Kordikk utworzono 19 czerwca 2010 utworzono 19 czerwca 2010 Witam. Chcialbym, aby ktos rzucil okiem na moje logi z OTL'a, poniewaz od wczoraj mam wielki problem... Do tej pory mialem AVG antywirusa, darmowa wersje, ale bez wirusow. Wszystko pieknie az do wczoraj. AVG przestal dzialac po tym jak go wylaczylem. Zauwazylem ze nie moge wlaczyc menadzera zadan: Administrator wylaczyl ta funkcje. Dowiedzialem sie, ze to jest wirus. Sciagnalem Avire, zrobilem skan, lecz podczas naprawiania plikow wylaczyl sie sam i juz nie moge go wlaczyc... Poczytalem troche i zdecydowalem sie wrzucic tutaj logi po tym jak nie zadzialalo uruchomienie: Virus Remover for Win32/Sality (rmslt.exe) od AVG. LOGI z OTL.txt: [log]OTL logfile created on: 2010-06-19 08:47:23 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 81,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,54 Gb Free Space | 50,26% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 91,89 Gb Free Space | 22,04% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe PRC - [2010-06-19 08:34:53 | 000,008,704 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\winegko.exe PRC - [2010-06-19 08:24:14 | 001,238,352 | ---- | M] (Valve Corporation) -- H:\Gry\Steam\steam.exe PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2010-04-01 20:05:59 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2009-10-09 13:11:12 | 025,725,736 | ---- | M] (Skype Technologies S.A.) -- C:\Program Files\Skype\Phone\Skype.exe PRC - [2009-10-09 13:11:12 | 000,078,008 | R--- | M] (Skype Technologies) -- C:\Program Files\Skype\Plugin Manager\skypePM.exe PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:50 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiapsrv.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-01-29 05:20:27 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe PRC - [2007-09-07 15:54:54 | 000,233,472 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe PRC - [2007-02-04 12:02:14 | 000,157,224 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpWareSE4.exe PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2007-02-05 09:29:04 | 000,139,264 | ---- | M] (Nuance Communications, Inc.) -- C:\Program Files\ScanSoft\OmniPageSE4\OpHookSE4.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5) DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio) DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M] [2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions [2010-06-18 12:06:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions [2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group) O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks) O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe () O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe (Nero AG) O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] File not found O4 - HKLM..\Run: [OpwareSE4] C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe (Nuance Communications, Inc.) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe (Nuance Communications, Inc.) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [VeohPlugin] C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe (Veoh Networks) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O8 - Extra context menu item: Download all by FlashGet3 - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm () O8 - Extra context menu item: Download by FlashGet3 - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm () O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtoPLay\COmMAnd - "" = K:\bdxkro.cmd -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\bdxkro.cmd -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\ExPlOre\ComMaNd - "" = K:\bdxkro.cmd -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\open\CommANd - "" = K:\bdxkro.cmd -- File not found O34 - HKLM BootExecute: (rmslt.nt) - File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M] NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2010-06-19 05:52:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Avira [2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2010-06-19 05:34:00 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2010-06-19 05:33:57 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys [2010-06-19 05:33:57 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2010-06-19 05:33:57 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys [2010-06-19 05:33:57 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys [2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5 [2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun [2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2 [2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC [2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks [2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead [2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz [2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA [2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll [2010-06-12 18:27:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\BITS [2010-06-12 18:26:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO [2010-06-12 17:08:41 | 012,466,044 | ---- | C] (DBSW) -- C:\Documents and Settings\Kordian\Pulpit\dbsw_www.przeklej.pl.exe [2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3 [2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio [2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails [2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo [2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota [2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0 [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6 [2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster [2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles [2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache [2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys [2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys [2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl [2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer [2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client [2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-04 13:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\POP3Profiles [2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client [2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie [2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO [2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate [2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia [2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US [2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft [2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla [2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe [2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company [2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2 [2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia [2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi [2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects [2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft [2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON [2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information [2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM [2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010) [2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys [2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter [2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype [2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype [2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe [2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp [2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks [2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo [2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0 [2010-05-29 22:05:13 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR [2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage [2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData [2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities [2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead [2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages [2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache [2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-05-29 21:38:44 | 002,043,904 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe [2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield [2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities [2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne [2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-19 08:46:09 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-06-19 08:31:36 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2010-06-19 08:30:33 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-06-19 08:30:31 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-06-19 08:29:39 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-06-19 08:28:13 | 044,089,904 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\avira_antivir_personal_en.exe [2010-06-19 08:04:20 | 000,000,300 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-06-19 05:34:12 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-06-18 22:27:12 | 000,000,268 | ---- | M] () -- C:\WINDOWS\system.ini [2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-06-18 15:11:20 | 000,000,512 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat [2010-06-18 15:07:23 | 000,002,063 | ---- | M] () -- C:\WINDOWS\System32\secushr.dat [2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 21:04:30 | 011,505,789 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sparking V.10.exe [2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 23:55:24 | 000,025,937 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 19:37:48 | 009,885,646 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DBFO.exe [2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 20:33:54 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-06-13 09:03:27 | 000,000,076 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Team Fortress 2.url [2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-06-12 17:10:27 | 012,466,044 | ---- | M] (DBSW) -- C:\Documents and Settings\Kordian\Pulpit\dbsw_www.przeklej.pl.exe [2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat [2010-06-11 22:37:50 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini [2010-06-09 17:28:18 | 000,001,355 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini [2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 13:55:46 | 000,000,692 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Prince of Persia T2T.lnk [2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-05-29 21:16:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-19 08:28:05 | 044,089,904 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\avira_antivir_personal_en.exe [2010-06-19 05:34:12 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-06-18 19:17:03 | 011,505,789 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sparking V.10.exe [2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 23:55:24 | 000,025,937 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2010-06-13 20:28:31 | 000,000,300 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-13 09:03:27 | 000,000,076 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Team Fortress 2.url [2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 19:50:04 | 001,736,704 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\GoMan.exe [2010-06-12 18:40:14 | 000,000,512 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat [2010-06-12 18:27:26 | 000,002,063 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat [2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini [2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini [2010-06-04 13:55:45 | 000,000,692 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Prince of Persia T2T.lnk [2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-31 13:29:57 | 009,885,646 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DBFO.exe [2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:11:45 | 000,001,355 | ---- | C] () -- C:\WINDOWS\imsins.BAK [2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-05-29 23:07:53 | 000,000,211 | -HS- | C] () -- C:\boot.ini [2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn [2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl [2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab [2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl [2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl [2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl [2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab [2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl [2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl [2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl [2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl [2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls [2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl [2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP [2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP [2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl [2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB [2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB [2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls [2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-05-29 21:24:41 | 000,040,960 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG [2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [color=#E56717]========== LOP Check ==========[/color] [2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-06-04 13:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\POP3Profiles [2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-06-18 15:11:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\BITS [2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-12 18:26:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO [2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-15 23:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-18 11:44:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-05-29 21:16:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-06-19 08:30:28 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log]
Mateusz J. komentarz 19 czerwca 2010 komentarz 19 czerwca 2010 [code]DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5)[/code]Usługa groźnego wirusa Sality. Infekuje on pliki .exe, .scr, .DLL. Jest to ciężka infekcja, na początek używasz trzech skanerów, którymi starasz się leczyć zainfekowane pliki: 1. http://www.freedrweb.com/cureit/ 2. http://support.kaspersky.com/avptool2010/main?qid=208280888 3. http://www.forumpc.pl/index.php?showtopic=107753 Raporty umieść na forum. Następnie wykonujesz nowy log, tym razem z ComboFix + OTL.
Kordikk komentarz 19 czerwca 2010 Autor komentarz 19 czerwca 2010 (edytowane) Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja...Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/ Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.htmlEhh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja... Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html Logi z MBAM [log]Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4215 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2010-06-19 11:56:29 mbam-log-2010-06-19 (11-56-29).txt Typ skanowania: Pełne skanowanie (C:\|H:\|) Przeskanowano obiektów: 387955 Upłynęło: 59 minut(y), 3 sekund(y) Zainfekowanych procesów w pamięci: 1 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 5 Zainfekowanych folderów: 1 Zainfekowanych plików: 14 Zainfekowanych procesów w pamięci: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal. Zainfekowanych folderów: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal. Zainfekowanych plików: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal. H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully. H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully. H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal. H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal. H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal. [/log][quote name='Kordikk' date='19 czerwiec 2010 - 10:59' timestamp='1276941673' post='1037856'] Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja... Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/ Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja... Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html Logi z MBAM [log]Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4215 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2010-06-19 11:56:29 mbam-log-2010-06-19 (11-56-29).txt Typ skanowania: Pełne skanowanie (C:\|H:\|) Przeskanowano obiektów: 387955 Upłynęło: 59 minut(y), 3 sekund(y) Zainfekowanych procesów w pamięci: 1 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 5 Zainfekowanych folderów: 1 Zainfekowanych plików: 14 Zainfekowanych procesów w pamięci: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal. Zainfekowanych folderów: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal. Zainfekowanych plików: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal. H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully. H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully. H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal. H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal. H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal. [/log] [log]ComboFix 10-06-18.03 - Kordian 2010-06-19 14:41:28.1.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2601 [GMT 2:00] Uruchomiony z: c:\documents and settings\Kordian\Moje dokumenty\Pobieranie\ComboFix.exe AV: AntiVir Desktop *On-access scanning disabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7} . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\docume~1\Kordian\USTAWI~1\Temp\E_N4 c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\eAPI.fne c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\HtmlView.fne c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\iext2.fne c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\internet.fne c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\krnln.fnr c:\docume~1\Kordian\USTAWI~1\Temp\E_N4\xplib.fne c:\documents and settings\Kordian\Dane aplikacji\BITS c:\documents and settings\Kordian\Dane aplikacji\BITS\BITS.ini c:\documents and settings\Kordian\Dane aplikacji\BITS\DHTTable.dat c:\documents and settings\Kordian\Dane aplikacji\BITS\ProxyList.ini c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182717.torrent c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182717.torrent.filelist c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182805.torrent c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182805.torrent.filelist c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182807.torrent c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182807.torrent.filelist c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.filelist c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.hybridlist c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100612182808.torrent.statistic c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100613002916.torrent c:\documents and settings\Kordian\Dane aplikacji\BITS\Torrent\20100613002916.torrent.filelist c:\documents and settings\Kordian\Dane aplikacji\BITS\UPnP.ini c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetHook.dll c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm c:\windows\Alcmtr.exe c:\windows\system32\secushr.dat c:\windows\system32\secustat.dat . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_ABP470N5 -------\Service_abp470n5 ((((((((((((((((((((((((( Pliki utworzone od 2010-05-19 do 2010-06-19 ))))))))))))))))))))))))))))))) . 2010-06-19 10:11 . 2010-06-19 10:11 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb 2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes 2010-06-19 08:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-06-19 08:54 . 2010-06-19 08:55 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes 2010-06-19 08:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner 2010-06-19 03:52 . 2010-06-19 03:52 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Avira 2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData 2010-06-19 03:33 . 2010-03-01 08:05 124784 ----a-w- c:\windows\system32\drivers\avipbb.sys 2010-06-19 03:33 . 2010-02-16 12:24 60936 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2010-06-19 03:33 . 2009-05-11 10:49 51992 ----a-w- c:\windows\system32\drivers\avgntdd.sys 2010-06-19 03:33 . 2009-05-11 10:49 17016 ----a-w- c:\windows\system32\drivers\avgntmgr.sys 2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\program files\Avira 2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Avira 2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5 2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV 2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe 2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead 2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz 2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE 2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe 2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation 2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation 2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll 2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll 2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll 2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin 2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll 2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA 2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll 2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat 2010-06-11 18:53 . 2010-06-15 21:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0 2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails 2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe 2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files 2010-06-11 15:22 . 2010-06-16 19:24 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6 2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster 2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys 2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe 2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe 2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles 2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache 2010-06-09 13:07 . 2010-06-09 13:07 -------- d-----w- c:\program files\DIFX 2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys 2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys 2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer 2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire 2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia 2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios 2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll 2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL 2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B 2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO 2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate 2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia 2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0 2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll 2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe 2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome 2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys 2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll 2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys 2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll 2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe 2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft 2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat 2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-06-19 12:46 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype 2010-06-19 12:31 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM 2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp 2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp 2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat 2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat 2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi 2010-06-01 21:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies 2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat 2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite 2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR 2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company 2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared 2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield 2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft 2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON 2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ 2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat 2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks 2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010) 2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe 2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype 2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype 2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView 2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys 2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0 2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero 2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys 2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek 2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield 2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe 2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG 2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage 2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online 2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat 2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys 2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll 2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll 2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll 2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe 2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys 2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll 2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll 2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll 2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll 2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll 2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe 2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe 2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll 2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll 2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll 2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll 2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE . ------- Sigcheck ------- [7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys [-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys [7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys [7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys [7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "VeohPlugin"="c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe" [2010-04-28 2715896] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736] "AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736] "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 435520] "Steam"="h:\gry\steam\steam.exe" [2010-06-19 1238352] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GEST"="m‘|ü" [X] "RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800] "JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2007-03-20 110592] "36X Raid Configurer"="c:\windows\system32\xRaidSetup.exe" [2007-08-29 2043904] "Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208] "NeroFilterCheck"="c:\program files\Common Files\Ahead\Lib\NeroCheck.exe" [2007-03-01 230960] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952] "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "SSBkgdUpdate"="c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 284200] "OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 157224] "DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 233472] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696] "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"= 1 (0x1) "DisableRegistryTools"= 1 (0x1) [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk * [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 "FirewallOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "AntiVirusOverride"=dword:00000001 "AntiVirusDisableNotify"=dword:00000001 "FirewallDisableNotify"=dword:00000001 "FirewallOverride"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "UacDisableNotify"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Opera\\opera.exe"= "c:\\Program Files\\Veoh Networks\\VeohWebPlayer\\veohwebplayer.exe"= "c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"= "h:\\Gry\\Battlefield 2\\BF2.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"= "h:\\Gry\\Steam\\Steam.exe"= "h:\\Gry\\Pure\\Pure.exe"= "c:\\WINDOWS\\system32\\PnkBstrA.exe"= "c:\\WINDOWS\\system32\\PnkBstrB.exe"= "h:\\Gry\\Call of Duty 4\\iw3mp.exe"= "h:\\Inne\\FlashGet 3\\FlashGet3.exe"= "h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"= "c:\\WINDOWS\\system32\\wscntfy.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= "c:\\WINDOWS\\RaidTool\\xInsIDE.exe"= "c:\\Program Files\\Common Files\\Scansoft Shared\\SSBkgdUpdate\\SSBkgdupdate.exe"= "c:\\WINDOWS\\system32\\netsh.exe"= "c:\\Documents and Settings\\Kordian\\Moje dokumenty\\Pobieranie\\rmslt.exe"= "c:\\WINDOWS\\TBPanel.exe"= "c:\\WINDOWS\\system32\\xRaidSetup.exe"= "c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"= "c:\\Program Files\\ScanSoft\\OmniPageSE4\\OpwareSE4.exe"= "c:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= "c:\\DOCUME~1\\Kordian\\USTAWI~1\\Temp\\winckjj.exe"= R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886] R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-06-19 135336] R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784] S0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696] --- Inne Usługi/Sterowniki w Pamięci --- *NewlyCreated* - ABP470N5 . . ------- Skan uzupełniający ------- . IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Trusted Zone: kuaiche.com\software FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\ FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX - SPOSÓB POSTĘPOWANIA ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); . - - - - USUNIĘTO PUSTE WPISY - - - - HKLM-Run-nwiz - nwiz.exe AddRemove-NVIDIA Display Control Panel - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-06-19 14:46 Windows 5.1.2600 Dodatek Service Pack 3 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net device: opened successfully user: MBR read successfully called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys splq.sys >>UNKNOWN [0x8A4FC938]<< kernel: MBR read successfully detected MBR rootkit hooks: \Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28 \Driver\ACPI -> ACPI.sys @ 0xb7e73cb8 \Driver\atapi -> atapi.sys @ 0xb7e2eb40 IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 \Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d37bb0 PacketIndicateHandler -> NDIS.sys @ 0xb7d44a21 SendHandler -> NDIS.sys @ 0xb7d2287b user & kernel MBR OK ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . --------------------- Pliki DLL ładowane pod uruchomionymi procesami --------------------- - - - - - - - > 'explorer.exe'(1772) c:\program files\ScanSoft\OmniPageSE4\OpHookSE4.dll . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\nvsvc32.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\windows\system32\PnkBstrA.exe c:\windows\system32\PnkBstrB.exe c:\windows\system32\wdfmgr.exe c:\program files\Razer\DeathAdder\razerofa.exe c:\windows\system32\WINMINE.EXE c:\docume~1\Kordian\USTAWI~1\Temp\winckjj.exe c:\windows\system32\imapi.exe . ************************************************************************** . Czas ukończenia: 2010-06-19 14:50:05 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2010-06-19 12:50 Przed: 26 212 741 120 bajtów wolnych Po: 26 468 438 016 bajtów wolnych WindowsXP-KB310994-SP2-Home-BootDisk-PLK.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect - - End Of File - - C386EE23A1F5CB4754451AAD8EB09514 [/log] [/quote]Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja... Przepraszam za double posting ale nie moge edytowac po raz 2 wczesniejszego :/ Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html Ehh... A moglbys mi wytlumaczyc jak zrobic logi ComboFix"em zeby niczego nie zepsuc? @Edit http://support.kaspersky.com/avptool2010/main?qid=208280888 http://www.freedrweb.com/cureit/ ten linki mi nie dzialaja... Zamiast tej stronki z Dr. Web moge pobrac stad?? http://www.dobreprogramy.pl/DrWEB-CureIt,Program,Windows,12976.html Logi z MBAM [log]Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4215 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2010-06-19 11:56:29 mbam-log-2010-06-19 (11-56-29).txt Typ skanowania: Pełne skanowanie (C:\|H:\|) Przeskanowano obiektów: 387955 Upłynęło: 59 minut(y), 3 sekund(y) Zainfekowanych procesów w pamięci: 1 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 5 Zainfekowanych folderów: 1 Zainfekowanych plików: 14 Zainfekowanych procesów w pamięci: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> Not selected for removal. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> Not selected for removal. Zainfekowanych folderów: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> Not selected for removal. Zainfekowanych plików: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> Not selected for removal. H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> Quarantined and deleted successfully. H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> Quarantined and deleted successfully. H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> Not selected for removal. H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> Not selected for removal. H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully. H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> Quarantined and deleted successfully. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> Not selected for removal. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> Not selected for removal. [/log] Edytowane 19 czerwca 2010 przez Kordikk
Mateusz J. komentarz 19 czerwca 2010 komentarz 19 czerwca 2010 Pobierz DrWeb z innego źródła, to samo postaraj się zrobić z kaspersky removal tool. ComboFix: http://www.forumpc.pl/index.php?showtopic=153621
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 logi z MBAM: [log]Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4215 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2010-06-19 11:55:40 mbam-log-2010-06-19 (11-55-40).txt Typ skanowania: Pełne skanowanie (C:\|H:\|) Przeskanowano obiektów: 387955 Upłynęło: 59 minut(y), 3 sekund(y) Zainfekowanych procesów w pamięci: 1 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 5 Zainfekowanych folderów: 1 Zainfekowanych plików: 14 Zainfekowanych procesów w pamięci: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> No action taken. Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableRegistryTools (Hijack.Regedit) -> Bad: (1) Good: (0) -> No action taken. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr (Hijack.TaskManager) -> Bad: (1) Good: (0) -> No action taken. Zainfekowanych folderów: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4 (Worm.Autorun) -> No action taken. Zainfekowanych plików: C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\wivcmf.exe (Trojan.Downloader) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\eAPI.fne (Trojan.Agent) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\HtmlView.fne (Worm.AutoRun) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\iext2.fne (Trojan.Flystudio) -> No action taken. H:\Inne\Mozilla Firefox Najnowsza\plugins\npclntax_HotbarSA.dll (Adware.Hotbar) -> No action taken. H:\Pobierane\SonyProductsKeyGen.exe (Trojan.Agent.CK) -> No action taken. H:\Pobierane\Setup_257.exe (Trojan.FakeAlert) -> No action taken. H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042580.exe (Spyware.OnlineGames) -> No action taken. H:\System Volume Information\_restore{B3C2F3F2-C211-495D-B725-86DE3AE9E6F8}\RP47\A0042850.dll (Malware.Packer.T) -> No action taken. H:\Titan Quest\Titan Quest PL\TITAN.QUEST__PL_Mini_+AlkiSecuRomby\AlkiSecuROM\AlkiSecuROM.exe (Trojan.FakeAlert) -> No action taken. H:\Gry\Valve\SSWv6.4.exe (Spyware.OnlineGames) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\internet.fne (Worm.Autorun) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\krnln.fnr (Worm.Autorun) -> No action taken. C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp\E_N4\xplib.fne (Worm.Autorun) -> No action taken. [/log] Logi z DrWeb: [log]014bbee7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\014bbee7.qua;Win32.Sector.12;; 014bbee7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0208c16b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0208c16b.qua;Win32.Sector.12;; 0208c16b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0311d3d3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0311d3d3.qua;Win32.HLLP.Jeefo.36352;; 0311d3d3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 03a3bd97.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\03a3bd97.qua;Win32.Sector.12;; 03a3bd97.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 044ed4a0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\044ed4a0.qua;Win32.Sector.12;; 044ed4a0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0630c807.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0630c807.qua;Win32.HLLP.Jeefo.36352;; 0630c807.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 064aa298.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\064aa298.qua;Win32.Sector.12;; 064aa298.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 06758a7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\06758a7b.qua;Win32.HLLP.Jeefo.36352;; 06758a7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 09078ddf.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\09078ddf.qua;Win32.HLLP.Jeefo.36352;; 09078ddf.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0a079ee4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a079ee4.qua;Win32.Sector.12;; 0a079ee4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0a488576.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a488576.qua;Win32.Sector.28480;; 0a488576.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0b03c5c0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0b03c5c0.qua;Win32.Sector.12;; 0b03c5c0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0bd394cc.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0bd394cc.qua;Win32.HLLP.Jeefo.36352;; 0bd394cc.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0d3ef26d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d3ef26d.qua;Win32.Sector.12;; 0d3ef26d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 0d85aa7a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d85aa7a.qua;Win32.Sector.12;; 0d85aa7a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 103cb72e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\103cb72e.qua;Win32.Sector.12;; 103cb72e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 10478104.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\10478104.qua;Win32.Sector.12;; 10478104.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 111ac12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\111ac12a.qua;Win32.Sector.12;; 111ac12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 12bcbf31.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\12bcbf31.qua;Win32.Sector.12;; 12bcbf31.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 160aa91d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\160aa91d.qua;Win32.Sector.28480;; 160aa91d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 169fcc47.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\169fcc47.qua;Win32.Sector.12;; 169fcc47.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 16c3fa5e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\16c3fa5e.qua;Win32.HLLP.Jeefo.36352;; 16c3fa5e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 17beaa10.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\17beaa10.qua;Win32.Sector.12;; 17beaa10.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 185dec7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\185dec7b.qua;Win32.Sector.12;; 185dec7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 19a08bee.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\19a08bee.qua;Win32.Sector.12;; 19a08bee.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 1be09569.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1be09569.qua;Win32.Sector.28480;; 1be09569.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 1f4b98a7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1f4b98a7.qua;Win32.Sector.28480;; 1f4b98a7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 21539608.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\21539608.qua;Win32.Sector.12;; 21539608.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 241c83c7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\241c83c7.qua;Win32.HLLP.Jeefo.36352;; 241c83c7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2425dc22.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2425dc22.qua;Win32.HLLP.Jeefo.36352;; 2425dc22.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2438d025.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2438d025.qua;Win32.Sector.12;; 2438d025.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 24878fd6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\24878fd6.qua;Win32.Sector.12;; 24878fd6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 251fd69f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\251fd69f.qua;Win32.Sector.28480;; 251fd69f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2622c65a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2622c65a.qua;Win32.Sector.12;; 2622c65a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2797b00e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2797b00e.qua;Win32.Sector.12;; 2797b00e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 28fce12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\28fce12a.qua;Win32.HLLP.Jeefo.36352;; 28fce12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2b4dea67.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2b4dea67.qua;Win32.Sector.12;; 2b4dea67.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2cc5e720.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2cc5e720.qua;Win32.Sector.12;; 2cc5e720.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2f3ca0e1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f3ca0e1.qua;Win32.Sector.12;; 2f3ca0e1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 2f8fdbd0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f8fdbd0.qua;Win32.Sector.28480;; 2f8fdbd0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 3098f329.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3098f329.qua;Win32.Sector.12;; 3098f329.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 3189b5d0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3189b5d0.qua;Win32.Sector.12;; 3189b5d0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 34b7dba8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\34b7dba8.qua;Win32.Sector.12;; 34b7dba8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 3554faa1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3554faa1.qua;Win32.Sector.12;; 3554faa1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 3f11d1df.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3f11d1df.qua;Win32.Sector.12;; 3f11d1df.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 40308c45.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\40308c45.qua;Win32.Sector.12;; 40308c45.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4157b62e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4157b62e.qua;Win32.HLLP.Jeefo.36352;; 4157b62e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 41c5d310.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\41c5d310.qua;Win32.HLLP.Jeefo.36352;; 41c5d310.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4843c114.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4843c114.qua;Win32.Sector.12;; 4843c114.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4c56f351.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4c56f351.qua;Prawdopodobnie Trojan.Packed.Based;; 4c56f351.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4e2abc82.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2abc82.qua;Win32.Sector.12;; 4e2abc82.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4e2ef942.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2ef942.qua;Win32.Sector.12;; 4e2ef942.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 4f0a8bc4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4f0a8bc4.qua;Win32.Sector.28480;; 4f0a8bc4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 55c982c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\55c982c3.qua;Win32.HLLP.Jeefo.36352;; 55c982c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 57709a1f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\57709a1f.qua;Win32.Sector.12;; 57709a1f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5791a70d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5791a70d.qua;Trojan.PWS.Wsgame.12661;; 5791a70d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5a49d802.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5a49d802.qua;Win32.Sector.12;; 5a49d802.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5aafd8f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5aafd8f8.qua;Win32.Sector.12;; 5aafd8f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5c689008.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c689008.qua;Win32.Sector.12;; 5c689008.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5c93fc93.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c93fc93.qua;Win32.Sector.12;; 5c93fc93.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5ce7cc5b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5ce7cc5b.qua;Win32.Sector.12;; 5ce7cc5b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5d11ff00.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5d11ff00.qua;Win32.Sector.12;; 5d11ff00.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5dd599e0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5dd599e0.qua;Win32.Sector.12;; 5dd599e0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5deff551.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5deff551.qua;Win32.Sector.12;; 5deff551.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 5e3cd1d6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5e3cd1d6.qua;Win32.HLLP.Jeefo.36352;; 5e3cd1d6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 67e4f47a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\67e4f47a.qua;Win32.HLLP.Jeefo.36352;; 67e4f47a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 6b49a701.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6b49a701.qua;Win32.HLLP.Jeefo.36352;; 6b49a701.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 6c5eae36.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6c5eae36.qua;Win32.Sector.12;; 6c5eae36.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 6cc7c408.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6cc7c408.qua;Win32.Sector.12;; 6cc7c408.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 6d1daad1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6d1daad1.qua;Win32.Sector.12;; 6d1daad1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 6f669e75.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6f669e75.qua;Win32.HLLP.Jeefo.36352;; 6f669e75.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 711c9691.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\711c9691.qua;Win32.Sector.12;; 711c9691.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 71f884f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\71f884f8.qua;Win32.Sector.12;; 71f884f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 742b92c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\742b92c3.qua;Win32.Sector.12;; 742b92c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 7590f5a5.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7590f5a5.qua;Win32.Sector.12;; 7590f5a5.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 76bda1ce.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\76bda1ce.qua;Win32.Sector.12;; 76bda1ce.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 78ee95e9.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78ee95e9.qua;Win32.HLLP.Jeefo.36352;; 78ee95e9.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 78f591f6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78f591f6.qua;Win32.HLLP.Jeefo.36352;; 78f591f6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 7965ea1e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7965ea1e.qua;Win32.Sector.12;; 7965ea1e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 799785d8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\799785d8.qua;Win32.Sector.12;; 799785d8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; 7f128707.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7f128707.qua;Win32.Sector.12;; 7f128707.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;; SetupVeohVideoCompass-1.5.2.1058.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo\Veoh;Win32.Sector.12;Wyleczony.; amxmodx-installer-1.8.1.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; ccsetup232.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; GoogleSketchUpWPL.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; rmslt.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; videomach-3.1.5.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; wodboaf_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.; DBFO.exe\zaqw.exe;C:\Documents and Settings\Kordian\Pulpit\DBFO.exe;Win32.HLLW.MyBot.10;; DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Archiwum zawierające zainfekowane obiekty;; dbsw_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.; dbsw_www.przeklej.pl.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.HLLW.MyBot.10;Usunięty.; GoMan.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.; Sparking V.10.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.Sector.12;Wyleczony.; Sparking V.10.exe;C:\Documents and Settings\Kordian\Pulpit;Win32.HLLW.MyBot.10;Usunięty.; Legend of Shinobi.exe;C:\Documents and Settings\Kordian\Pulpit\Cliencio;Win32.Sector.12;Wyleczony.; Patch.exe;C:\Documents and Settings\Kordian\Pulpit\Cliencio;Win32.Sector.12;Wyleczony.; DaWinBi.exe;C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client;Win32.Sector.12;Wyleczony.; NowOTS.exe;C:\Documents and Settings\Kordian\Pulpit\NowOTS Client;Win32.Sector.12;Wyleczony.; WoDBO Server Changer for Meteor.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Win32.Sector.12;Wyleczony.; WoDBO.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Trojan.MulDrop.11541;Usunięty.; WoDBO.exe;C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun;Win32.HLLW.MyBot.10;Usunięty.; AIRShareInstaller.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files;Win32.Sector.12;Wyleczony.; Setup.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files;Win32.Sector.12;Wyleczony.; Setup.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe\Reader 9.0\Setup Files\READER9;Win32.Sector.12;Wyleczony.; PnkBstrA.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster\COD4\pb;Win32.Sector.12;Wyleczony.; PnkBstrB.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster\COD4\pb;Win32.Sector.12;Wyleczony.; winyxdsgn.exe;C:\Documents and Settings\Kordian\Ustawienia lokalne\Temp;Trojan.Spambot.3654;Usunięty.; hdaudio_1.0.9.1_xp_vista_win7.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; nviewsetup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; nvudisp.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; setup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; cryostasis.exe;C:\Program Files\1C Company\Cryostasis;Odmiana wirusa Win32.Sector.5;; protect.exe;C:\Program Files\1C Company\Cryostasis;Win32.Sector.12;Wyleczony.; 014bbee7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\014bbee7.qua;Win32.Sector.12;; 014bbee7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0208c16b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0208c16b.qua;Win32.Sector.12;; 0208c16b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0311d3d3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0311d3d3.qua;Win32.HLLP.Jeefo.36352;; 0311d3d3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 03a3bd97.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\03a3bd97.qua;Win32.Sector.12;; 03a3bd97.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 044ed4a0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\044ed4a0.qua;Win32.Sector.12;; 044ed4a0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0630c807.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0630c807.qua;Win32.HLLP.Jeefo.36352;; 0630c807.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 064aa298.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\064aa298.qua;Win32.Sector.12;; 064aa298.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 06758a7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\06758a7b.qua;Win32.HLLP.Jeefo.36352;; 06758a7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 09078ddf.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\09078ddf.qua;Win32.HLLP.Jeefo.36352;; 09078ddf.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0a079ee4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a079ee4.qua;Win32.Sector.12;; 0a079ee4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0a488576.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0a488576.qua;Win32.Sector.28480;; 0a488576.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0b03c5c0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0b03c5c0.qua;Win32.Sector.12;; 0b03c5c0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0bd394cc.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0bd394cc.qua;Win32.HLLP.Jeefo.36352;; 0bd394cc.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0d3ef26d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d3ef26d.qua;Win32.Sector.12;; 0d3ef26d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 0d85aa7a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\0d85aa7a.qua;Win32.Sector.12;; 0d85aa7a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 103cb72e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\103cb72e.qua;Win32.Sector.12;; 103cb72e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 10478104.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\10478104.qua;Win32.Sector.12;; 10478104.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 111ac12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\111ac12a.qua;Win32.Sector.12;; 111ac12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 12bcbf31.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\12bcbf31.qua;Win32.Sector.12;; 12bcbf31.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 160aa91d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\160aa91d.qua;Win32.Sector.28480;; 160aa91d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 169fcc47.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\169fcc47.qua;Win32.Sector.12;; 169fcc47.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 16c3fa5e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\16c3fa5e.qua;Win32.HLLP.Jeefo.36352;; 16c3fa5e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 17beaa10.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\17beaa10.qua;Win32.Sector.12;; 17beaa10.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 185dec7b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\185dec7b.qua;Win32.Sector.12;; 185dec7b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 19a08bee.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\19a08bee.qua;Win32.Sector.12;; 19a08bee.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 1be09569.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1be09569.qua;Win32.Sector.28480;; 1be09569.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 1f4b98a7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\1f4b98a7.qua;Win32.Sector.28480;; 1f4b98a7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 21539608.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\21539608.qua;Win32.Sector.12;; 21539608.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 241c83c7.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\241c83c7.qua;Win32.HLLP.Jeefo.36352;; 241c83c7.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2425dc22.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2425dc22.qua;Win32.HLLP.Jeefo.36352;; 2425dc22.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2438d025.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2438d025.qua;Win32.Sector.12;; 2438d025.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 24878fd6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\24878fd6.qua;Win32.Sector.12;; 24878fd6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 251fd69f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\251fd69f.qua;Win32.Sector.28480;; 251fd69f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2622c65a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2622c65a.qua;Win32.Sector.12;; 2622c65a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2797b00e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2797b00e.qua;Win32.Sector.12;; 2797b00e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 28fce12a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\28fce12a.qua;Win32.HLLP.Jeefo.36352;; 28fce12a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2b4dea67.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2b4dea67.qua;Win32.Sector.12;; 2b4dea67.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2cc5e720.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2cc5e720.qua;Win32.Sector.12;; 2cc5e720.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2f3ca0e1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f3ca0e1.qua;Win32.Sector.12;; 2f3ca0e1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 2f8fdbd0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\2f8fdbd0.qua;Win32.Sector.28480;; 2f8fdbd0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 3098f329.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3098f329.qua;Win32.Sector.12;; 3098f329.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 3189b5d0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3189b5d0.qua;Win32.Sector.12;; 3189b5d0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 34b7dba8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\34b7dba8.qua;Win32.Sector.12;; 34b7dba8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 3554faa1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3554faa1.qua;Win32.Sector.12;; 3554faa1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 3f11d1df.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\3f11d1df.qua;Win32.Sector.12;; 3f11d1df.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 40308c45.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\40308c45.qua;Win32.Sector.12;; 40308c45.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4157b62e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4157b62e.qua;Win32.HLLP.Jeefo.36352;; 4157b62e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 41c5d310.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\41c5d310.qua;Win32.HLLP.Jeefo.36352;; 41c5d310.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4843c114.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4843c114.qua;Win32.Sector.12;; 4843c114.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4c56f351.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4c56f351.qua;Prawdopodobnie Trojan.Packed.Based;; 4c56f351.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4e2abc82.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2abc82.qua;Win32.Sector.12;; 4e2abc82.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4e2ef942.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4e2ef942.qua;Win32.Sector.12;; 4e2ef942.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 4f0a8bc4.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\4f0a8bc4.qua;Win32.Sector.28480;; 4f0a8bc4.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 55c982c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\55c982c3.qua;Win32.HLLP.Jeefo.36352;; 55c982c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 57709a1f.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\57709a1f.qua;Win32.Sector.12;; 57709a1f.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5791a70d.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5791a70d.qua;Trojan.PWS.Wsgame.12661;; 5791a70d.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5a49d802.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5a49d802.qua;Win32.Sector.12;; 5a49d802.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5aafd8f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5aafd8f8.qua;Win32.Sector.12;; 5aafd8f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5c689008.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c689008.qua;Win32.Sector.12;; 5c689008.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5c93fc93.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5c93fc93.qua;Win32.Sector.12;; 5c93fc93.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5ce7cc5b.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5ce7cc5b.qua;Win32.Sector.12;; 5ce7cc5b.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5d11ff00.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5d11ff00.qua;Win32.Sector.12;; 5d11ff00.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5dd599e0.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5dd599e0.qua;Win32.Sector.12;; 5dd599e0.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5deff551.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5deff551.qua;Win32.Sector.12;; 5deff551.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 5e3cd1d6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\5e3cd1d6.qua;Win32.HLLP.Jeefo.36352;; 5e3cd1d6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 67e4f47a.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\67e4f47a.qua;Win32.HLLP.Jeefo.36352;; 67e4f47a.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 6b49a701.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6b49a701.qua;Win32.HLLP.Jeefo.36352;; 6b49a701.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 6c5eae36.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6c5eae36.qua;Win32.Sector.12;; 6c5eae36.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 6cc7c408.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6cc7c408.qua;Win32.Sector.12;; 6cc7c408.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 6d1daad1.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6d1daad1.qua;Win32.Sector.12;; 6d1daad1.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 6f669e75.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\6f669e75.qua;Win32.HLLP.Jeefo.36352;; 6f669e75.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 711c9691.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\711c9691.qua;Win32.Sector.12;; 711c9691.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 71f884f8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\71f884f8.qua;Win32.Sector.12;; 71f884f8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 742b92c3.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\742b92c3.qua;Win32.Sector.12;; 742b92c3.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 7590f5a5.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7590f5a5.qua;Win32.Sector.12;; 7590f5a5.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 76bda1ce.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\76bda1ce.qua;Win32.Sector.12;; 76bda1ce.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 78ee95e9.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78ee95e9.qua;Win32.HLLP.Jeefo.36352;; 78ee95e9.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 78f591f6.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\78f591f6.qua;Win32.HLLP.Jeefo.36352;; 78f591f6.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 7965ea1e.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7965ea1e.qua;Win32.Sector.12;; 7965ea1e.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 799785d8.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\799785d8.qua;Win32.Sector.12;; 799785d8.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; 7f128707.qua\data001;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED\7f128707.qua;Win32.Sector.12;; 7f128707.qua;C:\Documents and Settings\All Users\Dane aplikacji\Avira\AntiVir Desktop\INFECTED;Kontener zawiera zainfekowane obiekty;Przeniesiony.; ccsetup232.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; rmslt.exe;C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie;Win32.Sector.12;Wyleczony.; DBFO.exe\zaqw.exe;C:\Documents and Settings\Kordian\Pulpit\DBFO.exe;Win32.HLLW.MyBot.10;; DBFO.exe;C:\Documents and Settings\Kordian\Pulpit;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; WoDBO Server Changer for Meteor.exe;C:\Documents and Settings\Kordian\Pulpit\WoDBO;Win32.Sector.12;Wyleczony.; hdaudio_1.0.9.1_xp_vista_win7.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; nviewsetup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; nvudisp.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; setup.exe;C:\NVIDIA\DisplayDriver\197.45\WinXP\International;Win32.Sector.12;Wyleczony.; cryostasis.exe;C:\Program Files\1C Company\Cryostasis;Odmiana wirusa Win32.Sector.5;Przeniesiony.; AcroRd32.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader;Win32.Sector.12;Wyleczony.; ConsoleApp.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader\plug_ins\Printme;Win32.Sector.12;Wyleczony.; acroaum.exe;C:\Program Files\Adobe\Acrobat 6.0\Reader\Updater;Win32.Sector.12;Wyleczony.; Ip Changer Updater.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.; Tibia MULTI-ip changer.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.; UNinstaller.exe;C:\Program Files\Asprate\Tibia Multi IP Changer;Win32.Sector.12;Wyleczony.; avgtray.exe;C:\Program Files\AVG\AVG9;Win32.Sector.12;Wyleczony.; BJEZPLUS.EXE;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.; BJEZPRN.EXE;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.; uninst.exe;C:\Program Files\Canon\Easy-PhotoPrint;Win32.Sector.12;Wyleczony.; uninstall.exe;C:\Program Files\Canon\IJ Manual\MP140 SERIES;Win32.Sector.12;Wyleczony.; Maint.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.; mpn31.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.; mpncopy.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.; mpnscan.exe;C:\Program Files\Canon\MP Navigator 3.1;Win32.Sector.12;Wyleczony.; cnmvs.exe;C:\Program Files\CanonBJ\IJPrinter\Canon MP140 series;Win32.Sector.12;Wyleczony.; uninst.exe;C:\Program Files\CCleaner;Win32.Sector.12;Wyleczony.; NeroCheck.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NeroPatentActivation.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NeroScoutOptions.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NeroSearchAdvanced.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NeroUpgrade.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NeTsMan.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NiReg.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NMBgMonitor.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NMIndexingService.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; NMIndexStoreSvr.exe;C:\Program Files\Common Files\Ahead\Lib;Win32.Sector.12;Wyleczony.; SetupX.exe;C:\Program Files\Common Files\Ahead\Nero Web;Win32.Sector.12;Wyleczony.; IDriver.exe;C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32;Win32.Sector.12;Wyleczony.; IDriver2.exe;C:\Program Files\Common Files\InstallShield\Driver\10\Intel 32;Win32.Sector.12;Wyleczony.; agent.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.; ISDM.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.; issch.exe;C:\Program Files\Common Files\InstallShield\UpdateService;Win32.Sector.12;Wyleczony.; DW20.EXE;C:\Program Files\Common Files\Microsoft Shared\DW;Win32.Sector.12;Wyleczony.; DWTRIG20.EXE;C:\Program Files\Common Files\Microsoft Shared\DW;Win32.Sector.12;Wyleczony.; SSBkgdUpdate.exe;C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate;Win32.Sector.12;Wyleczony.; DTLite.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.; DTLiteHlp.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.; uninst.exe;C:\Program Files\DAEMON Tools Lite;Win32.Sector.12;Wyleczony.; DPInst.exe;C:\Program Files\DIFX\D6ACC4BE676423A2B130B78A4B627FC457D98997;Win32.Sector.12;Wyleczony.; bzip2.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; gimp-2.6.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; gimp-console-2.6.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; gspawn-win32-helper.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; pango-querymodules.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; ps-pat-load.exe;C:\Program Files\GIMP-2.0\bin;Win32.Sector.12;Wyleczony.; file-png.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0;Win32.Sector.12;Wyleczony.; alien-map.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; align-layers.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; animation-optimize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; animation-play.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; antialias.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; apply-canvas.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; blinds.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; blur-gauss-selective.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; blur-gauss.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; blur-motion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; blur.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; border-average.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; bump-map.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; cartoon.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; channel-mixer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; checkerboard.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; cml-explorer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; color-cube-analyze.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; color-exchange.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; color-rotate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; color-to-alpha.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; colorify.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; colormap-remap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; compose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; contrast-retinex.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; convolution-matrix.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; crop-auto.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; cubism.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; curve-bend.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; decompose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; deinterlace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; depth-merge.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; despeckle.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; destripe.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; diffraction.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; displace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; edge-dog.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; edge-laplace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; edge-neon.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; edge-sobel.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; edge.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; emboss.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; engrave.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-apng.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-bmp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-cel.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-compressor.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-csource.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-dicom.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-faxg3.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-fits.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-fli.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-gbr.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-gif-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-gif-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-gih.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-html-table.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-ico.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-jpeg.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-mng.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-pat.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-pcx.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-pdf.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-pnm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-ps.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-psd-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-psd-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-psp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-raw.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-sgi.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-sunras.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-svg.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-tga.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-tiff-load.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-tiff-save.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-uri.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-wmf.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-xbm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-xpm.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; file-xwd.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; film.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; filter-pack.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; flame.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; fractal-explorer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; fractal-trace.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; gee-zoom.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; gee.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; gfig.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; gimpressionist.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; gradient-flare.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; grid.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; help.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; hot.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; ifs-compose.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; illusion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; imagemap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; iwarp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; jigsaw.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; lcms.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; lens-apply.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; lens-distortion.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; lens-flare.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; lighting.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; map-object.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; maze.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; metadata.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; mosaic.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; newsprint.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; nl-filter.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; noise-hsv.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; noise-randomize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; noise-rgb.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; noise-solid.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; noise-spread.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; nova.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; oilify.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; pagecurl.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; photocopy.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; pixelize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; plasma.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; plugin-browser.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; polar-coords.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; print.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; qbist.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; red-eye-removal.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; ripple.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; rotate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; sample-colorize.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; script-fu.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; selection-to-path.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; sharpen.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; shift.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; sinus.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; smooth-palette.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; softglow.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; sparkle.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; sphere-designer.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; threshold-alpha.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; tile-glass.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; tile-paper.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; tile-seamless.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; tile-small.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; tile.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; twain.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; unit-editor.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; unsharp-mask.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; value-propagate.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; van-gogh-lic.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; video.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; warp.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; waves.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; whirl-pinch.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; win-snap.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; wind.exe;C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins;Win32.Sector.12;Wyleczony.; HLTooLz.exe;C:\Program Files\HLTooLz;Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{931C37FC-594D-43A9-B10F-A2F2B1F03498};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{98736A65-3C79-49EC-B7E9-A3C77774B0E6};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217};Win32.Sector.12;Wyleczony.; uninstall.exe;C:\Program Files\InstallShield Installation Information\{E48469CC-635E-4FD5-A122-1497C286D217};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC};Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\InstallShield Installation Information\{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873};Win32.Sector.12;Wyleczony.; iv_uninstall.exe;C:\Program Files\IrfanView;Win32.Sector.12;Wyleczony.; Slideshow.exe;C:\Program Files\IrfanView\Plugins;Win32.Sector.12;Wyleczony.; mbam.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.; mbamgui.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.; mbamservice.exe;C:\Program Files\Malwarebytes' Anti-Malware;Win32.Sector.12;Wyleczony.; msmsgs.exe;C:\Program Files\Messenger;Win32.Sector.12;Niewyleczalny.Przeniesiony.; mshelp2tool.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Documentation\DirectX9;Win32.Sector.12;Wyleczony.; DXSETUP.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Redist;Win32.Sector.12;Wyleczony.; AntiAlias.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; BasicHLSL.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; Blobs.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; CompiledEffect.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; ConfigSystem.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; CustomUI.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; DepthOfField.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; EffectParam.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; EmptyProject.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; EnhancedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; HDRCubeMap.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; HDRFormats.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; HDRLighting.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; HDRPipeline.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; HLSLwithoutEffects.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; Instancing.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; IrradianceVolume.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; LocalDeformablePRT.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; MeshFromOBJ.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; MultiAnimation.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; OptimizedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; ParallaxOcclusionMapping.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; Pick.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; PixelMotionBlur.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; PostProcess.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; PRTCmdLine.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; PRTDemo.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; ShadowMap.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; ShadowVolume.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; SimpleSample.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; SkinnedMesh.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; UVAtlas.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D\Bin\x86;Win32.Sector.12;Wyleczony.; 10BitScanout10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; AdvancedParticles.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; BasicHLSL10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; ContentStreaming.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; CubeMapGS.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; DDSWithoutD3DX.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; DeferredParticles.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; DepthOfField10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; DrawPredicated.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; EmptyProject10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; FixedFuncEMU.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; GPUBoids.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; GPUSpectrogram.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; HDAO10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; HDRFormats10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; HLSLWithoutFX10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; Instancing10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; MeshFromOBJ10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; MotionBlur10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; MultiMon10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; MultiStreamRendering.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; NBodyGravity.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; Pick10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; PipesGS.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; ProceduralMaterials.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; RaycastTerrain.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; ShadowVolume10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; SimpleSample10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; Skinning10.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; SparseMorphTargets.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; TransparencyAA10.1.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D10\Bin\x86;Win32.Sector.12;Wyleczony.; AdaptiveTessellationCS40.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; BasicCompute11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; BasicHLSL11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; BC6HBC7EncoderDecoder11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; CascadedShadowMaps11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; ComputeShaderSort11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; ContactHardeningShadows11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; DDSWithoutD3DX11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; DetailTessellation11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; DynamicShaderLinkage11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; EmptyProject11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; HDRToneMappingCS11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; MultithreadedRendering11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; NBodyGravityCS11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; OIT11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; PNTriangles11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; SimpleBezier11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; SimpleSample11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; SubD11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; VarianceShadows11.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Direct3D11\Bin\x86;Win32.Sector.12;Wyleczony.; CustomFormat.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.; FFConst.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.; Joystick.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\DirectInput\Bin\x86;Win32.Sector.12;Wyleczony.; Collision.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; CoreDetection.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; D3D11Install.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; DxDiagOutput.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; DxDiagReport.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; DXInstall.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; ExampleForFirewallInstall.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; GameStatisticsExample.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; InstallOnDemand.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; ParentalControlTimeLimits.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; VideoMemory.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\Misc\Bin\x86;Win32.Sector.12;Wyleczony.; Tut01_PlayCue.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.; Tut02_Stream.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.; Tut03_Variable.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.; XACTCodeDriven.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.; XACTGame.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XACT\Bin\x86;Win32.Sector.12;Wyleczony.; XAudio2BasicSound.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.; XAudio2BasicStream.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.; XAudio2CustomAPO.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.; XAudio2Sound3D.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XAudio2\Bin\x86;Win32.Sector.12;Wyleczony.; AudioController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.; RumbleController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.; SimpleController.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.; XInputGame.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\C++\XInput\Bin\x86;Win32.Sector.12;Wyleczony.; SampleBrowser.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Samples\SampleBrowser;Win32.Sector.12;Wyleczony.; AdpcmEncode.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; AudConsole3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; DXCapsViewer.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; dxcpl.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; DXErr.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; DxTex.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; DXViewer.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; fxc.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; GDFMaker.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; GDFTrace.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; MeshConvert.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; PIXAdmin.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; PIXWin.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; texconv.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; Xact3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; XactBld3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; XAudConsole3.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; xWMAEncode.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86;Win32.Sector.12;Wyleczony.; setup.exe;C:\Program Files\Microsoft DirectX SDK (February 2010)\Utilities\bin\x86\Microsoft XNA Test Tools;Win32.Sector.12;Wyleczony.; crashreporter.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.; firefox.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.; updater.exe;C:\Program Files\Mozilla Firefox;Win32.Sector.12;Wyleczony.; helper.exe;C:\Program Files\Mozilla Firefox\uninstall;Win32.Sector.12;Wyleczony.; NeDwFileHelper.exe;C:\Program Files\Nero\Nero 7\Core;Win32.Sector.12;Wyleczony.; NeroCmd.exe;C:\Program Files\Nero\Nero 7\Core;Win32.Sector.12;Wyleczony.; discinfo.exe;C:\Program Files\Nero\Nero 7\Core\SecurDisc;Win32.Sector.12;Wyleczony.; NeroStartSmart.exe;C:\Program Files\Nero\Nero 7\Nero StartSmart;Win32.Sector.12;Wyleczony.; CDSpeed.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.; DMAManager.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.; DriveSpeed.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.; InfoTool.exe;C:\Program Files\Nero\Nero 7\Nero Toolkit;Win32.Sector.12;Wyleczony.; nvcplui.exe;C:\Program Files\NVIDIA Corporation\Control Panel Client;Win32.Sector.12;Wyleczony.; keystone.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.; nvAppBar.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.; nvDspSch.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.; nViewSetup.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.; nwiz.exe;C:\Program Files\NVIDIA Corporation\nView;Win32.Sector.12;Wyleczony.; opera.exe;C:\Program Files\Opera;Win32.Sector.12;Wyleczony.; netscape.exe;C:\Program Files\Opera\program;Win32.Sector.12;Wyleczony.; NPSWF32_FlashUtil.exe;C:\Program Files\Opera\program\plugins;Win32.Sector.12;Wyleczony.; razercfg.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.; razerhid.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.; razertra.exe;C:\Program Files\Razer\DeathAdder;Win32.Sector.12;Wyleczony.; DPInst.exe;C:\Program Files\Razer\DeathAdder\Driver;Win32.Sector.12;Wyleczony.; DPInst.exe;C:\Program Files\Razer\DeathAdder\Driver\vista;Win32.Sector.12;Wyleczony.; mplayerc.exe;C:\Program Files\Real Alternative\Media Player Classic;Win32.Sector.12;Wyleczony.; upgrdhlp.exe;C:\Program Files\Real Alternative\Update_OB;Win32.Sector.12;Wyleczony.; Alcmtr.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.; ChCfg.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.; RtlUpd.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.; SkyTel.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.; SoundMan.exe;C:\Program Files\Realtek\Audio\InstallShield;Win32.Sector.12;Wyleczony.; KillOP.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; launchop.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; OmniPage.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; opa11.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; OpWareSE4.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; ScannerWizard.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; TwainClient.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; xocr32b.exe;C:\Program Files\ScanSoft\OmniPageSE4;Win32.Sector.12;Wyleczony.; Ereg.exe;C:\Program Files\ScanSoft\OmniPageSE4\Ereg;Win32.Sector.12;Wyleczony.; SkypeIEPluginBroker.exe;C:\Program Files\Skype\Toolbars\Internet Explorer;Win32.Sector.12;Wyleczony.; SkypeNames2.exe;C:\Program Files\Skype\Toolbars\Shared;Win32.Sector.12;Wyleczony.; Patch.exe;C:\Program Files\Tibia;Win32.Sector.12;Wyleczony.; Tibia.exe;C:\Program Files\Tibia;Win32.Sector.12;Wyleczony.; uninst.exe;C:\Program Files\Veoh Networks\Veoh Video Compass;Win32.Sector.12;Wyleczony.; uninst.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.; VeohFlashPlayer.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.; veohwebplayer.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.; Win32ImageGrabber.exe;C:\Program Files\Veoh Networks\VeohWebPlayer;Win32.Sector.12;Wyleczony.; uninstall.exe;C:\Program Files\VideoMach-3.1.5;Win32.Sector.12;Wyleczony.; uninstall.exe;C:\Program Files\WapSter\WapSter AQQ;Win32.Sector.12;Wyleczony.; UninstWA.exe;C:\Program Files\Winamp;Win32.Sector.12;Wyleczony.; winampa.exe;C:\Program Files\Winamp;Win32.Sector.12;Wyleczony.; dlimport.exe;C:\Program Files\Windows Media Player;Win32.Sector.12;Wyleczony.; wmsetsdk.exe;C:\Program Files\Windows Media Player;Win32.Sector.12;Wyleczony.; Rar.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.; RarExtLoader.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.; Uninstall.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.; UnRAR.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.; WinRAR.exe;C:\Program Files\WinRAR;Win32.Sector.12;Wyleczony.; Alcmtr.exe.vir;C:\Qoobox\Quarantine\C\WINDOWS;Win32.Sector.12;Wyleczony.; A0018848.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.; A0018849.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.; A0018855.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.; A0018859.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP84;Win32.HLLW.MyBot.10;Usunięty.; A0039144.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP91;Win32.HLLW.MyBot.10;Usunięty.; A0041245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP94;Trojan.MulDrop.11541;Usunięty.; A0041249.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP94;Win32.HLLW.MyBot.10;Usunięty.; A0041489.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041490.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041491.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041492.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041494.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041588.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041621.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041623.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041625.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041626.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041628.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041629.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041632.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041676.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0041676.exe;Win32.HLLW.MyBot.10;; A0041676.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0041677.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0041684.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0041691.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041692.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Trojan.MulDrop.11541;Usunięty.; A0041694.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0041761.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0041890.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042129.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042130.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042137.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042139.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042140.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042141.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042142.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042143.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042145.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042148.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042188.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042189.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042190.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042191.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042192.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042193.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042195.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042243.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042244.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97\A0042244.exe;Win32.HLLW.MyBot.10;; A0042244.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0042245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042245.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0042252.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0042344.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042345.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Trojan.MulDrop.11541;Usunięty.; A0042346.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0042351.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042352.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042359.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042367.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042369.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042386.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042391.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042396.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042549.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLW.MyBot.10;Usunięty.; A0043108.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043109.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043110.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043111.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043112.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043113.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043116.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043117.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043149.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043150.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043153.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043154.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0043154.exe;Win32.HLLW.MyBot.10;; A0043154.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0043155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043157.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043159.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043159.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043164.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043165.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0043166.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043172.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043173.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043174.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043182.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043183.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043306.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043310.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043311.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043313.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043315.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043328.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043355.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043356.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043359.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043360.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043360.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0043360.exe;Win32.HLLW.MyBot.10;; A0043360.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0043361.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043361.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043362.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043363.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043365.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043365.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043370.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0043372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0043380.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043381.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043383.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043420.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043421.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043422.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043423.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043424.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043425.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043427.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043445.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044446.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044447.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044448.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044449.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044451.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044452.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044454.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044495.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044496.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044499.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044500.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0044500.exe;Win32.HLLW.MyBot.10;; A0044500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0044501.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044501.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0044502.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0044510.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044511.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0044512.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0044521.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044522.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044523.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044528.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044529.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044554.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044555.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044557.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044576.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044582.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044584.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044586.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044589.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044591.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044592.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044594.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044595.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044596.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044598.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044599.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044600.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044601.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044607.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044608.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044610.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044611.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044613.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044615.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044616.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044617.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044625.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044626.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044628.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044630.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044631.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044632.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044633.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044634.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044635.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044637.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044640.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044641.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044642.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044643.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044645.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044646.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044647.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044648.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044649.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044650.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044651.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044652.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044654.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044655.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044657.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044658.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044659.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044661.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044662.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044663.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044664.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044665.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044666.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044668.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044671.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044672.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044674.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044675.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044677.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044678.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044679.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044681.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044683.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044684.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044686.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044687.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044688.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044689.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044690.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044691.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044692.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044693.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044694.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044696.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044697.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044698.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044699.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044700.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044701.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044702.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044706.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044707.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044708.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044709.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044710.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044711.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044712.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044715.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044716.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044717.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044720.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044721.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044722.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044723.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044724.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044725.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044727.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044728.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044730.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044732.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044734.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044735.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044736.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044737.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044738.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044739.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044740.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044742.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044744.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044745.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044746.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044747.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044750.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044751.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044753.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044754.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044755.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044758.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044759.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044760.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044761.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044762.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044764.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044768.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044769.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044770.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044771.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044772.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044773.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044774.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044775.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044776.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044778.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044780.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044781.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044783.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044784.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044786.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044788.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044789.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044790.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044791.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044792.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044793.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044794.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044796.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044797.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044798.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044799.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044800.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044801.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044803.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044804.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044805.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044806.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044807.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044809.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044810.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044811.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044813.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044814.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044817.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044818.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044819.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044820.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044821.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044825.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044826.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044827.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044829.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044955.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044956.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045016.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045072.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0045111.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045154.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045155.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045156.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045157.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045158.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045161.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045164.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045238.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045240.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0045241.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045256.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045257.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045258.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045259.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0045261.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045262.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046252.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046253.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046254.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046256.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046261.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046265.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046266.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046267.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046279.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046280.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046281.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046282.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0046284.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046285.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046347.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046349.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046366.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046367.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046370.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046371.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0046371.exe;Win32.HLLW.MyBot.10;; A0046371.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0046372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046372.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0046373.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046374.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046376.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046376.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0046387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0046390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046391.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046392.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046401.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046402.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046413.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046414.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046415.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046416.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046417.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.; A0047246.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047247.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047248.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047249.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047250.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047253.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047262.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047263.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047265.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047266.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0047268.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047269.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047302.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047303.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047306.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047307.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0047307.exe;Win32.HLLW.MyBot.10;; A0047307.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0047308.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047308.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0047309.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047310.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047312.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0047320.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0047329.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047330.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047331.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047338.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047339.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047351.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047352.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047353.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047354.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047355.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.; A0047379.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047382.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047384.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047385.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047387.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047388.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047389.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047390.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047391.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047392.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047393.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047394.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047395.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047396.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047397.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047398.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047399.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047400.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047405.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047406.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047407.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047408.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047409.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047410.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047411.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047413.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047414.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047415.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047416.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047417.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047422.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047423.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047424.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047425.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047426.EXE;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047427.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047428.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047429.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047430.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047431.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047432.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047434.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047436.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047437.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047438.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047439.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047440.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047441.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047442.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047443.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047444.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047445.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047446.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047447.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047448.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047449.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047450.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047451.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047452.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047453.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047454.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047455.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047456.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047458.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047459.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047460.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047461.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047462.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047463.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047465.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047468.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047469.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047471.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047472.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047473.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047474.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047475.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047476.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047477.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047478.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047479.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047480.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047481.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047482.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047483.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047484.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047485.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047486.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047487.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047488.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047489.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047490.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047491.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047493.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047494.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047495.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047496.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047497.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047498.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047499.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047500.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047503.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047504.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047505.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047506.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047507.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047508.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047509.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047511.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047512.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047513.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047514.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047516.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047517.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047518.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047519.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047520.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047521.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047522.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047523.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047524.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047525.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047526.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047527.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047528.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047529.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047530.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047531.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047532.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047533.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047534.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047535.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047536.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047537.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047539.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047541.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047542.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047543.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047544.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047545.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047546.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047547.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047548.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047549.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047550.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047551.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047552.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047553.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047555.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047556.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047557.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047558.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047559.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047560.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047561.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047562.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047563.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047564.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047565.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047566.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047567.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047568.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047569.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047570.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047571.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047572.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047573.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047575.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047576.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047577.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047578.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047579.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047580.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047581.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047583.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047584.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047585.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047586.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047587.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047588.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047589.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047590.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047591.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047592.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047593.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047594.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047595.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047596.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047597.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047598.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047600.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047601.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047602.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047603.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047604.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047606.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047607.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047608.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047612.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047613.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047614.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047615.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047616.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047617.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047618.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047619.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047620.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047621.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047622.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047623.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047624.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047710.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047712.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047714.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047717.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047718.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047729.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.; A0048724.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048725.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048726.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048727.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048728.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048731.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048819.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048829.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048830.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048831.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048832.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0048834.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048835.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048866.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048867.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048870.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048871.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048871.exe\zaqw.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0048871.exe;Win32.HLLW.MyBot.10;; A0048871.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0048872.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048872.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0048873.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048874.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048876.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048876.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0048881.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.HLLW.MyBot.10;Usunięty.; A0048890.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048891.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048892.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048918.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Odmiana wirusa Win32.Sector.5;Przeniesiony.; A0049144.exe;C:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Niewyleczalny.Przeniesiony.; TBPanel.exe;C:\WINDOWS;Win32.Sector.12;Wyleczony.; xInsIDE.exe;C:\WINDOWS\RaidTool;Win32.Sector.12;Wyleczony.; xRaidSetup.exe;C:\WINDOWS\system32;Win32.Sector.12;Wyleczony.; crashreporter.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.; firefox.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.; updater.exe;H:\BACKUP\Mozilla Firefox;Win32.Sector.12;Wyleczony.; helper.exe;H:\BACKUP\Mozilla Firefox\uninstall;Win32.Sector.12;Wyleczony.; LoS v12.exe;H:\BACKUP\Pulpit;Win32.Sector.12;Wyleczony.; oshicod6.exe;H:\BACKUP\Pulpit\czity;Win32.Sector.12;Wyleczony.; nnnesterJ.exe;H:\BitComet Download\Emulator + Nekketsu\Emulator;Win32.Sector.12;Wyleczony.; Metal Slide Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.; Rounded Rect Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.; Slide Thumbnail.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\ImageReady Droplets;Win32.Sector.12;Wyleczony.; Aged Photo.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Conditional Mode Change.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Constrain to 300 pixels.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Constrain to 64 pixels.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Drop Shadow Frame.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Make Button.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Make Sepia Tone.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Save As JPEG Medium.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; Save As Photoshop PDF.exe;H:\Gry\Adobe Photoshop CS2\Samples\Droplets\Photoshop Droplets;Win32.Sector.12;Wyleczony.; BF2.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; BF2ServerLauncher.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; BF2VoiceSetup.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; BF2VoipServer.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; BF2VoipServer_w32ded.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; Bf2_w32ded.exe;H:\Gry\Battlefield 2;Win32.Sector.12;Wyleczony.; ArcadeInstallBATTLEFIELD2_20.EXE;H:\Gry\Battlefield 2\Redist;Win32.Sector.12;Wyleczony.; Battlefield 2_code.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.; EasyInfo.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.; EReg.exe;H:\Gry\Battlefield 2\Support;Win32.Sector.12;Wyleczony.; BFBC2Updater.exe;H:\Gry\Battlefield BC2;Win32.Sector.12;Wyleczony.; dxwebsetup.exe;H:\Gry\Battlefield BC2\Redist;Win32.Sector.12;Wyleczony.; Battlefield Bad Company 2_code.exe;H:\Gry\Battlefield BC2\Support;Win32.Sector.12;Wyleczony.; Battlefield Bad Company 2_uninst.exe;H:\Gry\Battlefield BC2\Support;Win32.Sector.12;Wyleczony.; CrashReport.exe;H:\Gry\BitComet;Win32.Sector.12;Wyleczony.; uninst.exe;H:\Gry\BitComet;Win32.Sector.12;Wyleczony.; PnkBstrA.exe;H:\Gry\Call of Duty 2\pb;Win32.Sector.12;Wyleczony.; 7za.exe;H:\Gry\Call of Duty 4\Mods\ModWarfare;Win32.Sector.12;Wyleczony.; PnkBstrA.exe;H:\Gry\Call of Duty 4\pb;Win32.Sector.12;Wyleczony.; PnkBstrB.exe;H:\Gry\Call of Duty 4\pb;Win32.Sector.12;Wyleczony.; pbsvc.exe;H:\Gry\Call of Duty 4 - Modern Warfare\pb;Win32.Sector.12;Wyleczony.; PnkBstrB.exe;H:\Gry\CoD5\pb;Win32.Sector.12;Wyleczony.; Engine.exe;H:\Gry\Combat Arms\Combat Arms EU;Win32.Sector.12;Wyleczony.; AhnRpt.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.; HsLogMgr.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.; HSUpdate.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield;Win32.Sector.12;Wyleczony.; autoup.exe;H:\Gry\Combat Arms\Combat Arms EU\HShield\Update;Win32.Sector.12;Wyleczony.; hl.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; hlds.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; hltv.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; launcher.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; Toolbar.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; Uninstal.exe;H:\Gry\Counter-Strike 1.6 V40;Win32.Sector.12;Wyleczony.; steambackup.exe;H:\Gry\Counter-Strike 1.6 V40\platform\Steam\cached;Win32.Sector.12;Wyleczony.; Counter-Strike.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.; hl.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.; hlds.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.; hltv.exe;H:\Gry\Counter-Strike 1.6 ZCP;Win32.Sector.12;Wyleczony.; geekplay.exe;H:\Gry\Counter-Strike 1.6 ZCP\cstrike;Win32.Sector.12;Wyleczony.; steambackup.exe;H:\Gry\Counter-Strike 1.6 ZCP\platform\steam\cached;Win32.Sector.12;Wyleczony.; Winmugen.exe;H:\Gry\DBME2k8;Win32.Sector.12;Wyleczony.; AutoPatch.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.; Start DerekCO.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.; tqsfg.exe;H:\Gry\DerekCO;Win32.Sector.12;Wyleczony.; credit.exe;H:\Gry\DerekCO\Help;Win32.Sector.12;Wyleczony.; ConfigEditor.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; Discipl2.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; play.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; ScenEdit.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; uninstall.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; Unwise.exe;H:\Gry\Disciples II;Win32.Sector.12;Wyleczony.; LineageII.exe;H:\Gry\Epilog;Win32.Sector.12;Wyleczony.; updater.exe;H:\Gry\Epilog;Win32.Sector.12;Wyleczony.; FretsOnFire.exe;H:\Gry\FretsOnFire;Win32.Sector.12;Wyleczony.; Gothic3.exe;H:\Gry\Gothic III;Win32.Sector.12;Wyleczony.; ConvertXIMG.exe;H:\Gry\Gothic III\Data\_compiledImage\Ximg Converter;Win32.Sector.12;Wyleczony.; DXSETUP.exe;H:\Gry\Gra Resident evil 4\directx_jun2007_redist;Win32.Sector.12;Wyleczony.; gtaEncoder.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV;Win32.Sector.12;Wyleczony.; LaunchGTAIV.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV;Win32.Sector.12;Wyleczony.; OfflineActivation.exe;H:\Gry\GTA IV Giereczka\Grand Theft Auto IV\OfflineActivation;Win32.Sector.12;Wyleczony.; LineageII.exe;H:\Gry\Lineage II Gracia Final;Win32.Sector.12;Wyleczony.; RUN L2UK.exe;H:\Gry\Lineage II Gracia Final\system cross;Win32.Sector.12;Wyleczony.; LineageII.exe;H:\Gry\Lineage II Interlude;Win32.Sector.12;Wyleczony.; Config.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; errorlog.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; language changer.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; M2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; mc2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; metin2.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; metin2mod.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; Metin2_Server_Hack.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; MultiStarter.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; PatchUpdater.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; Uninstall.exe;H:\Gry\Metin2kr;Win32.Sector.12;Wyleczony.; errorlog.exe;H:\Gry\Metin2_PL;Win32.Sector.12;Wyleczony.; Metin2mod.exe;H:\Gry\Metin2_PL;Win32.Sector.12;Wyleczony.; M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2_PL2;Win32.Sector.12;Wyleczony.; errorlog.exe;H:\Gry\Metin2_PL3;Win32.Sector.12;Wyleczony.; M2 MultiversionHack by banjo1 v3.88.exe;H:\Gry\Metin2_PL3;Win32.Sector.12;Wyleczony.; config.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.; Metin2.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.; patch.exe;H:\Gry\Metinkr2;Win32.Sector.12;Wyleczony.; metin2.exe;H:\Gry\Metinkr2\Nowy folder;Win32.Sector.12;Wyleczony.; FXRoute.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.; Nosferatu.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.; nosshell.exe;H:\Gry\Nosferatu;Win32.Sector.12;Wyleczony.; dxsetup.exe;H:\Gry\Nosferatu\DirectX81;Win32.Sector.12;Wyleczony.; nosshell.exe;H:\Gry\Nosferatu\shellmedia;Win32.Sector.12;Wyleczony.; steam.exe;H:\Gry\Steam;Win32.Sector.12;Wyleczony.; hl2.exe;H:\Gry\Steam\SteamApps\kordikk\half-life 2 deathmatch;Win32.Sector.12;Wyleczony.; hl2.exe;H:\Gry\Steam\SteamApps\kordikk\half-life 2 lostcoast;Win32.Sector.12;Wyleczony.; hl2.exe;H:\Gry\Steam\SteamApps\kordikk\portal;Win32.Sector.12;Wyleczony.; Flashget3.exe;H:\Inne\FlashGet 3;Win32.Sector.12;Wyleczony.; FULLMode.all\data005;H:\Inne\Nowy folder\ALLPlayerPL.exe/data002/{app}\FULLMode.all;Trojan.PWS.Lineage.origin;; {app}\FULLMode.all;H:\Inne\Nowy folder\ALLPlayerPL.exe/data002/{app};Kontener zawiera zainfekowane obiekty;; data002;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;; ALLPlayerPL.exe;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;Przeniesiony.; BitLord_1.1.exe;H:\Inne\Nowy folder;Adware.SaveNow.151;; CheatEngine53.exe/data002\{app}\Cheat Engine.exe;H:\Inne\Nowy folder\CheatEngine53.exe/data002;Trojan.DownLoader.53869;; CheatEngine53.exe/data002\{app}\pscan.dll;H:\Inne\Nowy folder\CheatEngine53.exe/data002;Trojan.Starter.585;; data002;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;; CheatEngine53.exe;H:\Inne\Nowy folder;Kontener zawiera zainfekowane obiekty;Przeniesiony.; dlq.exe;H:\Inne\Nowy folder\E9D1~1;BackDoor.Pigeon.23758;Usunięty.; FRONTPG.VIR;H:\Inne\Office\Office;Win32.HLLP.Sector;Wyleczony.; Dbind.exe\data003;H:\Pobierane\Dbind.exe;Win32.HLLW.MyBot.10;; Dbind.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.; DBStoryArena.exe\YourClient\DBStoryArena.exe;H:\Pobierane\DBStoryArena.exe;Win32.HLLW.MyBot.10;; DBStoryArena.exe;H:\Pobierane;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; DBStoryPro.exe\DBStoryPro\DBStoryPro.exe;H:\Pobierane\DBStoryPro.exe;Win32.HLLW.MyBot.10;; DBStoryPro.exe;H:\Pobierane;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; LoS 1.1.exe/data002\{app}\LoS.exe;H:\Pobierane\LoS 1.1.exe/data002;Win32.HLLW.MyBot.10;; data002;H:\Pobierane;Kontener zawiera zainfekowane obiekty;; LoS 1.1.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.; WoDBO.exe;H:\Pobierane;Trojan.MulDrop.11541;Usunięty.; xampp-win32-1.6.7-installer.exe\pv.exe;H:\Pobierane\xampp-win32-1.6.7-installer.exe;Program.PrcView.3725;; xampp-win32-1.6.7-installer.exe;H:\Pobierane;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0042084.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042085.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042086.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042087.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042088.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042089.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042091.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042092.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042093.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042094.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042095.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042096.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042097.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042098.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042099.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042101.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042102.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042103.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042104.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042105.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042106.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042107.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Wyleczony.; A0042108.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.HLLP.Jeefo.36352;Niewyleczalny.Przeniesiony.; A0042109.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.28480;Wyleczony.; A0042118.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042119.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042147.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042149.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042150.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042151.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042152.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042153.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042154.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042196.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042197.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042198.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042199.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042200.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042201.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042202.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042204.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042205.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042206.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042207.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042208.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042209.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042210.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042211.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042212.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042213.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042214.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042215.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042217.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042218.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042219.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042220.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042221.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042222.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042223.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042224.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042225.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042226.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042229.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042231.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042232.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042250.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042356.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042357.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042364.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042370.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042371.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042372.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042373.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042374.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042375.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042376.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042384.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042395.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042401.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042402.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0042403.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP97;Win32.Sector.12;Wyleczony.; A0043118.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043119.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043120.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043122.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043123.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043124.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043125.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043126.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043127.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043128.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043129.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043130.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043131.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043132.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043133.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043135.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043136.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043137.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043139.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043140.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043142.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043143.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043144.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043145.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043160.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043162.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043163.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043169.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043177.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043178.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043181.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043269.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043273.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043277.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043279.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043280.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043281.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043282.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043283.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043288.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043289.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043290.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043291.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043292.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043293.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043294.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043305.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043309.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043314.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043316.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043317.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043318.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043320.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043321.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043324.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043325.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043326.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043329.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043330.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043331.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043332.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043333.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043334.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043339.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043340.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043344.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043348.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043349.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043351.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043352.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043366.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043368.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043369.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043375.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043382.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043384.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043387.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043390.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043391.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043393.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043396.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043401.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043406.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043408.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043409.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043412.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043414.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043428.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043429.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043430.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043431.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043432.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043433.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043435.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043436.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043438.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0043439.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044453.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044455.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044457.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044458.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044459.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044460.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044461.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044462.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044464.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044466.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044469.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044470.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044471.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044472.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044473.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044474.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044475.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044476.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044477.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044478.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044479.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044480.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044482.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044483.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044484.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044485.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044486.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044487.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044488.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044489.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044490.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044491.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044492.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044506.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044508.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044509.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044515.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044520.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044524.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044527.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044530.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044531.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044533.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044536.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044537.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044538.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044539.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044540.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044541.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044545.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044546.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044547.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044548.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044550.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044551.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044552.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044559.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044562.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044564.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044574.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044575.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044935.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044961.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044963.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044964.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044968.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0044970.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045097.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045131.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045132.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045133.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045134.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045135.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045136.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045137.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045138.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045139.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045141.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045143.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045166.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045168.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045247.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045248.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045249.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045250.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045251.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045253.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045254.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0045260.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046255.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046257.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046258.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046262.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046264.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046269.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046271.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046273.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046338.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046339.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046340.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046341.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046342.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046343.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046344.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046351.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046352.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046353.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046354.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046355.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046357.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046358.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046377.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046379.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046380.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046383.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046386.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046393.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046396.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046406.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046409.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046410.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046411.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046420.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046421.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046422.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046423.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046424.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046425.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046426.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046428.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046431.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0046433.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047254.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047256.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047257.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047258.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047259.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047264.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047267.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047270.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047271.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047272.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047274.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047275.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047276.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047277.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047278.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047279.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047280.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047281.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047282.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047283.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047284.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047285.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047287.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047288.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047289.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047290.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047291.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047292.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047293.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047294.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047297.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047298.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047299.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047314.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047315.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047317.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047318.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047322.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047325.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047332.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047335.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047336.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047337.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047341.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047345.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047348.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047349.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047350.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047359.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047360.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047361.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047362.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047363.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047364.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047366.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047368.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047370.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047378.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047381.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047725.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0047730.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048730.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048733.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048820.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048821.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048822.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048823.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048824.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048825.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048827.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048833.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048837.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048839.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048840.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048841.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048842.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048843.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048844.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048845.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048846.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048848.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048849.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048850.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048851.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048853.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048854.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048855.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048856.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048857.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048858.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048859.EXE;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048860.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048861.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048862.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048863.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048877.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048879.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048880.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048884.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048887.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048893.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048896.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048899.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048900.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048907.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048911.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048912.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048913.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048914.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048915.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048916.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048921.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048922.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048923.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048924.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048925.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048926.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0048928.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049146.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049147.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049148.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049346.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049347.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049387.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049392.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049394.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049395.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049397.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049398.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049399.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049400.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049402.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049404.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049405.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049407.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049408.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049411.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049415.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049417.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049418.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049423.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049426.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049440.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049444.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049450.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049452.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049455.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049456.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049457.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049458.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049459.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049460.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049463.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049468.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049469.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049472.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049473.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049476.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049478.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049479.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049481.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049485.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049487.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049488.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049489.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; A0049490.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Win32.Sector.12;Wyleczony.; FULLMode.all\data005;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049517.exe/data002/{app}\FULLMode.all;Trojan.PWS.Lineage.origin;; {app}\FULLMode.all;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049517.exe/data002/{app};Kontener zawiera zainfekowane obiekty;; data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;; A0049517.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0049518.exe/data002\{app}\Cheat Engine.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049518.exe/data002;Trojan.DownLoader.53869;; A0049518.exe/data002\{app}\pscan.dll;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049518.exe/data002;Trojan.Starter.585;; data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;; A0049518.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0049546.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;BackDoor.Pigeon.23758;Usunięty.; A0049617.exe\data003;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049617.exe;Win32.HLLW.MyBot.10;; A0049617.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0049618.exe\YourClient\DBStoryArena.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049618.exe;Win32.HLLW.MyBot.10;; A0049618.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0049619.exe\DBStoryPro\DBStoryPro.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049619.exe;Win32.HLLW.MyBot.10;; A0049619.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Archiwum zawierające zainfekowane obiekty;Przeniesiony.; A0049624.exe/data002\{app}\LoS.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049624.exe/data002;Win32.HLLW.MyBot.10;; data002;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;; A0049624.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0049649.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Trojan.MulDrop.11541;Usunięty.; A0049650.exe\pv.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98\A0049650.exe;Program.PrcView.3725;; A0049650.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Kontener zawiera zainfekowane obiekty;Przeniesiony.; A0049690.exe;H:\System Volume Information\_restore{02969246-6AB5-44A7-A9E8-D1C679D32C7D}\RP98;Adware.SaveNow.151;; [/log] Logi z ComboFix'a: [log]ComboFix 10-06-19.03 - Kordian 2010-06-20 10:46:42.2.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2657 [GMT 2:00] Uruchomiony z: c:\documents and settings\Kordian\Moje dokumenty\Pobieranie\ComboFix.exe AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7} . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\program files\Common Files\Ahead\Lib\NeroCheck.exe c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe c:\windows\RaidTool\xInsIDE.exe c:\windows\system32\vbzlib1.dll c:\windows\system32\xRaidSetup.exe . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_ABP470N5 -------\Service_abp470n5 ((((((((((((((((((((((((( Pliki utworzone od 2010-05-20 do 2010-06-20 ))))))))))))))))))))))))))))))) . 2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\WinPcap 2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\DsNET Corp 2010-06-19 10:11 . 2010-06-19 18:29 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb 2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes 2010-06-19 08:54 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-06-19 08:54 . 2010-06-19 08:55 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes 2010-06-19 08:54 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner 2010-06-19 03:52 . 2010-06-19 03:52 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Avira 2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData 2010-06-19 03:33 . 2010-03-01 08:05 124784 ----a-w- c:\windows\system32\drivers\avipbb.sys 2010-06-19 03:33 . 2010-02-16 12:24 60936 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2010-06-19 03:33 . 2009-05-11 10:49 51992 ----a-w- c:\windows\system32\drivers\avgntdd.sys 2010-06-19 03:33 . 2009-05-11 10:49 17016 ----a-w- c:\windows\system32\drivers\avgntmgr.sys 2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\program files\Avira 2010-06-19 03:33 . 2010-06-19 03:33 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Avira 2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5 2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV 2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe 2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead 2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz 2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE 2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe 2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation 2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation 2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll 2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll 2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll 2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin 2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll 2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA 2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll 2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat 2010-06-11 18:53 . 2010-06-15 21:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0 2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails 2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe 2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files 2010-06-11 15:22 . 2010-06-16 19:24 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6 2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster 2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys 2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe 2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe 2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles 2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache 2010-06-09 13:07 . 2010-06-09 13:07 -------- d-----w- c:\program files\DIFX 2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys 2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys 2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer 2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire 2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia 2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios 2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll 2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL 2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B 2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO 2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate 2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia 2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0 2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll 2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe 2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome 2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys 2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll 2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys 2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll 2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe 2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft 2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat 2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-06-20 08:51 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype 2010-06-20 08:35 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM 2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp 2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp 2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat 2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat 2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi 2010-06-01 21:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies 2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat 2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite 2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR 2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company 2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared 2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield 2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft 2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON 2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ 2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat 2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks 2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010) 2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe 2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype 2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype 2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView 2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys 2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0 2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero 2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys 2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek 2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield 2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe 2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG 2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage 2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online 2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat 2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys 2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll 2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll 2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll 2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe 2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys 2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll 2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll 2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll 2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll 2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll 2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe 2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe 2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll 2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll 2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll 2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll 2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE . ------- Sigcheck ------- [7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys [-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys [7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys [7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys [7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys . ((((((((((((((((((((((((((((( SnapShot@2010-06-19_12.45.36 ))))))))))))))))))))))))))))))))))))))))) . + 2009-11-16 16:33 . 2009-11-16 16:33 53299 c:\windows\system32\pthreadVC.dll + 2008-08-19 00:18 . 2008-08-19 00:18 77824 c:\windows\system32\fmcodec.DLL + 2009-11-16 16:33 . 2009-11-16 16:33 50704 c:\windows\system32\drivers\npf.sys + 2009-11-16 16:33 . 2009-11-16 16:33 281104 c:\windows\system32\wpcap.dll + 2009-11-16 16:33 . 2009-11-16 16:33 100880 c:\windows\system32\Packet.dll + 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe - 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736] "AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736] "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696] "Steam"="h:\gry\steam\steam.exe" [2010-06-20 1238352] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GEST"="m‘|ü" [X] "RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800] "Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952] "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 307200] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696] "avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2010-03-02 282792] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk * [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 "FirewallOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "AntiVirusOverride"=dword:00000001 "AntiVirusDisableNotify"=dword:00000001 "FirewallDisableNotify"=dword:00000001 "FirewallOverride"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "UacDisableNotify"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Opera\\opera.exe"= "c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"= "h:\\Gry\\Battlefield 2\\BF2.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"= "h:\\Gry\\Steam\\Steam.exe"= "h:\\Gry\\Pure\\Pure.exe"= "c:\\WINDOWS\\system32\\PnkBstrA.exe"= "c:\\WINDOWS\\system32\\PnkBstrB.exe"= "h:\\Gry\\Call of Duty 4\\iw3mp.exe"= "h:\\Inne\\FlashGet 3\\FlashGet3.exe"= "h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"= "c:\\WINDOWS\\system32\\wscntfy.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= "c:\\WINDOWS\\system32\\netsh.exe"= "c:\\Documents and Settings\\Kordian\\Moje dokumenty\\Pobieranie\\rmslt.exe"= "c:\\WINDOWS\\TBPanel.exe"= "c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"= "c:\\Program Files\\Malwarebytes' Anti-Malware\\mbamgui.exe"= "c:\\WINDOWS\\RTHDCPL.EXE"= "c:\\Program Files\\DAEMON Tools Lite\\DTLite.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696] R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886] R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\Avira\AntiVir Desktop\sched.exe [2010-06-19 135336] R2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704] R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784] . . ------- Skan uzupełniający ------- . IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Trusted Zone: kuaiche.com\software FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\ FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX - SPOSÓB POSTĘPOWANIA ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); . - - - - USUNIĘTO PUSTE WPISY - - - - HKCU-Run-VeohPlugin - c:\program files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe HKLM-Run-JMB36X IDE Setup - c:\windows\RaidTool\xInsIDE.exe HKLM-Run-36X Raid Configurer - c:\windows\system32\xRaidSetup.exe HKLM-Run-NeroFilterCheck - c:\program files\Common Files\Ahead\Lib\NeroCheck.exe HKLM-Run-SSBkgdUpdate - c:\program files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe HKLM-Run-OpwareSE4 - c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-06-20 10:51 Windows 5.1.2600 Dodatek Service Pack 3 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net device: opened successfully user: MBR read successfully called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys sphn.sys >>UNKNOWN [0x8A4FC938]<< kernel: MBR read successfully detected MBR rootkit hooks: \Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28 \Driver\ACPI -> ACPI.sys @ 0xb7e73cb8 \Driver\atapi -> atapi.sys @ 0xb7e2eb40 IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 \Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d37bb0 PacketIndicateHandler -> NDIS.sys @ 0xb7d44a21 SendHandler -> NDIS.sys @ 0xb7d2287b user & kernel MBR OK ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\nvsvc32.exe c:\program files\Avira\AntiVir Desktop\avguard.exe c:\windows\system32\PnkBstrA.exe c:\windows\system32\PnkBstrB.exe c:\windows\system32\wdfmgr.exe c:\program files\Avira\AntiVir Desktop\avshadow.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\program files\Razer\DeathAdder\razertra.exe c:\program files\Razer\DeathAdder\razerofa.exe . ************************************************************************** . Czas ukończenia: 2010-06-20 10:53:35 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2010-06-20 08:53 ComboFix2.txt 2010-06-19 12:50 Przed: 26 246 193 152 bajtów wolnych Po: 26 307 268 608 bajtów wolnych - - End Of File - - D0B844C3F7D53859A38F6F3B0F9A1F8B [/log] Logi z OTL'a (OTL.txt i Extras.txt): [log]OTL logfile created on: 2010-06-20 10:55:14 - Run 2 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 84,00% Memory free 5,00 Gb Paging File | 5,00 Gb Available in Paging File | 93,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,50 Gb Free Space | 50,17% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,97 Gb Free Space | 23,98% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2010-04-01 20:06:00 | 001,053,656 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:32 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\notepad.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Stopped] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- -- (catchme) DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5) DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio) DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M] [2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions [2010-06-19 12:11:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions [2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe () O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKCU..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKCU..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O15 - HKCU\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (rmslt.nt) - File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M] NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix [2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap [2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp [2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons [2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb [2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes [2010-06-19 10:54:58 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-06-19 10:54:57 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump [2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent [2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2010-06-19 05:52:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Avira [2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2010-06-19 05:34:00 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2010-06-19 05:33:57 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys [2010-06-19 05:33:57 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2010-06-19 05:33:57 | 000,051,992 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys [2010-06-19 05:33:57 | 000,017,016 | ---- | C] (AVIRA GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys [2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2010-06-19 05:33:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5 [2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun [2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2 [2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC [2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks [2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead [2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz [2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA [2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll [2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3 [2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio [2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails [2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo [2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota [2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0 [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6 [2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster [2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles [2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache [2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys [2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys [2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl [2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer [2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client [2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client [2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie [2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO [2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate [2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia [2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US [2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft [2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla [2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe [2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company [2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2 [2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia [2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi [2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects [2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft [2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON [2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information [2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM [2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010) [2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys [2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter [2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype [2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype [2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe [2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp [2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks [2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo [2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0 [2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR [2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage [2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData [2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities [2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead [2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages [2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache [2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield [2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities [2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne [2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 10:55:46 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini [2010-06-20 10:51:11 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-06-20 10:50:39 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-06-20 10:50:37 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-06-20 10:49:36 | 003,145,728 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-06-20 10:49:36 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-19 10:55:00 | 000,000,696 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-06-19 05:34:12 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 23:55:24 | 000,025,937 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini [2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini [2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys [2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr [2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-06-19 10:55:00 | 000,000,696 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-19 05:34:12 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 23:55:24 | 000,025,937 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 19:50:04 | 001,736,704 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\GoMan.exe [2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini [2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini [2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini [2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn [2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl [2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab [2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl [2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl [2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl [2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab [2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl [2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl [2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl [2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl [2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls [2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl [2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP [2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP [2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl [2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB [2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB [2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls [2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-05-29 21:24:41 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG [2010-05-29 21:24:40 | 003,145,728 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-15 23:55:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr [2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-06-20 10:50:35 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log] [log]OTL Extras logfile created on: 2010-06-20 10:55:14 - Run 2 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 3,00 Gb Available Physical Memory | 84,00% Memory free 5,00 Gb Paging File | 5,00 Gb Available in Paging File | 93,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,50 Gb Free Space | 50,17% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,97 Gb Free Space | 23,98% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- () "C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.) "H:\Gry\Steam\Steam.exe" = H:\Gry\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation) "H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios) "H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- () "H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited) "H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- () "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation) "C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- () "C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.) "C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- () "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- (Malwarebytes Corporation) "C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd) "C:\WINDOWS\explorer.exe" = C:\WINDOWS\explorer.exe:*:Enabled:ipsec -- (Microsoft Corporation) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM) "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series "{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń) "{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars "{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6 "{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam "{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1 "{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX "{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4 "{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure "13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "AQQ" = WapSter AQQ "aTube Catcher" = aTube Catcher "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "Battlefield BC2_is1" = Battlefield BC2 "CCleaner" = CCleaner "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0) "Disciples II" = Disciples II "Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint "FlashGet 3.3" = FlashGet 3.3 "FMCODEC" = FM Screen Capture Codec (Remove Only) "Gainward" = EXPERTool "Gothic" = Gothic "InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "IrfanView" = IrfanView (remove only) "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010) "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3) "MP Navigator 3.1" = Canon MP Navigator 3.1 "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "RealAlt_is1" = Real Alternative 2.0.2 "ST6UNST #1" = HLTooLz "Steam App 320" = Half-Life 2: Deathmatch "Steam App 340" = Half-Life 2: Lost Coast "Steam App 410" = Portal: First Slice "Tibia_is1" = Tibia 7.6 "TMIPC" = Tibia MULTI-ip changer "Veoh Video Compass" = Veoh Video Compass "Veoh Web Player Beta" = Veoh Web Player "VideoMach 3.1.5" = VideoMach 3.1.5 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format Runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinGimp-2.0_is1" = GIMP 2.6.7 "WinPcapInst" = WinPcap 4.1.1 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ System Events ] Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 06:52:28 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 10:00:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 < End of report > [/log] Niestety nie moglem znalesc kaspersky removal tool, ktory moglbym pobrac... Pewnie przez wirusa czy cos -,-
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 Odinstaluj oba antywirusy, usuń ich wszystkie foldery włącznie z: C:\Documents and Settings\All Users\Dane aplikacji\Avira Pobierz ponownie antywirusa, polecam Avira. Próbujesz pobrać Kaspersky Removal Tools, już nie powinno być przeszkód. Skanujesz obszar całego komputera Kaspersky removal tool oraz antywirusem, co znajdą programy leczysz. Po wykonaniu ponownie log z OTL.
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 Prosze. Kolega mi sciagnal kasperskiego. [log]OTL logfile created on: 2010-06-20 21:50:18 - Run 3 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 82,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,40 Gb Free Space | 49,98% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Drive K: | 1,88 Gb Total Space | 1,65 Gb Free Space | 87,82% Space Free | Partition Type: FAT Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-20 17:04:23 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2010-05-25 12:37:12 | 000,138,240 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe MOD - [2010-04-16 18:09:02 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wininet.dll MOD - [2010-04-16 18:09:01 | 001,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shdocvw.dll MOD - [2010-04-16 18:09:01 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\urlmon.dll MOD - [2009-12-24 09:04:53 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wintrust.dll MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2009-09-04 23:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msasn1.dll MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-10-15 18:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll MOD - [2008-06-20 19:48:53 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mswsock.dll MOD - [2008-06-20 19:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dnsapi.dll MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2_32.dll MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2help.dll MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdsapi.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mstask.dll MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll MOD - [2008-04-14 22:50:34 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imagehlp.dll MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:18 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crypt32.dll MOD - [2008-04-14 22:50:18 | 000,520,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cryptui.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:50:08 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cabinet.dll MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\apphelp.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732 FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010-06-20 16:33:54 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M] [2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions [2010-06-20 16:44:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions [2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks) O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe () O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-04-25 16:07:04 | 000,000,223 | RHS- | M] () - K:\autorun.inf -- [ FAT ] O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (rmslt.nt) - File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-20 16:41:59 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-06-20 16:39:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Virus Removal Tool [2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite [2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia [2010-06-20 16:34:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-20 16:33:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite [2010-06-20 16:33:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia [2010-06-20 16:33:46 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys [2010-06-20 16:33:42 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution [2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys [2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys [2010-06-20 16:33:37 | 000,022,528 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys [2010-06-20 16:33:36 | 000,662,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll [2010-06-20 16:33:36 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys [2010-06-20 16:33:35 | 000,092,672 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll [2010-06-20 16:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia [2010-06-20 16:32:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix [2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap [2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp [2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons [2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb [2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump [2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent [2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5 [2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun [2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2 [2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC [2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks [2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead [2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz [2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA [2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll [2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3 [2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio [2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails [2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo [2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota [2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0 [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6 [2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster [2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles [2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache [2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys [2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys [2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl [2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer [2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client [2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client [2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie [2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO [2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate [2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia [2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US [2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft [2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla [2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe [2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company [2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2 [2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia [2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi [2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects [2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft [2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON [2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information [2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM [2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010) [2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys [2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter [2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype [2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype [2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe [2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp [2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks [2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo [2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0 [2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR [2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage [2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData [2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities [2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead [2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages [2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache [2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield [2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities [2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne [2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 21:46:18 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-06-20 21:46:12 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2010-06-20 21:45:59 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-06-20 21:45:57 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-06-20 20:59:54 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-06-20 20:57:06 | 000,033,064 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf [2010-06-20 20:57:06 | 000,029,781 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-20 18:53:08 | 000,003,056 | -HS- | M] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi [2010-06-20 17:51:42 | 000,017,198 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg [2010-06-20 17:49:23 | 000,269,887 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg [2010-06-20 17:33:05 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-06-20 17:29:23 | 000,060,483 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg [2010-06-20 16:34:34 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-06-20 16:34:33 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-06-20 14:42:18 | 000,346,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp [2010-06-20 12:38:28 | 000,019,428 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg [2010-06-20 12:38:21 | 000,343,960 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg [2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini [2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini [2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini [2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-20 20:57:06 | 000,033,064 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf [2010-06-20 20:57:06 | 000,029,781 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-20 17:53:52 | 000,003,056 | -HS- | C] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi [2010-06-20 17:51:42 | 000,017,198 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg [2010-06-20 17:49:09 | 000,269,887 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg [2010-06-20 17:29:21 | 000,060,483 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg [2010-06-20 16:34:34 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-06-20 16:34:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-06-20 14:42:18 | 000,346,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp [2010-06-20 12:38:27 | 000,019,428 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg [2010-06-20 12:38:20 | 000,343,960 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg [2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr [2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini [2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini [2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini [2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn [2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl [2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab [2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl [2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl [2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl [2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab [2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl [2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl [2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl [2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl [2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls [2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl [2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP [2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP [2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl [2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB [2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB [2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls [2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-05-29 21:24:41 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG [2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-06-20 16:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-06-20 16:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-20 20:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia [2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite [2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr [2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-06-20 21:45:54 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log] [log]OTL Extras logfile created on: 2010-06-20 21:50:18 - Run 3 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 82,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 92,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,40 Gb Free Space | 49,98% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Drive K: | 1,88 Gb Total Space | 1,65 Gb Free Space | 87,82% Space Free | Partition Type: FAT Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] [HKEY_USERS\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- () "C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.) "H:\Gry\Steam\Steam.exe" = H:\gry\steam\steam.exe:*:Enabled:ipsec -- (Valve Corporation) "H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios) "H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- () "H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited) "H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- () "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation) "C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- File not found "C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.) "C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- () "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- File not found "C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd) "C:\WINDOWS\explorer.exe" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe:*:Enabled:ipsec -- File not found "C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe" = C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe:*:Enabled:ipsec -- (Creative Team S.A.) "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe:*:Enabled:ipsec -- File not found "C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe" = C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe:*:Enabled:ipsec -- File not found [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM) "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series "{18756A46-652E-4ED4-A029-C4940D59F09B}" = Nokia PC Suite "{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53 "{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "{8C91D53E-0C23-4A79-A480-68A443D80100}" = PC Connectivity Solution "{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń) "{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars "{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6 "{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam "{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1 "{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX "{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4 "{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure "0B753AE04CCFC1E067940973C1BEDEEE62CADDC9" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 4.4) "13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "6CD143D10D52B656CB6E8E90D7932A476DA16F6A" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 7.01.0.6) "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "AQQ" = WapSter AQQ "aTube Catcher" = aTube Catcher "Battlefield BC2_is1" = Battlefield BC2 "CCleaner" = CCleaner "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0) "Disciples II" = Disciples II "Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint "FlashGet 3.3" = FlashGet 3.3 "FMCODEC" = FM Screen Capture Codec (Remove Only) "Gainward" = EXPERTool "Gothic" = Gothic "InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "IrfanView" = IrfanView (remove only) "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010) "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3) "MP Navigator 3.1" = Canon MP Navigator 3.1 "Nokia PC Suite" = Nokia PC Suite "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "RealAlt_is1" = Real Alternative 2.0.2 "ST6UNST #1" = HLTooLz "Steam App 320" = Half-Life 2: Deathmatch "Steam App 340" = Half-Life 2: Lost Coast "Steam App 410" = Portal: First Slice "Tibia_is1" = Tibia 7.6 "TMIPC" = Tibia MULTI-ip changer "Veoh Video Compass" = Veoh Video Compass "Veoh Web Player Beta" = Veoh Web Player "VideoMach 3.1.5" = VideoMach 3.1.5 "Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format Runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinGimp-2.0_is1" = GIMP 2.6.7 "WinPcapInst" = WinPcap 4.1.1 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ System Events ] Error - 2010-06-12 02:54:56 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na karcie sieciowej o adresie sieciowym 001D7DD12F6C. Error - 2010-06-12 02:55:09 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na karcie sieciowej o adresie sieciowym 001D7DD12F6C. Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 < End of report > [/log]
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 Brak drivera Sality. Bdb znak. Do notatnika wklej: [code]Windows Registry Editor Version 5.00 [-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2] [/code]Plik ==> Zapisz jako ==> Zmień rozszerzenie na Wszystkie pliki ==> Zapisz pod nazwą [b]FIX.REG[/b] Uruchom utworzony plik [b]FIX.REG[/b] i potwierdź dodanie do Rejestru i zresetuj komputer. Skanuj komputer jak największą ilością skanerów, ponownie drwebcureit. Następnie poszukaj w google skanerów online, konieczność skanu Kaspersky. Jeśli jakiś program mimo tego nie będzie działał zainstaluj go ponownie.
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 nie moge dodac do rejestru... Administrator zablokowal funkcje edycji rejestru - cos takiego...
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 W OTL wklej: [code]:OTL O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O32 - AutoRun File - [2010-04-25 16:07:04 | 000,000,223 | RHS- | M] () - K:\autorun.inf -- [ FAT ] O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- [2010-06-19 17:19:58 | 000,172,543 | RHS- | M] (Microsoft Corporation) :Commands [emptytemp] [Reboot][/code]Kliknij Run Fix. Zatwierdź restart komputera. Po ponownym uruchomieniu komputera tworzysz nowy log i pokazujesz do kontroli.
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 [log]OTL logfile created on: 2010-06-20 23:04:03 - Run 5 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 83,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,47 Gb Free Space | 50,12% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-20 17:04:23 | 000,979,928 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe PRC - [2010-06-10 18:10:49 | 000,219,128 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrB.exe PRC - [2010-06-10 17:31:59 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe PRC - [2010-05-25 12:37:12 | 000,138,240 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe PRC - [2010-04-03 19:23:16 | 000,154,216 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2009-10-27 10:15:02 | 000,120,832 | ---- | M] (Nokia) -- C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2009-02-06 12:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-01-29 05:20:28 | 002,247,208 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe PRC - [2007-09-07 15:54:54 | 000,307,200 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe PRC - [2007-05-07 15:35:14 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe PRC - [2006-11-24 15:24:16 | 000,217,088 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe PRC - [2004-08-11 01:45:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\OTL.exe MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\usp10.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:36 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lpk.dll MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-05-25 12:38:06 | 000,613,888 | ---- | M] (Nokia) [On_Demand | Running] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi) DRV - [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-05-29 21:41:10 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-04-04 00:55:31 | 010,232,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-02-26 14:32:58 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2010-02-26 14:32:46 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2010-02-26 14:32:44 | 000,022,528 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2010-02-26 14:32:44 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-11-16 18:33:38 | 000,050,704 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\npf.sys -- (npf) DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\dadder.sys -- (DAdderFltr) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2001-11-27 00:07:20 | 000,011,886 | ---- | M] (WayTech Development, Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kbfilter.sys -- (kbfilter) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}:1.0 FF - prefs.js..extensions.enabledItems: bkmrksync@nokia.com:1.0.0.732 FF - HKLM\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2010-06-20 16:33:54 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-05-30 00:26:40 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-05-30 00:26:35 | 000,000,000 | ---D | M] [2010-05-30 00:26:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Extensions [2010-06-20 16:44:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions [2010-05-31 21:18:44 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-06-12 18:27:30 | 000,000,000 | ---D | M] (flashget3 Extension) -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A} [2010-05-30 00:26:35 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-04-01 19:33:11 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-04-01 19:33:11 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-04-01 19:33:11 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-04-01 19:33:11 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-04-01 19:33:11 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-04-01 19:33:11 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2010-06-20 10:51:00 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dll File not found O2 - BHO: (Skype add-on for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Kordian\Dane aplikacji\FlashGetBHO\FlashGetBHO3.dll File not found O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks) O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe () O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation) O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [PC Suite Tray] C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe (Nokia) O4 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004..\Run: [Steam] h:\gry\steam\steam.exe (Valve Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O9 - Extra Button: Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O9 - Extra 'Tools' menuitem : Skype add-on for Internet Explorer - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O15 - HKU\S-1-5-21-1214440339-1417001333-839522115-1004\..Trusted Domains: kuaiche.com ([software] http in Zaufane witryny) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204 (Windows Genuine Advantage Validation Tool) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy\cda_wallpaper.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AUtopLay\cOMMand - "" = K:\xoct.pif -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\AutoRun\command - "" = K:\xoct.pif -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\expLoRe\CoMmaNd - "" = K:\xoct.pif -- File not found O33 - MountPoints2\{3d87d696-7afd-11df-acd0-001d7dd12f6c}\Shell\OpEn\comMand - "" = K:\xoct.pif -- File not found O34 - HKLM BootExecute: (rmslt.nt) - File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = ComFile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-05-29 23:03:12 | 000,000,000 | ---D | M] NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-20 22:58:14 | 000,000,000 | ---D | C] -- C:\_OTL [2010-06-20 16:41:59 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-06-20 16:39:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Virus Removal Tool [2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite [2010-06-20 16:34:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia [2010-06-20 16:34:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-20 16:33:54 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\PCSuite [2010-06-20 16:33:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nokia [2010-06-20 16:33:46 | 000,018,816 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\pccsmcfd.sys [2010-06-20 16:33:42 | 000,000,000 | ---D | C] -- C:\Program Files\PC Connectivity Solution [2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerfltj.sys [2010-06-20 16:33:38 | 000,008,192 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\usbser_lowerflt.sys [2010-06-20 16:33:37 | 000,022,528 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmbo.sys [2010-06-20 16:33:36 | 000,662,016 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcocls.dll [2010-06-20 16:33:36 | 000,018,176 | ---- | C] (Nokia) -- C:\WINDOWS\System32\drivers\ccdcmb.sys [2010-06-20 16:33:35 | 000,092,672 | ---- | C] (Nokia) -- C:\WINDOWS\System32\nmwcdcls.dll [2010-06-20 16:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Nokia [2010-06-20 16:32:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-06-20 10:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\temp [2010-06-20 10:41:07 | 000,000,000 | ---D | C] -- C:\ComboFix [2010-06-19 20:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinPcap [2010-06-19 20:35:12 | 000,000,000 | ---D | C] -- C:\Program Files\DsNET Corp [2010-06-19 14:40:49 | 000,000,000 | RHSD | C] -- C:\cmdcons [2010-06-19 14:39:34 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe [2010-06-19 14:39:34 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe [2010-06-19 14:39:34 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe [2010-06-19 14:39:34 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe [2010-06-19 14:39:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT [2010-06-19 14:32:34 | 000,000,000 | ---D | C] -- C:\Qoobox [2010-06-19 12:11:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\DoctorWeb [2010-06-19 10:55:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Malwarebytes [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 10:54:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 10:50:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump [2010-06-19 09:19:20 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Recent [2010-06-19 09:16:19 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2010-06-19 06:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2010-06-19 05:35:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData [2010-06-17 19:56:27 | 000,000,000 | ---D | C] -- C:\Program Files\VideoMach-3.1.5 [2010-06-17 14:31:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Wodbo firefun [2010-06-16 14:06:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\BFBC2 [2010-06-16 13:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\BF2BC [2010-06-16 08:04:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-16 07:14:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\My eBooks [2010-06-16 07:14:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2010-06-14 15:43:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Ahead [2010-06-13 20:59:13 | 000,000,000 | ---D | C] -- C:\Program Files\HLTooLz [2010-06-13 20:32:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-06-13 20:32:05 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-06-13 20:31:33 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS\System32\OpenCL.dll [2010-06-13 20:31:26 | 000,000,000 | ---D | C] -- C:\NVIDIA [2010-06-12 19:50:11 | 000,110,592 | ---- | C] ( ) -- C:\Documents and Settings\Kordian\Pulpit\vdfsm.dll [2010-06-12 15:21:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gothic3 [2010-06-12 09:11:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Cliencio [2010-06-11 20:53:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-11 20:46:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.thumbnails [2010-06-11 17:59:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files [2010-06-11 17:57:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje wideo [2010-06-11 17:31:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\sprity do pivota [2010-06-11 17:31:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\Animacje Pivota [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\gegl-0.0 [2010-06-11 17:22:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\.gimp-2.6 [2010-06-10 17:31:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster [2010-06-10 15:39:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles [2010-06-10 15:23:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache [2010-06-09 15:07:09 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX [2010-06-09 15:06:58 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\WINDOWS\System32\drivers\dadder.sys [2010-06-09 15:06:56 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\WINDOWS\System32\drivers\CYUSB.sys [2010-06-09 15:06:51 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\WINDOWS\System32\DeathAdder.cpl [2010-06-09 15:06:51 | 000,000,000 | ---D | C] -- C:\Program Files\Razer [2010-06-07 11:33:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-05 18:59:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-05 13:36:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\NowOTS Client [2010-06-04 15:35:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-04 15:34:59 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-03 00:45:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\DaWinBi Client [2010-06-01 22:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-01 17:43:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-01 17:40:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie [2010-05-31 13:32:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [2010-05-31 13:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit\WoDBO [2010-05-31 12:51:56 | 000,000,000 | ---D | C] -- C:\Program Files\Asprate [2010-05-31 12:51:35 | 000,000,000 | ---D | C] -- C:\Program Files\Tibia [2010-05-31 01:10:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2010-05-31 01:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2010-05-31 01:10:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US [2010-05-31 01:10:29 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2010-05-30 21:24:39 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2010-05-30 12:52:48 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-05-30 12:24:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-05-30 12:24:22 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-05-30 12:20:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-05-30 12:19:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-05-30 12:17:26 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-05-30 12:17:25 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-05-30 12:05:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-05-30 11:32:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft [2010-05-30 00:53:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-05-30 00:53:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-05-30 00:26:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Mozilla [2010-05-30 00:26:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2010-05-29 23:52:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR [2010-05-29 23:51:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Adobe [2010-05-29 23:51:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-05-29 23:43:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C Company [2010-05-29 23:27:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Battlefield 2 [2010-05-29 23:15:22 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Macromedia [2010-05-29 23:11:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-05-29 23:11:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-05-29 23:11:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-05-29 23:11:38 | 000,000,000 | R--D | C] -- C:\Program Files [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-05-29 23:11:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-05-29 23:11:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-05-29 23:11:14 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-05-29 23:11:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-05-29 23:10:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Hamachi [2010-05-29 23:10:12 | 000,017,480 | ---- | C] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-05-29 23:09:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-05-29 23:09:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-05-29 23:09:18 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-05-29 23:08:54 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-05-29 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-05-29 23:07:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Visual Studio Projects [2010-05-29 23:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2010-05-29 23:06:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ScanSoft Shared [2010-05-29 23:06:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 23:05:57 | 000,000,000 | ---D | C] -- C:\Program Files\ScanSoft [2010-05-29 23:04:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON [2010-05-29 23:03:27 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 23:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information [2010-05-29 23:03:07 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2010-05-29 23:02:08 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2010-05-29 23:01:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-05-29 23:01:53 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-05-29 23:01:53 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-05-29 23:01:53 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-05-29 23:01:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-05-29 22:58:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\skypePM [2010-05-29 22:56:00 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2010-05-29 22:47:53 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2010-05-29 22:47:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2010-05-29 22:47:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010) [2010-05-29 22:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Adobe [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Opera [2010-05-29 22:22:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-05-29 22:18:46 | 000,011,886 | ---- | C] (WayTech Development, Inc.) -- C:\WINDOWS\System32\drivers\kbfilter.sys [2010-05-29 22:16:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\WapSter [2010-05-29 22:15:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Skype [2010-05-29 22:15:14 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-05-29 22:14:55 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2010-05-29 22:14:54 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2010-05-29 22:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010-05-29 22:14:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype [2010-05-29 22:14:39 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Skype [2010-05-29 22:14:29 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2010-05-29 22:13:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Adobe [2010-05-29 22:10:38 | 000,000,000 | ---D | C] -- C:\Program Files\IrfanView [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp [2010-05-29 22:08:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Winamp [2010-05-29 22:07:41 | 000,000,000 | ---D | C] -- C:\Program Files\Veoh Networks [2010-05-29 22:07:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje wideo [2010-05-29 22:06:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:06:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-05-29 22:05:45 | 000,000,000 | ---D | C] -- C:\Program Files\GIMP-2.0 [2010-05-29 22:04:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-05-29 22:03:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\WinRAR [2010-05-29 21:59:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Windows Genuine Advantage [2010-05-29 21:57:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\UserData [2010-05-29 21:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-05-29 21:54:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Identities [2010-05-29 21:54:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Ahead [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Nero [2010-05-29 21:53:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ahead [2010-05-29 21:52:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\RegisteredPackages [2010-05-29 21:46:14 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-05-29 21:44:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-05-29 21:44:37 | 002,247,208 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-05-29 21:44:37 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-05-29 21:42:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2010-05-29 21:42:25 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010-05-29 21:41:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache [2010-05-29 21:41:34 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-05-29 21:38:44 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-05-29 21:38:44 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-05-29 21:38:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-05-29 21:38:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-05-29 21:38:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\InstallShield [2010-05-29 21:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-05-29 21:36:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-05-29 21:36:15 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-05-29 21:36:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-05-29 21:36:13 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-05-29 21:36:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-05-29 21:28:36 | 000,000,000 | ---D | C] -- C:\Program Files\AVG [2010-05-29 21:24:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Identities [2010-05-29 21:24:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moje obrazy [2010-05-29 21:24:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty\Moja muzyka [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Dane aplikacji\Microsoft [2010-05-29 21:24:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordian\Cookies [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\SendTo [2010-05-29 21:24:41 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordian\Dane aplikacji [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Ulubione [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Moje dokumenty [2010-05-29 21:24:41 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordian\Menu Start [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Szablony [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\PrintHood [2010-05-29 21:24:41 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\NetHood [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Pulpit [2010-05-29 21:24:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:24:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordian\Ustawienia lokalne [2010-05-29 21:24:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-05-29 21:24:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-05-29 21:24:05 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-05-29 21:24:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-05-29 21:23:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-05-29 21:22:36 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-05-29 21:21:48 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-05-29 21:21:36 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-05-29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-05-29 21:20:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-05-29 21:20:19 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-05-29 21:20:19 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-05-29 21:20:12 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-05-29 21:20:09 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-05-29 21:19:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-05-29 21:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-05-29 21:19:24 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-05-29 21:19:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-05-29 21:19:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-05-29 21:19:18 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-05-29 21:19:10 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-05-29 21:19:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-05-29 21:18:58 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-05-29 21:18:55 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-05-29 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-05-29 21:18:48 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-05-29 21:18:47 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-05-29 21:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-05-29 21:18:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-05-29 21:18:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-05-29 21:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-05-29 21:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-05-29 21:18:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-05-29 21:17:42 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-05-29 21:17:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-05-29 21:17:37 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 23:00:39 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-06-20 23:00:34 | 000,276,549 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml [2010-06-20 22:59:23 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-06-20 22:59:21 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-06-20 22:58:28 | 003,407,872 | -H-- | M] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-06-20 22:41:53 | 000,000,084 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\fix.reg [2010-06-20 20:57:06 | 000,033,064 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf [2010-06-20 20:57:06 | 000,029,781 | ---- | M] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-20 18:53:08 | 000,003,056 | -HS- | M] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi [2010-06-20 17:51:42 | 000,017,198 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg [2010-06-20 17:49:23 | 000,269,887 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg [2010-06-20 17:33:05 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-06-20 17:29:23 | 000,060,483 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg [2010-06-20 16:34:34 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-06-20 16:34:33 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-06-20 14:42:18 | 000,346,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp [2010-06-20 12:38:28 | 000,019,428 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg [2010-06-20 12:38:21 | 000,343,960 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg [2010-06-20 10:51:26 | 000,000,264 | ---- | M] () -- C:\WINDOWS\system.ini [2010-06-20 10:51:00 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts [2010-06-20 10:50:54 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-06-20 10:28:05 | 000,255,579 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2010-06-19 12:09:52 | 000,000,345 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-19 09:16:20 | 000,001,548 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-19 05:47:26 | 004,283,908 | -H-- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-06-18 17:39:21 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini [2010-06-17 21:39:52 | 968,331,776 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 22:53:49 | 000,168,304 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-06-15 21:11:49 | 000,000,347 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 18:02:22 | 000,036,192 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-06-15 14:50:29 | 000,064,191 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 14:23:50 | 000,216,944 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:40 | 000,376,643 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 01:19:33 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | M] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | M] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | M] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:59 | 000,277,610 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:07:22 | 000,003,584 | ---- | M] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-11 18:01:19 | 000,084,411 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 11:50:21 | 000,000,664 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-06-10 18:41:00 | 000,219,128 | ---- | M] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 18:10:58 | 000,138,592 | ---- | M] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:17 | 000,022,328 | ---- | M] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:13 | 000,000,281 | ---- | M] () -- C:\WINDOWS\game.ini [2010-06-09 17:26:39 | 001,043,322 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-06-09 17:26:39 | 000,490,628 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-06-09 17:26:39 | 000,432,492 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-06-09 17:26:39 | 000,083,880 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-06-09 17:26:39 | 000,067,448 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-06-07 16:05:33 | 000,000,590 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:38 | 000,000,622 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:34:59 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- C:\WINDOWS\System32\CmdLineExt.dll [2010-06-04 15:34:39 | 000,000,854 | ---- | M] () -- C:\WINDOWS\disney.ini [2010-06-04 15:33:52 | 000,000,524 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 13:38:38 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:53:38 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-05-30 00:26:41 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:10:12 | 000,017,480 | ---- | M] (LogMeIn, Inc.) -- C:\WINDOWS\System32\drivers\hamachi.sys [2010-05-29 23:06:42 | 000,000,412 | ---- | M] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | M] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:15:20 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | M] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:55 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:42:27 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:23:47 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 21:21:02 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:52 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:18:46 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:18:36 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-05-29 21:18:36 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-04-28 16:39:04 | 000,836,608 | ---- | M] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-04-26 15:58:12 | 000,256,512 | ---- | M] () -- C:\WINDOWS\PEV.exe [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-20 22:41:53 | 000,000,084 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\fix.reg [2010-06-20 20:57:06 | 000,033,064 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\PACKO.xcf [2010-06-20 20:57:06 | 000,029,781 | ---- | C] () -- C:\Documents and Settings\Kordian\.recently-used.xbel [2010-06-20 17:53:52 | 000,003,056 | -HS- | C] () -- C:\WINDOWS\setup_9.0.0.722_20.06.2010_17-41drv.spi [2010-06-20 17:51:42 | 000,017,198 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pac manek.jpg [2010-06-20 17:49:09 | 000,269,887 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Bez nazwy.jpg [2010-06-20 17:29:21 | 000,060,483 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Pac-Man.jpg [2010-06-20 16:34:34 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_ccdcmb_01009.Wdf [2010-06-20 16:34:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf [2010-06-20 14:42:18 | 000,346,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Iwasawa Render.bmp [2010-06-20 12:38:27 | 000,019,428 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\ep3op.jpg [2010-06-20 12:38:20 | 000,343,960 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\i14.jpg [2010-06-20 10:28:05 | 000,255,579 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\DrWeb.csv [2010-06-19 20:35:23 | 000,000,839 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\aTube Catcher.lnk [2010-06-19 14:40:53 | 000,000,211 | ---- | C] () -- C:\Boot.bak [2010-06-19 14:40:51 | 000,262,400 | ---- | C] () -- C:\cmldr [2010-06-19 14:39:34 | 000,256,512 | ---- | C] () -- C:\WINDOWS\PEV.exe [2010-06-19 14:39:34 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe [2010-06-19 14:39:34 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe [2010-06-19 14:39:34 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe [2010-06-19 14:39:34 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe [2010-06-19 09:16:20 | 000,001,548 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\CCleaner.lnk [2010-06-17 20:12:19 | 968,331,776 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pierwsze video.avi [2010-06-17 19:56:27 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\VideoMach.lnk [2010-06-16 13:43:06 | 000,000,558 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Battlefield BC2.lnk [2010-06-15 21:11:49 | 000,000,347 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Google SketchUp.lnk [2010-06-15 14:50:29 | 000,064,191 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\25494_gimp.png [2010-06-15 13:50:34 | 000,216,944 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Render Anime Laska.png [2010-06-15 13:13:31 | 000,039,758 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\thumbk6av085548b651780023348218.jpg [2010-06-15 13:07:39 | 000,376,643 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\2n367t.jpg.png [2010-06-15 11:47:59 | 000,504,054 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Sygnaturka.bmp [2010-06-13 20:31:33 | 000,009,046 | ---- | C] () -- C:\WINDOWS\System32\nvinfo.pb [2010-06-13 20:31:31 | 002,183,470 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin [2010-06-13 20:28:31 | 000,000,345 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Nowy Dokument WordPad.doc [2010-06-13 00:54:15 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Counter-Strike 1.6 ZCP.lnk [2010-06-12 18:27:17 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI [2010-06-12 18:27:10 | 000,000,540 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\FlashGet 3.3.lnk [2010-06-12 18:26:55 | 000,000,000 | ---- | C] () -- C:\bholog [2010-06-11 22:39:40 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat [2010-06-11 20:45:50 | 000,012,342 | ---- | C] () -- C:\Documents and Settings\Kordian\Moje dokumenty\BAR_HEALTH.bmp [2010-06-11 20:42:09 | 000,000,579 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Gothic.lnk [2010-06-11 18:08:55 | 000,277,610 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure evilllll.wmv [2010-06-11 18:01:19 | 000,084,411 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pure.gif [2010-06-11 17:31:13 | 000,836,608 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\pivot.exe [2010-06-10 17:32:58 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.xtr [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2010-06-10 15:40:49 | 000,000,433 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2010-06-10 15:40:32 | 000,138,592 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys [2010-06-10 15:40:17 | 000,022,328 | ---- | C] () -- C:\Documents and Settings\Kordian\Dane aplikacji\PnkBstrK.sys [2010-06-10 15:39:43 | 000,219,128 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe [2010-06-10 15:39:26 | 000,075,064 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe [2010-06-10 15:39:13 | 000,000,281 | ---- | C] () -- C:\WINDOWS\game.ini [2010-06-08 23:22:21 | 000,003,584 | ---- | C] () -- C:\Documents and Settings\Kordian\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-06-08 23:22:21 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2010-06-07 16:05:33 | 000,000,590 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Disciples II.lnk [2010-06-05 23:29:27 | 000,000,622 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Skrót do NowOTS.exe.lnk [2010-06-04 15:33:52 | 000,000,524 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Pure.lnk [2010-06-04 15:19:55 | 000,000,854 | ---- | C] () -- C:\WINDOWS\disney.ini [2010-06-04 12:55:06 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-05-30 12:24:35 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-05-30 12:24:35 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-05-30 12:24:35 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-05-30 12:24:35 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-05-30 12:24:35 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-05-30 12:24:35 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-05-30 12:24:35 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-05-30 12:24:35 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-05-30 12:24:35 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-05-30 12:24:34 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-05-30 12:24:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-05-30 12:24:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-05-30 12:24:34 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-05-30 12:24:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-05-30 12:24:34 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-05-30 12:24:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-05-30 12:24:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-05-30 12:24:34 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-05-30 12:24:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-05-30 12:24:34 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-05-30 12:24:34 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-05-30 12:24:34 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-05-30 12:24:34 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-05-30 12:24:34 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-05-30 12:24:34 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-05-30 12:24:34 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-05-30 12:24:34 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-05-30 12:24:34 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-05-30 12:24:34 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-05-30 12:24:34 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-05-30 12:24:34 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-05-30 12:24:34 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-05-30 12:24:34 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-05-30 12:24:34 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-05-30 12:24:34 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-05-30 12:24:34 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-05-30 12:24:34 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-05-30 12:24:34 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-05-30 12:24:34 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-05-30 12:24:34 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-05-30 12:24:34 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-05-30 12:24:34 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-05-30 12:24:34 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-05-30 12:24:33 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-05-30 12:24:33 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-05-30 12:24:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-05-30 12:24:33 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-05-30 12:24:33 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-05-30 12:24:33 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-05-30 12:24:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-05-30 12:24:33 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-05-30 12:24:33 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-05-30 12:24:33 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-05-30 12:24:33 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-05-30 12:24:33 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-05-30 12:24:33 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-05-30 12:24:33 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-05-30 12:24:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-05-30 12:24:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-05-30 12:24:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-05-30 12:24:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-05-30 12:24:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-05-30 12:24:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-05-30 12:24:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-05-30 12:24:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-05-30 12:24:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-05-30 12:24:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-05-30 12:24:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-05-30 12:24:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-05-30 12:24:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-05-30 12:24:33 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-05-30 12:24:33 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-05-30 12:24:33 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-05-30 12:24:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-05-30 12:24:33 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-05-30 12:24:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-05-30 12:24:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-05-30 12:20:30 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-05-30 12:20:29 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-05-30 12:20:28 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-05-30 00:26:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-05-30 00:26:36 | 000,001,602 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-05-29 23:50:42 | 000,000,829 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\Cryostasis.lnk [2010-05-29 23:28:06 | 000,000,648 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2010-05-29 23:28:06 | 000,000,626 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2010-05-29 23:11:40 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-05-29 23:11:40 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-05-29 23:11:39 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-05-29 23:11:39 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-05-29 23:11:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-05-29 23:11:35 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-05-29 23:11:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-05-29 23:11:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-05-29 23:11:30 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-05-29 23:11:30 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-05-29 23:11:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-05-29 23:11:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-05-29 23:11:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-05-29 23:11:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-05-29 23:11:22 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-05-29 23:09:35 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-05-29 23:09:35 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-05-29 23:09:35 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-05-29 23:09:35 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-05-29 23:09:35 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-05-29 23:09:34 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-05-29 23:09:34 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-05-29 23:09:34 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-05-29 23:08:54 | 000,168,304 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-05-29 23:07:53 | 000,000,281 | RHS- | C] () -- C:\boot.ini [2010-05-29 23:07:49 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-05-29 23:06:42 | 000,000,412 | ---- | C] () -- C:\WINDOWS\MAXLINK.INI [2010-05-29 22:58:13 | 000,000,056 | -H-- | C] () -- C:\WINDOWS\System32\ezsidmv.dat [2010-05-29 22:56:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\DAEMON Tools Lite.lnk [2010-05-29 22:29:09 | 000,001,486 | ---- | C] () -- C:\WINDOWS\System32\noise.kor [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\korwbrkr.lex [2010-05-29 22:29:08 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-05-29 22:29:08 | 000,002,060 | ---- | C] () -- C:\WINDOWS\System32\noise.jpn [2010-05-29 22:29:03 | 000,211,938 | ---- | C] () -- C:\WINDOWS\System32\lcphrase.tbl [2010-05-29 22:29:03 | 000,146,126 | ---- | C] () -- C:\WINDOWS\System32\array30.tab [2010-05-29 22:29:03 | 000,110,566 | ---- | C] () -- C:\WINDOWS\System32\arphr.tbl [2010-05-29 22:29:03 | 000,043,242 | ---- | C] () -- C:\WINDOWS\System32\phoncode.tbl [2010-05-29 22:29:03 | 000,024,114 | ---- | C] () -- C:\WINDOWS\System32\lcptr.tbl [2010-05-29 22:29:03 | 000,018,600 | ---- | C] () -- C:\WINDOWS\System32\arrayhw.tab [2010-05-29 22:29:03 | 000,016,312 | ---- | C] () -- C:\WINDOWS\System32\arptr.tbl [2010-05-29 22:29:03 | 000,004,071 | ---- | C] () -- C:\WINDOWS\System32\phon.tbl [2010-05-29 22:29:03 | 000,002,714 | ---- | C] () -- C:\WINDOWS\System32\phonptr.tbl [2010-05-29 22:29:03 | 000,000,700 | ---- | C] () -- C:\WINDOWS\System32\dayiptr.tbl [2010-05-29 22:29:03 | 000,000,520 | ---- | C] () -- C:\WINDOWS\System32\dayiphr.tbl [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-05-29 22:29:02 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls [2010-05-29 22:29:02 | 000,116,285 | ---- | C] () -- C:\WINDOWS\System32\msdayi.tbl [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-05-29 22:29:02 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-05-29 22:29:02 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\acode.tbl [2010-05-29 22:29:02 | 000,044,370 | ---- | C] () -- C:\WINDOWS\System32\a234.tbl [2010-05-29 22:29:02 | 000,016,254 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAE.HLP [2010-05-29 22:29:02 | 000,014,821 | ---- | C] () -- C:\WINDOWS\System32\PINTLPAD.HLP [2010-05-29 22:29:02 | 000,001,460 | ---- | C] () -- C:\WINDOWS\System32\a15.tbl [2010-05-29 22:28:59 | 001,564,868 | ---- | C] () -- C:\WINDOWS\System32\WINSP.MB [2010-05-29 22:28:59 | 001,223,500 | ---- | C] () -- C:\WINDOWS\System32\WINZM.MB [2010-05-29 22:28:58 | 001,783,864 | ---- | C] () -- C:\WINDOWS\System32\WINPY.MB [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-05-29 22:28:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls [2010-05-29 22:28:58 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-05-29 22:28:56 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-05-29 22:28:55 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-05-29 22:28:52 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-05-29 22:28:52 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls [2010-05-29 22:28:52 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-05-29 22:28:48 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-05-29 22:28:38 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-05-29 22:28:38 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-05-29 22:28:38 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-05-29 22:28:38 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-05-29 22:28:38 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-05-29 22:28:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls [2010-05-29 22:28:38 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-05-29 22:28:37 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-05-29 22:28:36 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-05-29 22:28:32 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-05-29 22:28:31 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-05-29 22:28:25 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-05-29 22:28:25 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-05-29 22:28:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-05-29 22:28:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-05-29 22:28:19 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls [2010-05-29 22:15:20 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\AQQ.lnk [2010-05-29 22:14:44 | 000,001,880 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk [2010-05-29 22:10:43 | 000,000,685 | ---- | C] () -- C:\Documents and Settings\Kordian\Pulpit\IrfanView.lnk [2010-05-29 22:09:01 | 000,000,664 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-05-29 22:07:05 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys [2010-05-29 22:05:53 | 000,000,794 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\GIMP 2.lnk [2010-05-29 21:51:56 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-05-29 21:48:22 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-05-29 21:46:14 | 000,025,755 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-05-29 21:45:12 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-05-29 21:44:37 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-05-29 21:44:37 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-05-29 21:44:37 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-05-29 21:44:37 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-05-29 21:44:37 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-05-29 21:44:37 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-05-29 21:44:37 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-05-29 21:44:37 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-05-29 21:44:37 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-05-29 21:44:37 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-05-29 21:44:37 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-05-29 21:42:27 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-05-29 21:38:08 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-05-29 21:38:08 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-05-29 21:36:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-05-29 21:24:42 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordian\ntuser.ini [2010-05-29 21:24:41 | 000,032,768 | -H-- | C] () -- C:\Documents and Settings\Kordian\ntuser.dat.LOG [2010-05-29 21:24:40 | 003,407,872 | -H-- | C] () -- C:\Documents and Settings\Kordian\NTUSER.DAT [2010-05-29 21:23:47 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-05-29 21:22:51 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-05-29 21:21:48 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-05-29 21:21:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-05-29 21:21:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-05-29 21:21:46 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-05-29 21:21:46 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-05-29 21:21:46 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-05-29 21:21:46 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-05-29 21:21:46 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-05-29 21:21:46 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-05-29 21:21:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-05-29 21:21:02 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-05-29 21:21:00 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-05-29 21:21:00 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-05-29 21:21:00 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-05-29 21:20:19 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-05-29 21:20:15 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-05-29 21:20:02 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-05-29 21:19:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-05-29 21:19:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-05-29 21:18:46 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-05-29 21:17:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-05-29 21:17:53 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-05-29 21:17:53 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-05-29 21:17:53 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-05-29 21:17:53 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-05-29 21:17:53 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-05-29 21:17:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-05-29 21:17:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-05-29 21:17:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-05-29 21:17:53 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-05-29 21:17:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-05-29 21:17:52 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-05-29 21:17:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-05-29 21:17:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-05-29 21:17:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-05-29 21:17:52 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-05-29 21:17:52 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-05-29 21:17:52 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-05-29 21:17:52 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-05-29 21:17:50 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-05-29 21:17:50 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-05-29 21:17:49 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-05-29 21:17:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [2009-11-16 18:33:38 | 000,053,299 | ---- | C] () -- C:\WINDOWS\System32\pthreadVC.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-29 23:03:27 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-05-29 22:06:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-06-20 16:32:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-06-20 16:34:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-05-29 23:06:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ScanSoft [2010-05-29 22:56:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DAEMON Tools Lite [2010-06-16 08:04:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DBV [2010-06-01 22:56:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\DbzCL [2010-06-04 15:35:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Disney Interactive Studios [2010-06-07 11:33:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\fretsonfire [2010-06-20 20:57:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\gtk-2.0 [2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Nokia [2010-05-29 22:22:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Opera [2010-06-20 16:34:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\PC Suite [2010-05-29 23:06:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\ScanSoft [2010-06-01 17:46:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\T-D-B [2010-06-05 19:04:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\Tibia [2010-06-19 13:34:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordian\Dane aplikacji\WoDBO [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-06-12 18:26:55 | 000,000,000 | ---- | M] () -- C:\bholog [2010-05-29 21:16:45 | 000,000,211 | ---- | M] () -- C:\Boot.bak [2010-06-19 14:40:53 | 000,000,281 | RHS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2004-08-03 23:00:14 | 000,262,400 | ---- | M] () -- C:\cmldr [2010-06-20 10:53:35 | 000,026,963 | ---- | M] () -- C:\ComboFix.txt [2010-05-29 21:21:02 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-05-29 21:21:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-05-30 12:20:09 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-06-20 22:59:18 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-06-19 08:22:44 | 000,000,755 | ---- | M] () -- C:\rmslt.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-13 20:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-13 20:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\ERDNT\cache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-13 20:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ERDNT\cache\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 19:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ERDNT\cache\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-13 21:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ERDNT\cache\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 19:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log] [log]OTL Extras logfile created on: 2010-06-20 23:04:03 - Run 5 OTL by OldTimer - Version 3.2.6.0 Folder = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 83,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 93,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 24,47 Gb Free Space | 50,12% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 99,53 Gb Free Space | 23,87% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: DOMOWA-74375B01 Current User Name: Kordian Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] [HKEY_USERS\S-1-5-21-1214440339-1417001333-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software) "H:\Gry\Battlefield 2\BF2.exe" = H:\Gry\Battlefield 2\BF2.exe:*:Enabled:Battlefield 2 -- () "C:\Program Files\WapSter\WapSter AQQ\AQQ.exe" = C:\Program Files\WapSter\WapSter AQQ\AQQ.exe:*:Enabled:AQQ Instant Messenger -- (Creative Team S.A.) "H:\Gry\Steam\Steam.exe" = H:\gry\steam\steam.exe:*:Enabled:ipsec -- (Valve Corporation) "H:\Gry\Pure\Pure.exe" = H:\Gry\Pure\Pure.exe:*:Enabled:Pure -- (Disney Interactive Studios) "H:\Gry\Call of Duty 4\iw3mp.exe" = H:\Gry\Call of Duty 4\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM) -- () "H:\Inne\FlashGet 3\FlashGet3.exe" = H:\Inne\FlashGet 3\FlashGet3.exe:*:Enabled:Flashget3 -- (Trend Media Corporation Limited) "H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe" = H:\Gry\Steam\SteamApps\common\call of duty modern warfare 2\iw4mp.exe:*:Enabled:Call of Duty: Modern Warfare 2 - Multiplayer -- () "C:\Program Files\Mozilla Firefox\firefox.exe" = C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation) "C:\WINDOWS\system32\netsh.exe" = C:\WINDOWS\system32\netsh.exe:*:Enabled:ipsec -- (Microsoft Corporation) "C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe" = C:\Documents and Settings\Kordian\Moje dokumenty\Pobieranie\rmslt.exe:*:Enabled:ipsec -- File not found "C:\WINDOWS\TBPanel.exe" = C:\WINDOWS\TBPanel.exe:*:Enabled:ipsec -- (Gainward Co.) "C:\Program Files\Razer\DeathAdder\razerhid.exe" = C:\Program Files\Razer\DeathAdder\razerhid.exe:*:Enabled:ipsec -- () "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" = C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe:*:Enabled:ipsec -- File not found "C:\Program Files\DAEMON Tools Lite\DTLite.exe" = C:\Program Files\DAEMON Tools Lite\DTLite.exe:*:Enabled:ipsec -- (DT Soft Ltd) "C:\WINDOWS\explorer.exe" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winkemwmf.exe:*:Enabled:ipsec -- File not found "C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe" = C:\PROGRA~1\WapSter\WAPSTE~1\AQQ.exe:*:Enabled:ipsec -- (Creative Team S.A.) "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winnrgb.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\windlnjp.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winyohhlx.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winfkyl.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\xtwg.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\winstkyki.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\byhwb.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wintbmtie.exe:*:Enabled:ipsec -- File not found "C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe" = C:\DOCUME~1\Kordian\USTAWI~1\Temp\wingemkcq.exe:*:Enabled:ipsec -- File not found "C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe" = C:\Program Files\GIMP-2.0\lib\gimp\2.0\plug-ins\script-fu.exe:*:Enabled:ipsec -- File not found [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00203668-8170-44A0-BE44-B632FA4D780F}" = Adobe AIR "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM) "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP140_series" = Canon MP140 series "{18756A46-652E-4ED4-A029-C4940D59F09B}" = Nokia PC Suite "{1A0D2EFC-C4FC-446A-8BC3-57A54CE5EADD}" = Opera 10.53 "{1B9B5B3B-28E7-4E59-A80D-D670AA984514}" = Nokia Connectivity Cable Driver "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{4E9FA283-79B0-42CF-BD0D-FA2A42C15348}_is1" = ´´ĘŔÁúľÔżÍ»§¶Ë˛ą¶ˇ "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}" = MSVC80_x86_v2 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77DCDCE3-2DED-62F3-8154-05E745472D07}" = Acrobat.com "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "{8C91D53E-0C23-4A79-A480-68A443D80100}" = PC Connectivity Solution "{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "{97A8C4B4-2B50-42D1-AFE6-5E8433185436}_is1" = Cryostasis (Tylko Usuń) "{981029E0-7FC9-4CF3-AB39-6F133621921A}" = Skype Toolbars "{98736A65-3C79-49EC-B7E9-A3C77774B0E6}" = Google SketchUp 6 "{9B4E6CB9-E54D-47F7-A414-E2D5740E1045}" = Nero 7 Essentials "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A6CB9620-444F-4B8B-B088-C2BD3FD0A587}_is1" = Counter-Strike 1.6 V42 No-Steam "{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1 "{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}" = Google SketchUp 6 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D103C4BA-F905-437A-8049-DB24763BBE36}" = Skype™ 4.1 "{DEA314C4-0929-4250-BC92-98E4C105F28D}" = NVIDIA PhysX "{DEE88727-779B-47A9-ACEF-F87CA5F92A65}" = ScanSoft OmniPage SE 4 "{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}" = Prince of Persia T2T "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FF3C203A-2F19-43A2-9C7C-EC1B5A0FC873}" = Pure "0B753AE04CCFC1E067940973C1BEDEEE62CADDC9" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 4.4) "13860389BCE916343D6A5C65169C6F0C6BF6E3EA" = Windows Driver Package - Cypress (CyUsb) USB "504244733D18C8F63FF584AEB290E3904E791693" = Pakiet sterowników systemu Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) "6CD143D10D52B656CB6E8E90D7932A476DA16F6A" = Pakiet sterowników systemu Windows - Nokia Modem (03/15/2010 7.01.0.6) "Adobe AIR" = Adobe AIR "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.5 "AQQ" = WapSter AQQ "aTube Catcher" = aTube Catcher "Battlefield BC2_is1" = Battlefield BC2 "CCleaner" = CCleaner "com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com "DA73216D935E3CBA996AFD6E6513ECC587E0C3C1" = Windows Driver Package - Razer (HidUsb) HIDClass (02/02/2007 1.0.5.0) "Disciples II" = Disciples II "Easy-PhotoPrint" = Canon Utilities Easy-PhotoPrint "FlashGet 3.3" = FlashGet 3.3 "FMCODEC" = FM Screen Capture Codec (Remove Only) "Gainward" = EXPERTool "Gothic" = Gothic "InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "IrfanView" = IrfanView (remove only) "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft DirectX SDK (February 2010)" = Microsoft DirectX SDK (February 2010) "Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3) "MP Navigator 3.1" = Canon MP Navigator 3.1 "Nokia PC Suite" = Nokia PC Suite "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "RealAlt_is1" = Real Alternative 2.0.2 "ST6UNST #1" = HLTooLz "Steam App 320" = Half-Life 2: Deathmatch "Steam App 340" = Half-Life 2: Lost Coast "Steam App 410" = Portal: First Slice "Tibia_is1" = Tibia 7.6 "TMIPC" = Tibia MULTI-ip changer "Veoh Video Compass" = Veoh Video Compass "Veoh Web Player Beta" = Veoh Web Player "VideoMach 3.1.5" = VideoMach 3.1.5 "Wdf01009" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.9 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format Runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinGimp-2.0_is1" = GIMP 2.6.7 "WinPcapInst" = WinPcap 4.1.1 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ System Events ] Error - 2010-06-12 02:54:56 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na karcie sieciowej o adresie sieciowym 001D7DD12F6C. Error - 2010-06-12 02:55:09 | Computer Name = DOMOWA-74375B01 | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.2.100 na karcie sieciowej o adresie sieciowym 001D7DD12F6C. Error - 2010-06-12 02:59:38 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 03:54:49 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:20:13 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:38:04 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 04:57:31 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:15:10 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:27:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-06-12 05:41:37 | Computer Name = DOMOWA-74375B01 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 < End of report > [/log]
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 Problem z rejestrem wraca... Przeczyść komputer ATF Cleaner, oczyść foldery temp i temporary. Następnie wyłącz na chwilę przywracanie systemu: http://www.google.pl/search?hl=pl&source=hp&q=wy%C5%82%C4%85czenie+przywracania+systemu&aq=f&aqi=&aql=&oq=&gs_rfai= Na koniec log z ComboFix. EDIt Zamiast robienia loga z ComboFix wykonaj: Do notatnika wklej: Registry:: [code][HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"=dword:00000000 "DisableRegistryTools"=dword:00000000 [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"=- "DisableRegistryTools"=-[/code]W notatniku zakladka Plik ==> Zapisz jako ==> zapisz pod nazwą[b] CFScript.txt[/b] i zapisz go w tym katalogu co ściągnięty i zapisany został [b]combofix[/b] Na ikonę [b]ComboFix[/b] przeciągasz zrobiony plik [b]CFScript.txt[/b] Rozpocznie się usuwanie [b]i powstanie log , który pokazujesz na forum.[/b]
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 (edytowane) Gdzie znajde te foldery? @Edit Juz mam. Zaznaczam tam w ATF... [log]ComboFix 10-06-20.03 - Kordian 2010-06-20 23:27:22.3.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3070.2674 [GMT 2:00] Uruchomiony z: c:\documents and settings\Kordian\Pulpit\Combox\ComboFix.exe Użyto następujących komend :: c:\documents and settings\Kordian\Pulpit\Combox\CFScript.txt . ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) . . ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_ABP470N5 -------\Service_abp470n5 ((((((((((((((((((((((((( Pliki utworzone od 2010-05-20 do 2010-06-20 ))))))))))))))))))))))))))))))) . 2010-06-20 20:58 . 2010-06-20 20:58 -------- d-----w- C:\_OTL 2010-06-20 14:34 . 2008-04-13 22:15 26112 -c--a-w- c:\windows\system32\dllcache\usbser.sys 2010-06-20 14:34 . 2008-04-13 22:15 26112 ----a-w- c:\windows\system32\drivers\usbser.sys 2010-06-20 14:34 . 2008-11-07 16:55 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll 2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\PC Suite 2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Nokia 2010-06-20 14:34 . 2010-06-20 14:34 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\PC Suite 2010-06-20 14:32 . 2010-06-20 14:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Installations 2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\WinPcap 2010-06-19 18:35 . 2010-06-19 18:35 -------- d-----w- c:\program files\DsNET Corp 2010-06-19 10:11 . 2010-06-19 18:29 -------- d-----w- c:\documents and settings\Kordian\DoctorWeb 2010-06-19 08:55 . 2010-06-19 08:55 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Malwarebytes 2010-06-19 08:54 . 2010-06-20 13:48 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-06-19 08:54 . 2010-06-19 08:54 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Malwarebytes 2010-06-19 07:16 . 2010-06-19 07:16 -------- d-----w- c:\program files\CCleaner 2010-06-19 03:35 . 2010-06-19 03:37 -------- d-----w- c:\windows\system32\NtmsData 2010-06-17 17:56 . 2010-06-17 17:56 -------- d-----w- c:\program files\VideoMach-3.1.5 2010-06-16 06:04 . 2010-06-16 06:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DBV 2010-06-16 05:14 . 2010-06-16 05:14 -------- d-----w- c:\program files\Common Files\Adobe 2010-06-14 13:43 . 2010-06-14 13:43 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Ahead 2010-06-13 18:59 . 2010-06-13 18:59 -------- d-----w- c:\program files\HLTooLz 2010-06-13 18:58 . 2010-06-13 18:58 73216 ----a-w- c:\windows\ST6UNST.EXE 2010-06-13 18:58 . 2010-06-13 18:58 249856 ------w- c:\windows\Setup1.exe 2010-06-13 18:32 . 2010-06-13 18:32 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\NVIDIA Corporation 2010-06-13 18:32 . 2010-06-13 18:33 -------- d-----w- c:\program files\NVIDIA Corporation 2010-06-13 18:31 . 2010-04-03 22:55 61440 ----a-w- c:\windows\system32\OpenCL.dll 2010-06-13 18:31 . 2010-04-03 22:55 2646632 ----a-w- c:\windows\system32\nvcuvenc.dll 2010-06-13 18:31 . 2010-04-03 22:55 2030184 ----a-w- c:\windows\system32\nvcuvid.dll 2010-06-13 18:31 . 2010-04-03 22:55 2183470 ----a-w- c:\windows\system32\nvdata.bin 2010-06-13 18:31 . 2010-04-03 22:55 11647592 ----a-w- c:\windows\system32\nvcompiler.dll 2010-06-13 18:31 . 2010-06-13 18:31 -------- d-----w- C:\NVIDIA 2010-06-12 16:27 . 2009-04-09 13:03 57407 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll 2010-06-11 20:39 . 2010-06-11 20:39 4096 ----a-w- c:\windows\d3dx.dat 2010-06-11 18:53 . 2010-06-20 18:57 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\gtk-2.0 2010-06-11 18:46 . 2010-06-11 18:46 -------- d-----w- c:\documents and settings\Kordian\.thumbnails 2010-06-11 18:38 . 1998-10-07 10:54 327168 ----a-w- c:\windows\IsUn0415.exe 2010-06-11 15:59 . 2010-06-11 16:09 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\WMTools Downloaded Files 2010-06-11 15:22 . 2010-06-20 18:57 -------- d-----w- c:\documents and settings\Kordian\.gimp-2.6 2010-06-10 15:31 . 2010-06-10 15:31 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\PunkBuster 2010-06-10 13:40 . 2010-06-10 16:10 138592 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2010-06-10 13:40 . 2010-06-10 13:40 22328 ----a-w- c:\documents and settings\Kordian\Dane aplikacji\PnkBstrK.sys 2010-06-10 13:39 . 2010-06-10 16:10 219128 ----a-w- c:\windows\system32\PnkBstrB.exe 2010-06-10 13:39 . 2010-06-10 15:31 75064 ----a-w- c:\windows\system32\PnkBstrA.exe 2010-06-10 13:39 . 2010-06-10 13:39 -------- d-----w- c:\windows\system32\LogFiles 2010-06-10 13:23 . 2010-06-10 13:23 -------- d-sh--w- c:\windows\ftpcache 2010-06-09 13:07 . 2010-06-20 14:34 -------- d-----w- c:\program files\DIFX 2010-06-09 13:06 . 2007-08-02 15:32 22784 ----a-w- c:\windows\system32\drivers\dadder.sys 2010-06-09 13:06 . 2005-03-03 17:47 31104 ----a-w- c:\windows\system32\drivers\CYUSB.sys 2010-06-09 13:06 . 2010-06-09 13:06 -------- d-----w- c:\program files\Razer 2010-06-07 09:33 . 2010-06-07 09:33 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\fretsonfire 2010-06-05 16:59 . 2010-06-05 17:04 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Tibia 2010-06-04 13:35 . 2010-06-04 13:35 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Disney Interactive Studios 2010-06-04 13:34 . 2010-06-04 13:34 107888 ----a-w- c:\windows\system32\CmdLineExt.dll 2010-06-01 20:55 . 2010-06-01 20:56 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DbzCL 2010-06-01 15:43 . 2010-06-01 15:46 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\T-D-B 2010-05-31 11:32 . 2010-06-19 11:34 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\WoDBO 2010-05-31 10:51 . 2010-05-31 10:51 -------- d-----w- c:\program files\Asprate 2010-05-31 10:51 . 2010-06-01 21:23 -------- d-----w- c:\program files\Tibia 2010-05-30 19:24 . 2010-05-30 19:24 -------- d-----w- c:\program files\MSXML 4.0 2010-05-30 16:56 . 2009-08-13 15:24 512000 -c----w- c:\windows\system32\dllcache\jscript.dll 2010-05-30 10:22 . 2008-04-14 20:51 294912 -c----w- c:\windows\system32\dllcache\dlimport.exe 2010-05-30 10:17 . 2010-05-30 10:17 -------- d-----w- c:\windows\EHome 2010-05-30 09:43 . 2008-06-14 17:36 273024 -c----w- c:\windows\system32\dllcache\bthport.sys 2010-05-30 09:37 . 2009-12-14 07:10 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll 2010-05-30 09:36 . 2008-05-08 14:02 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys 2010-05-30 09:36 . 2008-10-15 16:36 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll 2010-05-30 09:36 . 2008-04-21 21:16 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe 2010-05-30 09:32 . 2010-05-30 09:32 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Scansoft 2010-05-29 22:26 . 2010-05-29 22:26 0 ----a-w- c:\windows\nsreg.dat 2010-05-29 22:26 . 2010-05-29 22:26 -------- d-----w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\Mozilla . (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-06-20 21:31 . 2010-05-29 20:15 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Skype 2010-06-20 15:34 . 2010-05-29 20:58 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\skypePM 2010-06-20 15:13 . 2010-05-29 20:14 -------- d-----w- c:\program files\Opera 2010-06-20 15:07 . 2010-06-20 14:33 35536248 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Nokia_PC_Suite_eng_web.exe 2010-06-20 14:34 . 2010-06-20 14:34 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01009.Wdf 2010-06-20 14:34 . 2010-06-20 14:34 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf 2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Common Files\PCSuite 2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Common Files\Nokia 2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\Nokia 2010-06-20 14:33 . 2010-06-20 14:33 -------- d-----w- c:\program files\PC Connectivity Solution 2010-06-20 14:33 . 2010-06-20 14:33 95232 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\pcswpcsi.exe 2010-06-20 14:33 . 2010-06-20 14:33 8192 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstCCD.exe 2010-06-20 14:33 . 2010-06-20 14:33 61440 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstPCSFEMsi.exe 2010-06-20 14:33 . 2010-06-20 14:33 10240 ----a-w- c:\documents and settings\All Users\Dane aplikacji\Installations\{18756A46-652E-4ED4-A029-C4940D59F09B}\Installer\CommonCustomActions\UninstPCS.exe 2010-06-15 19:11 . 2010-05-29 19:36 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-06-15 16:02 . 2010-05-29 19:25 36192 ----a-w- c:\documents and settings\Kordian\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2010-06-11 10:07 . 2010-05-29 20:08 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Winamp 2010-06-11 09:50 . 2010-05-29 20:08 -------- d-----w- c:\program files\Winamp 2010-06-09 15:26 . 2006-03-02 12:00 83880 ----a-w- c:\windows\system32\perfc015.dat 2010-06-09 15:26 . 2006-03-02 12:00 490628 ----a-w- c:\windows\system32\perfh015.dat 2010-06-05 19:45 . 2010-05-29 21:10 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\Hamachi 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\MSBuild 2010-05-30 23:10 . 2010-05-30 23:10 -------- d-----w- c:\program files\Reference Assemblies 2010-05-30 10:25 . 2010-05-29 19:20 76487 ----a-w- c:\windows\pchealth\helpctr\OfflineCache\index.dat 2010-05-30 09:31 . 2010-05-29 20:56 -------- d-----w- c:\program files\DAEMON Tools Lite 2010-05-29 21:52 . 2010-05-29 21:52 -------- d-----w- c:\program files\Common Files\Adobe AIR 2010-05-29 21:43 . 2010-05-29 21:43 -------- d-----w- c:\program files\1C Company 2010-05-29 21:10 . 2010-05-29 21:10 17480 ----a-w- c:\windows\system32\drivers\hamachi.sys 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\InstallShield 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\ScanSoft 2010-05-29 21:06 . 2010-05-29 21:06 -------- d-----w- c:\program files\Common Files\ScanSoft Shared 2010-05-29 21:06 . 2010-05-29 19:36 -------- d-----w- c:\program files\Common Files\InstallShield 2010-05-29 21:05 . 2010-05-29 21:05 -------- d-----w- c:\program files\ScanSoft 2010-05-29 21:04 . 2010-05-29 21:04 -------- d-----w- c:\program files\Common Files\CANON 2010-05-29 21:04 . 2010-05-29 21:02 -------- d-----w- c:\program files\Canon 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\documents and settings\All Users\Dane aplikacji\CanonBJ 2010-05-29 21:03 . 2010-05-29 21:03 -------- d--h--w- c:\program files\CanonBJ 2010-05-29 20:58 . 2010-05-29 20:58 56 ---ha-w- c:\windows\system32\ezsidmv.dat 2010-05-29 20:56 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:54 . 2010-05-29 20:07 -------- d-----w- c:\program files\Veoh Networks 2010-05-29 20:50 . 2010-05-29 20:47 -------- d-----w- c:\program files\Microsoft DirectX SDK (February 2010) 2010-05-29 20:47 . 2010-05-29 20:47 118104 ----a-w- c:\windows\dxsdkuninst.exe 2010-05-29 20:15 . 2010-05-29 20:14 -------- d-----r- c:\program files\Skype 2010-05-29 20:15 . 2010-05-29 20:15 -------- d-----w- c:\program files\WapSter 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Real Alternative 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\program files\Common Files\Skype 2010-05-29 20:14 . 2010-05-29 20:14 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Skype 2010-05-29 20:10 . 2010-05-29 20:10 -------- d-----w- c:\program files\IrfanView 2010-05-29 20:07 . 2010-05-29 20:07 691696 ----a-w- c:\windows\system32\drivers\sptd.sys 2010-05-29 20:06 . 2010-05-29 20:06 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\DAEMON Tools Lite 2010-05-29 20:05 . 2010-05-29 20:05 -------- d-----w- c:\program files\GIMP-2.0 2010-05-29 19:54 . 2010-05-29 19:53 -------- d-----w- c:\program files\Common Files\Ahead 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\program files\Nero 2010-05-29 19:53 . 2010-05-29 19:53 -------- d-----w- c:\documents and settings\All Users\Dane aplikacji\Nero 2010-05-29 19:41 . 2010-05-29 19:32 16608 ----a-w- c:\windows\gdrv.sys 2010-05-29 19:38 . 2010-05-29 19:36 -------- d-----w- c:\program files\Realtek 2010-05-29 19:38 . 2010-05-29 19:38 -------- d-----w- c:\documents and settings\Kordian\Dane aplikacji\InstallShield 2010-05-29 19:36 . 2010-05-29 19:36 315392 ----a-w- c:\windows\HideWin.exe 2010-05-29 19:28 . 2010-05-29 19:28 -------- d-----w- c:\program files\AVG 2010-05-29 19:21 . 2010-05-29 19:21 -------- d-----w- c:\program files\microsoft frontpage 2010-05-29 19:20 . 2010-05-29 19:20 -------- d-----w- c:\program files\Usługi online 2010-05-29 19:18 . 2010-05-29 19:18 21856 ----a-w- c:\windows\system32\emptyregdb.dat 2010-05-02 08:09 . 2006-03-02 12:00 1851520 ----a-w- c:\windows\system32\win32k.sys 2010-04-20 05:34 . 2006-03-02 12:00 285696 ----a-w- c:\windows\system32\atmfd.dll 2010-04-16 16:09 . 2006-03-02 12:00 669696 ----a-w- c:\windows\system32\wininet.dll 2010-04-16 16:08 . 2006-03-02 12:00 81920 ----a-w- c:\windows\system32\ieencode.dll 2010-04-03 22:55 . 2010-05-29 19:46 600680 ----a-w- c:\windows\system32\nvudisp.exe 2010-04-03 22:55 . 2010-05-29 19:45 10232128 ----a-w- c:\windows\system32\drivers\nv4_mini.sys 2010-04-03 22:55 . 2010-05-29 19:45 6432128 ----a-w- c:\windows\system32\nv4_disp.dll 2010-04-03 22:55 . 2010-05-29 19:45 4075520 ----a-w- c:\windows\system32\nvcuda.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcodins.dll 2010-04-03 22:55 . 2010-05-29 19:45 227944 ----a-w- c:\windows\system32\nvcod.dll 2010-04-03 22:55 . 2010-05-29 19:45 14757888 ----a-w- c:\windows\system32\nvoglnt.dll 2010-04-03 22:55 . 2010-05-29 19:45 1097728 ----a-w- c:\windows\system32\nvapi.dll 2010-04-03 17:23 . 2010-04-03 17:23 278120 ----a-w- c:\windows\system32\nvmccs.dll 2010-04-03 17:23 . 2010-04-03 17:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe 2010-04-03 17:23 . 2010-04-03 17:23 145000 ----a-w- c:\windows\system32\nvcolor.exe 2010-04-03 17:23 . 2010-04-03 17:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll 2010-04-03 17:23 . 2010-04-03 17:23 110696 ----a-w- c:\windows\system32\nvmctray.dll 2010-04-03 17:23 . 2010-04-03 17:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll 2010-04-03 17:23 . 2010-04-03 17:23 126976 ----a-w- c:\windows\system32\nvrszht.dll 2010-04-02 14:54 . 2010-05-29 19:45 600680 ----a-w- c:\windows\system32\NVUNINST.EXE . ------- Sigcheck ------- [7] 2008-06-20 . AD978A1B783B5719720CFF204B666C8E . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys [7] 2008-06-20 . 9AEFA14BD6B182D61E3119FA5F436D3D . 361600 . . [5.1.2600.5625] . . c:\windows\system32\dllcache\tcpip.sys [-] 2008-06-20 . 4AFB3B0919649F95C1964AA1FAD27D73 . 361600 . . [5.1.2600.5625] . . c:\windows\system32\drivers\tcpip.sys [7] 2008-06-20 . 2A5554FC5B1E04E131230E3CE035C3F9 . 360320 . . [5.1.2600.3394] . . c:\windows\$NtServicePackUninstall$\tcpip.sys [7] 2008-06-20 . 744E57C99232201AE98C49168B918F48 . 360960 . . [5.1.2600.3394] . . c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\$NtUninstallKB951748$\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\tcpip.sys [7] 2008-04-13 . 93EA8D04EC73A85DB02EB8805988F733 . 361344 . . [5.1.2600.5512] . . c:\windows\SoftwareDistribution\Download\51fc2b55c6deef38fc801319336cdbc7\tcpip.sys [7] 2006-03-02 . 9F4B36614A0FC234525BA224957DE55C . 359040 . . [5.1.2600.2180] . . c:\windows\$NtUninstallKB951748_0$\tcpip.sys . ((((((((((((((((((((((((((((( SnapShot@2010-06-19_12.45.36 ))))))))))))))))))))))))))))))))))))))))) . + 2010-05-29 19:35 . 2008-11-07 16:55 26144 c:\windows\system32\spupdsvc.exe + 2009-11-16 16:33 . 2009-11-16 16:33 53299 c:\windows\system32\pthreadVC.dll + 2010-06-20 14:33 . 2010-02-26 12:32 92672 c:\windows\system32\nmwcdcls.dll + 2008-08-19 00:18 . 2008-08-19 00:18 77824 c:\windows\system32\fmcodec.DLL + 2010-06-20 14:33 . 2008-08-26 08:26 18816 c:\windows\system32\DRVSTORE\pccsmcfd_A3B3916E5D8138F59EE218321B27B044D3B18294\pccsmcfd.sys + 2010-06-20 14:33 . 2010-02-26 12:32 22528 c:\windows\system32\DRVSTORE\ccdcmbo_86369E3C3E199189C5EAD7421471A08D93A69835\ccdcmbo.sys + 2010-06-20 14:33 . 2010-02-26 12:32 92672 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdcls.dll + 2010-06-20 14:33 . 2010-02-26 12:32 18176 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\ccdcmb.sys + 2009-07-14 08:35 . 2009-07-14 08:35 37608 c:\windows\system32\drivers\wdfldr.sys + 2010-06-20 14:33 . 2008-08-26 08:26 18816 c:\windows\system32\drivers\pccsmcfd.sys + 2009-11-16 16:33 . 2009-11-16 16:33 50704 c:\windows\system32\drivers\npf.sys + 2010-06-20 14:33 . 2010-02-26 12:32 22528 c:\windows\system32\drivers\ccdcmbo.sys + 2010-06-20 14:33 . 2010-02-26 12:32 18176 c:\windows\system32\drivers\ccdcmb.sys + 2010-06-20 14:33 . 2010-06-20 14:33 10134 c:\windows\Installer\{8C91D53E-0C23-4A79-A480-68A443D80100}\ARPPRODUCTICON.exe + 2010-06-20 14:34 . 2010-06-20 14:34 15086 c:\windows\Installer\{18756A46-652E-4ED4-A029-C4940D59F09B}\ARPPRODUCTICON.exe + 2010-06-20 14:33 . 2010-02-26 12:21 8320 c:\windows\system32\DRVSTORE\nmwcdnsuc_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdnsuc.sys + 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\DRVSTORE\ccdcmbm_86369E3C3E199189C5EAD7421471A08D93A69835\usbser_lowerflt.sys + 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\DRVSTORE\ccdcmbcj_86369E3C3E199189C5EAD7421471A08D93A69835\usbser_lowerfltj.sys + 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\drivers\usbser_lowerfltj.sys + 2010-06-20 14:33 . 2010-02-26 12:32 8192 c:\windows\system32\drivers\usbser_lowerflt.sys + 2010-06-20 14:33 . 2010-06-20 14:33 3262 c:\windows\Installer\{1B9B5B3B-28E7-4E59-A80D-D670AA984514}\ARPPRODUCTICON.exe + 2009-11-16 16:33 . 2009-11-16 16:33 281104 c:\windows\system32\wpcap.dll + 2009-11-16 16:33 . 2009-11-16 16:33 100880 c:\windows\system32\Packet.dll + 2010-06-20 14:33 . 2010-02-26 12:32 662016 c:\windows\system32\nmwcdcocls.dll + 2010-01-27 01:07 . 2010-06-20 16:47 256280 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe - 2010-01-27 01:07 . 2010-01-27 01:07 256280 c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe + 2010-06-20 14:33 . 2010-04-14 09:40 590848 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\PCCSWpdDriver.dll + 2010-06-20 14:33 . 2010-02-26 12:21 137344 c:\windows\system32\DRVSTORE\nmwcdnsu_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdnsu.sys + 2010-06-20 14:33 . 2010-02-26 12:32 662016 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\nmwcdcocls.dll + 2009-07-14 08:35 . 2009-07-14 08:35 444136 c:\windows\system32\drivers\wdf01000.sys + 2010-06-20 14:34 . 2010-06-20 14:34 853504 c:\windows\Installer\299de6.msi + 2010-06-20 14:33 . 2010-06-20 14:33 495616 c:\windows\Installer\299de0.msi + 2010-06-20 14:33 . 2010-06-20 14:33 331776 c:\windows\Installer\299dda.msi + 2010-06-20 14:33 . 2010-06-20 14:33 215552 c:\windows\Installer\299dd4.msi - 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe + 2010-05-29 19:44 . 2008-01-29 03:20 2247208 c:\windows\TBPanel.exe + 2010-06-20 14:33 . 2010-02-26 12:19 1461992 c:\windows\system32\wdfcoinstaller01009.dll + 2010-06-20 14:33 . 2010-04-14 08:26 1837296 c:\windows\system32\DRVSTORE\pccswpddri_8FC79B5C76B12B345CB05ADB7D73AF7091A57405\WUDFUpdate_01009.dll + 2010-06-20 14:33 . 2010-02-26 12:19 1461992 c:\windows\system32\DRVSTORE\ccdcmb_86369E3C3E199189C5EAD7421471A08D93A69835\wdfcoinstaller01009.dll . ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Skype"="c:\program files\Skype\Phone\Skype.exe" [2009-10-09 25725736] "AQQ"="c:\progra~1\WapSter\WAPSTE~1\AQQ.exe" [2010-05-11 6644736] "DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\DTLite.exe" [2010-04-01 357696] "Steam"="h:\gry\steam\steam.exe" [2010-06-20 1238352] "PC Suite Tray"="c:\program files\Nokia\Nokia PC Suite 7\PCSuite.exe" [2010-05-14 1479680] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "GEST"="m‘|ü" [X] "RTHDCPL"="RTHDCPL.EXE" [2007-09-19 16844800] "Gainward"="c:\windows\TBPanel.exe" [2008-01-29 2247208] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2006-03-02 208952] "MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2006-03-02 59392] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2006-03-02 455168] "DeathAdder"="c:\program files\Razer\DeathAdder\razerhid.exe" [2007-09-07 307200] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-04-03 110696] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ rmslt.nt\0autocheck autochk * [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 "FirewallOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "AntiVirusOverride"=dword:00000001 "AntiVirusDisableNotify"=dword:00000001 "FirewallDisableNotify"=dword:00000001 "FirewallOverride"=dword:00000001 "UpdatesDisableNotify"=dword:00000001 "UacDisableNotify"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Opera\\opera.exe"= "c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"= "h:\\Gry\\Battlefield 2\\BF2.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\WapSter\\WapSter AQQ\\AQQ.exe"= "h:\\Gry\\Steam\\Steam.exe"= h:\\gry\\steam\\steam.exe "h:\\Gry\\Pure\\Pure.exe"= "c:\\WINDOWS\\system32\\PnkBstrA.exe"= "c:\\WINDOWS\\system32\\PnkBstrB.exe"= "h:\\Gry\\Call of Duty 4\\iw3mp.exe"= "h:\\Inne\\FlashGet 3\\FlashGet3.exe"= "h:\\Gry\\Steam\\SteamApps\\common\\call of duty modern warfare 2\\iw4mp.exe"= "c:\\WINDOWS\\system32\\wscntfy.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= "c:\\WINDOWS\\system32\\netsh.exe"= "c:\\WINDOWS\\TBPanel.exe"= "c:\\Program Files\\Razer\\DeathAdder\\razerhid.exe"= "c:\\WINDOWS\\RTHDCPL.EXE"= "c:\\Program Files\\DAEMON Tools Lite\\DTLite.exe"= "c:\\PROGRA~1\\WapSter\\WAPSTE~1\\AQQ.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= R0 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-29 691696] R1 kbfilter;Keyboard Filter Driver;c:\windows\system32\drivers\kbfilter.sys [2010-05-29 11886] R2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-11-16 50704] R3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [2010-06-09 22784] . . ------- Skan uzupełniający ------- . IE: Download all by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetAllUrl.htm IE: Download by FlashGet3 - c:\documents and settings\Kordian\Dane aplikacji\FlashGetBHO\GetUrl.htm IE: {{898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Trusted Zone: kuaiche.com\software FF - ProfilePath - c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\ FF - component: c:\documents and settings\Kordian\Dane aplikacji\Mozilla\Firefox\Profiles\hhpgs6cu.default\extensions\{DB9127A2-3381-41ec-82B3-1B6ED4C6F29A}\components\FlashgetXpi.dll FF - component: c:\program files\Nokia\Nokia PC Suite 7\bkmrksync\components\BkMrkExt.dll FF - plugin: c:\program files\Opera\program\plugins\nppl3260.dll FF - plugin: c:\program files\Opera\program\plugins\nprpjplug.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- FIREFOX - SPOSÓB POSTĘPOWANIA ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); . ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-06-20 23:30 Windows 5.1.2600 Dodatek Service Pack 3 NTFS skanowanie ukrytych procesów ... skanowanie ukrytych wpisów autostartu ... skanowanie ukrytych plików ... skanowanie pomyślnie ukończone ukryte pliki: 0 ************************************************************************** Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net device: opened successfully user: MBR read successfully called modules: ntkrnlpa.exe CLASSPNP.SYS disk.sys hal.dll ACPI.sys atapi.sys spfe.sys >>UNKNOWN [0x8A4FC938]<< kernel: MBR read successfully detected MBR rootkit hooks: \Driver\Disk -> CLASSPNP.SYS @ 0xb80fcf28 \Driver\ACPI -> ACPI.sys @ 0xb7e73cb8 \Driver\atapi -> atapi.sys @ 0xb7e2eb40 IoDeviceObjectType -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 \Device\Harddisk0\DR0 -> DeleteProcedure -> ntkrnlpa.exe @ 0x805836a8 ParseProcedure -> ntkrnlpa.exe @ 0x805827e8 NDIS: Realtek RTL8168/8111 PCI-E Gigabit Ethernet NIC -> SendCompleteHandler -> NDIS.sys @ 0xb7d49bb0 PacketIndicateHandler -> NDIS.sys @ 0xb7d56a21 SendHandler -> NDIS.sys @ 0xb7d3487b user & kernel MBR OK ************************************************************************** . --------------------- ZABLOKOWANE KLUCZE REJESTRU --------------------- [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe,-101" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation] "Enabled"=dword:00000001 [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10h_ActiveX.exe" [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}] @Denied: (A 2) (Everyone) @="IFlashBroker4" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . ------------------------ Pozostałe uruchomione procesy ------------------------ . c:\windows\system32\nvsvc32.exe c:\windows\system32\PnkBstrA.exe c:\windows\system32\PnkBstrB.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\windows\system32\wdfmgr.exe c:\program files\Razer\DeathAdder\razertra.exe c:\program files\PC Connectivity Solution\ServiceLayer.exe c:\program files\Razer\DeathAdder\razerofa.exe c:\program files\PC Connectivity Solution\Transports\NclUSBSrv.exe c:\program files\PC Connectivity Solution\Transports\NclRSSrv.exe c:\windows\system32\imapi.exe . ************************************************************************** . Czas ukończenia: 2010-06-20 23:32:57 - komputer został uruchomiony ponownie ComboFix-quarantined-files.txt 2010-06-20 21:32 ComboFix2.txt 2010-06-20 08:53 ComboFix3.txt 2010-06-19 12:50 Przed: 31 276 679 168 bajtów wolnych Po: 31 265 529 856 bajtów wolnych - - End Of File - - 72DC93DFF3BC0BA27E202BDBCA030767 [/log] Moge juz uruchomic rejestr (edytor znaczy sie) i czy mam ten poprzedni plik dodac do rejestru? Edytowane 20 czerwca 2010 przez Kordikk
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 Tak dodaj do rejestru. A dalej: [quote]Skanuj komputer jak największą ilością skanerów, ponownie drwebcureit. Następnie poszukaj w google skanerów online, konieczność skanu Kaspersky. Jeśli jakiś program mimo tego nie będzie działał zainstaluj go ponownie.[/quote]
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 Okreslony plik nie jest skryptem rejestru... Moze mam zmienic kodowanie z ANSI na UTF-8 czy cos??
Mateusz J. komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 Skopiowałeś nagłówek do notatnika?: Windows Registry Editor Version 5.00 1
Kordikk komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 OK. najwyrazniej skopiowalem bez naglowka ^^ Dziekuje Ci za wszystko Jak bede mial problemy, wiem gdzie sie zglosic
Sohei komentarz 21 czerwca 2010 komentarz 21 czerwca 2010 (edytowane) Nie wiem jak ty to zrobiłeś ale miałeś na kompie i Jeffo i sality; ) Edytowane 21 czerwca 2010 przez Sohei
Mateusz J. komentarz 21 czerwca 2010 komentarz 21 czerwca 2010 Ja się dziwie, że w ogóle infekcja się usunęła od tak. Chociaż przypuszczam, ze będą nawroty. 1
Sohei komentarz 21 czerwca 2010 komentarz 21 czerwca 2010 ja też tak sądzę dlatego logi OTL i GMER obowiązkowo do oceny
Kordikk komentarz 16 lipca 2010 Autor komentarz 16 lipca 2010 myślę, iż nastapil "nawrot choroby" tuz po formacie :/ OTL i Extras... [log]OTL logfile created on: 2010-07-16 12:28:51 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = H:\BACKUP 2010\Dysk C\DOwnloady Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 40,56 Gb Free Space | 83,07% Space Free | Partition Type: NTFS Drive D: | 7,80 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 92,47 Gb Free Space | 22,18% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: KORDIAN Current User Name: Kordianek Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-07-16 12:22:20 | 000,008,704 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Temp\ioeogh.exe PRC - [2010-07-16 12:21:26 | 001,238,352 | ---- | M] (Valve Corporation) -- H:\Gry\Steam\steam.exe PRC - [2010-06-26 10:49:39 | 000,979,928 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla Firefoxix\firefox.exe PRC - [2010-06-26 10:49:39 | 000,014,808 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla Firefoxix\plugin-container.exe PRC - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- H:\BACKUP 2010\Dysk C\DOwnloady\OTL.exe PRC - [2010-02-10 23:50:02 | 002,869,264 | ---- | M] (Microsoft Corporation) -- H:\Pobierane\framework35.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe PRC - [2008-04-14 22:51:52 | 000,218,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:50 | 000,196,608 | ---- | M] () -- \\?\C:\WINDOWS\System32\WBEM\WMIADAP.EXE PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:30 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msiexec.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-03-23 09:02:08 | 011,008,544 | ---- | M] (Microsoft Corporation) -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Temp\dotnetfx3521022.08\1033\dotnetfx35\x86\dotnetfx35langpack_x86pl.exe PRC - [2008-03-21 15:56:40 | 000,269,304 | ---- | M] (Microsoft Corporation) -- h:\41c9f4f18f04a6f8365c\setup.exe PRC - [2008-01-29 05:20:27 | 002,177,576 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2007-11-07 16:26:34 | 000,269,304 | ---- | M] (Microsoft Corporation) -- h:\5deb768e7d78524ad83e65ab9419\setup.exe PRC - [2007-10-24 01:47:40 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-19 08:45:37 | 000,572,416 | ---- | M] (OldTimer Tools) -- H:\BACKUP 2010\Dysk C\DOwnloady\OTL.exe MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:48 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll MOD - [2008-04-14 22:50:42 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui1.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:42 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui0.dll MOD - [2008-04-14 22:50:42 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntlanman.dll MOD - [2008-04-14 22:50:42 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netrap.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll MOD - [2008-04-14 22:50:36 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll MOD - [2008-04-14 22:50:32 | 000,285,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:30 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drprov.dll MOD - [2008-04-14 22:50:22 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\davclnt.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:50:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2008-04-14 22:49:16 | 000,714,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5) DRV - [2010-07-15 23:51:01 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-01-03 16:26:00 | 007,077,344 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.conduit.com?SearchSource=10&ctid=CT2405280 IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\..\URLSearchHook: {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.) IE - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultthis.engineName: "Softonic-Eng7 Customized Web Search" FF - prefs.js..browser.search.defaulturl: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2405280&SearchSource=3&q={searchTerms}" FF - prefs.js..browser.search.selectedEngine: "Softonic-Eng7 Customized Web Search" FF - prefs.js..browser.startup.homepage: "http://search.conduit.com/?ctid=CT2405280&SearchSource=13" FF - prefs.js..keyword.URL: "http://search.conduit.com/ResultsExt.aspx?ctid=CT2405280&q=" FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: H:\Inne\Mozilla Firefoxix\components [2010-07-16 01:19:21 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: H:\Inne\Mozilla Firefoxix\plugins [2010-07-16 11:48:19 | 000,000,000 | ---D | M] [2010-07-16 00:25:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Extensions [2010-07-16 12:19:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\hiuj067e.default\extensions [2010-06-08 11:28:50 | 000,000,929 | ---- | M] () -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\hiuj067e.default\searchplugins\conduit.xml O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Softonic-Eng7 Toolbar) - {414b6d9d-4a95-4e8d-b5b1-149dd2d93bb3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.) O3 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\..\Toolbar\WebBrowser: (Softonic-Eng7 Toolbar) - {414B6D9D-4A95-4E8D-B5B1-149DD2D93BB3} - C:\Program Files\Softonic-Eng7\tbSoft.dll (Conduit Ltd.) O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O4 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004..\Run: [Steam] H:\Gry\Steam\Steam.exe (Valve Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-10-07 20:36:50 | 000,000,043 | R--- | M] () - D:\autorun.inf -- [ UDF ] O33 - MountPoints2\{15f71558-905a-11df-a1de-806d6172696f}\Shell - "" = AutoRun O33 - MountPoints2\{15f71558-905a-11df-a1de-806d6172696f}\Shell\AutoRun\command - "" = D:\Setup.exe -- [2009-10-09 02:00:30 | 000,345,360 | R--- | M] (Valve Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-07-16 01:04:41 | 000,000,000 | ---D | M] NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-07-16 12:27:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild [2010-07-16 12:27:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer [2010-07-16 12:27:01 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies [2010-07-16 12:27:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us [2010-07-16 12:12:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\LastGood [2010-07-16 12:11:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-07-16 12:06:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-07-16 12:02:51 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-07-16 11:57:32 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-07-16 11:57:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-07-16 01:27:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-07-16 01:25:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Softonic-Eng7 [2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit [2010-07-16 01:23:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Conduit [2010-07-16 01:23:55 | 000,000,000 | ---D | C] -- C:\Program Files\Softonic-Eng7 [2010-07-16 01:23:24 | 000,050,688 | ---- | C] (Grupa robocza Twain) -- C:\WINDOWS\twain_32.dll [2010-07-16 01:23:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-07-16 01:20:03 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-07-16 01:19:19 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\WINDOWS\System32\pncrt.dll [2010-07-16 01:19:19 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2010-07-16 01:12:53 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-07-16 01:12:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-07-16 01:12:49 | 000,000,000 | R--D | C] -- C:\Program Files [2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-07-16 01:12:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-07-16 01:12:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-07-16 01:12:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-07-16 01:12:25 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-07-16 01:12:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-07-16 01:12:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-07-16 01:10:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-07-16 01:10:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-07-16 01:10:29 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-07-16 01:10:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-07-16 01:10:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-07-16 01:10:07 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-07-16 01:03:23 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-07-16 01:03:23 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-07-16 01:03:23 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-07-16 01:03:23 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-07-16 01:03:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-07-16 00:28:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\WapSter [2010-07-16 00:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Pobieranie [2010-07-16 00:27:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Macromedia [2010-07-16 00:27:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Adobe [2010-07-16 00:25:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-07-16 00:25:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla [2010-07-16 00:01:30 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-07-16 00:00:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-07-16 00:00:22 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\UserData [2010-07-15 23:55:37 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly [2010-07-15 23:55:23 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET [2010-07-15 23:55:22 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2010-07-15 23:54:40 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft DirectX SDK (February 2010) [2010-07-15 23:54:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-07-15 23:52:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Adobe [2010-07-15 23:52:28 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2010-07-15 23:51:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cache [2010-07-15 23:47:05 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab [2010-07-15 23:42:34 | 002,043,904 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe [2010-07-15 23:42:34 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-07-15 23:42:34 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-07-15 23:42:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-07-15 23:42:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-07-15 23:42:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\InstallShield [2010-07-15 23:42:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-07-15 23:40:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-07-15 23:40:23 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-07-15 23:40:22 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-07-15 23:40:22 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-07-15 23:37:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-07-15 23:37:45 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll [2010-07-15 23:37:45 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2010-07-15 23:37:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-07-15 23:37:42 | 000,000,000 | ---D | C] -- C:\Intel [2010-07-15 23:31:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-07-15 23:30:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-07-15 23:30:17 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-07-15 23:30:14 | 002,177,576 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-07-15 23:30:14 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-07-15 23:28:31 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-07-15 23:26:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Identities [2010-07-15 23:26:51 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-07-15 23:26:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moje obrazy [2010-07-15 23:26:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moja muzyka [2010-07-15 23:26:40 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Microsoft [2010-07-15 23:26:40 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Cookies [2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\SendTo [2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Recent [2010-07-15 23:26:40 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji [2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Ulubione [2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty [2010-07-15 23:26:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Menu Start [2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne [2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Szablony [2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\PrintHood [2010-07-15 23:26:40 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\NetHood [2010-07-15 23:26:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Pulpit [2010-07-15 23:26:40 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-15 23:26:11 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-07-15 23:26:10 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-07-15 23:26:09 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-07-15 23:26:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-15 23:24:48 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-07-15 23:24:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-15 23:23:42 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-07-15 23:23:42 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-07-15 23:22:59 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-07-15 23:22:47 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-07-15 23:22:27 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-07-15 23:21:34 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-07-15 23:21:27 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-07-15 23:21:27 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-07-15 23:21:20 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-07-15 23:21:17 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-07-15 23:21:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-07-15 23:20:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-07-15 23:20:32 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-07-15 23:20:31 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-07-15 23:20:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-07-15 23:20:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-07-15 23:20:18 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-07-15 23:20:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-07-15 23:20:06 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-07-15 23:20:03 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-07-15 23:19:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-07-15 23:19:56 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-07-15 23:19:55 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-07-15 23:19:45 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-07-15 23:19:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-07-15 23:19:21 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-07-15 23:19:21 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-07-15 23:19:17 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-07-15 23:19:13 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-07-15 23:18:50 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-07-15 23:18:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-07-15 23:18:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-07-16 12:27:31 | 001,164,910 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-07-16 12:27:31 | 000,518,854 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-07-16 12:27:31 | 000,458,308 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-07-16 12:27:31 | 000,099,332 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-07-16 12:27:31 | 000,078,880 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-07-16 12:26:27 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-07-16 12:25:56 | 000,000,514 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-07-16 12:11:57 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-07-16 12:11:51 | 000,160,100 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2010-07-16 12:11:26 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-07-16 12:11:20 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-07-16 12:11:10 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-07-16 12:11:04 | 000,095,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-07-16 12:09:44 | 000,786,432 | -H-- | M] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT [2010-07-16 12:09:44 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordianek\ntuser.ini [2010-07-16 12:09:40 | 004,250,302 | -H-- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-07-16 12:09:23 | 000,002,675 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2010-07-16 12:04:44 | 000,251,152 | ---- | M] () -- C:\ntldr [2010-07-16 11:58:14 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-07-16 11:56:06 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-07-16 11:56:06 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-07-16 11:55:56 | 000,013,104 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-07-16 01:23:47 | 002,690,048 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\Softonic-English.exe [2010-07-16 00:28:15 | 000,000,772 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk [2010-07-16 00:25:32 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-07-16 00:25:12 | 000,000,643 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-07-15 23:55:56 | 000,000,267 | ---- | M] () -- C:\WINDOWS\system.ini [2010-07-15 23:52:30 | 000,001,740 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-07-15 23:42:04 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-07-15 23:42:04 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-07-15 23:24:51 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-07-15 23:23:56 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-07-15 23:22:13 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-07-15 23:22:12 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-07-15 23:22:02 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-07-15 23:21:27 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-07-15 23:21:27 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-15 23:19:54 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-07-15 23:19:43 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-07-15 23:19:43 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-07-15 23:17:49 | 000,000,211 | -HS- | M] () -- C:\boot.ini [6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-07-16 12:27:27 | 000,062,304 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-07-16 12:20:51 | 000,000,514 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Steam.lnk [2010-07-16 12:07:01 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-07-16 12:07:01 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-07-16 12:07:01 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-07-16 12:07:01 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-07-16 12:07:01 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-07-16 12:07:01 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-07-16 12:07:01 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-07-16 12:07:00 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-07-16 12:07:00 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-07-16 12:07:00 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-07-16 12:07:00 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-07-16 12:07:00 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-07-16 12:07:00 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-07-16 12:07:00 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-07-16 12:07:00 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-07-16 12:07:00 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-07-16 12:07:00 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-07-16 12:07:00 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-07-16 12:07:00 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-07-16 12:07:00 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-07-16 12:07:00 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-07-16 12:07:00 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-07-16 12:07:00 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-07-16 12:07:00 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-07-16 12:07:00 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-07-16 12:07:00 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-07-16 12:07:00 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-07-16 12:07:00 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-07-16 12:07:00 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-07-16 12:07:00 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-07-16 12:07:00 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-07-16 12:07:00 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-07-16 12:07:00 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-07-16 12:07:00 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-07-16 12:07:00 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-07-16 12:07:00 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-07-16 12:07:00 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-07-16 12:07:00 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-07-16 12:07:00 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-07-16 12:07:00 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-07-16 12:07:00 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-07-16 12:07:00 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-07-16 12:07:00 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-07-16 12:07:00 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-07-16 12:07:00 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-07-16 12:07:00 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-07-16 12:07:00 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-07-16 12:07:00 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-07-16 12:07:00 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-07-16 12:07:00 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-07-16 12:07:00 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-07-16 12:07:00 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-07-16 12:07:00 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-07-16 12:07:00 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-07-16 12:07:00 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-07-16 12:07:00 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-07-16 12:07:00 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-07-16 12:07:00 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-07-16 12:07:00 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-07-16 12:07:00 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-07-16 12:07:00 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-07-16 12:07:00 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-07-16 12:07:00 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-07-16 12:07:00 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-07-16 12:07:00 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-07-16 12:07:00 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-07-16 12:07:00 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-07-16 12:07:00 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-07-16 12:06:59 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-07-16 12:06:59 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-07-16 12:06:59 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-07-16 12:06:59 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-07-16 12:06:59 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-07-16 12:06:59 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-07-16 12:06:59 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-07-16 12:06:59 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-07-16 12:06:59 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-07-16 12:06:59 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-07-16 12:06:59 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-07-16 12:06:59 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-07-16 12:04:53 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-07-16 12:04:53 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-07-16 12:04:53 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-07-16 11:58:15 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-07-16 01:23:35 | 000,046,306 | ---- | C] () -- C:\WINDOWS\System32\ieuinit.inf [2010-07-16 01:23:34 | 000,118,272 | ---- | C] () -- C:\WINDOWS\System32\mpeg2data.ax [2010-07-16 01:23:31 | 002,690,048 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\Softonic-English.exe [2010-07-16 01:23:30 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-07-16 01:23:28 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-07-16 01:23:27 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-07-16 01:23:23 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin [2010-07-16 01:23:22 | 000,148,992 | ---- | C] () -- C:\WINDOWS\System32\mpg2splt.ax [2010-07-16 01:23:20 | 000,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp [2010-07-16 01:23:14 | 000,265,948 | ---- | C] () -- C:\WINDOWS\System32\locale.nls [2010-07-16 01:23:14 | 000,251,152 | ---- | C] () -- C:\ntldr [2010-07-16 01:23:14 | 000,023,044 | ---- | C] () -- C:\WINDOWS\System32\sorttbls.nls [2010-07-16 01:12:55 | 000,002,675 | ---- | C] () -- C:\WINDOWS\imsins.BAK [2010-07-16 01:12:51 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-07-16 01:12:51 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-07-16 01:12:50 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-07-16 01:12:49 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-07-16 01:12:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-07-16 01:12:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-07-16 01:12:45 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-07-16 01:12:45 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-07-16 01:12:45 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-07-16 01:12:43 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-07-16 01:12:41 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-07-16 01:12:41 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-07-16 01:12:41 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-07-16 01:12:40 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-07-16 01:12:40 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-07-16 01:12:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-07-16 01:12:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-07-16 01:12:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-07-16 01:12:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-07-16 01:12:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-07-16 01:12:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-07-16 01:12:32 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-07-16 01:10:45 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-07-16 01:10:45 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-07-16 01:10:45 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-07-16 01:10:45 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-07-16 01:10:45 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-07-16 01:10:45 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-07-16 01:10:45 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-07-16 01:10:45 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-07-16 01:10:07 | 000,095,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-07-16 01:09:12 | 000,000,211 | -HS- | C] () -- C:\boot.ini [2010-07-16 01:09:08 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-07-16 00:28:15 | 000,000,772 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk [2010-07-16 00:25:32 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-07-16 00:25:12 | 000,000,643 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-07-15 23:52:30 | 000,001,740 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Adobe Reader 6.0.lnk [2010-07-15 23:42:04 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-07-15 23:42:04 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-07-15 23:40:49 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-07-15 23:33:42 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-07-15 23:31:07 | 000,160,100 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml [2010-07-15 23:31:05 | 000,017,737 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-07-15 23:30:44 | 001,728,512 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe [2010-07-15 23:30:42 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2010-07-15 23:30:42 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2010-07-15 23:30:42 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe [2010-07-15 23:30:42 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2010-07-15 23:30:42 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2010-07-15 23:30:42 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe [2010-07-15 23:30:42 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe [2010-07-15 23:30:42 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-07-15 23:30:41 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\nvtuicpl.cpl [2010-07-15 23:30:14 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-07-15 23:30:14 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-07-15 23:30:14 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-07-15 23:30:14 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-07-15 23:30:14 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-07-15 23:30:14 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-07-15 23:30:14 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-07-15 23:30:14 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-07-15 23:30:14 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-07-15 23:30:14 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-07-15 23:30:14 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-07-15 23:26:41 | 000,040,960 | -H-- | C] () -- C:\Documents and Settings\Kordianek\ntuser.dat.LOG [2010-07-15 23:26:41 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordianek\ntuser.ini [2010-07-15 23:26:40 | 000,786,432 | -H-- | C] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT [2010-07-15 23:24:51 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-07-15 23:23:56 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-07-15 23:23:54 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-07-15 23:23:40 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-07-15 23:23:40 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-07-15 23:23:32 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-07-15 23:23:31 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-07-15 23:23:28 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-07-15 23:23:27 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-07-15 23:23:26 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-07-15 23:23:08 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-07-15 23:22:59 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-07-15 23:22:59 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-07-15 23:22:58 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-07-15 23:22:58 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-07-15 23:22:58 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-07-15 23:22:58 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-07-15 23:22:58 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-07-15 23:22:57 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-07-15 23:22:57 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-07-15 23:22:57 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-07-15 23:22:57 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-07-15 23:22:57 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-07-15 23:22:57 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-07-15 23:22:57 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-07-15 23:22:57 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-07-15 23:22:56 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-07-15 23:22:56 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-07-15 23:22:56 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-07-15 23:22:56 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-07-15 23:22:56 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-07-15 23:22:56 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-07-15 23:22:55 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-07-15 23:22:13 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-07-15 23:22:13 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-07-15 23:22:13 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-07-15 23:22:13 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-07-15 23:22:13 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-07-15 23:22:10 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-07-15 23:22:10 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-07-15 23:22:10 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-07-15 23:21:27 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-07-15 23:21:27 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-15 23:21:23 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-15 23:21:09 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-07-15 23:20:42 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-07-15 23:20:42 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-07-15 23:20:36 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-07-15 23:19:54 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-07-15 23:19:01 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-07-15 23:19:01 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-07-15 23:19:01 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-07-15 23:19:01 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-07-15 23:19:01 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-07-15 23:19:01 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-07-15 23:19:01 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-07-15 23:19:00 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-07-15 23:19:00 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-07-15 23:19:00 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-07-15 23:19:00 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-07-15 23:19:00 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-07-15 23:19:00 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-07-15 23:19:00 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-07-15 23:19:00 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-07-15 23:19:00 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-07-15 23:19:00 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-07-15 23:18:59 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-07-15 23:18:59 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-07-15 23:18:58 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-07-15 23:18:58 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-07-15 23:18:57 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-07-15 23:18:52 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [color=#E56717]========== LOP Check ==========[/color] [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-07-15 23:17:49 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2010-07-15 23:22:13 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-07-15 23:42:42 | 000,000,197 | ---- | M] () -- C:\csb.log [2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-07-15 23:22:13 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-07-16 12:04:44 | 000,251,152 | ---- | M] () -- C:\ntldr [2010-07-16 12:11:03 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-07-15 23:40:51 | 000,000,429 | ---- | M] () -- C:\RHDSetup.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys [2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log] [log]OTL Extras logfile created on: 2010-07-16 12:28:51 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = H:\BACKUP 2010\Dysk C\DOwnloady Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 90,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 40,56 Gb Free Space | 83,07% Space Free | Partition Type: NTFS Drive D: | 7,80 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 92,47 Gb Free Space | 22,18% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: KORDIAN Current User Name: Kordianek Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] [HKEY_USERS\S-1-5-21-2000478354-1078145449-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- H:\Inne\Mozilla Firefoxix\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "UpdatesDisableNotify" = 1 "AntiVirusOverride" = 1 "FirewallOverride" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 1 "AntiVirusDisableNotify" = 1 "FirewallDisableNotify" = 1 "FirewallOverride" = 1 "UpdatesDisableNotify" = 1 "UacDisableNotify" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\WINDOWS\Explorer.EXE" = C:\WINDOWS\Explorer.EXE:*:Enabled:ipsec -- (Microsoft Corporation) "H:\Kolejny Backup\AQQ_BW_22052.exe" = H:\Kolejny Backup\AQQ_BW_22052.exe:*:Enabled:ipsec -- () "C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winwkvj.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winwkvj.exe:*:Enabled:ipsec -- File not found "C:\WINDOWS\system32\xRaidSetup.exe" = C:\WINDOWS\system32\xRaidSetup.exe:*:Enabled:ipsec -- (Gigabyte Technology Corp.) "C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winrmgtbj.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\winrmgtbj.exe:*:Enabled:ipsec -- File not found "H:\Inne\Mozilla Firefoxix\firefox.exe" = H:\Inne\Mozilla Firefoxix\firefox.exe:*:Enabled:ipsec -- (Mozilla Corporation) "H:\Gry\Steam\Steam.exe" = H:\Gry\Steam\Steam.exe:*:Enabled:Steam -- (Valve Corporation) "C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\ioeogh.exe" = C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\ioeogh.exe:*:Enabled:ipsec -- () [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{2BA00471-0328-3743-93BD-FA813353A783}" = Microsoft .NET Framework 3.0 Service Pack 1 "{2FC099BD-AC9B-33EB-809C-D332E1B27C40}" = Microsoft .NET Framework 3.5 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK "{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1 "{B508B3F1-A24A-32C0-B310-85786919EF28}" = Microsoft .NET Framework 2.0 Service Pack 1 "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AQQ" = WapSter AQQ "Gainward" = EXPERTool "Microsoft .NET Framework 3.5" = Microsoft .NET Framework 3.5 "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6) "NVIDIA Drivers" = NVIDIA Drivers "RealAlt_is1" = Real Alternative 2.0.2 "Softonic-Eng7 Toolbar" = Softonic-Eng7 Toolbar "Windows XP Service Pack" = Windows XP Service Pack 3 "WinRAR archiver" = Archiwizator WinRAR "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-07-15 17:57:15 | Computer Name = KORDIAN | Source = .NET Runtime Optimization Service | ID = 1103 Description = .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Error - 2010-07-15 19:18:41 | Computer Name = KORDIAN | Source = MsiInstaller | ID = 11704 Description = Product: Kaspersky Anti-Virus 6.0 -- Error 1704.An installation for Microsoft .NET Framework 2.0 is currently paused. You must undo the changes made by that installation to continue. Do you want to undo those changes? Error - 2010-07-15 20:01:50 | Computer Name = KORDIAN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd iexplore.exe, wersja 6.0.2900.5512, moduł powodujący błąd kernel32.dll, wersja 5.1.2600.2180, adres błędu 0x0008300c. Error - 2010-07-15 20:02:52 | Computer Name = KORDIAN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd wuauclt.exe, wersja 7.4.7600.226, moduł powodujący błąd kernel32.dll, wersja 5.1.2600.2180, adres błędu 0x00083000. Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi i trzeci wpis DWORD w sekcji danych. Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi i trzeci wpis DWORD w sekcji danych. Error - 2010-07-16 06:00:02 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3011 Description = Nie można usunąć z pamięci ciągów licznika wydajności dla usługi WmiApRpl (WmiApRpl). Kod błędu to pierwszy wpis DWORD w sekcji danych (Data). Error - 2010-07-16 06:00:05 | Computer Name = KORDIAN | Source = LoadPerf | ID = 3001 Description = Występująca w rejestrze wartość ciągu nazwy licznika wydajności jest niepoprawnie sformatowana. Nieprawdziwy ciąg to 2286, nieprawdziwa wartość indeksu to pierwszy wpis DWORD w sekcji danych (Data), a ostatnie prawidłowe wartości indeksu to drugi i trzeci wpis DWORD w sekcji danych. [ System Events ] Error - 2010-07-15 18:01:25 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7034 Description = Usługa Kaspersky Anti-Virus 6.0 niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2010-07-15 18:01:27 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla DeleteFlag nie powiodło się i wystąpił następujący błąd: %%5. Error - 2010-07-15 18:01:27 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7006 Description = Wywołanie ScRegSetValueExW dla DeleteFlag nie powiodło się i wystąpił następujący błąd: %%5. Error - 2010-07-16 05:48:19 | Computer Name = KORDIAN | Source = NtServicePack | ID = 921878 Description = Windows XP installation failed, leaving Windows XP partially updated. Instalacja dodatku Service Pack nie została ukończona i zainicjowano wycofywanie do stanu sprzed instalacji. Proces wycofywania składa się z dwóch kroków. Krok pierwszy został ukończony. Aby ukończyć krok drugi, kliknij przycisk OK. Aby otrzymać przypomnienie o ukończeniu kroku drugiego przy następnym logowaniu, kliknij przycisk Anuluj. Po ukończeniu wycofywania system zostanie uruchomiony ponownie i będzie można ponowić próbę zainstalowania dodatku Service Pack. Error - 2010-07-16 05:48:25 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Kaspersky Anti-Virus 6.0 z powodu następującego błędu: %%2 Error - 2010-07-16 05:48:28 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: klif Error - 2010-07-16 05:55:57 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Kaspersky Anti-Virus 6.0 z powodu następującego błędu: %%2 Error - 2010-07-16 05:55:57 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Menedżer przekazywania z powodu następującego błędu: %%1079 Error - 2010-07-16 05:55:58 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: klif Error - 2010-07-16 05:56:03 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 < End of report > [/log]
Sohei komentarz 16 lipca 2010 komentarz 16 lipca 2010 DRV - File not found [Kernel | On_Demand | Running] -- -- (abp470n5) pewnie ze nastąpił; > [b]Do ponownego postawienia systemu może być potrzebna płytka z systemem.[/b] Pobierz i nagraj na płytkę na [b]niezainfekowanym[/b] komputerze [url=http://www.freedrweb.pl/livecd.php][b]DR Web LiveCD[/b][/url]. Włóż płytkę do zainfekowanego komputera, zakładając, że wcześniej ustawiłeś w BIOS-ie na startowanie kompa z CD/DVD, więc po restarcie powinien się uruchomić się skaner. Wykonujesz pełny skan, leczysz co się da, reszta do usunięcia. Skanujesz tyle razy, aż skaner nic nie znajdzie. Jeśli po usuwaniu system się nie uruchomi, wkładasz do komputera płytkę z systemem i wykonujesz [url=http://www.searchengines.pl/index.php?showtopic=24500&view=findpost&p=109540]instalację nakładkową Windows[/url]. Po ewentualnej instalacji nakładkowej [b]wyłącz i włącz Przywracanie systemu[/b] na wszystkich dyskach. Instrukcja [url=http://support.microsoft.com/kb/310405/pl][b]XP[/b][/url] lub [url=http://windowshelp.microsoft.com/Windows/pl-PL/Help/517d3b8e-3379-46c1-b479-05b30d6fb3f01045.mspx][b]Vista[/b][/url]. Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url]. Jeśli skaner nic nie znajdzie, dla pewności podaj log z [url=http://forum.dobreprogramy.pl/post1170959.html#p1170959][b]Combofix[/b][/url] i wyłącz ponownie przywracanie systemu włączone przez Combofixa.
Kordikk komentarz 17 lipca 2010 Autor komentarz 17 lipca 2010 Dla pewnosci dodam logi z OTL przed robieniem cokolwiek Combo FIX'em... OTL i Extras: [log]OTL logfile created on: 2010-07-17 20:21:42 - Run 1 OTL by OldTimer - Version 3.1.28.0 Folder = H:\Pobierane Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 42,56 Gb Free Space | 87,16% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 81,45 Gb Free Space | 19,53% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: KORDIAN Current User Name: Kordianek Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-26 10:49:39 | 000,910,296 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla\firefox.exe PRC - [2010-06-26 10:49:39 | 000,014,808 | ---- | M] (Mozilla Corporation) -- H:\Inne\Mozilla\plugin-container.exe PRC - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe PRC - [2010-03-02 11:28:31 | 000,282,792 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe PRC - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe PRC - [2010-02-08 15:40:16 | 000,549,376 | ---- | M] (OldTimer Tools) -- H:\Pobierane\OTL.exe PRC - [2010-01-14 22:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wuauclt.exe PRC - [2009-02-09 13:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe PRC - [2008-04-14 22:51:04 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe PRC - [2008-01-29 17:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe PRC - [2008-01-29 05:20:27 | 002,177,576 | ---- | M] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe PRC - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe PRC - [2007-09-19 12:14:58 | 016,844,800 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-04-16 18:09:02 | 000,669,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wininet.dll MOD - [2010-04-16 18:09:01 | 001,509,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shdocvw.dll MOD - [2010-04-16 18:09:01 | 000,627,712 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\urlmon.dll MOD - [2010-02-08 15:40:16 | 000,549,376 | ---- | M] (OldTimer Tools) -- H:\Pobierane\OTL.exe MOD - [2009-12-24 09:04:53 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wintrust.dll MOD - [2009-12-08 11:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll MOD - [2009-09-04 23:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msasn1.dll MOD - [2009-06-25 10:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 16:54:38 | 000,585,216 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 14:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll MOD - [2008-10-15 18:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll MOD - [2008-06-20 19:48:53 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mswsock.dll MOD - [2008-06-20 19:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dnsapi.dll MOD - [2008-06-17 21:03:15 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2_32.dll MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2help.dll MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdsapi.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mstask.dll MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll MOD - [2008-04-14 22:50:34 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imagehlp.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:18 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crypt32.dll MOD - [2008-04-14 22:50:18 | 000,520,192 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cryptui.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\apphelp.dll MOD - [2008-04-14 22:29:10 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Stopped] -- -- (LiveUpdate Notice Ex) SRV - [2010-04-01 13:33:19 | 000,267,432 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService) SRV - [2010-02-24 10:28:09 | 000,135,336 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService) SRV - [2008-01-29 17:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe -- (LiveUpdate Notice Service) SRV - [2008-01-03 16:26:00 | 000,155,716 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\WINDOWS\system32\nvsvc32.exe -- (NVSvc) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [File_System | Unknown | Running] -- -- (DwProt) DRV - [2010-07-17 17:12:48 | 000,016,608 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv) DRV - [2010-03-01 10:05:24 | 000,124,784 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb) DRV - [2010-02-16 14:24:01 | 000,060,936 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt) DRV - [2009-05-11 12:49:19 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio) DRV - [2009-05-11 10:12:49 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Stopped] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv) DRV - [2008-04-13 22:09:18 | 000,020,480 | ---- | M] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\secdrv.sys -- (Secdrv) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-01-03 16:26:00 | 007,077,344 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2007-09-29 07:30:52 | 000,065,024 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-09-19 15:44:46 | 000,101,504 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-09-19 11:16:32 | 004,617,728 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 04:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TBPanel.sys -- (Cardex) DRV - [2006-03-02 14:00:00 | 000,017,792 | ---- | M] (Parallel Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ptilink.sys -- (Ptilink) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-854245398-507921405-839522115-1004\S-1-5-21-854245398-507921405-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Components: H:\Inne\Mozilla\components [2010-07-17 17:41:14 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.6\extensions\\Plugins: H:\Inne\Mozilla\plugins [2010-07-17 17:38:22 | 000,000,000 | ---D | M] [2010-07-17 17:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Extensions [2010-07-17 17:41:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla\Firefox\Profiles\n15jrf5l.default\extensions O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS\System32\xRaidSetup.exe (Gigabyte Technology Corp.) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH) O4 - HKLM..\Run: [Gainward] C:\WINDOWS\TBPanel.exe (Gainward Co.) O4 - HKLM..\Run: [GEST] File not found O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [RTHDCPL] C:\WINDOWS\RTHDCPL.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation) O4 - HKU\S-1-5-21-854245398-507921405-839522115-1004..\Run: [AQQ] C:\Program Files\WapSter\WapSter AQQ\AQQ.exe (Creative Team S.A.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-854245398-507921405-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone. O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Idylla.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - comfile [open] -- "%1" %* O35 - exefile [open] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: Ias - C:\WINDOWS\system32\ias [2010-07-17 18:00:02 | 000,000,000 | ---D | M] NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation) NetSvcs: WmdmPmSp - File not found SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: SCSI Class - Driver Group SafeBootMin: sermouse.sys - Driver SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vds - Service SafeBootMin: vga.sys - Driver SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: SCSI Class - Driver Group SafeBootNet: sermouse.sys - Driver SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vga.sys - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-07-17 19:42:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\WapSter [2010-07-17 19:40:01 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\ssmdrv.sys [2010-07-17 19:40:00 | 000,124,784 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avipbb.sys [2010-07-17 19:40:00 | 000,060,936 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntflt.sys [2010-07-17 19:40:00 | 000,045,416 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntdd.sys [2010-07-17 19:40:00 | 000,022,360 | ---- | C] (Avira GmbH) -- C:\WINDOWS\System32\drivers\avgntmgr.sys [2010-07-17 19:39:59 | 000,000,000 | ---D | C] -- C:\Program Files\Avira [2010-07-17 19:39:59 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Avira [2010-07-17 18:27:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\DoctorWeb [2010-07-17 18:25:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs [2010-07-17 18:08:20 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer [2010-07-17 18:08:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC [2010-07-17 18:08:16 | 000,000,000 | R--D | C] -- C:\Program Files [2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines [2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared [2010-07-17 18:08:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files [2010-07-17 18:07:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Menu Start [2010-07-17 18:07:52 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty [2010-07-17 18:07:52 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Szablony [2010-07-17 18:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Ulubione [2010-07-17 18:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Pulpit [2010-07-17 18:06:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2 [2010-07-17 18:06:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot [2010-07-17 18:05:57 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-07-17 18:05:57 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Dane aplikacji [2010-07-17 18:05:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings [2010-07-17 18:04:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-17 18:04:16 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2010-07-17 18:04:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch [2010-07-17 18:01:58 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall [2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet [2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi [2010-07-17 17:58:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1045 [2010-07-17 17:58:46 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts [2010-07-17 17:58:46 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache [2010-07-17 17:58:46 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web [2010-07-17 17:58:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\system [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\security [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\java [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028 [2010-07-17 17:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025 [2010-07-17 17:50:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\WinRAR [2010-07-17 17:48:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Macromedia [2010-07-17 17:48:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Adobe [2010-07-17 17:48:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl-pl [2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\pl [2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas [2010-07-17 17:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits [2010-07-17 17:47:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Pobieranie [2010-07-17 17:46:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles [2010-07-17 17:44:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic [2010-07-17 17:42:07 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$ [2010-07-17 17:42:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome [2010-07-17 17:41:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-07-17 17:41:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Mozilla [2010-07-17 17:38:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2010-07-17 17:37:15 | 000,000,000 | ---D | C] -- C:\Program Files\WapSter [2010-07-17 17:34:45 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\UserData [2010-07-17 17:28:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Norton [2010-07-17 17:14:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Symantec [2010-07-17 17:13:53 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared [2010-07-17 17:12:36 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-07-17 16:59:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution [2010-07-17 16:58:46 | 001,966,080 | R--- | C] (Gigabyte Technology Corp.) -- C:\WINDOWS\System32\xRaidSetup.exe [2010-07-17 16:58:46 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-07-17 16:58:43 | 000,101,504 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtenicxp.sys [2010-07-17 16:58:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\RaidTool [2010-07-17 16:58:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS [2010-07-17 16:58:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\InstallShield [2010-07-17 16:58:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang [2010-07-17 16:56:43 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM [2010-07-17 16:56:30 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS\alcwzrd.exe [2010-07-17 16:56:30 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2010-07-17 16:56:30 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2010-07-17 16:53:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups [2010-07-17 16:53:19 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS\System32\CSVer.dll [2010-07-17 16:53:19 | 000,000,000 | ---D | C] -- C:\Program Files\Intel [2010-07-17 16:53:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE [2010-07-17 16:53:17 | 000,000,000 | ---D | C] -- C:\Intel [2010-07-17 16:49:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\muvee Technologies [2010-07-17 16:48:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\nview [2010-07-17 16:48:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2010-07-17 16:47:45 | 000,000,000 | ---D | C] -- C:\WINDOWS\UI [2010-07-17 16:47:42 | 002,177,576 | ---- | C] (Gainward Co.) -- C:\WINDOWS\TBPanel.exe [2010-07-17 16:47:42 | 000,036,864 | ---- | C] (Gainward) -- C:\WINDOWS\GWLib.dll [2010-07-17 16:46:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Identities [2010-07-17 16:46:05 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information [2010-07-17 16:46:03 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moje obrazy [2010-07-17 16:46:03 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty\Moja muzyka [2010-07-17 16:45:50 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji\Microsoft [2010-07-17 16:45:50 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Kordianek\Cookies [2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\SendTo [2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Recent [2010-07-17 16:45:50 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Kordianek\Dane aplikacji [2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Ulubione [2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Moje dokumenty [2010-07-17 16:45:50 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Kordianek\Menu Start [2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne [2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\Szablony [2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\PrintHood [2010-07-17 16:45:50 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Kordianek\NetHood [2010-07-17 16:45:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Pulpit [2010-07-17 16:45:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-17 16:45:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution [2010-07-17 16:45:12 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft [2010-07-17 16:19:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-17 16:18:33 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll [2010-07-17 16:18:32 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll [2010-07-17 16:17:56 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll [2010-07-17 16:17:56 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll [2010-07-17 16:17:56 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll [2010-07-17 16:17:50 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys [2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom [2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\Program Files\xerox [2010-07-17 16:17:38 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage [2010-07-17 16:17:18 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$ [2010-07-17 16:17:02 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-07-17 16:17:02 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-07-17 16:16:27 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM [2010-07-17 16:16:21 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages [2010-07-17 16:16:20 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files [2010-07-17 16:16:13 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate [2010-07-17 16:16:10 | 000,000,000 | ---D | C] -- C:\Program Files\Usługi online [2010-07-17 16:15:57 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX [2010-07-17 16:15:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services [2010-07-17 16:15:26 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks [2010-07-17 16:15:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap [2010-07-17 16:15:21 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst [2010-07-17 16:15:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed [2010-07-17 16:15:11 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker [2010-07-17 16:15:04 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore [2010-07-17 16:15:00 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting [2010-07-17 16:14:56 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express [2010-07-17 16:14:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System [2010-07-17 16:14:49 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer [2010-07-17 16:14:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-07-17 16:14:39 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications [2010-07-17 16:14:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration [2010-07-17 16:14:14 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-07-17 16:14:14 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player [2010-07-17 16:14:10 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger [2010-07-17 16:14:06 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone [2010-07-17 16:13:43 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT [2010-07-17 16:13:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc [2010-07-17 16:13:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-07-17 20:18:36 | 000,000,559 | ---- | M] () -- C:\WINDOWS\DFC.INI [2010-07-17 19:45:06 | 000,786,432 | -H-- | M] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT [2010-07-17 19:42:55 | 000,013,104 | ---- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-07-17 19:40:07 | 000,001,707 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-07-17 19:28:48 | 000,160,100 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml [2010-07-17 19:28:46 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-07-17 19:28:44 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-07-17 19:28:41 | 000,095,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-07-17 19:22:50 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK [2010-07-17 19:21:47 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Kordianek\ntuser.ini [2010-07-17 19:17:58 | 000,763,990 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-07-17 19:17:58 | 000,355,830 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-07-17 19:17:58 | 000,311,740 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-07-17 19:17:58 | 000,049,712 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-07-17 19:17:58 | 000,040,128 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-07-17 18:39:07 | 004,248,496 | -H-- | M] () -- C:\Documents and Settings\Kordianek\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-07-17 18:08:14 | 000,000,231 | ---- | M] () -- C:\WINDOWS\system.ini [2010-07-17 18:04:56 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx [2010-07-17 18:04:21 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-07-17 17:53:48 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.bak [2010-07-17 17:44:02 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-07-17 17:41:17 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat [2010-07-17 17:38:25 | 000,000,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-07-17 17:37:22 | 000,000,591 | ---- | M] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk [2010-07-17 17:30:57 | 000,000,000 | ---- | M] () -- C:\WINDOWS\WinInit.ini [2010-07-17 16:58:16 | 000,940,794 | ---- | M] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-07-17 16:58:16 | 000,146,650 | ---- | M] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-07-17 16:19:39 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD [2010-07-17 16:18:47 | 000,000,261 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf [2010-07-17 16:17:04 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-07-17 16:17:04 | 000,000,477 | ---- | M] () -- C:\WINDOWS\win.ini [2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-07-17 16:17:02 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb [2010-07-17 16:17:02 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb [2010-07-17 16:16:54 | 000,004,293 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI [2010-07-17 16:16:20 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-07-17 16:16:20 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-17 16:14:47 | 000,021,856 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-07-17 16:14:37 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini [2010-07-17 16:14:37 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini [2010-07-17 16:12:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-07-17 19:40:07 | 000,001,707 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Avira AntiVir Control Center.lnk [2010-07-17 18:08:22 | 000,001,374 | ---- | C] () -- C:\WINDOWS\imsins.BAK [2010-07-17 18:08:17 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd [2010-07-17 18:08:17 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-07-17 18:08:17 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf [2010-07-17 18:08:16 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-07-17 18:08:14 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls [2010-07-17 18:08:14 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls [2010-07-17 18:08:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls [2010-07-17 18:08:13 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls [2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls [2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls [2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls [2010-07-17 18:08:13 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls [2010-07-17 18:08:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls [2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls [2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls [2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls [2010-07-17 18:08:09 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls [2010-07-17 18:08:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls [2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls [2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls [2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls [2010-07-17 18:08:08 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls [2010-07-17 18:08:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls [2010-07-17 18:08:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS [2010-07-17 18:08:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls [2010-07-17 18:08:07 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls [2010-07-17 18:08:05 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls [2010-07-17 18:08:02 | 000,001,734 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT [2010-07-17 18:06:13 | 000,037,509 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT [2010-07-17 18:06:13 | 000,013,497 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-07-17 18:06:13 | 000,008,599 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-07-17 18:06:13 | 000,007,407 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-07-17 18:06:13 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-07-17 18:06:12 | 001,014,483 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT [2010-07-17 18:06:12 | 000,808,524 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-07-17 18:06:12 | 000,399,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-07-17 18:05:32 | 000,095,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT [2010-07-17 18:04:31 | 000,000,211 | -HS- | C] () -- C:\boot.ini [2010-07-17 18:04:27 | 000,000,261 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf [2010-07-17 17:53:51 | 000,013,646 | ---- | C] () -- C:\WINDOWS\System32\wpa.bak [2010-07-17 17:48:34 | 000,693,932 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm [2010-07-17 17:48:34 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav [2010-07-17 17:48:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav [2010-07-17 17:48:34 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav [2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav [2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav [2010-07-17 17:48:34 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav [2010-07-17 17:48:34 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav [2010-07-17 17:48:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav [2010-07-17 17:48:34 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav [2010-07-17 17:48:34 | 000,071,460 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm [2010-07-17 17:48:34 | 000,058,350 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf [2010-07-17 17:48:34 | 000,027,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm [2010-07-17 17:48:34 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta [2010-07-17 17:48:34 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css [2010-07-17 17:48:34 | 000,001,714 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf [2010-07-17 17:48:34 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js [2010-07-17 17:48:33 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv [2010-07-17 17:48:33 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv [2010-07-17 17:48:33 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv [2010-07-17 17:48:33 | 000,089,253 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm [2010-07-17 17:48:33 | 000,066,160 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz [2010-07-17 17:48:33 | 000,034,548 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf [2010-07-17 17:48:33 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif [2010-07-17 17:48:33 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip [2010-07-17 17:48:33 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif [2010-07-17 17:48:33 | 000,013,540 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf [2010-07-17 17:48:33 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif [2010-07-17 17:48:33 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif [2010-07-17 17:48:33 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif [2010-07-17 17:48:33 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif [2010-07-17 17:48:33 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif [2010-07-17 17:48:33 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif [2010-07-17 17:48:33 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif [2010-07-17 17:48:33 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif [2010-07-17 17:48:33 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif [2010-07-17 17:48:33 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js [2010-07-17 17:48:33 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif [2010-07-17 17:48:33 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif [2010-07-17 17:48:33 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif [2010-07-17 17:48:33 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif [2010-07-17 17:48:33 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif [2010-07-17 17:48:33 | 000,001,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf [2010-07-17 17:48:33 | 000,001,482 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl [2010-07-17 17:48:33 | 000,001,479 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl [2010-07-17 17:48:33 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl [2010-07-17 17:48:33 | 000,001,471 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl [2010-07-17 17:48:33 | 000,001,463 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl [2010-07-17 17:48:33 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif [2010-07-17 17:48:33 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif [2010-07-17 17:48:33 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif [2010-07-17 17:48:33 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif [2010-07-17 17:48:33 | 000,001,262 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl [2010-07-17 17:48:33 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm [2010-07-17 17:48:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl [2010-07-17 17:48:33 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl [2010-07-17 17:48:33 | 000,001,041 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl [2010-07-17 17:48:33 | 000,000,825 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl [2010-07-17 17:48:33 | 000,000,822 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl [2010-07-17 17:48:33 | 000,000,808 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl [2010-07-17 17:48:33 | 000,000,792 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl [2010-07-17 17:48:33 | 000,000,786 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl [2010-07-17 17:48:33 | 000,000,738 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl [2010-07-17 17:48:33 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip [2010-07-17 17:48:32 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv [2010-07-17 17:48:32 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv [2010-07-17 17:48:32 | 000,184,137 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz [2010-07-17 17:48:32 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp [2010-07-17 17:48:32 | 000,036,644 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf [2010-07-17 17:48:32 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css [2010-07-17 17:48:32 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm [2010-07-17 17:48:32 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js [2010-07-17 17:48:32 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js [2010-07-17 17:48:32 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif [2010-07-17 17:48:32 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif [2010-07-17 17:48:32 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt [2010-07-17 17:48:32 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif [2010-07-17 17:48:32 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif [2010-07-17 17:48:32 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif [2010-07-17 17:48:32 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif [2010-07-17 17:48:32 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif [2010-07-17 17:48:32 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif [2010-07-17 17:44:19 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty [2010-07-17 17:44:19 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod [2010-07-17 17:44:17 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img [2010-07-17 17:41:17 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat [2010-07-17 17:38:25 | 000,000,571 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mozilla Firefox.lnk [2010-07-17 17:37:22 | 000,000,591 | ---- | C] () -- C:\Documents and Settings\Kordianek\Pulpit\AQQ.lnk [2010-07-17 17:30:57 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WinInit.ini [2010-07-17 16:58:16 | 000,940,794 | ---- | C] () -- C:\WINDOWS\System32\LoopyMusic.wav [2010-07-17 16:58:16 | 000,146,650 | ---- | C] () -- C:\WINDOWS\System32\BuzzingBee.wav [2010-07-17 16:56:56 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe [2010-07-17 16:49:51 | 000,000,559 | ---- | C] () -- C:\WINDOWS\DFC.INI [2010-07-17 16:48:50 | 000,160,100 | ---- | C] () -- C:\WINDOWS\System32\nvapps.xml [2010-07-17 16:48:47 | 000,017,737 | ---- | C] () -- C:\WINDOWS\System32\nvdisp.nvu [2010-07-17 16:48:22 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe [2010-07-17 16:48:19 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe [2010-07-17 16:48:19 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe [2010-07-17 16:48:19 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe [2010-07-17 16:48:18 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll [2010-07-17 16:48:18 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll [2010-07-17 16:48:18 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll [2010-07-17 16:48:18 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll [2010-07-17 16:48:18 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll [2010-07-17 16:48:18 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\nvtuicpl.cpl [2010-07-17 16:47:42 | 000,032,768 | ---- | C] () -- C:\WINDOWS\TBPanelExt.dll [2010-07-17 16:47:42 | 000,026,624 | ---- | C] () -- C:\WINDOWS\TBZoom.exe [2010-07-17 16:47:42 | 000,013,072 | ---- | C] () -- C:\WINDOWS\TBPANFRA.HLP [2010-07-17 16:47:42 | 000,012,996 | ---- | C] () -- C:\WINDOWS\TBPANITA.HLP [2010-07-17 16:47:42 | 000,012,612 | ---- | C] () -- C:\WINDOWS\TBPANDEU.HLP [2010-07-17 16:47:42 | 000,012,285 | ---- | C] () -- C:\WINDOWS\Cadx3.ini [2010-07-17 16:47:42 | 000,012,103 | ---- | C] () -- C:\WINDOWS\TBPANJPN.HLP [2010-07-17 16:47:42 | 000,012,008 | ---- | C] () -- C:\WINDOWS\TBPANENU.HLP [2010-07-17 16:47:42 | 000,011,034 | ---- | C] () -- C:\WINDOWS\TBPANCHT.HLP [2010-07-17 16:47:42 | 000,006,942 | ---- | C] () -- C:\WINDOWS\cadx2.ini [2010-07-17 16:47:42 | 000,005,120 | ---- | C] () -- C:\WINDOWS\TBManage.dll [2010-07-17 16:45:51 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Kordianek\ntuser.ini [2010-07-17 16:45:49 | 000,786,432 | -H-- | C] () -- C:\Documents and Settings\Kordianek\NTUSER.DAT [2010-07-17 16:19:39 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD [2010-07-17 16:18:47 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2010-07-17 16:18:45 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls [2010-07-17 16:18:30 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls [2010-07-17 16:18:30 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls [2010-07-17 16:18:29 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-07-17 16:18:22 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls [2010-07-17 16:18:21 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-07-17 16:18:18 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe [2010-07-17 16:18:18 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe [2010-07-17 16:18:16 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex [2010-07-17 16:18:05 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-07-17 16:17:59 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex [2010-07-17 16:17:52 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll [2010-07-17 16:17:49 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls [2010-07-17 16:17:49 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls [2010-07-17 16:17:49 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls [2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls [2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls [2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls [2010-07-17 16:17:49 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls [2010-07-17 16:17:49 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls [2010-07-17 16:17:48 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls [2010-07-17 16:17:48 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls [2010-07-17 16:17:48 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls [2010-07-17 16:17:48 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls [2010-07-17 16:17:48 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls [2010-07-17 16:17:48 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls [2010-07-17 16:17:48 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls [2010-07-17 16:17:48 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls [2010-07-17 16:17:47 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls [2010-07-17 16:17:47 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls [2010-07-17 16:17:47 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls [2010-07-17 16:17:47 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls [2010-07-17 16:17:47 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls [2010-07-17 16:17:47 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls [2010-07-17 16:17:46 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls [2010-07-17 16:17:04 | 000,002,596 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT [2010-07-17 16:17:04 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2010-07-17 16:17:04 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2010-07-17 16:17:04 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS [2010-07-17 16:17:04 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT [2010-07-17 16:17:02 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb [2010-07-17 16:17:02 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb [2010-07-17 16:17:01 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx [2010-07-17 16:16:20 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest [2010-07-17 16:16:20 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-17 16:16:17 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-17 16:16:03 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex [2010-07-17 16:15:35 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp [2010-07-17 16:15:35 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp [2010-07-17 16:15:30 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf [2010-07-17 16:14:47 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat [2010-07-17 16:13:54 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Pod mikroskopem.bmp [2010-07-17 16:13:54 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Stiuk z Santa Fe.bmp [2010-07-17 16:13:54 | 000,026,680 | ---- | C] () -- C:\WINDOWS\Wachlarze.bmp [2010-07-17 16:13:54 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Nefryt.bmp [2010-07-17 16:13:54 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rododendron.bmp [2010-07-17 16:13:54 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Indiański pled.bmp [2010-07-17 16:13:53 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce [2010-07-17 16:13:53 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Bąbelki.bmp [2010-07-17 16:13:53 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Na rybkach.bmp [2010-07-17 16:13:53 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Kawa.bmp [2010-07-17 16:13:53 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce [2010-07-17 16:13:53 | 000,016,730 | ---- | C] () -- C:\WINDOWS\Puch.bmp [2010-07-17 16:13:53 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce [2010-07-17 16:13:53 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce [2010-07-17 16:13:53 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce [2010-07-17 16:13:53 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Niebieska koronka 16.bmp [2010-07-17 16:13:52 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce [2010-07-17 16:13:52 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce [2010-07-17 16:13:52 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce [2010-07-17 16:13:51 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h [2010-07-17 16:13:51 | 000,001,225 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd [2010-07-17 16:13:50 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h [2010-07-17 16:13:44 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc [color=#E56717]========== LOP Check ==========[/color] [2010-07-17 16:49:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\muvee Technologies [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT [2010-07-17 16:12:45 | 000,000,211 | -HS- | M] () -- C:\boot.ini [2006-03-02 14:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin [2010-07-17 16:17:04 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS [2010-07-17 16:58:48 | 000,000,197 | ---- | M] () -- C:\csb.log [2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2010-07-17 16:17:04 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2006-03-02 14:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM [2010-07-17 17:44:02 | 000,251,152 | RHS- | M] () -- C:\ntldr [2010-07-17 19:28:40 | 2145,386,496 | -HS- | M] () -- C:\pagefile.sys [2010-07-17 16:56:58 | 000,000,429 | ---- | M] () -- C:\RHDSetup.log [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys [2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys [2006-03-02 14:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0006\DriverFiles\i386\atapi.sys [2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0007\DriverFiles\i386\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys [2006-03-02 14:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2006-03-02 14:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys [2006-03-02 14:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2006-03-02 14:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys [2006-03-02 14:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe < End of report > [/log] [log]OTL Extras logfile created on: 2010-07-17 20:21:42 - Run 1 OTL by OldTimer - Version 3.1.28.0 Folder = H:\Pobierane Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 91,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 48,83 Gb Total Space | 42,56 Gb Free Space | 87,16% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded Drive H: | 416,93 Gb Total Space | 81,45 Gb Free Space | 19,53% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Computer Name: KORDIAN Current User Name: Kordianek Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-854245398-507921405-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- H:\Inne\Mozilla\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = Gigabyte Raid Configurer "{C9BED750-1211-4480-B1A5-718A3BE15525}" = REALTEK GbE & FE Ethernet PCI-E NIC Driver "{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}" = LiveUpdate Notice (Symantec Corporation) "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "AQQ" = WapSter AQQ "Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus "Gainward" = EXPERTool "Mozilla Firefox (3.6.6)" = Mozilla Firefox (3.6.6) "NVIDIA Drivers" = NVIDIA Drivers "Windows XP Service Pack" = Windows XP Service Pack 3 "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-07-17 10:50:15 | Computer Name = KORDIAN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd install.exe, wersja 0.0.0.0, moduł powodujący błąd install.exe, wersja 0.0.0.0, adres błędu 0x00021bb8. Error - 2010-07-17 12:30:42 | Computer Name = KORDIAN | Source = Automatic LiveUpdate Scheduler | ID = 101 Description = Error - 2010-07-17 12:38:59 | Computer Name = KORDIAN | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd 3a294_xp.exe, wersja 0.0.0.0, moduł powodujący błąd , wersja 0.0.0.0, adres błędu 0x00000000. [ System Events ] Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023 Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący błąd: %%126 Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023 Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący błąd: %%126 Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023 Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący błąd: %%126 Error - 2010-07-17 12:31:13 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7023 Description = Usługa Zarządzanie aplikacjami zakończyła działanie; wystąpił następujący błąd: %%126 Error - 2010-07-17 13:15:11 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-07-17 13:30:19 | Computer Name = KORDIAN | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-07-17 13:33:46 | Computer Name = KORDIAN | Source = Windows Update Agent | ID = 20 Description = Instalacja nie powiodła się: system Windows nie mógł zainstalować następującej aktualizacji, ponieważ wystąpił błąd 0x80070643: Internet Explorer 8 dla systemu Windows XP. Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842784 Description = Nie można odnaleźć zestawu zależnego Microsoft.VC90.CRT; ostatni błąd: Odnośny zestaw nie jest zainstalowany w tym systemie. Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842811 Description = Resolve Partial Assembly nie powiodło się dla Microsoft.VC90.CRT. Odpowiedni komunikat o błędzie: Odnośny zestaw nie jest zainstalowany w tym systemie. . Error - 2010-07-17 13:39:13 | Computer Name = KORDIAN | Source = SideBySide | ID = 16842811 Description = Generate Activation Context nie powiodło się dla C:\DOCUME~1\KORDIA~1\USTAWI~1\Temp\RarSFX0\redist.dll. Odpowiedni komunikat o błędzie: Operacja ukończona pomyślnie. . < End of report > [/log]
Sohei komentarz 17 lipca 2010 komentarz 17 lipca 2010 Wygląda dobrze. Dołącz jeszcze logi z RSIT oraz GMER: )
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.