VeohPlugin"="c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2010-04-28 2715896]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736]
"AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 435520]
"Steam"="h:\gry\steam\steam.exe" [2010-06-19 1238352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GEST"="m‘|ü" [X]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 110592]
"36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-08-29 2043904]
"Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208]
"NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 230960]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 284200]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 157224]
"DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 233472]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"= 1 (0x1)
"DisableRegistryTools"= 1 (0x1)

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk *

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Veoh Networks\\VeohWebPlayer\\veohwebplayer.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"h:\\Gry\\Battlefield 2\\BF2.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"=
"h:\\Gry\\Steam\\Steam.exe"=
"h:\\Gry\\Pure\\Pure.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"h:\\Gry\\Call of Duty 4\\iw3mp.exe"=
"h:\\Inne\\FlashGet 3\\FlashGet3.exe"=
"h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\WINDOWS\\system32\\wscntfy.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\WINDOWS\\RaidTool\\xInsIDE.exe"=
"c:\\Program Files\\Common Files\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe"=
"c:\\WINDOWS\\system32\\netsh.exe"=
"c:\\Documents and Settings\\Kordian\\Moje dokumenty\\Pobieranie\\rmslt.exe"=
"c:\\WINDOWS\\TBPanel.exe"=
"c:\\WINDOWS\\system32\\xRaidSetup.exe"=
"c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"=
"c:\\Program Files\\ScanSoft\\OmniPageSE4\\OpwareSE4.exe"=
"c:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\DOCUME~1\\Kordian\\USTAWI~1\\Temp\\winckjj.exe"=

R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-06-19 135336]
R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784]
S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696]

--- Inne Usługi/Sterowniki w Pamięci ---

*NewlyCreated* - ABP470N5
.
.
------- Skan uzupełniający -------
.
IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm
IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Trusted Zone: kuaiche.com\software
FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\
FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - USUNIĘTO PUSTE WPISY - - - -

HKLM-Run-nwiz - nwiz.exe
AddRemove-NVIDIA Display Control Panel - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-06-19 14:46
Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...

skanowanie pomyślnie ukończone
ukryte pliki: 0

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys splq.sys >>UNKNOWN [0x8A4FC938]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28
\Driver\ACPI -> ACPI.sys @ 0xb7e73cb8
\Driver\atapi -> atapi.sys @ 0xb7e2eb40
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d37bb0
PacketIndicateHandler -> NDIS.sys @ 0xb7d44a21
SendHandler -> NDIS.sys @ 0xb7d2287b
user & kernel MBR OK

**************************************************************************
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Pliki DLL ładowane pod uruchomionymi procesami ---------------------

- - - - - - - > 'explorer.exe'(1772)
c:\program files\ScanSoft\OmniPageSE4\OpHookSE4.dll
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\system32\wdfmgr.exe
c:\program files\Razer\DeathAdder\razerofa.exe
c:\windows\system32\WINMINE.EXE
c:\docume~1\Kordian\USTAWI~1\Temp\winckjj.exe
c:\windows\system32\imapi.exe
.
**************************************************************************
.
Czas ukończenia: 2010-06-19 14:50:05 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-06-19 12:50

Przed: 26 212 741 120 bajtów wolnych
Po: 26 468 438 016 bajtów wolnych

WindowsXP-KB310994-SP2-Home-BootDisk-PLK.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

- - End Of File - - C386EE23A1F5CB4754451AAD8EB09514
[/log]
[/quote]

Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/
Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc?

@Edit

http://support.kaspersky.com/avptool2010/main?qid=208280888
http://www.freedrweb.com/cureit/
ten linki mi nie dzialaja...

Zamiast tej stronki z Dr. Web moge pobrac stad??
http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html

Logi z MBAM
[log]Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Wersja bazy: 4215

Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2010-06-19 11:56:29
mbam-log-2010-06-19 (11-56-29).txt

Typ skanowania: Pełne skanowanie (C:\|H:\|)
Przeskanowano obiektów: 387955
Upłynęło: 59 minut(y), 3 sekund(y)

Zainfekowanych procesów w pamięci: 1
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 5
Zainfekowanych folderów: 1
Zainfekowanych plików: 14

Zainfekowanych procesów w pamięci:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal.

Zainfekowanych folderów:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal.

Zainfekowanych plików:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal.
H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully.
H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal.
H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal.
H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal.
[/log]

Edytowane przez Kordikk
Mateusz J.
komentarz
komentarz

Pobierz DrWeb z innego źródła, to samo postaraj się zrobić z kaspersky removal tool.
ComboFix: http://www.forumpc.pl/index.php?showtopic=153621

Kordikk
komentarz
komentarz

logi z MBAM:
[log]Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org

Wersja bazy: 4215

Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2010-06-19 11:55:40
mbam-log-2010-06-19 (11-55-40).txt

Typ skanowania: Pełne skanowanie (C:\|H:\|)
Przeskanowano obiektów: 387955
Upłynęło: 59 minut(y), 3 sekund(y)

Zainfekowanych procesów w pamięci: 1
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 5
Zainfekowanych folderów: 1
Zainfekowanych plików: 14

Zainfekowanych procesów w pamięci:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> No action taken.

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken.

Zainfekowanych folderów:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> No action taken.

Zainfekowanych plików:
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> No action taken.
H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> No action taken.
H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> No action taken.
H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> No action taken.
H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> No action taken.
H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> No action taken.
H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> No action taken.
H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> No action taken.
C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> No action taken.
[/log]
Logi z DrWeb:
[log]014bbee7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\014bbee7.qua;Win32.Sector.12;;
014bbee7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0208c16b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0208c16b.qua;Win32.Sector.12;;
0208c16b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0311d3d3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0311d3d3.qua;Win32.HLLP.Jeefo.36352;;
0311d3d3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
03a3bd97.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\03a3bd97.qua;Win32.Sector.12;;
03a3bd97.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
044ed4a0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\044ed4a0.qua;Win32.Sector.12;;
044ed4a0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0630c807.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0630c807.qua;Win32.HLLP.Jeefo.36352;;
0630c807.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
064aa298.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\064aa298.qua;Win32.Sector.12;;
064aa298.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
06758a7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\06758a7b.qua;Win32.HLLP.Jeefo.36352;;
06758a7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
09078ddf.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\09078ddf.qua;Win32.HLLP.Jeefo.36352;;
09078ddf.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0a079ee4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a079ee4.qua;Win32.Sector.12;;
0a079ee4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0a488576.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a488576.qua;Win32.Sector.28480;;
0a488576.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0b03c5c0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0b03c5c0.qua;Win32.Sector.12;;
0b03c5c0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0bd394cc.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0bd394cc.qua;Win32.HLLP.Jeefo.36352;;
0bd394cc.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0d3ef26d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d3ef26d.qua;Win32.Sector.12;;
0d3ef26d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
0d85aa7a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d85aa7a.qua;Win32.Sector.12;;
0d85aa7a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
103cb72e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\103cb72e.qua;Win32.Sector.12;;
103cb72e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
10478104.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\10478104.qua;Win32.Sector.12;;
10478104.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
111ac12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\111ac12a.qua;Win32.Sector.12;;
111ac12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
12bcbf31.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\12bcbf31.qua;Win32.Sector.12;;
12bcbf31.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
160aa91d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\160aa91d.qua;Win32.Sector.28480;;
160aa91d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
169fcc47.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\169fcc47.qua;Win32.Sector.12;;
169fcc47.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
16c3fa5e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\16c3fa5e.qua;Win32.HLLP.Jeefo.36352;;
16c3fa5e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
17beaa10.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\17beaa10.qua;Win32.Sector.12;;
17beaa10.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
185dec7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\185dec7b.qua;Win32.Sector.12;;
185dec7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
19a08bee.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\19a08bee.qua;Win32.Sector.12;;
19a08bee.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
1be09569.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1be09569.qua;Win32.Sector.28480;;
1be09569.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
1f4b98a7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1f4b98a7.qua;Win32.Sector.28480;;
1f4b98a7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
21539608.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\21539608.qua;Win32.Sector.12;;
21539608.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
241c83c7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\241c83c7.qua;Win32.HLLP.Jeefo.36352;;
241c83c7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2425dc22.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2425dc22.qua;Win32.HLLP.Jeefo.36352;;
2425dc22.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2438d025.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2438d025.qua;Win32.Sector.12;;
2438d025.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
24878fd6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\24878fd6.qua;Win32.Sector.12;;
24878fd6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
251fd69f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\251fd69f.qua;Win32.Sector.28480;;
251fd69f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2622c65a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2622c65a.qua;Win32.Sector.12;;
2622c65a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2797b00e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2797b00e.qua;Win32.Sector.12;;
2797b00e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
28fce12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\28fce12a.qua;Win32.HLLP.Jeefo.36352;;
28fce12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2b4dea67.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2b4dea67.qua;Win32.Sector.12;;
2b4dea67.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2cc5e720.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2cc5e720.qua;Win32.Sector.12;;
2cc5e720.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2f3ca0e1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f3ca0e1.qua;Win32.Sector.12;;
2f3ca0e1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
2f8fdbd0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f8fdbd0.qua;Win32.Sector.28480;;
2f8fdbd0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
3098f329.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3098f329.qua;Win32.Sector.12;;
3098f329.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
3189b5d0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3189b5d0.qua;Win32.Sector.12;;
3189b5d0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
34b7dba8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\34b7dba8.qua;Win32.Sector.12;;
34b7dba8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
3554faa1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3554faa1.qua;Win32.Sector.12;;
3554faa1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
3f11d1df.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3f11d1df.qua;Win32.Sector.12;;
3f11d1df.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
40308c45.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\40308c45.qua;Win32.Sector.12;;
40308c45.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4157b62e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4157b62e.qua;Win32.HLLP.Jeefo.36352;;
4157b62e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
41c5d310.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\41c5d310.qua;Win32.HLLP.Jeefo.36352;;
41c5d310.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4843c114.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4843c114.qua;Win32.Sector.12;;
4843c114.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4c56f351.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4c56f351.qua;Prawdopodobnie Trojan.Packed.Based;;
4c56f351.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4e2abc82.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2abc82.qua;Win32.Sector.12;;
4e2abc82.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4e2ef942.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2ef942.qua;Win32.Sector.12;;
4e2ef942.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
4f0a8bc4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4f0a8bc4.qua;Win32.Sector.28480;;
4f0a8bc4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
55c982c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\55c982c3.qua;Win32.HLLP.Jeefo.36352;;
55c982c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
57709a1f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\57709a1f.qua;Win32.Sector.12;;
57709a1f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5791a70d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5791a70d.qua;Trojan.PWS.Wsgame.12661;;
5791a70d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5a49d802.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5a49d802.qua;Win32.Sector.12;;
5a49d802.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5aafd8f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5aafd8f8.qua;Win32.Sector.12;;
5aafd8f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5c689008.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c689008.qua;Win32.Sector.12;;
5c689008.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5c93fc93.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c93fc93.qua;Win32.Sector.12;;
5c93fc93.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5ce7cc5b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5ce7cc5b.qua;Win32.Sector.12;;
5ce7cc5b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5d11ff00.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5d11ff00.qua;Win32.Sector.12;;
5d11ff00.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5dd599e0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5dd599e0.qua;Win32.Sector.12;;
5dd599e0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5deff551.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5deff551.qua;Win32.Sector.12;;
5deff551.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
5e3cd1d6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5e3cd1d6.qua;Win32.HLLP.Jeefo.36352;;
5e3cd1d6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
67e4f47a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\67e4f47a.qua;Win32.HLLP.Jeefo.36352;;
67e4f47a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
6b49a701.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6b49a701.qua;Win32.HLLP.Jeefo.36352;;
6b49a701.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
6c5eae36.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6c5eae36.qua;Win32.Sector.12;;
6c5eae36.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
6cc7c408.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6cc7c408.qua;Win32.Sector.12;;
6cc7c408.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
6d1daad1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6d1daad1.qua;Win32.Sector.12;;
6d1daad1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
6f669e75.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6f669e75.qua;Win32.HLLP.Jeefo.36352;;
6f669e75.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
711c9691.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\711c9691.qua;Win32.Sector.12;;
711c9691.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
71f884f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\71f884f8.qua;Win32.Sector.12;;
71f884f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
742b92c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\742b92c3.qua;Win32.Sector.12;;
742b92c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
7590f5a5.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7590f5a5.qua;Win32.Sector.12;;
7590f5a5.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
76bda1ce.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\76bda1ce.qua;Win32.Sector.12;;
76bda1ce.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
78ee95e9.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78ee95e9.qua;Win32.HLLP.Jeefo.36352;;
78ee95e9.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
78f591f6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78f591f6.qua;Win32.HLLP.Jeefo.36352;;
78f591f6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
7965ea1e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7965ea1e.qua;Win32.Sector.12;;
7965ea1e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
799785d8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\799785d8.qua;Win32.Sector.12;;
799785d8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
7f128707.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7f128707.qua;Win32.Sector.12;;
7f128707.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;;
SetupVeohVideoCompass-1.5.2.1058.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo\Veoh;Win32.Sector.12;Wyleczony.;
amxmodx-installer-1.8.1.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
ccsetup232.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
GoogleSketchUpWPL.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
rmslt.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
videomach-3.1.5.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
wodboaf_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.;
DBFO.exe\zaqw.exe;C:\Documents and Settings\Kordian\Pulpit\DBFO.exe;Win32.HLLW.MyBot.10;;
DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Archiwum zawierające zainfekowane obiekty;;
dbsw_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.;
dbsw_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.HLLW.MyBot.10;Usunięty.;
GoMan.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.;
Sparking V.10.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.;
Sparking V.10.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.HLLW.MyBot.10;Usunięty.;
Legend of Shinobi.exe;C:\Documents and Settings\Kordian\Pulpit\Cliencio;Win32.Sector.12;Wyleczony.;
Patch.exe;C:\Documents and Settings\Kordian\Pulpit\Cliencio;Win32.Sector.12;Wyleczony.;
DaWinBi.exe;C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client;Win32.Sector.12;Wyleczony.;
NowOTS.exe;C:\Documents and Settings\Kordian\Pulpit\NowOTS Client;Win32.Sector.12;Wyleczony.;
WoDBO Server Changer for Meteor.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Win32.Sector.12;Wyleczony.;
WoDBO.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Trojan.MulDrop.11541;Usunięty.;
WoDBO.exe;C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun;Win32.HLLW.MyBot.10;Usunięty.;
AIRShareInstaller.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files;Win32.Sector.12;Wyleczony.;
Setup.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files;Win32.Sector.12;Wyleczony.;
Setup.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files\READER9;Win32.Sector.12;Wyleczony.;
PnkBstrA.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster\COD4\pb;Win32.Sector.12;Wyleczony.;
PnkBstrB.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster\COD4\pb;Win32.Sector.12;Wyleczony.;
winyxdsgn.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp;Trojan.Spambot.3654;Usunięty.;
hdaudio_1.0.9.1_xp_vista_win7.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
nviewsetup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
nvudisp.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
setup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
cryostasis.exe;C:\Program Files\1C Company\Cryostasis;Odmiana wirusa Win32.Sector.5;;
protect.exe;C:\Program Files\1C Company\Cryostasis;Win32.Sector.12;Wyleczony.;
014bbee7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\014bbee7.qua;Win32.Sector.12;;
014bbee7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0208c16b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0208c16b.qua;Win32.Sector.12;;
0208c16b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0311d3d3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0311d3d3.qua;Win32.HLLP.Jeefo.36352;;
0311d3d3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
03a3bd97.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\03a3bd97.qua;Win32.Sector.12;;
03a3bd97.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
044ed4a0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\044ed4a0.qua;Win32.Sector.12;;
044ed4a0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0630c807.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0630c807.qua;Win32.HLLP.Jeefo.36352;;
0630c807.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
064aa298.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\064aa298.qua;Win32.Sector.12;;
064aa298.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
06758a7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\06758a7b.qua;Win32.HLLP.Jeefo.36352;;
06758a7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
09078ddf.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\09078ddf.qua;Win32.HLLP.Jeefo.36352;;
09078ddf.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0a079ee4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a079ee4.qua;Win32.Sector.12;;
0a079ee4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0a488576.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a488576.qua;Win32.Sector.28480;;
0a488576.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0b03c5c0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0b03c5c0.qua;Win32.Sector.12;;
0b03c5c0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0bd394cc.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0bd394cc.qua;Win32.HLLP.Jeefo.36352;;
0bd394cc.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0d3ef26d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d3ef26d.qua;Win32.Sector.12;;
0d3ef26d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
0d85aa7a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d85aa7a.qua;Win32.Sector.12;;
0d85aa7a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
103cb72e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\103cb72e.qua;Win32.Sector.12;;
103cb72e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
10478104.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\10478104.qua;Win32.Sector.12;;
10478104.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
111ac12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\111ac12a.qua;Win32.Sector.12;;
111ac12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
12bcbf31.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\12bcbf31.qua;Win32.Sector.12;;
12bcbf31.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
160aa91d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\160aa91d.qua;Win32.Sector.28480;;
160aa91d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
169fcc47.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\169fcc47.qua;Win32.Sector.12;;
169fcc47.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
16c3fa5e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\16c3fa5e.qua;Win32.HLLP.Jeefo.36352;;
16c3fa5e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
17beaa10.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\17beaa10.qua;Win32.Sector.12;;
17beaa10.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
185dec7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\185dec7b.qua;Win32.Sector.12;;
185dec7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
19a08bee.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\19a08bee.qua;Win32.Sector.12;;
19a08bee.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
1be09569.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1be09569.qua;Win32.Sector.28480;;
1be09569.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
1f4b98a7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1f4b98a7.qua;Win32.Sector.28480;;
1f4b98a7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
21539608.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\21539608.qua;Win32.Sector.12;;
21539608.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
241c83c7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\241c83c7.qua;Win32.HLLP.Jeefo.36352;;
241c83c7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2425dc22.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2425dc22.qua;Win32.HLLP.Jeefo.36352;;
2425dc22.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2438d025.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2438d025.qua;Win32.Sector.12;;
2438d025.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
24878fd6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\24878fd6.qua;Win32.Sector.12;;
24878fd6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
251fd69f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\251fd69f.qua;Win32.Sector.28480;;
251fd69f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2622c65a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2622c65a.qua;Win32.Sector.12;;
2622c65a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2797b00e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2797b00e.qua;Win32.Sector.12;;
2797b00e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
28fce12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\28fce12a.qua;Win32.HLLP.Jeefo.36352;;
28fce12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2b4dea67.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2b4dea67.qua;Win32.Sector.12;;
2b4dea67.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2cc5e720.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2cc5e720.qua;Win32.Sector.12;;
2cc5e720.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2f3ca0e1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f3ca0e1.qua;Win32.Sector.12;;
2f3ca0e1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
2f8fdbd0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f8fdbd0.qua;Win32.Sector.28480;;
2f8fdbd0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
3098f329.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3098f329.qua;Win32.Sector.12;;
3098f329.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
3189b5d0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3189b5d0.qua;Win32.Sector.12;;
3189b5d0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
34b7dba8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\34b7dba8.qua;Win32.Sector.12;;
34b7dba8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
3554faa1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3554faa1.qua;Win32.Sector.12;;
3554faa1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
3f11d1df.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3f11d1df.qua;Win32.Sector.12;;
3f11d1df.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
40308c45.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\40308c45.qua;Win32.Sector.12;;
40308c45.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4157b62e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4157b62e.qua;Win32.HLLP.Jeefo.36352;;
4157b62e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
41c5d310.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\41c5d310.qua;Win32.HLLP.Jeefo.36352;;
41c5d310.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4843c114.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4843c114.qua;Win32.Sector.12;;
4843c114.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4c56f351.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4c56f351.qua;Prawdopodobnie Trojan.Packed.Based;;
4c56f351.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4e2abc82.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2abc82.qua;Win32.Sector.12;;
4e2abc82.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4e2ef942.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2ef942.qua;Win32.Sector.12;;
4e2ef942.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
4f0a8bc4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4f0a8bc4.qua;Win32.Sector.28480;;
4f0a8bc4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
55c982c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\55c982c3.qua;Win32.HLLP.Jeefo.36352;;
55c982c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
57709a1f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\57709a1f.qua;Win32.Sector.12;;
57709a1f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5791a70d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5791a70d.qua;Trojan.PWS.Wsgame.12661;;
5791a70d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5a49d802.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5a49d802.qua;Win32.Sector.12;;
5a49d802.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5aafd8f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5aafd8f8.qua;Win32.Sector.12;;
5aafd8f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5c689008.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c689008.qua;Win32.Sector.12;;
5c689008.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5c93fc93.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c93fc93.qua;Win32.Sector.12;;
5c93fc93.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5ce7cc5b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5ce7cc5b.qua;Win32.Sector.12;;
5ce7cc5b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5d11ff00.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5d11ff00.qua;Win32.Sector.12;;
5d11ff00.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5dd599e0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5dd599e0.qua;Win32.Sector.12;;
5dd599e0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5deff551.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5deff551.qua;Win32.Sector.12;;
5deff551.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
5e3cd1d6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5e3cd1d6.qua;Win32.HLLP.Jeefo.36352;;
5e3cd1d6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
67e4f47a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\67e4f47a.qua;Win32.HLLP.Jeefo.36352;;
67e4f47a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
6b49a701.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6b49a701.qua;Win32.HLLP.Jeefo.36352;;
6b49a701.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
6c5eae36.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6c5eae36.qua;Win32.Sector.12;;
6c5eae36.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
6cc7c408.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6cc7c408.qua;Win32.Sector.12;;
6cc7c408.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
6d1daad1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6d1daad1.qua;Win32.Sector.12;;
6d1daad1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
6f669e75.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6f669e75.qua;Win32.HLLP.Jeefo.36352;;
6f669e75.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
711c9691.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\711c9691.qua;Win32.Sector.12;;
711c9691.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
71f884f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\71f884f8.qua;Win32.Sector.12;;
71f884f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
742b92c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\742b92c3.qua;Win32.Sector.12;;
742b92c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
7590f5a5.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7590f5a5.qua;Win32.Sector.12;;
7590f5a5.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
76bda1ce.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\76bda1ce.qua;Win32.Sector.12;;
76bda1ce.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
78ee95e9.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78ee95e9.qua;Win32.HLLP.Jeefo.36352;;
78ee95e9.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
78f591f6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78f591f6.qua;Win32.HLLP.Jeefo.36352;;
78f591f6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
7965ea1e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7965ea1e.qua;Win32.Sector.12;;
7965ea1e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
799785d8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\799785d8.qua;Win32.Sector.12;;
799785d8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
7f128707.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7f128707.qua;Win32.Sector.12;;
7f128707.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
ccsetup232.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
rmslt.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.;
DBFO.exe\zaqw.exe;C:\Documents and Settings\Kordian\Pulpit\DBFO.exe;Win32.HLLW.MyBot.10;;
DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
WoDBO Server Changer for Meteor.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Win32.Sector.12;Wyleczony.;
hdaudio_1.0.9.1_xp_vista_win7.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
nviewsetup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
nvudisp.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
setup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.;
cryostasis.exe;C:\Program Files\1C Company\Cryostasis;Odmiana wirusa Win32.Sector.5;Przeniesiony.;
AcroRd32.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader;Win32.Sector.12;Wyleczony.;
ConsoleApp.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader\plug_ins\Printme;Win32.Sector.12;Wyleczony.;
acroaum.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader\Updater;Win32.Sector.12;Wyleczony.;
Ip Changer Updater.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.;
Tibia MULTI-ip changer.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.;
UNinstaller.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.;
avgtray.exe;C:\Program Files\AVG\AVG9;Win32.Sector.12;Wyleczony.;
BJEZPLUS.EXE;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.;
BJEZPRN.EXE;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.;
uninst.exe;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.;
uninstall.exe;C:\Program Files\Canon\IJ Manual\MP140 SERIES;Win32.Sector.12;Wyleczony.;
Maint.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.;
mpn31.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.;
mpncopy.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.;
mpnscan.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.;
cnmvs.exe;C:\Program Files\CanonBJ\IJPrinter\Canon MP140 series;Win32.Sector.12;Wyleczony.;
uninst.exe;C:\Program Files\CCleaner;Win32.Sector.12;Wyleczony.;
NeroCheck.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NeroPatentActivation.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NeroScoutOptions.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NeroSearchAdvanced.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NeroUpgrade.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NeTsMan.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NiReg.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NMBgMonitor.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NMIndexingService.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
NMIndexStoreSvr.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.;
SetupX.exe;C:\Program Files\Common Files\Ahead\Nero Web;Win32.Sector.12;Wyleczony.;
IDriver.exe;C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32;Win32.Sector.12;Wyleczony.;
IDriver2.exe;C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32;Win32.Sector.12;Wyleczony.;
agent.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.;
ISDM.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.;
issch.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.;
DW20.EXE;C:\Program Files\Common Files\Microsoft Shared\DW;Win32.Sector.12;Wyleczony.;
DWTRIG20.EXE;C:\Program Files\Common Files\Microsoft Shared\DW;Win32.Sector.12;Wyleczony.;
SSBkgdUpdate.exe;C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate;Win32.Sector.12;Wyleczony.;
DTLite.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.;
DTLiteHlp.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.;
uninst.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.;
DPInst.exe;C:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997;Win32.Sector.12;Wyleczony.;
bzip2.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
gimp-2.6.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
gimp-console-2.6.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
gspawn-win32-helper.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
pango-querymodules.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
ps-pat-load.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.;
file-png.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0;Win32.Sector.12;Wyleczony.;
alien-map.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
align-layers.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
animation-optimize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
animation-play.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
antialias.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
apply-canvas.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
blinds.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
blur-gauss-selective.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
blur-gauss.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
blur-motion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
blur.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
border-average.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
bump-map.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
cartoon.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
channel-mixer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
checkerboard.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
cml-explorer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
color-cube-analyze.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
color-exchange.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
color-rotate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
color-to-alpha.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
colorify.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
colormap-remap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
compose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
contrast-retinex.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
convolution-matrix.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
crop-auto.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
cubism.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
curve-bend.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
decompose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
deinterlace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
depth-merge.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
despeckle.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
destripe.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
diffraction.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
displace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
edge-dog.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
edge-laplace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
edge-neon.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
edge-sobel.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
edge.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
emboss.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
engrave.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-apng.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-bmp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-cel.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-compressor.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-csource.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-dicom.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-faxg3.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-fits.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-fli.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-gbr.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-gif-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-gif-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-gih.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-html-table.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-ico.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-jpeg.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-mng.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-pat.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-pcx.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-pdf.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-pnm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-ps.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-psd-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-psd-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-psp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-raw.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-sgi.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-sunras.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-svg.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-tga.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-tiff-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-tiff-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-uri.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-wmf.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-xbm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-xpm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
file-xwd.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
film.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
filter-pack.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
flame.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
fractal-explorer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
fractal-trace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
gee-zoom.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
gee.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
gfig.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
gimpressionist.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
gradient-flare.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
grid.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
help.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
hot.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
ifs-compose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
illusion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
imagemap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
iwarp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
jigsaw.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
lcms.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
lens-apply.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
lens-distortion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
lens-flare.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
lighting.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
map-object.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
maze.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
metadata.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
mosaic.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
newsprint.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
nl-filter.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
noise-hsv.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
noise-randomize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
noise-rgb.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
noise-solid.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
noise-spread.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
nova.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
oilify.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
pagecurl.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
photocopy.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
pixelize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
plasma.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
plugin-browser.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
polar-coords.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
print.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
qbist.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
red-eye-removal.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
ripple.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
rotate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
sample-colorize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
script-fu.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
selection-to-path.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
sharpen.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
shift.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
sinus.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
smooth-palette.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
softglow.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
sparkle.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
sphere-designer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
threshold-alpha.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
tile-glass.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
tile-paper.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
tile-seamless.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
tile-small.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
tile.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
twain.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
unit-editor.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
unsharp-mask.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
value-propagate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
van-gogh-lic.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
video.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
warp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
waves.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
whirl-pinch.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
win-snap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
wind.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.;
HLTooLz.exe;C:\Program Files\HLTooLz;Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{931C37FC-594D-43A9-B10F-A2F2B1F03498};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{98736A65-3C79-49EC-B7E9-A3C77774B0E6};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217};Win32.Sector.12;Wyleczony.;
uninstall.exe;C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC};Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\InstallShield Installation Information\{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873};Win32.Sector.12;Wyleczony.;
iv_uninstall.exe;C:\Program Files\IrfanView;Win32.Sector.12;Wyleczony.;
Slideshow.exe;C:\Program Files\IrfanView\Plugins;Win32.Sector.12;Wyleczony.;
mbam.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.;
mbamgui.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.;
mbamservice.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.;
msmsgs.exe;C:\Program Files\Messenger;Win32.Sector.12;Niewyleczalny.Przeniesiony.;
mshelp2tool.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Documentation\DirectX9;Win32.Sector.12;Wyleczony.;
DXSETUP.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Redist;Win32.Sector.12;Wyleczony.;
AntiAlias.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
BasicHLSL.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
Blobs.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
CompiledEffect.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
ConfigSystem.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
CustomUI.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
DepthOfField.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
EffectParam.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
EmptyProject.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
EnhancedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRCubeMap.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRFormats.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRLighting.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRPipeline.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
HLSLwithoutEffects.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
Instancing.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
IrradianceVolume.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
LocalDeformablePRT.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
MeshFromOBJ.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
MultiAnimation.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
OptimizedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
ParallaxOcclusionMapping.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
Pick.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
PixelMotionBlur.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
PostProcess.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
PRTCmdLine.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
PRTDemo.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
ShadowMap.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
ShadowVolume.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
SimpleSample.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
SkinnedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
UVAtlas.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.;
10BitScanout10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
AdvancedParticles.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
BasicHLSL10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
ContentStreaming.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
CubeMapGS.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
DDSWithoutD3DX.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
DeferredParticles.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
DepthOfField10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
DrawPredicated.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
EmptyProject10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
FixedFuncEMU.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
GPUBoids.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
GPUSpectrogram.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
HDAO10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRFormats10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
HLSLWithoutFX10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
Instancing10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
MeshFromOBJ10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
MotionBlur10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
MultiMon10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
MultiStreamRendering.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
NBodyGravity.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
Pick10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
PipesGS.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
ProceduralMaterials.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
RaycastTerrain.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
ShadowVolume10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
SimpleSample10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
Skinning10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
SparseMorphTargets.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
TransparencyAA10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.;
AdaptiveTessellationCS40.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
BasicCompute11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
BasicHLSL11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
BC6HBC7EncoderDecoder11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
CascadedShadowMaps11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
ComputeShaderSort11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
ContactHardeningShadows11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
DDSWithoutD3DX11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
DetailTessellation11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
DynamicShaderLinkage11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
EmptyProject11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
HDRToneMappingCS11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
MultithreadedRendering11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
NBodyGravityCS11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
OIT11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
PNTriangles11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
SimpleBezier11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
SimpleSample11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
SubD11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
VarianceShadows11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.;
CustomFormat.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.;
FFConst.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.;
Joystick.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.;
Collision.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
CoreDetection.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
D3D11Install.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
DxDiagOutput.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
DxDiagReport.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
DXInstall.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
ExampleForFirewallInstall.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
GameStatisticsExample.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
InstallOnDemand.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
ParentalControlTimeLimits.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
VideoMemory.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.;
Tut01_PlayCue.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.;
Tut02_Stream.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.;
Tut03_Variable.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.;
XACTCodeDriven.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.;
XACTGame.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.;
XAudio2BasicSound.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.;
XAudio2BasicStream.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.;
XAudio2CustomAPO.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.;
XAudio2Sound3D.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.;
AudioController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.;
RumbleController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.;
SimpleController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.;
XInputGame.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.;
SampleBrowser.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\SampleBrowser;Win32.Sector.12;Wyleczony.;
AdpcmEncode.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
AudConsole3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
DXCapsViewer.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
dxcpl.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
DXErr.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
DxTex.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
DXViewer.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
fxc.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
GDFMaker.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
GDFTrace.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
MeshConvert.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
PIXAdmin.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
PIXWin.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
texconv.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
Xact3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
XactBld3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
XAudConsole3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
xWMAEncode.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.;
setup.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86\Microsoft XNA Test Tools;Win32.Sector.12;Wyleczony.;
crashreporter.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
firefox.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
updater.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
helper.exe;C:\Program Files\Mozilla Firefox\uninstall;Win32.Sector.12;Wyleczony.;
NeDwFileHelper.exe;C:\Program Files\Nero\Nero 7\Core;Win32.Sector.12;Wyleczony.;
NeroCmd.exe;C:\Program Files\Nero\Nero 7\Core;Win32.Sector.12;Wyleczony.;
discinfo.exe;C:\Program Files\Nero\Nero 7\Core\SecurDisc;Win32.Sector.12;Wyleczony.;
NeroStartSmart.exe;C:\Program Files\Nero\Nero 7\Nero StartSmart;Win32.Sector.12;Wyleczony.;
CDSpeed.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.;
DMAManager.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.;
DriveSpeed.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.;
InfoTool.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.;
nvcplui.exe;C:\Program Files\NVIDIA Corporation\Control Panel Client;Win32.Sector.12;Wyleczony.;
keystone.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.;
nvAppBar.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.;
nvDspSch.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.;
nViewSetup.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.;
nwiz.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.;
opera.exe;C:\Program Files\Opera;Win32.Sector.12;Wyleczony.;
netscape.exe;C:\Program Files\Opera\program;Win32.Sector.12;Wyleczony.;
NPSWF32_FlashUtil.exe;C:\Program Files\Opera\program\plugins;Win32.Sector.12;Wyleczony.;
razercfg.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.;
razerhid.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.;
razertra.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.;
DPInst.exe;C:\Program Files\Razer\DeathAdder\Driver;Win32.Sector.12;Wyleczony.;
DPInst.exe;C:\Program Files\Razer\DeathAdder\Driver\vista;Win32.Sector.12;Wyleczony.;
mplayerc.exe;C:\Program Files\Real Alternative\Media Player Classic;Win32.Sector.12;Wyleczony.;
upgrdhlp.exe;C:\Program Files\Real Alternative\Update_OB;Win32.Sector.12;Wyleczony.;
Alcmtr.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.;
ChCfg.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.;
RtlUpd.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.;
SkyTel.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.;
SoundMan.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.;
KillOP.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
launchop.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
OmniPage.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
opa11.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
OpWareSE4.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
ScannerWizard.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
TwainClient.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
xocr32b.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.;
Ereg.exe;C:\Program Files\ScanSoft\OmniPageSE4\Ereg;Win32.Sector.12;Wyleczony.;
SkypeIEPluginBroker.exe;C:\Program Files\Skype\Toolbars\Internet Explorer;Win32.Sector.12;Wyleczony.;
SkypeNames2.exe;C:\Program Files\Skype\Toolbars\Shared;Win32.Sector.12;Wyleczony.;
Patch.exe;C:\Program Files\Tibia;Win32.Sector.12;Wyleczony.;
Tibia.exe;C:\Program Files\Tibia;Win32.Sector.12;Wyleczony.;
uninst.exe;C:\Program Files\Veoh Networks\Veoh Video Compass;Win32.Sector.12;Wyleczony.;
uninst.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.;
VeohFlashPlayer.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.;
veohwebplayer.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.;
Win32ImageGrabber.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.;
uninstall.exe;C:\Program Files\VideoMach-3.1.5;Win32.Sector.12;Wyleczony.;
uninstall.exe;C:\Program Files\WapSter\WapSter AQQ;Win32.Sector.12;Wyleczony.;
UninstWA.exe;C:\Program Files\Winamp;Win32.Sector.12;Wyleczony.;
winampa.exe;C:\Program Files\Winamp;Win32.Sector.12;Wyleczony.;
dlimport.exe;C:\Program Files\Windows Media Player;Win32.Sector.12;Wyleczony.;
wmsetsdk.exe;C:\Program Files\Windows Media Player;Win32.Sector.12;Wyleczony.;
Rar.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.;
RarExtLoader.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.;
Uninstall.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.;
UnRAR.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.;
WinRAR.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.;
Alcmtr.exe.vir;C:\Qoobox\Quarantine\C\WINDOWS;Win32.Sector.12;Wyleczony.;
A0018848.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.;
A0018849.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.;
A0018855.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.;
A0018859.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.;
A0039144.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP91;Win32.HLLW.MyBot.10;Usunięty.;
A0041245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP94;Trojan.MulDrop.11541;Usunięty.;
A0041249.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP94;Win32.HLLW.MyBot.10;Usunięty.;
A0041489.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041490.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041491.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041492.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041494.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041588.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041621.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041623.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041625.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041626.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041628.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041629.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041632.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041676.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0041676.exe;Win32.HLLW.MyBot.10;;
A0041676.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0041677.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0041684.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0041691.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041692.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Trojan.MulDrop.11541;Usunięty.;
A0041694.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0041761.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0041890.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042129.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042130.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042137.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042139.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042140.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042141.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042142.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042143.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042145.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042148.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042188.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042189.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042190.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042191.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042192.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042193.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042195.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042243.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042244.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042244.exe;Win32.HLLW.MyBot.10;;
A0042244.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0042245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0042252.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0042344.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042345.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Trojan.MulDrop.11541;Usunięty.;
A0042346.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0042351.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042352.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042359.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042367.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042369.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042386.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042391.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042396.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042549.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.;
A0043108.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043109.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043110.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043111.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043112.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043113.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043116.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043117.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043149.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043150.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043153.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043154.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0043154.exe;Win32.HLLW.MyBot.10;;
A0043154.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0043155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043157.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043159.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043159.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043164.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043165.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0043166.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043172.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043173.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043174.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043182.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043183.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043306.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043310.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043311.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043313.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043315.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043328.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043355.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043356.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043359.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043360.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043360.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0043360.exe;Win32.HLLW.MyBot.10;;
A0043360.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0043361.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043361.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043362.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043363.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043365.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043365.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043370.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0043372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0043380.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043381.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043383.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043420.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043421.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043422.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043423.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043424.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043425.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043427.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043445.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044446.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044447.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044448.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044449.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044451.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044452.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044454.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044495.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044496.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044499.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044500.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0044500.exe;Win32.HLLW.MyBot.10;;
A0044500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0044501.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044501.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0044502.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0044510.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044511.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0044512.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0044521.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044522.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044523.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044528.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044529.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044554.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044555.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044557.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044576.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044582.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044584.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044586.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044589.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044591.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044592.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044594.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044595.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044596.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044598.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044599.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044600.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044601.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044607.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044608.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044610.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044611.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044613.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044615.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044616.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044617.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044625.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044626.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044628.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044630.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044631.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044632.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044633.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044634.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044635.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044637.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044640.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044641.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044642.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044643.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044645.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044646.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044647.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044648.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044649.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044650.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044651.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044652.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044654.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044655.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044657.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044658.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044659.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044661.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044662.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044663.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044664.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044665.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044666.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044668.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044671.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044672.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044674.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044675.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044677.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044678.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044679.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044681.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044683.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044684.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044686.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044687.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044688.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044689.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044690.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044691.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044692.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044693.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044694.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044696.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044697.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044698.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044699.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044700.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044701.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044702.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044706.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044707.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044708.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044709.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044710.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044711.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044712.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044715.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044716.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044717.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044720.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044721.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044722.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044723.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044724.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044725.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044727.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044728.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044730.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044732.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044734.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044735.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044736.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044737.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044738.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044739.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044740.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044742.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044744.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044745.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044746.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044747.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044750.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044751.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044753.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044754.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044755.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044758.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044759.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044760.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044761.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044762.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044764.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044768.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044769.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044770.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044771.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044772.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044773.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044774.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044775.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044776.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044778.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044780.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044781.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044783.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044784.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044786.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044788.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044789.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044790.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044791.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044792.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044793.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044794.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044796.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044797.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044798.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044799.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044800.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044801.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044803.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044804.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044805.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044806.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044807.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044809.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044810.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044811.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044813.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044814.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044817.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044818.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044819.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044820.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044821.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044825.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044826.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044827.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044829.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044955.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044956.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045016.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045072.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0045111.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045154.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045156.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045157.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045158.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045161.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045164.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045238.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045240.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0045241.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045256.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045257.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045258.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045259.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0045261.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045262.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046252.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046253.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046254.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046256.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046261.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046265.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046266.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046267.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046279.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046280.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046281.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046282.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0046284.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046285.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046347.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046349.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046366.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046367.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046370.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046371.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0046371.exe;Win32.HLLW.MyBot.10;;
A0046371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0046372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0046373.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046374.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046376.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046376.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0046387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0046390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046391.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046392.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046401.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046402.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046413.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046414.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046415.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046416.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046417.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.;
A0047246.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047247.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047248.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047249.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047250.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047253.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047262.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047263.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047265.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047266.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0047268.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047269.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047302.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047303.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047306.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047307.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0047307.exe;Win32.HLLW.MyBot.10;;
A0047307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0047308.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047308.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0047309.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047310.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0047320.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0047329.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047330.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047331.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047338.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047339.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047351.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047352.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047353.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047354.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047355.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.;
A0047379.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047382.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047384.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047385.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047391.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047392.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047393.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047394.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047395.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047396.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047397.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047398.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047399.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047400.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047405.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047406.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047407.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047408.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047409.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047410.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047411.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047413.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047414.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047415.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047416.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047417.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047422.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047423.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047424.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047425.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047426.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047427.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047428.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047429.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047430.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047431.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047432.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047434.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047436.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047437.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047438.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047439.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047440.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047441.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047442.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047443.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047444.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047445.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047446.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047447.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047448.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047449.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047450.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047451.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047452.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047453.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047454.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047455.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047456.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047458.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047459.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047460.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047461.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047462.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047463.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047465.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047468.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047469.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047471.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047472.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047473.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047474.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047475.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047476.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047477.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047478.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047479.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047480.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047481.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047482.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047483.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047484.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047485.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047486.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047487.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047488.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047489.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047490.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047491.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047493.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047494.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047495.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047496.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047497.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047498.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047499.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047504.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047506.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047507.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047508.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047509.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047511.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047512.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047513.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047514.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047516.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047517.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047518.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047519.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047520.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047521.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047522.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047523.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047524.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047525.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047526.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047527.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047528.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047529.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047530.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047531.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047532.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047533.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047534.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047535.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047536.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047537.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047539.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047541.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047542.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047543.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047544.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047545.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047546.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047547.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047548.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047549.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047550.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047551.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047552.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047553.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047555.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047556.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047557.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047558.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047559.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047560.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047561.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047562.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047563.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047564.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047565.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047566.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047567.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047568.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047569.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047570.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047571.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047572.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047573.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047575.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047576.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047577.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047578.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047579.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047580.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047581.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047583.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047584.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047585.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047586.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047588.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047589.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047590.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047591.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047592.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047593.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047594.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047595.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047596.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047597.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047598.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047600.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047601.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047602.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047603.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047604.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047606.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047607.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047608.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047612.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047613.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047614.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047615.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047616.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047617.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047619.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047620.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047621.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047622.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047623.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047710.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047712.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047714.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047717.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047718.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047729.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.;
A0048724.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048725.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048727.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048728.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048819.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048829.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048830.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048831.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048832.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0048834.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048835.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048866.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048867.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048870.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048871.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048871.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0048871.exe;Win32.HLLW.MyBot.10;;
A0048871.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0048872.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048872.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0048873.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048874.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048876.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048876.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0048881.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.;
A0048890.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048891.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048892.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048918.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.;
A0049144.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Niewyleczalny.Przeniesiony.;
TBPanel.exe;C:\WINDOWS;Win32.Sector.12;Wyleczony.;
xInsIDE.exe;C:\WINDOWS\RaidTool;Win32.Sector.12;Wyleczony.;
xRaidSetup.exe;C:\WINDOWS\system32;Win32.Sector.12;Wyleczony.;
crashreporter.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
firefox.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
updater.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.;
helper.exe;H:\BACKUP\Mozilla Firefox\uninstall;Win32.Sector.12;Wyleczony.;
LoS v12.exe;H:\BACKUP\Pulpit;Win32.Sector.12;Wyleczony.;
oshicod6.exe;H:\BACKUP\Pulpit\czity;Win32.Sector.12;Wyleczony.;
nnnesterJ.exe;H:\BitComet Download\Emulator + Nekketsu\Emulator;Win32.Sector.12;Wyleczony.;
Metal Slide Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.;
Rounded Rect Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.;
Slide Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.;
Aged Photo.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Conditional Mode Change.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Constrain to 300 pixels.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Constrain to 64 pixels.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Drop Shadow Frame.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Make Button.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Make Sepia Tone.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Save As JPEG Medium.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
Save As Photoshop PDF.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.;
BF2.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
BF2ServerLauncher.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
BF2VoiceSetup.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
BF2VoipServer.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
BF2VoipServer_w32ded.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
Bf2_w32ded.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.;
ArcadeInstallBATTLEFIELD2_20.EXE;H:\Gry\Battlefield 2\Redist;Win32.Sector.12;Wyleczony.;
Battlefield 2_code.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.;
EasyInfo.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.;
EReg.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.;
BFBC2Updater.exe;H:\Gry\Battlefield BC2;Win32.Sector.12;Wyleczony.;
dxwebsetup.exe;H:\Gry\Battlefield BC2\Redist;Win32.Sector.12;Wyleczony.;
Battlefield Bad Company 2_code.exe;H:\Gry\Battlefield BC2\Support;Win32.Sector.12;Wyleczony.;
Battlefield Bad Company 2_uninst.exe;H:\Gry\Battlefield BC2\Support;Win32.Sector.12;Wyleczony.;
CrashReport.exe;H:\Gry\BitComet;Win32.Sector.12;Wyleczony.;
uninst.exe;H:\Gry\BitComet;Win32.Sector.12;Wyleczony.;
PnkBstrA.exe;H:\Gry\Call of Duty 2\pb;Win32.Sector.12;Wyleczony.;
7za.exe;H:\Gry\Call of Duty 4\Mods\ModWarfare;Win32.Sector.12;Wyleczony.;
PnkBstrA.exe;H:\Gry\Call of Duty 4\pb;Win32.Sector.12;Wyleczony.;
PnkBstrB.exe;H:\Gry\Call of Duty 4\pb;Win32.Sector.12;Wyleczony.;
pbsvc.exe;H:\Gry\Call of Duty 4 - Modern Warfare\pb;Win32.Sector.12;Wyleczony.;
PnkBstrB.exe;H:\Gry\CoD5\pb;Win32.Sector.12;Wyleczony.;
Engine.exe;H:\Gry\Combat Arms\Combat Arms EU;Win32.Sector.12;Wyleczony.;
AhnRpt.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.;
HsLogMgr.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.;
HSUpdate.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.;
autoup.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield\Update;Win32.Sector.12;Wyleczony.;
hl.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
hlds.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
hltv.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
launcher.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
Toolbar.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
Uninstal.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.;
steambackup.exe;H:\Gry\Counter-Strike 1.6 V40\platform\Steam\cached;Win32.Sector.12;Wyleczony.;
Counter-Strike.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.;
hl.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.;
hlds.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.;
hltv.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.;
geekplay.exe;H:\Gry\Counter-Strike 1.6 ZCP\cstrike;Win32.Sector.12;Wyleczony.;
steambackup.exe;H:\Gry\Counter-Strike 1.6 ZCP\platform\steam\cached;Win32.Sector.12;Wyleczony.;
Winmugen.exe;H:\Gry\DBME2k8;Win32.Sector.12;Wyleczony.;
AutoPatch.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.;
Start DerekCO.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.;
tqsfg.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.;
credit.exe;H:\Gry\DerekCO\Help;Win32.Sector.12;Wyleczony.;
ConfigEditor.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
Discipl2.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
play.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
ScenEdit.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
uninstall.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
Unwise.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.;
LineageII.exe;H:\Gry\Epilog;Win32.Sector.12;Wyleczony.;
updater.exe;H:\Gry\Epilog;Win32.Sector.12;Wyleczony.;
FretsOnFire.exe;H:\Gry\FretsOnFire;Win32.Sector.12;Wyleczony.;
Gothic3.exe;H:\Gry\Gothic III;Win32.Sector.12;Wyleczony.;
ConvertXIMG.exe;H:\Gry\Gothic III\Data\_compiledImage\Ximg Converter;Win32.Sector.12;Wyleczony.;
DXSETUP.exe;H:\Gry\Gra Resident evil 4\directx_jun2007_redist;Win32.Sector.12;Wyleczony.;
gtaEncoder.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV;Win32.Sector.12;Wyleczony.;
LaunchGTAIV.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV;Win32.Sector.12;Wyleczony.;
OfflineActivation.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV\OfflineActivation;Win32.Sector.12;Wyleczony.;
LineageII.exe;H:\Gry\Lineage II Gracia Final;Win32.Sector.12;Wyleczony.;
RUN L2UK.exe;H:\Gry\Lineage II Gracia Final\system cross;Win32.Sector.12;Wyleczony.;
LineageII.exe;H:\Gry\Lineage II Interlude;Win32.Sector.12;Wyleczony.;
Config.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
errorlog.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
language changer.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
M2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
mc2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
metin2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
metin2mod.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
Metin2_Server_Hack.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
MultiStarter.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
PatchUpdater.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
Uninstall.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.;
errorlog.exe;H:\Gry\Metin2_PL;Win32.Sector.12;Wyleczony.;
Metin2mod.exe;H:\Gry\Metin2_PL;Win32.Sector.12;Wyleczony.;
M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2_PL2;Win32.Sector.12;Wyleczony.;
errorlog.exe;H:\Gry\Metin2_PL3;Win32.Sector.12;Wyleczony.;
M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2_PL3;Win32.Sector.12;Wyleczony.;
config.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.;
Metin2.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.;
patch.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.;
metin2.exe;H:\Gry\Metinkr2\Nowy folder;Win32.Sector.12;Wyleczony.;
FXRoute.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.;
Nosferatu.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.;
nosshell.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.;
dxsetup.exe;H:\Gry\Nosferatu\DirectX81;Win32.Sector.12;Wyleczony.;
nosshell.exe;H:\Gry\Nosferatu\shellmedia;Win32.Sector.12;Wyleczony.;
steam.exe;H:\Gry\Steam;Win32.Sector.12;Wyleczony.;
hl2.exe;H:\Gry\Steam\SteamApps\kordikk\half-life 2 deathmatch;Win32.Sector.12;Wyleczony.;
hl2.exe;H:\Gry\Steam\SteamApps\kordikk\half-life 2 lostcoast;Win32.Sector.12;Wyleczony.;
hl2.exe;H:\Gry\Steam\SteamApps\kordikk\portal;Win32.Sector.12;Wyleczony.;
Flashget3.exe;H:\Inne\FlashGet 3;Win32.Sector.12;Wyleczony.;
FULLMode.all\data005;H:\Inne\Nowy folder\ALLPlayerPL.exe/data002/{app}\FULLMode.all;Trojan.PWS.Lineage.origin;;
{app}\FULLMode.all;H:\Inne\Nowy folder\ALLPlayerPL.exe/data002/{app};Kontener zawiera zainfekowane obiekty;;
data002;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;;
ALLPlayerPL.exe;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
BitLord_1.1.exe;H:\Inne\Nowy folder;Adware.SaveNow.151;;
CheatEngine53.exe/data002\{app}\Cheat Engine.exe;H:\Inne\Nowy folder\CheatEngine53.exe/data002;Trojan.DownLoader.53869;;
CheatEngine53.exe/data002\{app}\pscan.dll;H:\Inne\Nowy folder\CheatEngine53.exe/data002;Trojan.Starter.585;;
data002;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;;
CheatEngine53.exe;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
dlq.exe;H:\Inne\Nowy folder\E9D1~1;BackDoor.Pigeon.23758;Usunięty.;
FRONTPG.VIR;H:\Inne\Office\Office;Win32.HLLP.Sector;Wyleczony.;
Dbind.exe\data003;H:\Pobierane\Dbind.exe;Win32.HLLW.MyBot.10;;
Dbind.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
DBStoryArena.exe\YourClient\DBStoryArena.exe;H:\Pobierane\DBStoryArena.exe;Win32.HLLW.MyBot.10;;
DBStoryArena.exe;H:\Pobierane;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
DBStoryPro.exe\DBStoryPro\DBStoryPro.exe;H:\Pobierane\DBStoryPro.exe;Win32.HLLW.MyBot.10;;
DBStoryPro.exe;H:\Pobierane;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
LoS 1.1.exe/data002\{app}\LoS.exe;H:\Pobierane\LoS 1.1.exe/data002;Win32.HLLW.MyBot.10;;
data002;H:\Pobierane;Kontener zawiera zainfekowane obiekty;;
LoS 1.1.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
WoDBO.exe;H:\Pobierane;Trojan.MulDrop.11541;Usunięty.;
xampp-win32-1.6.7-installer.exe\pv.exe;H:\Pobierane\xampp-win32-1.6.7-installer.exe;Program.PrcView.3725;;
xampp-win32-1.6.7-installer.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0042084.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042085.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042086.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042087.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042088.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042089.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042091.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042092.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042093.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042094.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042095.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042096.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042097.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042098.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042099.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042101.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042102.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042103.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042104.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042105.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042106.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042107.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.;
A0042108.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Niewyleczalny.Przeniesiony.;
A0042109.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.;
A0042118.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042119.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042147.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042149.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042150.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042151.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042152.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042153.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042154.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042196.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042197.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042198.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042199.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042200.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042201.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042202.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042204.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042205.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042206.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042207.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042208.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042209.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042210.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042211.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042212.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042213.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042214.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042215.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042217.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042218.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042219.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042220.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042221.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042222.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042223.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042224.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042225.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042226.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042229.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042231.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042232.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042250.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042356.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042357.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042364.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042370.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042371.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042372.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042373.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042374.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042375.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042376.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042384.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042395.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042401.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042402.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0042403.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.;
A0043118.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043119.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043120.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043122.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043123.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043124.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043125.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043126.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043127.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043128.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043129.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043130.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043131.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043132.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043133.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043135.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043136.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043137.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043139.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043140.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043142.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043143.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043144.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043145.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043160.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043162.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043163.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043169.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043177.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043178.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043181.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043269.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043273.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043277.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043279.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043280.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043281.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043282.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043283.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043288.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043289.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043290.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043291.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043292.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043293.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043294.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043305.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043309.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043314.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043316.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043317.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043318.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043320.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043321.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043324.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043325.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043326.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043329.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043330.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043331.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043332.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043333.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043334.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043339.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043340.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043344.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043348.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043349.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043351.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043352.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043366.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043368.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043369.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043375.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043382.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043384.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043387.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043390.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043391.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043393.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043396.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043401.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043406.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043408.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043409.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043412.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043414.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043428.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043429.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043430.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043431.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043432.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043433.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043435.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043436.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043438.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0043439.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044453.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044455.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044457.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044458.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044459.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044460.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044461.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044462.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044464.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044466.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044469.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044470.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044471.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044472.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044473.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044474.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044475.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044476.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044477.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044478.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044479.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044480.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044482.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044483.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044484.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044485.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044486.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044487.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044488.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044489.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044490.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044491.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044492.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044506.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044508.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044509.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044515.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044520.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044524.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044527.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044530.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044531.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044533.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044536.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044537.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044538.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044539.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044540.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044541.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044545.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044546.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044547.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044548.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044550.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044551.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044552.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044559.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044562.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044564.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044574.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044575.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044935.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044961.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044963.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044964.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044968.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0044970.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045097.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045131.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045132.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045133.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045134.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045135.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045136.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045137.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045139.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045141.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045143.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045166.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045168.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045247.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045248.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045249.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045250.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045251.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045253.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045254.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0045260.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046255.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046257.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046258.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046262.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046264.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046269.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046271.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046273.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046339.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046340.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046341.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046344.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046351.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046352.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046353.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046354.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046355.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046357.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046358.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046377.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046379.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046380.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046383.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046386.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046393.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046396.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046406.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046409.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046410.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046411.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046420.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046421.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046422.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046423.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046424.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046425.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046426.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046428.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046431.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0046433.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047254.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047256.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047257.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047258.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047259.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047264.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047267.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047271.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047272.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047274.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047275.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047276.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047277.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047278.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047279.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047280.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047281.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047282.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047283.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047284.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047285.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047287.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047288.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047289.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047290.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047291.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047292.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047293.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047294.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047297.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047298.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047299.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047314.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047315.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047317.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047318.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047322.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047325.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047332.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047341.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047348.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047349.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047359.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047360.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047364.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047366.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047368.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047370.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047378.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047381.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047725.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0047730.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048730.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048733.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048820.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048821.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048822.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048823.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048824.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048825.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048827.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048833.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048837.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048839.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048840.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048841.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048842.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048843.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048844.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048845.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048846.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048848.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048849.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048850.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048851.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048853.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048854.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048855.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048856.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048857.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048858.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048859.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048860.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048861.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048862.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048863.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048877.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048879.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048880.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048884.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048887.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048893.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048896.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048899.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048900.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048907.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048911.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048912.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048913.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048914.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048915.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048916.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048921.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048922.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048923.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048924.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048925.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048926.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0048928.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049146.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049147.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049148.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049387.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049392.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049394.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049395.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049402.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049404.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049408.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049411.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049415.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049417.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049418.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049423.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049426.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049440.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049444.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049450.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049452.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049455.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049456.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049457.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049458.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049459.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049460.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049463.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049468.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049469.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049472.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049473.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049476.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049478.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049479.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049481.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049485.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049487.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049488.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049489.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
A0049490.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.;
FULLMode.all\data005;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049517.exe/data002/{app}\FULLMode.all;Trojan.PWS.Lineage.origin;;
{app}\FULLMode.all;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049517.exe/data002/{app};Kontener zawiera zainfekowane obiekty;;
data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;;
A0049517.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0049518.exe/data002\{app}\Cheat Engine.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049518.exe/data002;Trojan.DownLoader.53869;;
A0049518.exe/data002\{app}\pscan.dll;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049518.exe/data002;Trojan.Starter.585;;
data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;;
A0049518.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0049546.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;BackDoor.Pigeon.23758;Usunięty.;
A0049617.exe\data003;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049617.exe;Win32.HLLW.MyBot.10;;
A0049617.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0049618.exe\YourClient\DBStoryArena.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049618.exe;Win32.HLLW.MyBot.10;;
A0049618.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0049619.exe\DBStoryPro\DBStoryPro.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049619.exe;Win32.HLLW.MyBot.10;;
A0049619.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.;
A0049624.exe/data002\{app}\LoS.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049624.exe/data002;Win32.HLLW.MyBot.10;;
data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;;
A0049624.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0049649.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.;
A0049650.exe\pv.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049650.exe;Program.PrcView.3725;;
A0049650.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.;
A0049690.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Adware.SaveNow.151;;
[/log]
Logi z ComboFix'a:
[log]ComboFix 10-06-19.03 - Kordian 2010-06-20 10:46:42.2.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2657 [GMT 2:00]
Uruchomiony z: c:\documents and settings\Kordian\Moje dokumenty\Pobieranie\ComboFix.exe
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe
c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe
c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
c:\windows\RaidTool\xInsIDE.exe
c:\windows\system32\vbzlib1.dll
c:\windows\system32\xRaidSetup.exe

.
((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_ABP470N5
-------\Service_abp470n5


((((((((((((((((((((((((( Pliki utworzone od 2010-05-20 do 2010-06-20 )))))))))))))))))))))))))))))))
.

2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\WinPcap
2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\DsNET Corp
2010-06-19 10:11 . 2010-06-19 18:29 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb
2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes
2010-06-19 08:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-06-19 08:54 . 2010-06-19 08:55 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes
2010-06-19 08:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner
2010-06-19 03:52 . 2010-06-19 03:52 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Avira
2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData
2010-06-19 03:33 . 2010-03-01 08:05 124784 ----a-w- c:\windows\system32\drivers\avipbb.sys
2010-06-19 03:33 . 2010-02-16 12:24 60936 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2010-06-19 03:33 . 2009-05-11 10:49 51992 ----a-w- c:\windows\system32\drivers\avgntdd.sys
2010-06-19 03:33 . 2009-05-11 10:49 17016 ----a-w- c:\windows\system32\drivers\avgntmgr.sys
2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\program files\Avira
2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Avira
2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5
2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV
2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe
2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead
2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz
2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe
2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation
2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll
2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA
2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat
2010-06-11 18:53 . 2010-06-15 21:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0
2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails
2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe
2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
2010-06-11 15:22 . 2010-06-16 19:24 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6
2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys
2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles
2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache
2010-06-09 13:07 . 2010-06-09 13:07 -------- d-----w- c:\program files\DIFX
2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys
2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys
2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer
2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire
2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia
2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios
2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL
2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B
2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO
2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate
2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia
2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0
2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll
2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome
2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll
2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat
2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla

.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-20 08:51 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype
2010-06-20 08:35 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM
2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp
2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp
2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat
2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat
2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi
2010-06-01 21:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies
2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company
2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared
2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft
2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON
2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ
2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks
2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010)
2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe
2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype
2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype
2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView
2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0
2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero
2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys
2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek
2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield
2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe
2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG
2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage
2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online
2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll
2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll
2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe
2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll
2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll
2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE
.

------- Sigcheck -------

[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys
[7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot@2010-06-19_12.45.36 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-11-16 16:33 . 2009-11-16 16:33 53299 c:\windows\system32\pthreadVC.dll
+ 2008-08-19 00:18 . 2008-08-19 00:18 77824 c:\windows\system32\fmcodec.DLL
+ 2009-11-16 16:33 . 2009-11-16 16:33 50704 c:\windows\system32\drivers\npf.sys
+ 2009-11-16 16:33 . 2009-11-16 16:33 281104 c:\windows\system32\wpcap.dll
+ 2009-11-16 16:33 . 2009-11-16 16:33 100880 c:\windows\system32\Packet.dll
+ 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe
- 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736]
"AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Steam"="h:\gry\steam\steam.exe" [2010-06-20 1238352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GEST"="m‘|ü" [X]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 307200]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk *

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"h:\\Gry\\Battlefield 2\\BF2.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"=
"h:\\Gry\\Steam\\Steam.exe"=
"h:\\Gry\\Pure\\Pure.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"h:\\Gry\\Call of Duty 4\\iw3mp.exe"=
"h:\\Inne\\FlashGet 3\\FlashGet3.exe"=
"h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\WINDOWS\\system32\\wscntfy.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\WINDOWS\\system32\\netsh.exe"=
"c:\\Documents and Settings\\Kordian\\Moje dokumenty\\Pobieranie\\rmslt.exe"=
"c:\\WINDOWS\\TBPanel.exe"=
"c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"=
"c:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe"=
"c:\\WINDOWS\\RTHDCPL.EXE"=
"c:\\Program Files\\DAEMON Tools Lite\\DTLite.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696]
R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-06-19 135336]
R2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784]
.
.
------- Skan uzupełniający -------
.
IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm
IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Trusted Zone: kuaiche.com\software
FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\
FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.
- - - - USUNIĘTO PUSTE WPISY - - - -

HKCU-Run-VeohPlugin - c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
HKLM-Run-JMB36X IDE Setup - c:\windows\RaidTool\xInsIDE.exe
HKLM-Run-36X Raid Configurer - c:\windows\system32\xRaidSetup.exe
HKLM-Run-NeroFilterCheck - c:\program files\Common Files\Ahead\Lib\NeroCheck.exe
HKLM-Run-SSBkgdUpdate - c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe
HKLM-Run-OpwareSE4 - c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-06-20 10:51
Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...

skanowanie pomyślnie ukończone
ukryte pliki: 0

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys sphn.sys >>UNKNOWN [0x8A4FC938]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28
\Driver\ACPI -> ACPI.sys @ 0xb7e73cb8
\Driver\atapi -> atapi.sys @ 0xb7e2eb40
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d37bb0
PacketIndicateHandler -> NDIS.sys @ 0xb7d44a21
SendHandler -> NDIS.sys @ 0xb7d2287b
user & kernel MBR OK

**************************************************************************
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\system32\wdfmgr.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
c:\program files\Razer\DeathAdder\razertra.exe
c:\program files\Razer\DeathAdder\razerofa.exe
.
**************************************************************************
.
Czas ukończenia: 2010-06-20 10:53:35 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-06-20 08:53
ComboFix2.txt 2010-06-19 12:50

Przed: 26 246 193 152 bajtów wolnych
Po: 26 307 268 608 bajtów wolnych

- - End Of File - - D0B844C3F7D53859A38F6F3B0F9A1F8B
[/log]
Logi z OTL'a (OTL.txt i Extras.txt):
[log]OTL logfile created on: 2010-06-20 10:55:14 - Run 2
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 84,00% Memory free
5,00 Gb Paging File | 5,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,50 Gb Free Space | 50,17% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,97 Gb Free Space | 23,98% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2010-04-01 20:06:00 | 001,053,656 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:32 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\notepad.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe
PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe
PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe
PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe
PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme)
DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5)
DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M]

[2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions
[2010-06-19 12:11:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions
[2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe ()
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKCU..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKCU..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKCU\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (rmslt.nt) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found




[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp
[2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb
[2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes
[2010-06-19 10:54:58 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010-06-19 10:54:57 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent
[2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2010-06-19 05:52:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Avira
[2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2010-06-19 05:34:00 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2010-06-19 05:33:57 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2010-06-19 05:33:57 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2010-06-19 05:33:57 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2010-06-19 05:33:57 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira
[2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5
[2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun
[2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2
[2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC
[2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks
[2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead
[2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz
[2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation
[2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll
[2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3
[2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio
[2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails
[2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
[2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo
[2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota
[2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6
[2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
[2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys
[2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys
[2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl
[2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer
[2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client
[2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client
[2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
[2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO
[2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO
[2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate
[2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia
[2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
[2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla
[2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe
[2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company
[2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2
[2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia
[2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi
[2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects
[2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft
[2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM
[2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys
[2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter
[2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype
[2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative
[2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype
[2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe
[2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp
[2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks
[2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo
[2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR
[2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage
[2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData
[2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities
[2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead
[2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe
[2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield
[2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities
[2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne
[2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-06-20 10:55:46 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-06-20 10:51:11 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-06-20 10:50:39 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-06-20 10:50:37 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-06-20 10:49:36 | 003,145,728 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-06-20 10:49:36 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-19 10:55:00 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk
[2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-06-19 05:34:12 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 23:55:24 | 000,025,937 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini
[2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini
[2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr
[2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010-06-19 10:55:00 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk
[2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-19 05:34:12 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 23:55:24 | 000,025,937 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
[2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 19:50:04 | 001,736,704 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\GoMan.exe
[2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini
[2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini
[2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini
[2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn
[2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl
[2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab
[2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl
[2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl
[2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl
[2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab
[2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl
[2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl
[2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl
[2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl
[2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls
[2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl
[2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP
[2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP
[2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl
[2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB
[2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB
[2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls
[2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-05-29 21:24:41 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG
[2010-05-29 21:24:40 | 003,145,728 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-15 23:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr
[2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-06-20 10:50:35 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]
[log]OTL Extras logfile created on: 2010-06-20 10:55:14 - Run 2
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 84,00% Memory free
5,00 Gb Paging File | 5,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,50 Gb Free Space | 50,17% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,97 Gb Free Space | 23,98% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"FirewallOverride" = 1
"UpdatesDisableNotify" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.)
"H:\Gry\Steam\Steam.exe" = H:\Gry\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios)
"H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited)
"H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- ()
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation)
"C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- ()
"C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.)
"C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- ()
"C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- (Malwarebytes Corporation)
"C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd)
"C:\WINDOWS\explorer.exe" = C:\WINDOWS\explorer.exe:*:Enabled:ipsec -- (Microsoft Corporation)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series
"{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer
"{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń)
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure
"13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AQQ" = WapSter AQQ
"aTube Catcher" = aTube Catcher
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Battlefield BC2_is1" = Battlefield BC2
"CCleaner" = CCleaner
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0)
"Disciples II" = Disciples II
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"FlashGet 3.3" = FlashGet 3.3
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"Gainward" = EXPERTool
"Gothic" = Gothic
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"IrfanView" = IrfanView (remove only)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010)
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP Navigator 3.1" = Canon MP Navigator 3.1
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"RealAlt_is1" = Real Alternative 2.0.2
"ST6UNST #1" = HLTooLz
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 340" = Half-Life 2: Lost Coast
"Steam App 410" = Portal: First Slice
"Tibia_is1" = Tibia 7.6
"TMIPC" = Tibia MULTI-ip changer
"Veoh Video Compass" = Veoh Video Compass
"Veoh Web Player Beta" = Veoh Web Player
"VideoMach 3.1.5" = VideoMach 3.1.5
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinGimp-2.0_is1" = GIMP 2.6.7
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ System Events ]
Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 06:52:28 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 10:00:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183


< End of report >
[/log]
Niestety nie moglem znalesc kaspersky removal tool, ktory moglbym pobrac... Pewnie przez wirusa czy cos -,-

Mateusz J.
komentarz
komentarz

Odinstaluj oba antywirusy, usuń ich wszystkie foldery włącznie z: C:\Documents and Settings\All Users\Dane aplikacji\Avira
Pobierz ponownie antywirusa, polecam Avira.
Próbujesz pobrać Kaspersky Removal Tools, już nie powinno być przeszkód.

Skanujesz obszar całego komputera Kaspersky removal tool oraz antywirusem, co znajdą programy leczysz.

Po wykonaniu ponownie log z OTL.

Kordikk
komentarz
komentarz

Prosze. Kolega mi sciagnal kasperskiego.
[log]OTL logfile created on: 2010-06-20 21:50:18 - Run 3
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 82,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,40 Gb Free Space | 49,98% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded
Drive K: | 1,88 Gb Total Space | 1,65 Gb Free Space | 87,82% Space Free | Partition Type: FAT

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-06-20 17:04:23 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2010-05-25 12:37:12 | 000,138,240 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe
PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe
PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe
PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe
PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2010-04-16 18:09:02 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wininet.dll
MOD - [2010-04-16 18:09:01 | 001,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shdocvw.dll
MOD - [2010-04-16 18:09:01 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\urlmon.dll
MOD - [2009-12-24 09:04:53 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wintrust.dll
MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-09-04 23:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msasn1.dll
MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-10-15 18:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll
MOD - [2008-06-20 19:48:53 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mswsock.dll
MOD - [2008-06-20 19:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dnsapi.dll
MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2_32.dll
MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2help.dll
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdsapi.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mstask.dll
MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll
MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll
MOD - [2008-04-14 22:50:34 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imagehlp.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:18 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crypt32.dll
MOD - [2008-04-14 22:50:18 | 000,520,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cryptui.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:50:08 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cabinet.dll
MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\apphelp.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm






IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732

FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010-06-20 16:33:54 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M]

[2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions
[2010-06-20 16:44:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions
[2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe ()
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-04-25 16:07:04 | 000,000,223 | RHS- | M] () - K:\autorun.inf -- [ FAT ]
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (rmslt.nt) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-06-20 16:41:59 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-06-20 16:39:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Virus Removal Tool
[2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite
[2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia
[2010-06-20 16:34:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-06-20 16:33:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite
[2010-06-20 16:33:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2010-06-20 16:33:46 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys
[2010-06-20 16:33:42 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2010-06-20 16:33:37 | 000,022,528 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2010-06-20 16:33:36 | 000,662,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll
[2010-06-20 16:33:36 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2010-06-20 16:33:35 | 000,092,672 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll
[2010-06-20 16:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia
[2010-06-20 16:32:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp
[2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb
[2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent
[2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5
[2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun
[2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2
[2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC
[2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks
[2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead
[2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz
[2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation
[2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll
[2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3
[2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio
[2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails
[2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
[2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo
[2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota
[2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6
[2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
[2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys
[2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys
[2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl
[2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer
[2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client
[2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client
[2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
[2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO
[2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO
[2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate
[2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia
[2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
[2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla
[2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe
[2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company
[2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2
[2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia
[2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi
[2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects
[2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft
[2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM
[2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys
[2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter
[2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype
[2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative
[2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype
[2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe
[2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp
[2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks
[2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo
[2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR
[2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage
[2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData
[2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities
[2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead
[2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe
[2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield
[2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities
[2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne
[2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-06-20 21:46:18 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-06-20 21:46:12 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010-06-20 21:45:59 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-06-20 21:45:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-06-20 20:59:54 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-06-20 20:57:06 | 000,033,064 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf
[2010-06-20 20:57:06 | 000,029,781 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-20 18:53:08 | 000,003,056 | -HS- | M] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi
[2010-06-20 17:51:42 | 000,017,198 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg
[2010-06-20 17:49:23 | 000,269,887 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg
[2010-06-20 17:33:05 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-06-20 17:29:23 | 000,060,483 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg
[2010-06-20 16:34:34 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010-06-20 16:34:33 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010-06-20 14:42:18 | 000,346,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp
[2010-06-20 12:38:28 | 000,019,428 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg
[2010-06-20 12:38:21 | 000,343,960 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg
[2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini
[2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini
[2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-06-20 20:57:06 | 000,033,064 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf
[2010-06-20 20:57:06 | 000,029,781 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-20 17:53:52 | 000,003,056 | -HS- | C] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi
[2010-06-20 17:51:42 | 000,017,198 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg
[2010-06-20 17:49:09 | 000,269,887 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg
[2010-06-20 17:29:21 | 000,060,483 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg
[2010-06-20 16:34:34 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010-06-20 16:34:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010-06-20 14:42:18 | 000,346,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp
[2010-06-20 12:38:27 | 000,019,428 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg
[2010-06-20 12:38:20 | 000,343,960 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg
[2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr
[2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
[2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini
[2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini
[2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini
[2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn
[2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl
[2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab
[2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl
[2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl
[2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl
[2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab
[2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl
[2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl
[2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl
[2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl
[2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls
[2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl
[2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP
[2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP
[2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl
[2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB
[2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB
[2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls
[2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-05-29 21:24:41 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG
[2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-06-20 16:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-06-20 16:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-20 20:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia
[2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite
[2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr
[2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-06-20 21:45:54 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]
[log]OTL Extras logfile created on: 2010-06-20 21:50:18 - Run 3
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 82,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,40 Gb Free Space | 49,98% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded
Drive K: | 1,88 Gb Total Space | 1,65 Gb Free Space | 87,82% Space Free | Partition Type: FAT

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_USERS\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"FirewallOverride" = 1
"UpdatesDisableNotify" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.)
"H:\Gry\Steam\Steam.exe" = H:\gry\steam\steam.exe:*:Enabled:ipsec -- (Valve Corporation)
"H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios)
"H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited)
"H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- ()
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation)
"C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- File not found
"C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.)
"C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- ()
"C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd)
"C:\WINDOWS\explorer.exe" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe:*:Enabled:ipsec -- File not found
"C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe" = C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe:*:Enabled:ipsec -- (Creative Team S.A.)
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe" = C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe:*:Enabled:ipsec -- File not found


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series
"{18756A46-652E-4ED4-A029-C4940D59F09B}" = Nokia PC Suite
"{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53
"{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer
"{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8C91D53E-0C23-4A79-A480-68A443D80100}" = PC Connectivity Solution
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń)
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure
"0B753AE04CCFC1E067940973C1BEDEEE62CADDC9" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 4.4)
"13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB
"504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"6CD143D10D52B656CB6E8E90D7932A476DA16F6A" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 7.01.0.6)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AQQ" = WapSter AQQ
"aTube Catcher" = aTube Catcher
"Battlefield BC2_is1" = Battlefield BC2
"CCleaner" = CCleaner
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0)
"Disciples II" = Disciples II
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"FlashGet 3.3" = FlashGet 3.3
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"Gainward" = EXPERTool
"Gothic" = Gothic
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"IrfanView" = IrfanView (remove only)
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010)
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP Navigator 3.1" = Canon MP Navigator 3.1
"Nokia PC Suite" = Nokia PC Suite
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"RealAlt_is1" = Real Alternative 2.0.2
"ST6UNST #1" = HLTooLz
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 340" = Half-Life 2: Lost Coast
"Steam App 410" = Portal: First Slice
"Tibia_is1" = Tibia 7.6
"TMIPC" = Tibia MULTI-ip changer
"Veoh Video Compass" = Veoh Video Compass
"Veoh Web Player Beta" = Veoh Web Player
"VideoMach 3.1.5" = VideoMach 3.1.5
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinGimp-2.0_is1" = GIMP 2.6.7
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ System Events ]
Error - 2010-06-12 02:54:56 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na
karcie sieciowej o adresie sieciowym 001D7DD12F6C.

Error - 2010-06-12 02:55:09 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na
karcie sieciowej o adresie sieciowym 001D7DD12F6C.

Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183


< End of report >
[/log]

Mateusz J.
komentarz
komentarz

Brak drivera Sality. Bdb znak.
Do notatnika wklej:
[code]Windows Registry Editor Version 5.00

[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2]
[/code]Plik ==> Zapisz jako ==> Zmień rozszerzenie na Wszystkie pliki ==> Zapisz pod nazwą [b]FIX.REG[/b]
Uruchom utworzony plik [b]FIX.REG[/b] i potwierdź dodanie do Rejestru i zresetuj komputer.


Skanuj komputer jak największą ilością skanerów, ponownie drwebcureit.
Następnie poszukaj w google skanerów online, konieczność skanu Kaspersky.

Jeśli jakiś program mimo tego nie będzie działał zainstaluj go ponownie.

Kordikk
komentarz
komentarz

nie moge dodac do rejestru...
Administrator zablokowal funkcje edycji rejestru - cos takiego...

Mateusz J.
komentarz
komentarz

W OTL wklej:
[code]:OTL
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O32 - AutoRun File - [2010-04-25 16:07:04 | 000,000,223 | RHS- | M] () - K:\autorun.inf -- [ FAT ]
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation)

:Commands
[emptytemp]
[Reboot][/code]Kliknij Run Fix. Zatwierdź restart komputera.
Po ponownym uruchomieniu komputera tworzysz nowy log i pokazujesz do kontroli.

Kordikk
komentarz
komentarz

[log]OTL logfile created on: 2010-06-20 23:04:03 - Run 5
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 83,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,47 Gb Free Space | 50,12% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-06-20 17:04:23 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe
PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
PRC - [2010-05-25 12:37:12 | 000,138,240 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe
PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe
PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe
PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe
PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf)
DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm






IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0
FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732

FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010-06-20 16:33:54 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M]

[2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions
[2010-06-20 16:44:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions
[2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}
[2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found
O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe ()
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia)
O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- File not found
O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- File not found
O34 - HKLM BootExecute: (rmslt.nt) - File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found




[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-06-20 22:58:14 | 000,000,000 | ---D | C] -- C:\_OTL
[2010-06-20 16:41:59 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-06-20 16:39:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Virus Removal Tool
[2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite
[2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia
[2010-06-20 16:34:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-06-20 16:33:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite
[2010-06-20 16:33:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia
[2010-06-20 16:33:46 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys
[2010-06-20 16:33:42 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution
[2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys
[2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys
[2010-06-20 16:33:37 | 000,022,528 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys
[2010-06-20 16:33:36 | 000,662,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll
[2010-06-20 16:33:36 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys
[2010-06-20 16:33:35 | 000,092,672 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll
[2010-06-20 16:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia
[2010-06-20 16:32:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp
[2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix
[2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap
[2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp
[2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb
[2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
[2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent
[2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe
[2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5
[2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun
[2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2
[2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC
[2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks
[2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead
[2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz
[2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation
[2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll
[2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll
[2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3
[2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio
[2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails
[2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
[2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo
[2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota
[2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0
[2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6
[2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
[2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys
[2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys
[2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl
[2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer
[2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client
[2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client
[2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
[2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO
[2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO
[2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate
[2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia
[2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
[2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla
[2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe
[2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company
[2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2
[2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia
[2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi
[2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects
[2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared
[2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft
[2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM
[2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera
[2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys
[2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter
[2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype
[2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative
[2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype
[2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera
[2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe
[2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp
[2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp
[2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks
[2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo
[2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0
[2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR
[2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage
[2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData
[2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities
[2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero
[2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead
[2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages
[2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe
[2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield
[2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG
[2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities
[2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy
[2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft
[2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo
[2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty
[2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood
[2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit
[2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne
[2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-06-20 23:00:39 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-06-20 23:00:34 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2010-06-20 22:59:23 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-06-20 22:59:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-06-20 22:58:28 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-06-20 22:41:53 | 000,000,084 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\fix.reg
[2010-06-20 20:57:06 | 000,033,064 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf
[2010-06-20 20:57:06 | 000,029,781 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-20 18:53:08 | 000,003,056 | -HS- | M] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi
[2010-06-20 17:51:42 | 000,017,198 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg
[2010-06-20 17:49:23 | 000,269,887 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg
[2010-06-20 17:33:05 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-06-20 17:29:23 | 000,060,483 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg
[2010-06-20 16:34:34 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010-06-20 16:34:33 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010-06-20 14:42:18 | 000,346,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp
[2010-06-20 12:38:28 | 000,019,428 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg
[2010-06-20 12:38:21 | 000,343,960 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg
[2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini
[2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll
[2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini
[2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys
[2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-06-20 22:41:53 | 000,000,084 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\fix.reg
[2010-06-20 20:57:06 | 000,033,064 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf
[2010-06-20 20:57:06 | 000,029,781 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel
[2010-06-20 17:53:52 | 000,003,056 | -HS- | C] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi
[2010-06-20 17:51:42 | 000,017,198 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg
[2010-06-20 17:49:09 | 000,269,887 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg
[2010-06-20 17:29:21 | 000,060,483 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg
[2010-06-20 16:34:34 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
[2010-06-20 16:34:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
[2010-06-20 14:42:18 | 000,346,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp
[2010-06-20 12:38:27 | 000,019,428 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg
[2010-06-20 12:38:20 | 000,343,960 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg
[2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv
[2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk
[2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak
[2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr
[2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk
[2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi
[2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk
[2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk
[2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk
[2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png
[2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png
[2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg
[2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png
[2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp
[2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb
[2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc
[2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk
[2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
[2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk
[2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog
[2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
[2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp
[2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk
[2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv
[2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif
[2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe
[2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk
[2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk
[2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys
[2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
[2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
[2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini
[2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk
[2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk
[2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk
[2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini
[2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk
[2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini
[2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI
[2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat
[2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk
[2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex
[2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn
[2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl
[2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab
[2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl
[2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl
[2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl
[2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab
[2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl
[2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl
[2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl
[2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl
[2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls
[2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl
[2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl
[2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP
[2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP
[2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl
[2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB
[2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB
[2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls
[2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls
[2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls
[2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls
[2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk
[2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
[2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk
[2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk
[2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini
[2010-05-29 21:24:41 | 000,032,768 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG
[2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT
[2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll

[color=#E56717]========== LOP Check ==========[/color]

[2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ
[2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2010-06-20 16:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-06-20 16:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft
[2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite
[2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV
[2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL
[2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios
[2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire
[2010-06-20 20:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0
[2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia
[2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera
[2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite
[2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft
[2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B
[2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia
[2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog
[2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak
[2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr
[2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt
[2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-06-20 22:59:18 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]
[log]OTL Extras logfile created on: 2010-06-20 23:04:03 - Run 5
OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 83,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 24,47 Gb Free Space | 50,12% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: DOMOWA-74375B01
Current User Name: Kordian
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_USERS\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"FirewallOverride" = 1
"UpdatesDisableNotify" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.)
"H:\Gry\Steam\Steam.exe" = H:\gry\steam\steam.exe:*:Enabled:ipsec -- (Valve Corporation)
"H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios)
"H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- ()
"H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited)
"H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- ()
"C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation)
"C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- File not found
"C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.)
"C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- ()
"C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd)
"C:\WINDOWS\explorer.exe" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation)
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe:*:Enabled:ipsec -- File not found
"C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe" = C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe:*:Enabled:ipsec -- (Creative Team S.A.)
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe:*:Enabled:ipsec -- File not found
"C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe:*:Enabled:ipsec -- File not found
"C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe" = C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe:*:Enabled:ipsec -- File not found


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series
"{18756A46-652E-4ED4-A029-C4940D59F09B}" = Nokia PC Suite
"{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53
"{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer
"{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"{8C91D53E-0C23-4A79-A480-68A443D80100}" = PC Connectivity Solution
"{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń)
"{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars
"{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6
"{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1
"{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX
"{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4
"{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T
"{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure
"0B753AE04CCFC1E067940973C1BEDEEE62CADDC9" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 4.4)
"13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB
"504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0)
"6CD143D10D52B656CB6E8E90D7932A476DA16F6A" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 7.01.0.6)
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"AQQ" = WapSter AQQ
"aTube Catcher" = aTube Catcher
"Battlefield BC2_is1" = Battlefield BC2
"CCleaner" = CCleaner
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0)
"Disciples II" = Disciples II
"Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint
"FlashGet 3.3" = FlashGet 3.3
"FMCODEC" = FM Screen Capture Codec (Remove Only)
"Gainward" = EXPERTool
"Gothic" = Gothic
"InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
"InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
"InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM)
"IrfanView" = IrfanView (remove only)
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010)
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP Navigator 3.1" = Canon MP Navigator 3.1
"Nokia PC Suite" = Nokia PC Suite
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"RealAlt_is1" = Real Alternative 2.0.2
"ST6UNST #1" = HLTooLz
"Steam App 320" = Half-Life 2: Deathmatch
"Steam App 340" = Half-Life 2: Lost Coast
"Steam App 410" = Portal: First Slice
"Tibia_is1" = Tibia 7.6
"TMIPC" = Tibia MULTI-ip changer
"Veoh Video Compass" = Veoh Video Compass
"Veoh Web Player Beta" = Veoh Web Player
"VideoMach 3.1.5" = VideoMach 3.1.5
"Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinGimp-2.0_is1" = GIMP 2.6.7
"WinPcapInst" = WinPcap 4.1.1
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ System Events ]
Error - 2010-06-12 02:54:56 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na
karcie sieciowej o adresie sieciowym 001D7DD12F6C.

Error - 2010-06-12 02:55:09 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000
Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na
karcie sieciowej o adresie sieciowym 001D7DD12F6C.

Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183


< End of report >
[/log]

Mateusz J.
komentarz
komentarz

Problem z rejestrem wraca...
Przeczyść komputer ATF Cleaner, oczyść foldery temp i temporary.
Następnie wyłącz na chwilę przywracanie systemu: http://www.google.pl/search?hl=pl&source=hp&q=wy%C5%82%C4%85czenie+przywracania+systemu&aq=f&aqi=&aql=&oq=&gs_rfai=
Na koniec log z ComboFix.

EDIt
Zamiast robienia loga z ComboFix wykonaj:
Do notatnika wklej:
Registry::
[code][HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=dword:00000000
"DisableRegistryTools"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=-
"DisableRegistryTools"=-[/code]W notatniku zakladka Plik ==> Zapisz jako ==> zapisz pod nazwą[b] CFScript.txt[/b] i zapisz go w tym katalogu co ściągnięty i zapisany został [b]combofix[/b]
Na ikonę [b]ComboFix[/b] przeciągasz zrobiony plik [b]CFScript.txt[/b]
Rozpocznie się usuwanie [b]i powstanie log , który pokazujesz na forum.[/b]

Kordikk
komentarz
komentarz (edytowane)

Gdzie znajde te foldery?

@Edit
Juz mam. Zaznaczam tam w ATF...

[log]ComboFix 10-06-20.03 - Kordian 2010-06-20 23:27:22.3.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2674 [GMT 2:00]
Uruchomiony z: c:\documents and settings\Kordian\Pulpit\Combox\ComboFix.exe
Użyto następujących komend :: c:\documents and settings\Kordian\Pulpit\Combox\CFScript.txt
.

((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))
.

.
((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_ABP470N5
-------\Service_abp470n5


((((((((((((((((((((((((( Pliki utworzone od 2010-05-20 do 2010-06-20 )))))))))))))))))))))))))))))))
.

2010-06-20 20:58 . 2010-06-20 20:58 -------- d-----w- C:\_OTL
2010-06-20 14:34 . 2008-04-13 22:15 26112 -c--a-w- c:\windows\system32\dllcache\usbser.sys
2010-06-20 14:34 . 2008-04-13 22:15 26112 ----a-w- c:\windows\system32\drivers\usbser.sys
2010-06-20 14:34 . 2008-11-07 16:55 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll
2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\PC Suite
2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Nokia
2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\PC Suite
2010-06-20 14:32 . 2010-06-20 14:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Installations
2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\WinPcap
2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\DsNET Corp
2010-06-19 10:11 . 2010-06-19 18:29 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb
2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes
2010-06-19 08:54 . 2010-06-20 13:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes
2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner
2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData
2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5
2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV
2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe
2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead
2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz
2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE
2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe
2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation
2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation
2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll
2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin
2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll
2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA
2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat
2010-06-11 18:53 . 2010-06-20 18:57 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0
2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails
2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe
2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files
2010-06-11 15:22 . 2010-06-20 18:57 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6
2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster
2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys
2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles
2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache
2010-06-09 13:07 . 2010-06-20 14:34 -------- d-----w- c:\program files\DIFX
2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys
2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys
2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer
2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire
2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia
2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios
2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL
2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B
2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO
2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate
2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia
2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0
2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll
2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe
2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome
2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll
2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft
2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat
2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla

.
(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-06-20 21:31 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype
2010-06-20 15:34 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM
2010-06-20 15:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera
2010-06-20 15:07 . 2010-06-20 14:33 35536248 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Nokia_PC_Suite_eng_web.exe
2010-06-20 14:34 . 2010-06-20 14:34 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01009.Wdf
2010-06-20 14:34 . 2010-06-20 14:34 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Common Files\PCSuite
2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Common Files\Nokia
2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Nokia
2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\PC Connectivity Solution
2010-06-20 14:33 . 2010-06-20 14:33 95232 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\pcswpcsi.exe
2010-06-20 14:33 . 2010-06-20 14:33 8192 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstCCD.exe
2010-06-20 14:33 . 2010-06-20 14:33 61440 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstPCSFEMsi.exe
2010-06-20 14:33 . 2010-06-20 14:33 10240 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstPCS.exe
2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information
2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp
2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp
2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat
2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat
2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild
2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies
2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat
2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite
2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR
2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company
2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft
2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared
2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield
2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft
2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON
2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ
2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ
2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat
2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks
2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010)
2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe
2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype
2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype
2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype
2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView
2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite
2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0
2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero
2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero
2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys
2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek
2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield
2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe
2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG
2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage
2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online
2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat
2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll
2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll
2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll
2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe
2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll
2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll
2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll
2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll
2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll
2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll
2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll
2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE
.

------- Sigcheck -------

[7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
[7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys
[-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys
[7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys
[7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys
[7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys
[7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys
.
((((((((((((((((((((((((((((( SnapShot@2010-06-19_12.45.36 )))))))))))))))))))))))))))))))))))))))))
.
+ 2010-05-29 19:35 . 2008-11-07 16:55 26144 c:\windows\system32\spupdsvc.exe
+ 2009-11-16 16:33 . 2009-11-16 16:33 53299 c:\windows\system32\pthreadVC.dll
+ 2010-06-20 14:33 . 2010-02-26 12:32 92672 c:\windows\system32\nmwcdcls.dll
+ 2008-08-19 00:18 . 2008-08-19 00:18 77824 c:\windows\system32\fmcodec.DLL
+ 2010-06-20 14:33 . 2008-08-26 08:26 18816 c:\windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 22528 c:\windows\system32\DRVSTORE\ccdcmbo_86369E3C3E199189C5EAD7421471A08D93A69835\ccdcmbo.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 92672 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdcls.dll
+ 2010-06-20 14:33 . 2010-02-26 12:32 18176 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\ccdcmb.sys
+ 2009-07-14 08:35 . 2009-07-14 08:35 37608 c:\windows\system32\drivers\wdfldr.sys
+ 2010-06-20 14:33 . 2008-08-26 08:26 18816 c:\windows\system32\drivers\pccsmcfd.sys
+ 2009-11-16 16:33 . 2009-11-16 16:33 50704 c:\windows\system32\drivers\npf.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 22528 c:\windows\system32\drivers\ccdcmbo.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 18176 c:\windows\system32\drivers\ccdcmb.sys
+ 2010-06-20 14:33 . 2010-06-20 14:33 10134 c:\windows\Installer\{8C91D53E-0C23-4A79-A480-68A443D80100}\ARPPRODUCTICON.exe
+ 2010-06-20 14:34 . 2010-06-20 14:34 15086 c:\windows\Installer\{18756A46-652E-4ED4-A029-C4940D59F09B}\ARPPRODUCTICON.exe
+ 2010-06-20 14:33 . 2010-02-26 12:21 8320 c:\windows\system32\DRVSTORE\nmwcdnsuc_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdnsuc.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\DRVSTORE\ccdcmbm_86369E3C3E199189C5EAD7421471A08D93A69835\usbser_lowerflt.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\DRVSTORE\ccdcmbcj_86369E3C3E199189C5EAD7421471A08D93A69835\usbser_lowerfltj.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\drivers\usbser_lowerfltj.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\drivers\usbser_lowerflt.sys
+ 2010-06-20 14:33 . 2010-06-20 14:33 3262 c:\windows\Installer\{1B9B5B3B-28E7-4E59-A80D-D670AA984514}\ARPPRODUCTICON.exe
+ 2009-11-16 16:33 . 2009-11-16 16:33 281104 c:\windows\system32\wpcap.dll
+ 2009-11-16 16:33 . 2009-11-16 16:33 100880 c:\windows\system32\Packet.dll
+ 2010-06-20 14:33 . 2010-02-26 12:32 662016 c:\windows\system32\nmwcdcocls.dll
+ 2010-01-27 01:07 . 2010-06-20 16:47 256280 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
- 2010-01-27 01:07 . 2010-01-27 01:07 256280 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
+ 2010-06-20 14:33 . 2010-04-14 09:40 590848 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\PCCSWpdDriver.dll
+ 2010-06-20 14:33 . 2010-02-26 12:21 137344 c:\windows\system32\DRVSTORE\nmwcdnsu_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdnsu.sys
+ 2010-06-20 14:33 . 2010-02-26 12:32 662016 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdcocls.dll
+ 2009-07-14 08:35 . 2009-07-14 08:35 444136 c:\windows\system32\drivers\wdf01000.sys
+ 2010-06-20 14:34 . 2010-06-20 14:34 853504 c:\windows\Installer\299de6.msi
+ 2010-06-20 14:33 . 2010-06-20 14:33 495616 c:\windows\Installer\299de0.msi
+ 2010-06-20 14:33 . 2010-06-20 14:33 331776 c:\windows\Installer\299dda.msi
+ 2010-06-20 14:33 . 2010-06-20 14:33 215552 c:\windows\Installer\299dd4.msi
- 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe
+ 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe
+ 2010-06-20 14:33 . 2010-02-26 12:19 1461992 c:\windows\system32\wdfcoinstaller01009.dll
+ 2010-06-20 14:33 . 2010-04-14 08:26 1837296 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\WUDFUpdate_01009.dll
+ 2010-06-20 14:33 . 2010-02-26 12:19 1461992 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\wdfcoinstaller01009.dll
.
((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736]
"AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696]
"Steam"="h:\gry\steam\steam.exe" [2010-06-20 1238352]
"PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2010-05-14 1479680]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GEST"="m‘|ü" [X]
"RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800]
"Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168]
"DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 307200]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk *

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
"FirewallOverride"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc]
"AntiVirusOverride"=dword:00000001
"AntiVirusDisableNotify"=dword:00000001
"FirewallDisableNotify"=dword:00000001
"FirewallOverride"=dword:00000001
"UpdatesDisableNotify"=dword:00000001
"UacDisableNotify"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Opera\\opera.exe"=
"c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"=
"h:\\Gry\\Battlefield 2\\BF2.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"=
"h:\\Gry\\Steam\\Steam.exe"= h:\\gry\\steam\\steam.exe
"h:\\Gry\\Pure\\Pure.exe"=
"c:\\WINDOWS\\system32\\PnkBstrA.exe"=
"c:\\WINDOWS\\system32\\PnkBstrB.exe"=
"h:\\Gry\\Call of Duty 4\\iw3mp.exe"=
"h:\\Inne\\FlashGet 3\\FlashGet3.exe"=
"h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"=
"c:\\WINDOWS\\system32\\wscntfy.exe"=
"c:\\Program Files\\Mozilla Firefox\\firefox.exe"=
"c:\\WINDOWS\\system32\\netsh.exe"=
"c:\\WINDOWS\\TBPanel.exe"=
"c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"=
"c:\\WINDOWS\\RTHDCPL.EXE"=
"c:\\Program Files\\DAEMON Tools Lite\\DTLite.exe"=
"c:\\PROGRA~1\\WapSter\\WAPSTE~1\\AQQ.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=

R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696]
R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886]
R2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704]
R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784]
.
.
------- Skan uzupełniający -------
.
IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm
IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm
IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Trusted Zone: kuaiche.com\software
FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\
FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll
FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll
FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\

---- FIREFOX - SPOSÓB POSTĘPOWANIA ----
c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-06-20 23:30
Windows 5.1.2600 Dodatek Service Pack 3 NTFS

skanowanie ukrytych procesów ...

skanowanie ukrytych wpisów autostartu ...

skanowanie ukrytych plików ...

skanowanie pomyślnie ukończone
ukryte pliki: 0

**************************************************************************

Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net

device: opened successfully
user: MBR read successfully
called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys hal.dll ACPI.sys atapi.sys spfe.sys >>UNKNOWN [0x8A4FC938]<<
kernel: MBR read successfully
detected MBR rootkit hooks:
\Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28
\Driver\ACPI -> ACPI.sys @ 0xb7e73cb8
\Driver\atapi -> atapi.sys @ 0xb7e2eb40
IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
\Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8
ParseProcedure -> ntkrnlpa.exe @ 0x805827e8
NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d49bb0
PacketIndicateHandler -> NDIS.sys @ 0xb7d56a21
SendHandler -> NDIS.sys @ 0xb7d3487b
user & kernel MBR OK

**************************************************************************
.
--------------------- ZABLOKOWANE KLUCZE REJESTRU ---------------------

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe"

[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"

[HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
------------------------ Pozostałe uruchomione procesy ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\windows\system32\PnkBstrA.exe
c:\windows\system32\PnkBstrB.exe
c:\windows\RTHDCPL.EXE
c:\windows\system32\RUNDLL32.EXE
c:\windows\system32\wdfmgr.exe
c:\program files\Razer\DeathAdder\razertra.exe
c:\program files\PC Connectivity Solution\ServiceLayer.exe
c:\program files\Razer\DeathAdder\razerofa.exe
c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe
c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe
c:\windows\system32\imapi.exe
.
**************************************************************************
.
Czas ukończenia: 2010-06-20 23:32:57 - komputer został uruchomiony ponownie
ComboFix-quarantined-files.txt 2010-06-20 21:32
ComboFix2.txt 2010-06-20 08:53
ComboFix3.txt 2010-06-19 12:50

Przed: 31 276 679 168 bajtów wolnych
Po: 31 265 529 856 bajtów wolnych

- - End Of File - - 72DC93DFF3BC0BA27E202BDBCA030767
[/log]

Moge juz uruchomic rejestr (edytor znaczy sie) i czy mam ten poprzedni plik dodac do rejestru?

Edytowane przez Kordikk
Mateusz J.
komentarz
komentarz

Tak dodaj do rejestru.

A dalej:
[quote]Skanuj komputer jak największą ilością skanerów, ponownie drwebcureit.
Następnie poszukaj w google skanerów online, konieczność skanu Kaspersky.

Jeśli jakiś program mimo tego nie będzie działał zainstaluj go ponownie.[/quote]

Kordikk
komentarz
komentarz

Okreslony plik nie jest skryptem rejestru...
Moze mam zmienic kodowanie z ANSI na UTF-8 czy cos??

Mateusz J.
komentarz
komentarz

Skopiowałeś nagłówek do notatnika?:
Windows Registry Editor Version 5.00

  • Dobra wypowiedź 1
Kordikk
komentarz
komentarz

OK. najwyrazniej skopiowalem bez naglowka ^^ Dziekuje Ci za wszystko ;) Jak bede mial problemy, wiem gdzie sie zglosic :D

Sohei
komentarz
komentarz (edytowane)

Nie wiem jak ty to zrobiłeś ale miałeś na kompie i Jeffo i sality; )

Edytowane przez Sohei
Mateusz J.
komentarz
komentarz

Ja się dziwie, że w ogóle infekcja się usunęła od tak.
Chociaż przypuszczam, ze będą nawroty.

  • Dobra wypowiedź 1
Sohei
komentarz
komentarz

ja też tak sądzę dlatego logi OTL i GMER obowiązkowo do oceny

  • 4 tygodnie później...
Kordikk
komentarz
komentarz

myślę, iż nastapil "nawrot choroby" tuz po formacie :/ OTL i Extras...
[log]OTL logfile created on: 2010-07-16 12:28:51 - Run 1
OTL by OldTimer - Version 3.2.6.0 Folder = H:\BACKUP 2010\Dysk C\DOwnloady
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 40,56 Gb Free Space | 83,07% Space Free | Partition Type: NTFS
Drive D: | 7,80 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 92,47 Gb Free Space | 22,18% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: KORDIAN
Current User Name: Kordianek
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-07-16 12:22:20 | 000,008,704 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Temp\ioeogh.exe
PRC - [2010-07-16 12:21:26 | 001,238,352 | ---- | M] (Valve Corporation) -- H:\Gry\Steam\steam.exe
PRC - [2010-06-26 10:49:39 | 000,979,928 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla Firefoxix\firefox.exe
PRC - [2010-06-26 10:49:39 | 000,014,808 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla Firefoxix\plugin-container.exe
PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- H:\BACKUP 2010\Dysk C\DOwnloady\OTL.exe
PRC - [2010-02-10 23:50:02 | 002,869,264 | ---- | M] (Microsoft Corporation) -- H:\Pobierane\framework35.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2008-04-14 22:51:52 | 000,218,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:50 | 000,196,608 | ---- | M] () -- \\?\C:\WINDOWS\System32\WBEM\WMIADAP.EXE
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:30 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msiexec.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-03-23 09:02:08 | 011,008,544 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Temp\dotnetfx3521022.08\1033\dotnetfx35\x86\dotnetfx35langpack_x86pl.exe
PRC - [2008-03-21 15:56:40 | 000,269,304 | ---- | M] (Microsoft Corporation) -- h:\41c9f4f18f04a6f8365c\setup.exe
PRC - [2008-01-29 05:20:27 | 002,177,576 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2007-11-07 16:26:34 | 000,269,304 | ---- | M] (Microsoft Corporation) -- h:\5deb768e7d78524ad83e65ab9419\setup.exe
PRC - [2007-10-24 01:47:40 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- H:\BACKUP 2010\Dysk C\DOwnloady\OTL.exe
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:48 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll
MOD - [2008-04-14 22:50:42 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui1.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:42 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui0.dll
MOD - [2008-04-14 22:50:42 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntlanman.dll
MOD - [2008-04-14 22:50:42 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netrap.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 22:50:36 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll
MOD - [2008-04-14 22:50:32 | 000,285,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:30 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drprov.dll
MOD - [2008-04-14 22:50:22 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\davclnt.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:50:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2008-04-14 22:49:16 | 000,714,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5)
DRV - [2010-07-15 23:51:01 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008-01-03 16:26:00 | 007,077,344 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm






IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2405280
IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search"
FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2405280&SearchSource=3&q={searchTerms}"
FF - prefs.js..browser.search.selectedEngine: "Softonic-Eng7 Customized Web Search"
FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2405280&SearchSource=13"
FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2405280&q="

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: H:\Inne\Mozilla Firefoxix\components [2010-07-16 01:19:21 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: H:\Inne\Mozilla Firefoxix\plugins [2010-07-16 11:48:19 | 000,000,000 | ---D | M]

[2010-07-16 00:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Extensions
[2010-07-16 12:19:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\hiuj067e.default\extensions
[2010-06-08 11:28:50 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\hiuj067e.default\searchplugins\conduit.xml

O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.)
O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O4 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004..\Run: [Steam] H:\Gry\Steam\Steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2009-10-07 20:36:50 | 000,000,043 | R--- | M] () - D:\autorun.inf -- [ UDF ]
O33 - MountPoints2\{15f71558-905a-11df-a1de-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{15f71558-905a-11df-a1de-806d6172696f}\Shell\AutoRun\command - "" = D:\Setup.exe -- [2009-10-09 02:00:30 | 000,345,360 | R--- | M] (Valve Corporation)
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-07-16 01:04:41 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found




[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-07-16 12:27:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010-07-16 12:27:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010-07-16 12:27:01 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010-07-16 12:27:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010-07-16 12:12:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood
[2010-07-16 12:11:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-07-16 12:06:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-07-16 12:02:51 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-07-16 11:57:32 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-07-16 11:57:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-07-16 01:25:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Softonic-Eng7
[2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit
[2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Conduit
[2010-07-16 01:23:55 | 000,000,000 | ---D | C] -- C:\Program Files\Softonic-Eng7
[2010-07-16 01:23:24 | 000,050,688 | ---- | C] (Grupa robocza Twain) -- C:\WINDOWS\twain_32.dll
[2010-07-16 01:23:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-07-16 01:20:03 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-07-16 01:19:19 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll
[2010-07-16 01:19:19 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative
[2010-07-16 01:12:53 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-07-16 01:12:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-07-16 01:12:49 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-07-16 01:12:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-07-16 01:12:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-07-16 01:12:25 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-07-16 01:12:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-07-16 01:12:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-07-16 01:10:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-07-16 01:10:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-07-16 01:10:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-07-16 01:10:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-07-16 01:10:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-07-16 01:10:07 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-07-16 01:03:23 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-07-16 01:03:23 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-07-16 01:03:23 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-07-16 01:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-07-16 00:28:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\WapSter
[2010-07-16 00:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Pobieranie
[2010-07-16 00:27:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Macromedia
[2010-07-16 00:27:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Adobe
[2010-07-16 00:25:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-07-16 00:25:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla
[2010-07-16 00:01:30 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-07-16 00:00:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-07-16 00:00:22 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\UserData
[2010-07-15 23:55:37 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010-07-15 23:55:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2010-07-15 23:55:22 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2010-07-15 23:54:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010)
[2010-07-15 23:54:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-07-15 23:52:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe
[2010-07-15 23:52:28 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2010-07-15 23:51:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache
[2010-07-15 23:47:05 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab
[2010-07-15 23:42:34 | 002,043,904 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe
[2010-07-15 23:42:34 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-07-15 23:42:34 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-07-15 23:42:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-07-15 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-07-15 23:42:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\InstallShield
[2010-07-15 23:42:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-07-15 23:40:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-07-15 23:40:23 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-07-15 23:40:22 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-07-15 23:40:22 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-07-15 23:37:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-07-15 23:37:45 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll
[2010-07-15 23:37:45 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2010-07-15 23:37:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-07-15 23:37:42 | 000,000,000 | ---D | C] -- C:\Intel
[2010-07-15 23:31:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-07-15 23:30:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-07-15 23:30:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-07-15 23:30:14 | 002,177,576 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-07-15 23:30:14 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-07-15 23:28:31 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-07-15 23:26:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Identities
[2010-07-15 23:26:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-07-15 23:26:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moje obrazy
[2010-07-15 23:26:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moja muzyka
[2010-07-15 23:26:40 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Microsoft
[2010-07-15 23:26:40 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Cookies
[2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\SendTo
[2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Recent
[2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji
[2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Ulubione
[2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty
[2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Menu Start
[2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne
[2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Szablony
[2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\PrintHood
[2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\NetHood
[2010-07-15 23:26:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Pulpit
[2010-07-15 23:26:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-15 23:26:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-07-15 23:26:10 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-07-15 23:26:09 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-07-15 23:26:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-15 23:24:48 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-07-15 23:24:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-15 23:23:42 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-07-15 23:23:42 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-07-15 23:22:59 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-07-15 23:22:27 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-07-15 23:21:34 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-07-15 23:21:27 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-07-15 23:21:27 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-07-15 23:21:20 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-07-15 23:21:17 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-07-15 23:21:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-07-15 23:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-07-15 23:20:32 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-07-15 23:20:31 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-07-15 23:20:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-07-15 23:20:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-07-15 23:20:18 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-07-15 23:20:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-07-15 23:20:06 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-07-15 23:20:03 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-07-15 23:19:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-07-15 23:19:56 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-07-15 23:19:55 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-07-15 23:19:45 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-07-15 23:19:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-07-15 23:19:21 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-07-15 23:19:21 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-07-15 23:19:17 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-07-15 23:19:13 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-07-15 23:18:50 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-07-15 23:18:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-07-15 23:18:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-07-16 12:27:31 | 001,164,910 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-07-16 12:27:31 | 000,518,854 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-07-16 12:27:31 | 000,458,308 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-07-16 12:27:31 | 000,099,332 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-07-16 12:27:31 | 000,078,880 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-07-16 12:26:27 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-07-16 12:25:56 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-07-16 12:11:57 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-07-16 12:11:51 | 000,160,100 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010-07-16 12:11:26 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-07-16 12:11:20 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-07-16 12:11:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-07-16 12:11:04 | 000,095,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-07-16 12:09:44 | 000,786,432 | -H-- | M] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT
[2010-07-16 12:09:44 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordianek\ntuser.ini
[2010-07-16 12:09:40 | 004,250,302 | -H-- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-07-16 12:09:23 | 000,002,675 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-07-16 12:04:44 | 000,251,152 | ---- | M] () -- C:\ntldr
[2010-07-16 11:58:14 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-07-16 11:56:06 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-07-16 11:56:06 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-07-16 11:55:56 | 000,013,104 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-07-16 01:23:47 | 002,690,048 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\Softonic-English.exe
[2010-07-16 00:28:15 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk
[2010-07-16 00:25:32 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-07-16 00:25:12 | 000,000,643 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-07-15 23:55:56 | 000,000,267 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-07-15 23:52:30 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-07-15 23:42:04 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-07-15 23:42:04 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-07-15 23:24:51 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-07-15 23:23:56 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-07-15 23:22:13 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-07-15 23:22:12 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-07-15 23:22:02 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-07-15 23:21:27 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-15 23:21:27 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-15 23:19:54 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-07-15 23:19:43 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-07-15 23:19:43 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-07-15 23:17:49 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-07-16 12:27:27 | 000,062,304 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-07-16 12:20:51 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk
[2010-07-16 12:07:01 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-07-16 12:07:01 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-07-16 12:07:01 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-07-16 12:07:01 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-07-16 12:07:01 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-07-16 12:07:01 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-07-16 12:07:01 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-07-16 12:07:00 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-07-16 12:07:00 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-07-16 12:07:00 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-07-16 12:07:00 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-07-16 12:07:00 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-07-16 12:07:00 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-07-16 12:07:00 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-07-16 12:07:00 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-07-16 12:07:00 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-07-16 12:07:00 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-07-16 12:07:00 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-07-16 12:07:00 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-07-16 12:07:00 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-07-16 12:07:00 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-07-16 12:07:00 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-07-16 12:07:00 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-07-16 12:07:00 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-07-16 12:07:00 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-07-16 12:07:00 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-07-16 12:07:00 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-07-16 12:07:00 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-07-16 12:07:00 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-07-16 12:07:00 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-07-16 12:07:00 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-07-16 12:07:00 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-07-16 12:07:00 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-07-16 12:07:00 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-07-16 12:07:00 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-07-16 12:07:00 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-07-16 12:07:00 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-07-16 12:07:00 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-07-16 12:07:00 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-07-16 12:07:00 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-07-16 12:07:00 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-07-16 12:07:00 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-07-16 12:07:00 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-07-16 12:07:00 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-07-16 12:07:00 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-07-16 12:07:00 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-07-16 12:07:00 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-07-16 12:07:00 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-07-16 12:07:00 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-07-16 12:07:00 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-07-16 12:07:00 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-07-16 12:07:00 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-07-16 12:07:00 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-07-16 12:07:00 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-07-16 12:07:00 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-07-16 12:07:00 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-07-16 12:07:00 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-07-16 12:07:00 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-07-16 12:07:00 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-07-16 12:07:00 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-07-16 12:07:00 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-07-16 12:07:00 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-07-16 12:07:00 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-07-16 12:07:00 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-07-16 12:07:00 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-07-16 12:07:00 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-07-16 12:07:00 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-07-16 12:06:59 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-07-16 12:06:59 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-07-16 12:06:59 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-07-16 12:06:59 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-07-16 12:06:59 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-07-16 12:06:59 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-07-16 12:06:59 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-07-16 12:06:59 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-07-16 12:06:59 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-07-16 12:06:59 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-07-16 12:06:59 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-07-16 12:06:59 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-07-16 12:04:53 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-07-16 12:04:53 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-07-16 12:04:53 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-07-16 11:58:15 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-07-16 01:23:35 | 000,046,306 | ---- | C] () -- C:\WINDOWS\System32\ieuinit.inf
[2010-07-16 01:23:34 | 000,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax
[2010-07-16 01:23:31 | 002,690,048 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\Softonic-English.exe
[2010-07-16 01:23:30 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-07-16 01:23:28 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-07-16 01:23:27 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-07-16 01:23:23 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2010-07-16 01:23:22 | 000,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax
[2010-07-16 01:23:20 | 000,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp
[2010-07-16 01:23:14 | 000,265,948 | ---- | C] () -- C:\WINDOWS\System32\locale.nls
[2010-07-16 01:23:14 | 000,251,152 | ---- | C] () -- C:\ntldr
[2010-07-16 01:23:14 | 000,023,044 | ---- | C] () -- C:\WINDOWS\System32\sorttbls.nls
[2010-07-16 01:12:55 | 000,002,675 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-07-16 01:12:51 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-07-16 01:12:51 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-07-16 01:12:50 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-07-16 01:12:49 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-07-16 01:12:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-07-16 01:12:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-07-16 01:12:45 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-07-16 01:12:45 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-07-16 01:12:41 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-07-16 01:12:41 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-07-16 01:12:40 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-07-16 01:12:40 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-07-16 01:12:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-07-16 01:12:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-07-16 01:12:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-07-16 01:12:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-07-16 01:12:32 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-07-16 01:10:45 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-07-16 01:10:45 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-07-16 01:10:45 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-07-16 01:10:45 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-07-16 01:10:45 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-07-16 01:10:45 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-07-16 01:10:45 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-07-16 01:10:45 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-07-16 01:10:07 | 000,095,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-07-16 01:09:12 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2010-07-16 01:09:08 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-07-16 00:28:15 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk
[2010-07-16 00:25:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-07-16 00:25:12 | 000,000,643 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-07-15 23:52:30 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk
[2010-07-15 23:42:04 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-07-15 23:42:04 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-07-15 23:40:49 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-07-15 23:33:42 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-07-15 23:31:07 | 000,160,100 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml
[2010-07-15 23:31:05 | 000,017,737 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-07-15 23:30:44 | 001,728,512 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2010-07-15 23:30:42 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2010-07-15 23:30:42 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2010-07-15 23:30:42 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2010-07-15 23:30:42 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2010-07-15 23:30:42 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2010-07-15 23:30:42 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2010-07-15 23:30:42 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2010-07-15 23:30:42 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-07-15 23:30:41 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\nvtuicpl.cpl
[2010-07-15 23:30:14 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-07-15 23:30:14 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-07-15 23:30:14 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-07-15 23:30:14 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-07-15 23:30:14 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-07-15 23:30:14 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-07-15 23:30:14 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-07-15 23:30:14 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-07-15 23:30:14 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-07-15 23:30:14 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-07-15 23:30:14 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-07-15 23:26:41 | 000,040,960 | -H-- | C] () -- C:\Documents and Settings\Kordianek\ntuser.dat.LOG
[2010-07-15 23:26:41 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordianek\ntuser.ini
[2010-07-15 23:26:40 | 000,786,432 | -H-- | C] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT
[2010-07-15 23:24:51 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-07-15 23:23:56 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-07-15 23:23:54 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-07-15 23:23:40 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-07-15 23:23:40 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-07-15 23:23:32 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-07-15 23:23:31 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-07-15 23:23:28 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-07-15 23:23:27 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-07-15 23:23:26 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-07-15 23:23:08 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-07-15 23:22:59 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-07-15 23:22:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-07-15 23:22:58 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-07-15 23:22:58 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-07-15 23:22:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-07-15 23:22:57 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-07-15 23:22:57 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-07-15 23:22:57 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-07-15 23:22:57 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-07-15 23:22:57 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-07-15 23:22:57 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-07-15 23:22:57 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-07-15 23:22:56 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-07-15 23:22:56 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-07-15 23:22:56 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-07-15 23:22:56 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-07-15 23:22:56 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-07-15 23:22:55 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-07-15 23:22:13 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-07-15 23:22:13 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-07-15 23:22:13 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-07-15 23:22:13 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-07-15 23:22:13 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-07-15 23:22:10 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-07-15 23:22:10 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-07-15 23:22:10 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-07-15 23:21:27 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-15 23:21:27 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-15 23:21:09 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-07-15 23:20:42 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-07-15 23:20:42 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-07-15 23:20:36 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-07-15 23:19:54 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-07-15 23:19:01 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-07-15 23:19:01 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-07-15 23:19:01 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-07-15 23:19:01 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-07-15 23:19:01 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-07-15 23:19:01 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-07-15 23:19:01 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-07-15 23:19:00 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-07-15 23:19:00 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-07-15 23:19:00 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-07-15 23:19:00 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-07-15 23:19:00 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-07-15 23:19:00 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-07-15 23:19:00 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-07-15 23:19:00 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-07-15 23:19:00 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-07-15 23:19:00 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-07-15 23:18:59 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-07-15 23:18:59 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-07-15 23:18:58 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-07-15 23:18:58 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-07-15 23:18:57 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-07-15 23:18:52 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc

[color=#E56717]========== LOP Check ==========[/color]


[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-07-15 23:17:49 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-07-15 23:42:42 | 000,000,197 | ---- | M] () -- C:\csb.log
[2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-07-16 12:04:44 | 000,251,152 | ---- | M] () -- C:\ntldr
[2010-07-16 12:11:03 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-07-15 23:40:51 | 000,000,429 | ---- | M] () -- C:\RHDSetup.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]
[log]OTL Extras logfile created on: 2010-07-16 12:28:51 - Run 1
OTL by OldTimer - Version 3.2.6.0 Folder = H:\BACKUP 2010\Dysk C\DOwnloady
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 40,56 Gb Free Space | 83,07% Space Free | Partition Type: NTFS
Drive D: | 7,80 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 92,47 Gb Free Space | 22,18% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: KORDIAN
Current User Name: Kordianek
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]

[HKEY_USERS\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- H:\Inne\Mozilla Firefoxix\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"AntiVirusOverride" = 1
"AntiVirusDisableNotify" = 1
"FirewallDisableNotify" = 1
"FirewallOverride" = 1
"UpdatesDisableNotify" = 1
"UacDisableNotify" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\Explorer.EXE" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation)
"H:\Kolejny Backup\AQQ_BW_22052.exe" = H:\Kolejny Backup\AQQ_BW_22052.exe:*:Enabled:ipsec -- ()
"C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winwkvj.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winwkvj.exe:*:Enabled:ipsec -- File not found
"C:\WINDOWS\system32\xRaidSetup.exe" = C:\WINDOWS\system32\xRaidSetup.exe:*:Enabled:ipsec -- (Gigabyte Technology Corp.)
"C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winrmgtbj.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winrmgtbj.exe:*:Enabled:ipsec -- File not found
"H:\Inne\Mozilla Firefoxix\firefox.exe" = H:\Inne\Mozilla Firefoxix\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation)
"H:\Gry\Steam\Steam.exe" = H:\Gry\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation)
"C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\ioeogh.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\ioeogh.exe:*:Enabled:ipsec -- ()


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{2BA00471-0328-3743-93BD-FA813353A783}" = Microsoft .NET Framework 3.0 Service Pack 1
"{2FC099BD-AC9B-33EB-809C-D332E1B27C40}" = Microsoft .NET Framework 3.5
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{B508B3F1-A24A-32C0-B310-85786919EF28}" = Microsoft .NET Framework 2.0 Service Pack 1
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AQQ" = WapSter AQQ
"Gainward" = EXPERTool
"Microsoft .NET Framework 3.5" = Microsoft .NET Framework 3.5
"Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK
"Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6)
"NVIDIA Drivers" = NVIDIA Drivers
"RealAlt_is1" = Real Alternative 2.0.2
"Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = Archiwizator WinRAR
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2010-07-15 17:57:15 | Computer Name = KORDIAN | Source = .NET Runtime Optimization Service | ID = 1103
Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32)
- Tried to start a service that wasn't the latest version of CLR Optimization service.
Will shutdown

Error - 2010-07-15 19:18:41 | Computer Name = KORDIAN | Source = MsiInstaller | ID = 11704
Description = Product: Kaspersky Anti-Virus 6.0 -- Error 1704.An installation for
Microsoft .NET Framework 2.0 is currently paused. You must undo the changes made
by that installation to continue. Do you want to undo those changes?

Error - 2010-07-15 20:01:50 | Computer Name = KORDIAN | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd iexplore.exe, wersja 6.0.2900.5512, moduł
powodujący błąd kernel32.dll, wersja 5.1.2600.2180, adres błędu 0x0008300c.

Error - 2010-07-15 20:02:52 | Computer Name = KORDIAN | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd wuauclt.exe, wersja 7.4.7600.226, moduł
powodujący błąd kernel32.dll, wersja 5.1.2600.2180, adres błędu 0x00083000.

Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001
Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest
niepoprawnie
sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy
wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi
i trzeci wpis DWORD w sekcji danych.

Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001
Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest
niepoprawnie
sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy
wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi
i trzeci wpis DWORD w sekcji danych.

Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3011
Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl
(WmiApRpl). Kod błędu to pierwszy wpis DWORD w sekcji danych (Data).

Error - 2010-07-16 06:00:05 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001
Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest
niepoprawnie
sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy
wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi
i trzeci wpis DWORD w sekcji danych.

[ System Events ]
Error - 2010-07-15 18:01:25 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7034
Description = Usługa Kaspersky Anti-Virus 6.0 niespodziewanie zakończyła pracę.
Wystąpiło to razy: 1.

Error - 2010-07-15 18:01:27 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla DeleteFlag nie powiodło się i wystąpił
następujący błąd: %%5.

Error - 2010-07-15 18:01:27 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7006
Description = Wywołanie ScRegSetValueExW dla DeleteFlag nie powiodło się i wystąpił
następujący błąd: %%5.

Error - 2010-07-16 05:48:19 | Computer Name = KORDIAN | Source = NtServicePack | ID = 921878
Description = Windows XP installation failed, leaving Windows XP partially updated.
Instalacja
dodatku Service Pack nie została ukończona i zainicjowano wycofywanie do stanu
sprzed instalacji. Proces wycofywania składa się z dwóch kroków. Krok pierwszy został
ukończony. Aby ukończyć krok drugi, kliknij przycisk OK. Aby otrzymać przypomnienie
o ukończeniu kroku drugiego przy następnym logowaniu, kliknij przycisk Anuluj.
Po ukończeniu wycofywania system zostanie uruchomiony ponownie i będzie można ponowić
próbę zainstalowania dodatku Service Pack.

Error - 2010-07-16 05:48:25 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Kaspersky Anti-Virus 6.0 z powodu następującego
błędu: %%2

Error - 2010-07-16 05:48:28 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: klif

Error - 2010-07-16 05:55:57 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Kaspersky Anti-Virus 6.0 z powodu następującego
błędu: %%2

Error - 2010-07-16 05:55:57 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Menedżer przekazywania z powodu następującego
błędu: %%1079

Error - 2010-07-16 05:55:58 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: klif

Error - 2010-07-16 05:56:03 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183


< End of report >
[/log]

Sohei
komentarz
komentarz

DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5) pewnie ze nastąpił; >
[b]Do ponownego postawienia systemu może być potrzebna płytka z systemem.[/b]
Pobierz i nagraj na płytkę na [b]niezainfekowanym[/b] komputerze [url=http://www.freedrweb.pl/livecd.php][b]DR Web LiveCD[/b][/url].
Włóż płytkę do zainfekowanego komputera, zakładając, że wcześniej ustawiłeś w BIOS-ie na startowanie kompa z CD/DVD, więc po restarcie powinien się uruchomić się skaner.
Wykonujesz pełny skan, leczysz co się da, reszta do usunięcia.
Skanujesz tyle razy, aż skaner nic nie znajdzie.
Jeśli po usuwaniu system się nie uruchomi, wkładasz do komputera płytkę z systemem i wykonujesz [url=http://www.searchengines.pl/index.php?showtopic=24500&view=findpost&p=109540]instalację nakładkową Windows[/url].
Po ewentualnej instalacji nakładkowej [b]wyłącz i włącz Przywracanie systemu[/b] na wszystkich dyskach. Instrukcja [url=http://support.microsoft.com/kb/310405/pl][b]XP[/b][/url] lub [url=http://windowshelp.microsoft.com/Windows/pl-PL/Help/517d3b8e-3379-46c1-b479-05b30d6fb3f01045.mspx][b]Vista[/b][/url].
Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url].
Jeśli skaner nic nie znajdzie, dla pewności podaj log z [url=http://forum.dobreprogramy.pl/post1170959.html#p1170959][b]Combofix[/b][/url] i wyłącz ponownie przywracanie systemu włączone przez Combofixa.

Kordikk
komentarz
komentarz

Dla pewnosci dodam logi z OTL przed robieniem cokolwiek Combo FIX'em... OTL i Extras:
[log]OTL logfile created on: 2010-07-17 20:21:42 - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = H:\Pobierane
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 42,56 Gb Free Space | 87,16% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 81,45 Gb Free Space | 19,53% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: KORDIAN
Current User Name: Kordianek
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-06-26 10:49:39 | 000,910,296 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla\firefox.exe
PRC - [2010-06-26 10:49:39 | 000,014,808 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla\plugin-container.exe
PRC - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2010-03-02 11:28:31 | 000,282,792 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2010-02-08 15:40:16 | 000,549,376 | ---- | M] (OldTimer Tools) -- H:\Pobierane\OTL.exe
PRC - [2010-01-14 22:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe
PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-04-14 22:51:04 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2008-01-29 17:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
PRC - [2008-01-29 05:20:27 | 002,177,576 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
PRC - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-04-16 18:09:02 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wininet.dll
MOD - [2010-04-16 18:09:01 | 001,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shdocvw.dll
MOD - [2010-04-16 18:09:01 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\urlmon.dll
MOD - [2010-02-08 15:40:16 | 000,549,376 | ---- | M] (OldTimer Tools) -- H:\Pobierane\OTL.exe
MOD - [2009-12-24 09:04:53 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wintrust.dll
MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-09-04 23:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msasn1.dll
MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-10-15 18:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll
MOD - [2008-06-20 19:48:53 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mswsock.dll
MOD - [2008-06-20 19:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dnsapi.dll
MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2_32.dll
MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2help.dll
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdsapi.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mstask.dll
MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll
MOD - [2008-04-14 22:50:34 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imagehlp.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:18 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crypt32.dll
MOD - [2008-04-14 22:50:18 | 000,520,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cryptui.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\apphelp.dll
MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Auto | Stopped] -- -- (LiveUpdate Notice Ex)
SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2008-01-29 17:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe -- (LiveUpdate Notice Service)
SRV - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [File_System | Unknown | Running] -- -- (DwProt)
DRV - [2010-07-17 17:12:48 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2008-04-13 22:09:18 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008-01-03 16:26:00 | 007,077,344 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID)
DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex)
DRV - [2006-03-02 14:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm


IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-854245398-507921405-839522115-1004\S-1-5-21-854245398-507921405-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]


FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: H:\Inne\Mozilla\components [2010-07-17 17:41:14 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: H:\Inne\Mozilla\plugins [2010-07-17 17:38:22 | 000,000,000 | ---D | M]

[2010-07-17 17:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Extensions
[2010-07-17 17:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\n15jrf5l.default\extensions

O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.)
O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.)
O4 - HKLM..\Run: [GEST] File not found
O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
O4 - HKU\S-1-5-21-854245398-507921405-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-854245398-507921405-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - comfile [open] -- "%1" %*
O35 - exefile [open] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-07-17 18:00:02 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found


SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-07-17 19:42:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\WapSter
[2010-07-17 19:40:01 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys
[2010-07-17 19:40:00 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys
[2010-07-17 19:40:00 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys
[2010-07-17 19:40:00 | 000,045,416 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys
[2010-07-17 19:40:00 | 000,022,360 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys
[2010-07-17 19:39:59 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2010-07-17 19:39:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira
[2010-07-17 18:27:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\DoctorWeb
[2010-07-17 18:25:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2010-07-17 18:08:20 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2010-07-17 18:08:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2010-07-17 18:08:16 | 000,000,000 | R--D | C] -- C:\Program Files
[2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines
[2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2010-07-17 18:07:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start
[2010-07-17 18:07:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty
[2010-07-17 18:07:52 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony
[2010-07-17 18:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione
[2010-07-17 18:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit
[2010-07-17 18:06:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2010-07-17 18:06:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2010-07-17 18:05:57 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-07-17 18:05:57 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji
[2010-07-17 18:05:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2010-07-17 18:04:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-17 18:04:16 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2010-07-17 18:04:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010-07-17 18:01:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045
[2010-07-17 17:58:46 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2010-07-17 17:58:46 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010-07-17 17:58:46 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2010-07-17 17:58:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2010-07-17 17:50:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\WinRAR
[2010-07-17 17:48:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Macromedia
[2010-07-17 17:48:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Adobe
[2010-07-17 17:48:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl
[2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl
[2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010-07-17 17:47:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Pobieranie
[2010-07-17 17:46:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010-07-17 17:44:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010-07-17 17:42:07 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010-07-17 17:42:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010-07-17 17:41:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Mozilla
[2010-07-17 17:41:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla
[2010-07-17 17:38:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2010-07-17 17:37:15 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter
[2010-07-17 17:34:45 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\UserData
[2010-07-17 17:28:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton
[2010-07-17 17:14:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Symantec
[2010-07-17 17:13:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2010-07-17 17:12:36 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010-07-17 16:59:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010-07-17 16:58:46 | 001,966,080 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe
[2010-07-17 16:58:46 | 000,000,000 | ---D | C] -- C:\RaidTool
[2010-07-17 16:58:43 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys
[2010-07-17 16:58:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool
[2010-07-17 16:58:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2010-07-17 16:58:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\InstallShield
[2010-07-17 16:58:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010-07-17 16:56:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010-07-17 16:56:30 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe
[2010-07-17 16:56:30 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2010-07-17 16:56:30 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2010-07-17 16:53:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2010-07-17 16:53:19 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll
[2010-07-17 16:53:19 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2010-07-17 16:53:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010-07-17 16:53:17 | 000,000,000 | ---D | C] -- C:\Intel
[2010-07-17 16:49:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\muvee Technologies
[2010-07-17 16:48:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview
[2010-07-17 16:48:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2010-07-17 16:47:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI
[2010-07-17 16:47:42 | 002,177,576 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe
[2010-07-17 16:47:42 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll
[2010-07-17 16:46:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Identities
[2010-07-17 16:46:05 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2010-07-17 16:46:03 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moje obrazy
[2010-07-17 16:46:03 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moja muzyka
[2010-07-17 16:45:50 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Microsoft
[2010-07-17 16:45:50 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Cookies
[2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\SendTo
[2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Recent
[2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji
[2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Ulubione
[2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty
[2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Menu Start
[2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne
[2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Szablony
[2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\PrintHood
[2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\NetHood
[2010-07-17 16:45:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Pulpit
[2010-07-17 16:45:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-17 16:45:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2010-07-17 16:45:12 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2010-07-17 16:19:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-17 16:18:33 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010-07-17 16:18:32 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010-07-17 16:17:56 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2010-07-17 16:17:56 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2010-07-17 16:17:56 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2010-07-17 16:17:50 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2010-07-17 16:17:18 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2010-07-17 16:17:02 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-07-17 16:17:02 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-07-17 16:16:27 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2010-07-17 16:16:21 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010-07-17 16:16:20 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2010-07-17 16:16:13 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2010-07-17 16:16:10 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online
[2010-07-17 16:15:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2010-07-17 16:15:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2010-07-17 16:15:26 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2010-07-17 16:15:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2010-07-17 16:15:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2010-07-17 16:15:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2010-07-17 16:15:11 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker
[2010-07-17 16:15:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2010-07-17 16:15:00 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2010-07-17 16:14:56 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2010-07-17 16:14:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2010-07-17 16:14:49 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2010-07-17 16:14:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-07-17 16:14:39 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2010-07-17 16:14:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2010-07-17 16:14:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-07-17 16:14:14 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2010-07-17 16:14:10 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2010-07-17 16:14:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone
[2010-07-17 16:13:43 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2010-07-17 16:13:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2010-07-17 16:13:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-07-17 20:18:36 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI
[2010-07-17 19:45:06 | 000,786,432 | -H-- | M] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT
[2010-07-17 19:42:55 | 000,013,104 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-07-17 19:40:07 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-07-17 19:28:48 | 000,160,100 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010-07-17 19:28:46 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010-07-17 19:28:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010-07-17 19:28:41 | 000,095,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-07-17 19:22:50 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-07-17 19:21:47 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordianek\ntuser.ini
[2010-07-17 19:17:58 | 000,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010-07-17 19:17:58 | 000,355,830 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2010-07-17 19:17:58 | 000,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010-07-17 19:17:58 | 000,049,712 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2010-07-17 19:17:58 | 000,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010-07-17 18:39:07 | 004,248,496 | -H-- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-07-17 18:08:14 | 000,000,231 | ---- | M] () -- C:\WINDOWS\system.ini
[2010-07-17 18:04:56 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010-07-17 18:04:21 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010-07-17 17:53:48 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak
[2010-07-17 17:44:02 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-07-17 17:41:17 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010-07-17 17:38:25 | 000,000,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-07-17 17:37:22 | 000,000,591 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk
[2010-07-17 17:30:57 | 000,000,000 | ---- | M] () -- C:\WINDOWS\WinInit.ini
[2010-07-17 16:58:16 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-07-17 16:58:16 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-07-17 16:19:39 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2010-07-17 16:18:47 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-07-17 16:17:04 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-07-17 16:17:04 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini
[2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini
[2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-07-17 16:17:02 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-07-17 16:17:02 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-07-17 16:16:54 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2010-07-17 16:16:20 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-17 16:16:20 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-17 16:14:47 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-07-17 16:14:37 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini
[2010-07-17 16:14:37 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini
[2010-07-17 16:12:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-07-17 19:40:07 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk
[2010-07-17 18:08:22 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-07-17 18:08:17 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010-07-17 18:08:17 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-07-17 18:08:17 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010-07-17 18:08:16 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-07-17 18:08:14 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010-07-17 18:08:14 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010-07-17 18:08:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010-07-17 18:08:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010-07-17 18:08:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010-07-17 18:08:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010-07-17 18:08:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010-07-17 18:08:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010-07-17 18:08:02 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2010-07-17 18:06:13 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010-07-17 18:06:13 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-07-17 18:06:13 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-07-17 18:06:13 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-07-17 18:06:13 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-07-17 18:06:12 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT
[2010-07-17 18:06:12 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-07-17 18:06:12 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-07-17 18:05:32 | 000,095,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-07-17 18:04:31 | 000,000,211 | -HS- | C] () -- C:\boot.ini
[2010-07-17 18:04:27 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2010-07-17 17:53:51 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak
[2010-07-17 17:48:34 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010-07-17 17:48:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010-07-17 17:48:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010-07-17 17:48:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010-07-17 17:48:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010-07-17 17:48:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010-07-17 17:48:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010-07-17 17:48:34 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010-07-17 17:48:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010-07-17 17:48:34 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010-07-17 17:48:34 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010-07-17 17:48:34 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010-07-17 17:48:34 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010-07-17 17:48:34 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010-07-17 17:48:33 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010-07-17 17:48:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010-07-17 17:48:33 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010-07-17 17:48:33 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010-07-17 17:48:33 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010-07-17 17:48:33 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010-07-17 17:48:33 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010-07-17 17:48:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010-07-17 17:48:33 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010-07-17 17:48:33 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010-07-17 17:48:33 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010-07-17 17:48:33 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010-07-17 17:48:33 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010-07-17 17:48:33 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010-07-17 17:48:33 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010-07-17 17:48:33 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010-07-17 17:48:33 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010-07-17 17:48:33 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010-07-17 17:48:33 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010-07-17 17:48:33 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010-07-17 17:48:33 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010-07-17 17:48:33 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010-07-17 17:48:33 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010-07-17 17:48:33 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010-07-17 17:48:33 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010-07-17 17:48:33 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010-07-17 17:48:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010-07-17 17:48:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010-07-17 17:48:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010-07-17 17:48:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010-07-17 17:48:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010-07-17 17:48:33 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010-07-17 17:48:33 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010-07-17 17:48:33 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010-07-17 17:48:33 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010-07-17 17:48:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010-07-17 17:48:33 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010-07-17 17:48:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010-07-17 17:48:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010-07-17 17:48:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010-07-17 17:48:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010-07-17 17:48:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010-07-17 17:48:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010-07-17 17:48:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010-07-17 17:48:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010-07-17 17:48:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010-07-17 17:48:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010-07-17 17:48:32 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010-07-17 17:48:32 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010-07-17 17:48:32 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010-07-17 17:48:32 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010-07-17 17:48:32 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010-07-17 17:48:32 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010-07-17 17:48:32 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010-07-17 17:48:32 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010-07-17 17:48:32 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010-07-17 17:48:32 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010-07-17 17:48:32 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010-07-17 17:48:32 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010-07-17 17:48:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010-07-17 17:48:32 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010-07-17 17:48:32 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010-07-17 17:48:32 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010-07-17 17:48:32 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010-07-17 17:48:32 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010-07-17 17:44:19 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010-07-17 17:44:19 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010-07-17 17:44:17 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010-07-17 17:41:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-07-17 17:38:25 | 000,000,571 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk
[2010-07-17 17:37:22 | 000,000,591 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk
[2010-07-17 17:30:57 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WinInit.ini
[2010-07-17 16:58:16 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav
[2010-07-17 16:58:16 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav
[2010-07-17 16:56:56 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-07-17 16:49:51 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI
[2010-07-17 16:48:50 | 000,160,100 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml
[2010-07-17 16:48:47 | 000,017,737 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu
[2010-07-17 16:48:22 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
[2010-07-17 16:48:19 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
[2010-07-17 16:48:19 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
[2010-07-17 16:48:19 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
[2010-07-17 16:48:18 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
[2010-07-17 16:48:18 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
[2010-07-17 16:48:18 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
[2010-07-17 16:48:18 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
[2010-07-17 16:48:18 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
[2010-07-17 16:48:18 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\nvtuicpl.cpl
[2010-07-17 16:47:42 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll
[2010-07-17 16:47:42 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe
[2010-07-17 16:47:42 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP
[2010-07-17 16:47:42 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP
[2010-07-17 16:47:42 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP
[2010-07-17 16:47:42 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini
[2010-07-17 16:47:42 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP
[2010-07-17 16:47:42 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP
[2010-07-17 16:47:42 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP
[2010-07-17 16:47:42 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini
[2010-07-17 16:47:42 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll
[2010-07-17 16:45:51 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordianek\ntuser.ini
[2010-07-17 16:45:49 | 000,786,432 | -H-- | C] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT
[2010-07-17 16:19:39 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2010-07-17 16:18:47 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-07-17 16:18:45 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010-07-17 16:18:30 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010-07-17 16:18:30 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010-07-17 16:18:29 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-07-17 16:18:22 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010-07-17 16:18:21 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-07-17 16:18:18 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-07-17 16:18:18 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2010-07-17 16:18:16 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2010-07-17 16:18:05 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-07-17 16:17:59 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2010-07-17 16:17:52 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2010-07-17 16:17:49 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010-07-17 16:17:49 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010-07-17 16:17:49 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010-07-17 16:17:48 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010-07-17 16:17:48 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010-07-17 16:17:48 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010-07-17 16:17:48 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010-07-17 16:17:48 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010-07-17 16:17:48 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010-07-17 16:17:48 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010-07-17 16:17:47 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010-07-17 16:17:47 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010-07-17 16:17:47 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010-07-17 16:17:47 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010-07-17 16:17:47 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010-07-17 16:17:46 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010-07-17 16:17:04 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2010-07-17 16:17:04 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2010-07-17 16:17:04 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2010-07-17 16:17:04 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2010-07-17 16:17:04 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2010-07-17 16:17:02 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2010-07-17 16:17:02 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2010-07-17 16:17:01 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2010-07-17 16:16:20 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-17 16:16:20 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-17 16:16:03 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010-07-17 16:15:35 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2010-07-17 16:15:35 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2010-07-17 16:15:30 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010-07-17 16:14:47 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-07-17 16:13:54 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp
[2010-07-17 16:13:54 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-07-17 16:13:54 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp
[2010-07-17 16:13:54 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp
[2010-07-17 16:13:54 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp
[2010-07-17 16:13:54 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp
[2010-07-17 16:13:53 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010-07-17 16:13:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp
[2010-07-17 16:13:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp
[2010-07-17 16:13:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp
[2010-07-17 16:13:53 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010-07-17 16:13:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp
[2010-07-17 16:13:53 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010-07-17 16:13:53 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010-07-17 16:13:53 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010-07-17 16:13:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp
[2010-07-17 16:13:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010-07-17 16:13:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010-07-17 16:13:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010-07-17 16:13:51 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2010-07-17 16:13:51 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010-07-17 16:13:50 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2010-07-17 16:13:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc

[color=#E56717]========== LOP Check ==========[/color]

[2010-07-17 16:49:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\muvee Technologies

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-07-17 16:12:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2010-07-17 16:58:48 | 000,000,197 | ---- | M] () -- C:\csb.log
[2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2010-07-17 17:44:02 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2010-07-17 19:28:40 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys
[2010-07-17 16:56:58 | 000,000,429 | ---- | M] () -- C:\RHDSetup.log


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe
< End of report >
[/log]
[log]OTL Extras logfile created on: 2010-07-17 20:21:42 - Run 1
OTL by OldTimer - Version 3.1.28.0 Folder = H:\Pobierane
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free
Paging file location(s): C:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 42,56 Gb Free Space | 87,16% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
Drive H: | 416,93 Gb Total Space | 81,45 Gb Free Space | 19,53% Space Free | Partition Type: NTFS
I: Drive not present or media not loaded

Computer Name: KORDIAN
Current User Name: Kordianek
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-854245398-507921405-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- H:\Inne\Mozilla\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer
"{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver
"{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}" = LiveUpdate Notice (Symantec Corporation)
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AQQ" = WapSter AQQ
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"Gainward" = EXPERTool
"Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6)
"NVIDIA Drivers" = NVIDIA Drivers
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = Archiwizator WinRAR

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2010-07-17 10:50:15 | Computer Name = KORDIAN | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd install.exe, wersja 0.0.0.0, moduł powodujący
błąd install.exe, wersja 0.0.0.0, adres błędu 0x00021bb8.

Error - 2010-07-17 12:30:42 | Computer Name = KORDIAN | Source = Automatic LiveUpdate Scheduler | ID = 101
Description =

Error - 2010-07-17 12:38:59 | Computer Name = KORDIAN | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd 3a294_xp.exe, wersja 0.0.0.0, moduł powodujący
błąd , wersja 0.0.0.0, adres błędu 0x00000000.

[ System Events ]
Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023
Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący
błąd: %%126

Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023
Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący
błąd: %%126

Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023
Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący
błąd: %%126

Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023
Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący
błąd: %%126

Error - 2010-07-17 13:15:11 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-07-17 13:30:19 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183

Error - 2010-07-17 13:33:46 | Computer Name = KORDIAN | Source = Windows Update Agent | ID = 20
Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować
następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Internet Explorer
8 dla systemu Windows XP.

Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842784
Description = Nie można odnaleźć zestawu zależnego Microsoft.VC90.CRT; ostatni błąd:
Odnośny zestaw nie jest zainstalowany w tym systemie.

Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842811
Description = Resolve Partial Assembly nie powiodło się dla Microsoft.VC90.CRT. Odpowiedni
komunikat o błędzie: Odnośny zestaw nie jest zainstalowany w tym systemie. .

Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842811
Description = Generate Activation Context nie powiodło się dla C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\RarSFX0\redist.dll.
Odpowiedni
komunikat o błędzie: Operacja ukończona pomyślnie. .


< End of report >
[/log]

Sohei
komentarz
komentarz

Wygląda dobrze. Dołącz jeszcze logi z RSIT oraz GMER: )

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.