x-kom hosting

Windows uptater w autostarcie, dysk staje przy uruchamianiu

jacmiszcz92
utworzono
utworzono (edytowane)

Witam. Mam Windowsa 7 x64. Prosiłbym o sprawdzenie loga z OTL, ponieważ:
Wczoraj znalazłem w autostarcie windows updater, ale usunąłem go [url="http://killbox.net/"]Killbox'em[/url], bo Unlocker nie jest kompatybilny z Windowsem 7 x64, a LockHunter nie dawał rady.
Chciałbym usunąć resztki Netlimiter'a. Zainstalowałem NetLimiter 3 beta 4 x64 i po 2 dniach wyskoczył błąd, że nie może uruchomić usługi. Usunąłem i po restarcie nie mogę zainstalować z powrotem [url="http://img188.imageshack.us/img188/8287/beztytuuvp.jpg"]>> BŁĄD <<[/url]. Net Limiter 2 jest niekompatybilny (krzyczał przy instalacji mimo trybu zgodność z XP), a poza tym po instalacji i tak nie pełnił swojej funkcji. Po ręcznym usunięciu drivera C:\Windows\System32\drivers\nlndis.sys i restarcie na komputerze nie ma internetu, mimo że aktualnie nie mam zainstalowanego NetLimitera. Zaraz Dam fotkę. Oczywiście jak instaluje/odinstalowuje wyłączam Kaperskiego IS 2010.
* 2 razy komputer normalnie się uruchamia, a za 3 zawiesza się całkowicie. Dzieje się to w momencie gdy powinno zniknąć logo ładowanie systemu Windows, a powinno mnie zalogować. Jestem jedynym użytkownikiem i mam włączoną opcję automatycznego logowania do systemu, mimo założonego hasła (netplwiz).
Minitor czasami się nie zapala lub gaśnie (rzadziej). Wiem, że to akurat ma najmniej wspólnego ;)

[log]OTL logfile created on: 21.10.2009 13:10:00
OTL by OldTimer - Version 3.0.21.0 Folder = C:\Users\Jacmiszcz92\Desktop
64bit- Ultimate Edition (Version = *) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: dd.MM.yyyy

4,00 Gb Total Physical Memory | 4,00 Gb Available Physical Memory | 100,00% Memory free
4,00 Gb Paging File | 4,00 Gb Available in Paging File | 100,00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 58,50 Gb Total Space | 41,33 Gb Free Space | 70,66% Space Free | Partition Type: NTFS
Drive D: | 407,17 Gb Total Space | 199,52 Gb Free Space | 49,00% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: *
Current User Name: Jacmiszcz92
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Include 64bit Scans
Company Name Whitelist: On
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard

[color="#E56717"]========== Processes (SafeList) ==========[/color]

PRC - [2009.10.21 13:03:05 | 00,521,216 | ---- | M] (OldTimer Tools) -- C:\Users\Jacmiszcz92\Desktop\OTL.exe
PRC - [2009.10.20 23:29:37 | 02,538,728 | ---- | M] (OrdinarySoft) -- D:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe
PRC - [2009.10.18 21:48:49 | 11,391,592 | ---- | M] (GG Network S.A.) -- D:\Program Files (x86)\Nowe Gadu-Gadu\gg.exe
PRC - [2009.08.31 16:56:26 | 00,077,824 | ---- | M] () -- D:\Program Files (x86)\Nowe Gadu-Gadu\spellchecker_gg.exe

[color="#E56717"]========== Win32 Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2009.07.14 03:41:59 | 00,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wwansvc.dll -- (WwanSvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:56 | 00,202,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wbiosrvc.dll -- (WbioSrvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:56 | 00,195,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\umrdp.dll -- (UmRdpService [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:56 | 00,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\umpo.dll -- (Power [Auto | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:55 | 00,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\themeservice.dll -- (Themes [Auto | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:54 | 00,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sppuinotify.dll -- (sppuinotify [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:54 | 00,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sensrsvc.dll -- (SensrSvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 01,361,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\peerdistsvc.dll -- (PeerDistSvc [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 00,327,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pnrpsvc.dll -- (PNRPsvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 00,327,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pnrpsvc.dll -- (p2pimsvc [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 00,187,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\provsvc.dll -- (HomeGroupProvider [On_Demand | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 00,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RpcEpMap.dll -- (RpcEptMapper [Unknown | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:53 | 00,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pnrpauto.dll -- (PNRPAutoReg [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:27 | 01,011,712 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:41:18 | 00,231,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ListSvc.dll -- (HomeGroupListener [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:54 | 01,127,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\FntCache.dll -- (FontCache [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:28 | 00,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp [Auto | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:28 | 00,291,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\defragsvc.dll -- (defragsvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:24 | 00,689,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\cscsvc.dll -- (CscService [Auto | Running])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:13 | 00,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\bthserv.dll -- (bthserv [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:10 | 00,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\bdesvc.dll -- (BDESVC [Unknown | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:05 | 00,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\AxInstSV.dll -- (AxInstSV [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:01 | 00,193,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:40:01 | 00,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\appidsvc.dll -- (AppIDSvc [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:39:56 | 01,525,248 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc [Disabled | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:39:51 | 01,503,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wbengine.exe -- (wbengine [On_Demand | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:39:28 | 03,524,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\sppsvc.exe -- (sppsvc [Auto | Stopped])
SRV:[b]64bit:[/b] - [2009.07.14 03:39:11 | 00,689,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\fxssvc.exe -- (Fax [On_Demand | Stopped])
SRV - [2009.07.14 05:20:14 | 00,000,000 | ---D | M] -- C:\Windows\Vss -- (VSS [On_Demand | Stopped])
SRV - [2009.07.14 05:20:14 | 00,000,000 | ---D | M] -- C:\Windows\SysWow64\Msdtc -- (MSDTC [Unknown | Stopped])
SRV - [2009.07.14 03:39:09 | 00,696,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehRecvr.exe -- (ehRecvr [On_Demand | Stopped])
SRV - [2009.07.14 03:39:09 | 00,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\ehome\ehsched.exe -- (ehSched [On_Demand | Stopped])
SRV - [2009.07.14 03:16:12 | 00,165,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\provsvc.dll -- (HomeGroupProvider [On_Demand | Running])
SRV - [2009.07.14 03:16:02 | 00,563,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\netlogon.dll -- (Netlogon [Disabled | Stopped])
SRV - [2009.07.14 03:15:35 | 00,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\keyiso.dll -- (KeyIso [On_Demand | Stopped])
SRV - [2009.07.14 03:15:11 | 00,253,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\dhcpcore.dll -- (Dhcp [Auto | Running])
SRV - [2009.07.13 22:30:11 | 00,061,056 | ---- | M] () -- C:\Windows\SysWow64\Wbem\vds.mof -- (vds [On_Demand | Stopped])
SRV - [2009.07.03 15:56:14 | 00,303,376 | ---- | M] (Kaspersky Lab) -- D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe -- (AVP [Auto | Running])
SRV - [2009.06.10 23:23:09 | 00,066,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32 [On_Demand | Stopped])
SRV - [2009.06.10 22:39:58 | 00,089,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64 [On_Demand | Stopped])
SRV - [2009.06.10 22:30:59 | 00,042,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0 [On_Demand | Stopped])
SRV - [2009.06.10 22:30:45 | 00,856,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc [Unknown | Stopped])
SRV - [2008.11.04 01:06:28 | 00,441,712 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv [On_Demand | Stopped])
SRV - [2008.10.23 13:57:11 | 00,063,040 | ---- | M] () -- D:\Program Files (x86)\Need for Speed Undercover\PB\PnkBstrA.exe -- (PnkBstrA [Disabled | Stopped])
SRV - [2006.10.26 13:03:08 | 00,145,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose [On_Demand | Stopped])

[color="#E56717"]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2009.10.18 20:48:41 | 00,330,768 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\DRIVERS\klif.sys -- (KLIF [System | Running])
DRV:[b]64bit:[/b] - [2009.09.28 20:22:22 | 00,032,896 | ---- | M] (Locktime Software) -- C:\Windows\SysNative\DRIVERS\nlndis.sys -- (NLNdisPT [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.09.28 20:22:22 | 00,032,896 | ---- | M] (Locktime Software) -- C:\Windows\SysNative\DRIVERS\nlndis.sys -- (NLNdisMP [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.09.23 12:23:02 | 06,180,832 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\DRIVERS\igdkmd64.sys -- (igfx [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:52:21 | 00,106,576 | ---- | M] (Advanced Micro Devices) -- C:\Windows\SysNative\DRIVERS\amdsata.sys -- (amdsata [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:52:21 | 00,028,752 | ---- | M] (Advanced Micro Devices) -- C:\Windows\SysNative\DRIVERS\amdxata.sys -- (amdxata [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:52:20 | 00,194,128 | ---- | M] (AMD Technologies Inc.) -- C:\Windows\SysNative\DRIVERS\amdsbs.sys -- (amdsbs [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:48:04 | 00,153,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Drivers\ksecpkg.sys -- (KSecPkg [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:48:04 | 00,065,600 | ---- | M] (LSI Corporation) -- C:\Windows\SysNative\DRIVERS\lsi_sas2.sys -- (LSI_SAS2 [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:48:04 | 00,014,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hwpolicy.sys -- (hwpolicy [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:47:49 | 00,055,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FsDepends.sys -- (FsDepends [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:47:48 | 00,077,888 | ---- | M] (Hewlett-Packard Company) -- C:\Windows\SysNative\DRIVERS\HpSAMD.sys -- (HpSAMD [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:56 | 00,022,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\wimmount.sys -- (WIMMount [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,217,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\vhdmp.sys -- (vhdmp [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,200,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\vmbus.sys -- (vmbus [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,046,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\vmstorfl.sys -- (storflt [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,036,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\vdrvroot.sys -- (vdrvroot [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,034,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\storvsc.sys -- (storvsc [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:55 | 00,024,656 | ---- | M] (Promise Technology) -- C:\Windows\SysNative\DRIVERS\stexstor.sys -- (stexstor [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:46 | 00,214,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdyboost.sys -- (rdyboost [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:45:45 | 00,050,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\pcw.sys -- (pcw [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:43:14 | 00,460,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Drivers\cng.sys -- (CNG [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 03:43:13 | 00,223,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\fvevol.sys -- (fvevol [Boot | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:17:46 | 00,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\rdpbus.sys -- (rdpbus [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:16:35 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdprefmp.sys -- (RDPREFMP [System | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:10:24 | 00,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\AgileVpn.sys -- (RasAgileVpn [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:09:26 | 00,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\wfplwf.sys -- (WfpLwf [System | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:08:13 | 00,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\ndiscap.sys -- (NdisCap [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:07:21 | 00,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\vwifibus.sys -- (vwifibus [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:07:13 | 00,227,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\1394ohci.sys -- (1394ohci [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:07:00 | 00,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\HdAudio.sys -- (HdAudAddService [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:06:52 | 00,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\umpass.sys -- (UmPass [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:06:24 | 00,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\mshidkmdf.sys -- (mshidkmdf [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:05:37 | 00,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WudfPf.sys -- (WudfPf [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:02:08 | 00,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\MTConfig.sys -- (MTConfig [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 02:00:34 | 00,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\CompositeBus.sys -- (CompositeBus [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.07.14 02:00:13 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\beep.sys -- (Beep [Disabled | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:52:39 | 00,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\appid.sys -- (AppID [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:50:17 | 00,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\scfilter.sys -- (scfilter [Unknown | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:42:58 | 00,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\vms3cap.sys -- (s3cap [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:42:44 | 00,021,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\VMBusHID.sys -- (VMBusHID [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:37:18 | 00,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\discache.sys -- (discache [System | Running])
DRV:[b]64bit:[/b] - [2009.07.14 01:31:06 | 00,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\HidBatt.sys -- (HidBatt [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:31:03 | 00,017,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\CmBatt.sys -- (CmBatt [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:27:17 | 00,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\acpipmi.sys -- (AcpiPmi [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.07.14 01:24:27 | 00,514,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\csc.sys -- (CSC [System | Running])
DRV:[b]64bit:[/b] - [2009.07.14 01:19:25 | 00,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DRIVERS\amdppm.sys -- (AmdPPM [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.06.15 14:01:06 | 00,156,688 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\DRIVERS\kl1.sys -- (kl1 [System | Running])
DRV:[b]64bit:[/b] - [2009.06.10 22:35:20 | 00,278,016 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\DRIVERS\e1e6032e.sys -- (e1express [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.06.10 22:34:33 | 03,286,016 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\DRIVERS\evbda.sys -- (ebdrv [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.06.10 22:34:28 | 00,468,480 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\DRIVERS\bxvbda.sys -- (b06bdrv [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.06.10 22:34:23 | 00,270,848 | ---- | M] (Broadcom Corporation) -- C:\Windows\SysNative\DRIVERS\b57nd60a.sys -- (b57nd60a [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.06.10 22:31:59 | 00,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2009.05.16 20:59:30 | 00,021,008 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\DRIVERS\klmouflt.sys -- (klmouflt [On_Demand | Running])
DRV:[b]64bit:[/b] - [2009.05.15 18:50:26 | 00,026,640 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\DRIVERS\klim6.sys -- (KLIM6 [System | Running])
DRV:[b]64bit:[/b] - [2009.03.27 01:23:54 | 00,019,432 | ---- | M] (Windows ® Codename Longhorn DDK provider) -- C:\Windows\SysNative\drivers\cpuz132_x64.sys -- (cpuz132 [Auto | Running])
DRV:[b]64bit:[/b] - [2009.02.05 20:45:32 | 00,015,208 | ---- | M] (deepxw) -- C:\Windows\SysNative\DRIVERS\tcpz-x64d.sys -- (TCPZ [On_Demand | Stopped])
DRV:[b]64bit:[/b] - [2008.12.15 20:41:52 | 00,038,416 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\DRIVERS\klbg.sys -- (KLBG [Boot | Running])
DRV:[b]64bit:[/b] - [2007.05.11 13:01:10 | 00,070,424 | ---- | M] (Intel Corporation) -- C:\Windows\SysNative\DRIVERS\HECIx64.sys -- (HECIx64 [On_Demand | Running])
DRV:[b]64bit:[/b] - [2005.03.29 01:30:38 | 00,008,192 | ---- | M] () -- C:\Windows\SysNative\DRIVERS\ASACPI.sys -- (MTsensor [On_Demand | Running])
DRV - [2009.10.18 20:01:04 | 00,000,000 | ---D | M] -- C:\Windows\CSC -- (CSC [System | Running])
DRV - [2009.07.14 03:19:10 | 00,019,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\wimmount.sys -- (WIMMount [On_Demand | Stopped])
DRV - [2009.07.14 03:16:02 | 00,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\netbios.dll -- (NetBIOS [System | Running])
DRV - [2009.06.10 23:28:14 | 00,001,088 | ---- | M] () -- C:\Windows\SysWow64\Wbem\mpsdrv.mof -- (mpsdrv [On_Demand | Stopped])
DRV - [2009.06.10 23:15:18 | 00,003,066 | ---- | M] () -- C:\Windows\SysWow64\Wbem\tcpip.mof -- (Tcpip [Boot | Running])
DRV - [2009.02.10 17:23:10 | 00,115,600 | ---- | M] (EZB Systems, Inc.) -- D:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys -- (ISODrive [System | Running])

[color="#E56717"]========== Standard Registry (SafeList) ==========[/color]


[color="#E56717"]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:NoAdd-ons
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:SecurityRisk
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]






IE - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm
IE - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
IE - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
IE - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000\S-1-5-21-1990260202-1457108093-2468016080-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\THBExt [2009.10.18 20:48:50 | 00,000,000 | ---D | M]


O1 HOSTS File: (824 bytes) - C:\Windows\SysNative\drivers\etc\Hosts
O2:[b]64bit:[/b] - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\ievkbd.dll (Kaspersky Lab)
O2:[b]64bit:[/b] - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\klwtbbho.dll (Kaspersky Lab)
O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll (Kaspersky Lab)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O4 - HKLM..\Run: [AVP] D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe (Kaspersky Lab)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000..\Run: [Nowe Gadu-Gadu] D:\Program Files (x86)\Nowe Gadu-Gadu\gg.exe (GG Network S.A.)
O4 - HKU\S-1-5-21-1990260202-1457108093-2468016080-1000..\Run: [VistaStartMenu] D:\Program Files (x86)\Vista Start Menu\VistaStartMenu.exe (OrdinarySoft)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: ForceActiveDesktopOn = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptbehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptbehaviorUser = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17
O8:[b]64bit:[/b] - Extra context menu item: Dodaj do blokowanych banerów - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm ()
O8:[b]64bit:[/b] - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O8 - Extra context menu item: Dodaj do blokowanych banerów - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm ()
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9:[b]64bit:[/b] - Extra Button: &Wirtualna klawiatura - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\klwtbbho.dll (Kaspersky Lab)
O9:[b]64bit:[/b] - Extra Button: &Sprawdzanie adresów - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: &Wirtualna klawiatura - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: &Sprawdzanie adresów - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_16)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_16)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files (x86)\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18:[b]64bit:[/b] - Protocol\Filter: - text/xml - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O18 - Protocol\Filter: - text/xml - C:\Pliki programów (x86)\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL File not found
O20:[b]64bit:[/b] - AppInit_DLLs: (D:\PROGRA~1\KASPER~1\KASPER~1\x64\sbhook64.dll) - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\x64\sbhook64.dll (Kaspersky Lab)
O20 - AppInit_DLLs: (D:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\mzvkbd3.dll (Kaspersky Lab)
O20 - AppInit_DLLs: (D:\PROGRA~1\KASPER~1\KASPER~1\sbhook.dll) - D:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2010\sbhook.dll (Kaspersky Lab)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - Reg Error: Key error. - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\klogon: DllName - Reg Error: Key error. - C:\Windows\SysNative\klogon.dll (Kaspersky Lab)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O30:[b]64bit:[/b] - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\Windows\SysWow64\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
[b]64bit:[/b] O35 - comfile [open] -- "%1" %* File not found
[b]64bit:[/b] O35 - exefile [open] -- "%1" %* File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found

[color="#E56717"]========== Files/Folders - Created Within 30 Days ==========[/color]

[2 C:\Windows\SysWow64\*.tmp files]
[2009.10.19 14:02:36 | 00,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty
[2009.10.18 20:48:45 | 00,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2009.10.18 20:45:30 | 00,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab Setup Files
[2009.10.19 00:34:49 | 00,000,000 | ---D | C] -- C:\ProgramData\Locktime
[2009.10.19 21:44:01 | 00,000,000 | ---D | C] -- C:\ProgramData\Media Center Programs
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Menu Start
[2009.10.19 14:58:11 | 00,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Pulpit
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Szablony
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\ProgramData\Ulubione
[2009.10.18 20:26:22 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming
[2009.10.18 22:04:56 | 00,000,000 | -HSD | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\.#
[2009.10.18 21:19:14 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Adobe
[2009.10.18 20:26:45 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Identities
[2009.10.19 20:14:28 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\InstallShield Installation Information
[2009.10.19 23:05:52 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Leadertech
[2009.10.20 01:12:10 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\LockHunter
[2009.10.19 23:40:55 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Locktime
[2009.10.18 21:19:14 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Macromedia
[2009.10.18 20:26:22 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Media Center Programs
[2009.10.18 22:16:05 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Media Player Classic
[2009.10.18 20:26:22 | 00,000,000 | --SD | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Microsoft
[2009.10.18 21:46:58 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Nowe Gadu-Gadu
[2009.10.20 00:48:26 | 00,000,000 | RH-D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\SecuROM
[2009.10.20 19:56:18 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\uTorrent
[2009.10.20 23:30:04 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Roaming\Vista Start Menu
[2009.10.18 20:26:22 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local
[2009.10.19 21:34:21 | 00,000,000 | -H-D | C] -- C:\Users\Jacmiszcz92\AppData\Local\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
[2009.10.19 14:03:09 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Adobe
[2009.10.18 20:58:13 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Apps
[2009.10.18 20:26:23 | 00,000,000 | -HSD | C] -- C:\Users\Jacmiszcz92\AppData\Local\Dane aplikacji
[2009.10.18 20:58:13 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Deployment
[2009.10.19 00:37:16 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\ElevatedDiagnostics
[2009.10.18 20:58:29 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Google
[2009.10.18 20:26:23 | 00,000,000 | -HSD | C] -- C:\Users\Jacmiszcz92\AppData\Local\Historia
[2009.10.19 13:52:01 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Locktime
[2009.10.18 20:26:22 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Microsoft
[2009.10.19 14:58:13 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Microsoft Help
[2009.10.18 20:26:22 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\Temp
[2009.10.18 20:26:23 | 00,000,000 | -HSD | C] -- C:\Users\Jacmiszcz92\AppData\Local\Temporary Internet Files
[2009.10.20 19:56:18 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\uTorrent
[2009.10.18 20:26:39 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\VirtualStore
[2009.10.19 09:00:53 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\AppData\Local\WindowsUpdate
[2009.10.19 14:02:35 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2009.10.19 15:03:02 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2009.10.19 18:48:19 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\EZB Systems
[2009.10.19 17:19:24 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2009.10.20 00:52:33 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies
[2009.10.19 17:19:29 | 00,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2009.10.19 17:14:54 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2009.10.19 23:15:28 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\KotOR2-PL
[2009.10.20 00:44:02 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
[2009.10.19 15:03:06 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Works
[2009.10.19 22:14:23 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft WSE
[2009.10.19 15:02:57 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2009.10.20 00:36:25 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL
[2009.10.19 17:19:29 | 00,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2009.10.19 17:19:27 | 00,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2009.10.19 14:59:10 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2009.10.21 00:02:02 | 00,000,000 | ---D | C] -- C:\Program Files\NetLimiter 3
[2009.10.19 17:19:40 | 00,000,000 | ---D | C] -- C:\Program Files\Realtek
[2009.10.21 13:03:05 | 00,521,216 | ---- | C] (OldTimer Tools) -- C:\Users\Jacmiszcz92\Desktop\OTL.exe
[2009.10.21 00:13:34 | 01,008,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll.backup
[2009.10.20 19:47:06 | 00,000,000 | ---D | C] -- C:\Users\Jacmiszcz92\Desktop\Klucze
[2009.10.20 01:41:56 | 00,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2009.10.20 00:53:32 | 02,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
[2009.10.20 00:53:32 | 01,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2009.10.20 00:53:32 | 00,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
[2009.10.20 00:53:32 | 00,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2009.10.20 00:53:31 | 05,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2009.10.20 00:53:31 | 05,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
[2009.10.20 00:53:31 | 04,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2009.10.20 00:53:31 | 04,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2009.10.20 00:53:31 | 02,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2009.10.20 00:53:31 | 02,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2009.10.20 00:53:31 | 00,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
[2009.10.20 00:53:31 | 00,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2009.10.20 00:53:31 | 00,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2009.10.20 00:53:31 | 00,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2009.10.20 00:53:31 | 00,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2009.10.20 00:53:31 | 00,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
[2009.10.20 00:53:31 | 00,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
[2009.10.20 00:53:31 | 00,069,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2009.10.20 00:53:31 | 00,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
[2009.10.20 00:53:31 | 00,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2009.10.20 00:53:30 | 01,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
[2009.10.20 00:53:30 | 01,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
[2009.10.20 00:53:30 | 00,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
[2009.10.20 00:53:30 | 00,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
[2009.10.20 00:53:30 | 00,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2009.10.20 00:53:30 | 00,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
[2009.10.20 00:53:30 | 00,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2009.10.20 00:53:30 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
[2009.10.20 00:53:30 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2009.10.20 00:53:30 | 00,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2009.10.20 00:53:30 | 00,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
[2009.10.20 00:53:30 | 00,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
[2009.10.20 00:53:30 | 00,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
[2009.10.20 00:53:30 | 00,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
[2009.10.20 00:53:30 | 00,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2009.10.20 00:53:30 | 00,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2009.10.20 00:53:30 | 00,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
[2009.10.20 00:53:30 | 00,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2009.10.20 00:53:29 | 04,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
[2009.10.20 00:53:29 | 03,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
[2009.10.20 00:52:33 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\AGEIA
[2009.10.20 00:49:38 | 00,000,000 | ---D | C] -- C:\Users\Public\Documents\microsoft
[2009.10.20 00:45:17 | 00,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
[2009.10.20 00:45:17 | 00,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2009.10.20 00:45:17 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2009.10.20 00:45:17 | 00,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
[2009.10.20 00:45:17 | 00,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
[2009.10.20 00:45:17 | 00,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2009.10.20 00:45:16 | 04,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
[2009.10.20 00:45:16 | 03,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2009.10.20 00:45:16 | 01,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
[2009.10.20 00:45:16 | 01,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2009.10.20 00:45:16 | 00,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
[2009.10.20 00:45:16 | 00,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2009.10.20 00:45:16 | 00,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
[2009.10.20 00:45:16 | 00,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2009.10.20 00:44:02 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2009.10.20 00:36:25 | 00,466,456 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2009.10.20 00:36:25 | 00,444,952 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2009.10.20 00:36:25 | 00,121,880 | ---- | C] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2009.10.20 00:36:25 | 00,109,080 | ---- | C] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2009.10.20 00:36:24 | 00,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
[2009.10.20 00:36:24 | 00,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2009.10.20 00:36:23 | 04,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
[2009.10.20 00:36:23 | 03,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2009.10.20 00:36:23 | 01,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
[2009.10.20 00:36:23 | 01,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2009.10.20 00:36:23 | 00,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
[2009.10.20 00:36:23 | 00,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2009.10.20 00:36:23 | 00,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2009.10.20 00:36:23 | 00,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
[2009.10.20 00:36:23 | 00,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
[2009.10.20 00:36:23 | 00,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2009.10.20 00:36:22 | 05,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
[2009.10.20 00:36:22 | 03,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2009.10.20 00:36:22 | 02,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
[2009.10.20 00:36:22 | 01,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2009.10.20 00:36:22 | 00,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
[2009.10.20 00:36:22 | 00,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
[2009.10.20 00:36:22 | 00,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
[2009.10.20 00:36:22 | 00,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2009.10.20 00:36:20 | 00,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
[2009.10.20 00:36:20 | 00,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2009.10.19 21:56:35 | 00,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
[2009.10.19 21:56:35 | 00,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
[2009.10.19 21:56:35 | 00,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2009.10.19 21:56:35 | 00,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2009.10.19 21:56:33 | 04,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
[2009.10.19 21:56:33 | 03,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2009.10.19 21:56:33 | 01,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
[2009.10.19 21:56:33 | 01,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2009.10.19 21:56:33 | 00,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
[2009.10.19 21:56:33 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2009.10.19 21:56:33 | 00,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
[2009.10.19 21:56:33 | 00,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2009.10.19 21:56:32 | 04,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2009.10.19 21:56:32 | 03,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2009.10.19 21:56:32 | 00,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
[2009.10.19 21:56:32 | 00,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2009.10.19 21:56:32 | 00,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
[2009.10.19 21:56:32 | 00,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
[2009.10.19 21:56:32 | 00,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
[2009.10.19 21:56:32 | 00,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2009.10.19 21:56:32 | 00,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2009.10.19 21:56:32 | 00,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2009.10.19 21:56:32 | 00,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
[2009.10.19 21:56:32 | 00,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2009.10.19 21:56:31 | 03,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
[2009.10.19 21:56:31 | 02,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2009.10.19 21:56:31 | 00,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
[2009.10.19 21:56:31 | 00,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2009.10.19 21:56:31 | 00,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
[2009.10.19 21:56:31 | 00,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2009.10.19 21:34:36 | 00,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2009.10.19 21:10:43 | 05,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2009.10.19 21:10:43 | 03,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2009.10.19 21:10:43 | 01,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
[2009.10.19 21:10:43 | 01,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2009.10.19 21:10:43 | 00,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
[2009.10.19 21:10:43 | 00,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2009.10.19 21:10:42 | 04,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
[2009.10.19 21:10:42 | 03,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2009.10.19 21:10:42 | 01,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
[2009.10.19 21:10:42 | 01,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2009.10.19 21:10:42 | 00,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
[2009.10.19 21:10:42 | 00,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2009.10.19 21:10:42 | 00,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
[2009.10.19 21:10:42 | 00,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
[2009.10.19 20:49:55 | 00,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2009.10.19 20:49:55 | 00,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2009.10.19 20:49:55 | 00,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2009.10.19 20:49:55 | 00,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2009.10.19 20:49:54 | 00,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2009.10.19 20:49:54 | 00,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2009.10.19 20:49:50 | 03,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2009.10.19 20:49:50 | 02,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2009.10.19 20:49:49 | 03,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2009.10.19 20:49:49 | 02,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2009.10.19 20:49:49 | 00,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2009.10.19 20:49:49 | 00,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2009.10.19 20:49:49 | 00,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2009.10.19 20:49:49 | 00,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2009.10.19 20:49:47 | 03,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2009.10.19 20:49:47 | 02,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2009.10.19 20:49:46 | 03,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2009.10.19 20:49:46 | 02,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2009.10.19 20:49:45 | 03,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2009.10.19 20:49:45 | 02,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2009.10.19 20:49:44 | 03,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2009.10.19 20:49:44 | 02,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2009.10.19 20:49:43 | 03,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2009.10.19 20:49:43 | 02,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2009.10.19 20:32:36 | 00,499,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcp71.dll
[2009.10.19 20:32:36 | 00,348,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msvcr71.dll
[2009.10.19 20:29:37 | 01,060,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc71.dll
[2009.10.19 19:49:08 | 00,245,760 | ---- | C] (Iterated Systems, Inc.) -- C:\Windows\SysWow64\DECO_32.DLL
[2009.10.19 19:39:27 | 00,030,056 | ---- | C] (deepxw) -- C:\Windows\SysNative\TcpzPropPage-x64.dll
[2009.10.19 19:39:27 | 00,015,208 | ---- | C] (deepxw) -- C:\Windows\SysNative\drivers\tcpz-x64d.sys
[2009.10.19 17:58:46 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\Lang
[2009.10.19 17:19:40 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2009.10.19 17:19:30 | 00,513,536 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2009.10.19 17:19:30 | 00,363,008 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2009.10.19 17:19:30 | 00,320,512 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2009.10.19 17:19:30 | 00,304,640 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2009.10.19 17:19:30 | 00,304,640 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2009.10.19 17:19:30 | 00,211,376 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2009.10.19 17:19:30 | 00,198,656 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2009.10.19 17:19:30 | 00,193,536 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2009.10.19 17:19:30 | 00,150,528 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2009.10.19 17:19:30 | 00,095,744 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2009.10.19 17:19:30 | 00,073,216 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2009.10.19 17:19:29 | 00,309,760 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2009.10.19 17:14:54 | 00,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2009.10.19 17:14:40 | 00,000,000 | ---D | C] -- C:\Intel
[2009.10.19 15:02:57 | 00,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2009.10.19 08:46:43 | 00,019,432 | ---- | C] (Windows ® Codename Longhorn DDK provider) -- C:\Windows\SysNative\drivers\cpuz132_x64.sys
[2009.10.18 22:55:52 | 00,000,000 | ---D | C] -- C:\Windows\pss
[2009.10.18 22:13:53 | 00,839,680 | ---- | C] (http://www.mp3dev.org/) -- C:\Windows\SysWow64\lameACM.acm
[2009.10.18 22:13:52 | 00,630,784 | ---- | C] (On2.com) -- C:\Windows\SysWow64\vp7vfw.dll
[2009.10.18 22:13:52 | 00,217,088 | ---- | C] (www.helixcommunity.org) -- C:\Windows\SysWow64\yv12vfw.dll
[2009.10.18 22:13:52 | 00,118,784 | ---- | C] (fccHandler) -- C:\Windows\SysWow64\ac3acm.acm
[2009.10.18 22:13:52 | 00,039,936 | ---- | C] (Disappearing Inc.) -- C:\Windows\SysWow64\huffyuv.dll
[2009.10.18 21:32:31 | 00,000,000 | -HSD | C] -- C:\Windows\Installer
[2009.10.18 21:18:20 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2009.10.18 20:59:42 | 00,000,000 | ---D | C] -- C:\Windows\Panther
[2009.10.18 20:48:41 | 00,330,768 | ---- | C] (Kaspersky Lab) -- C:\Windows\SysNative\drivers\klif.sys
[2009.10.18 20:44:43 | 00,000,000 | ---D | C] -- C:\Windows\SysWow64\x64
[2009.10.18 20:44:22 | 00,311,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msv1_0.dll
[2009.10.18 20:44:22 | 00,257,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msv1_0.dll
[2009.10.18 20:44:19 | 00,238,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MpSigStub.exe
[2009.10.18 20:43:38 | 26,575,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MRT.exe
[2009.10.18 20:42:32 | 14,629,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2009.10.18 20:42:31 | 11,406,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2009.10.18 20:42:31 | 01,975,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CertEnroll.dll
[2009.10.18 20:42:31 | 01,320,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CertEnroll.dll
[2009.10.18 20:42:31 | 00,982,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgkrnl.sys
[2009.10.18 20:42:30 | 12,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2009.10.18 20:42:30 | 12,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2009.10.18 20:42:30 | 02,868,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2009.10.18 20:42:30 | 02,613,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2009.10.18 20:42:30 | 00,148,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\t2embed.dll
[2009.10.18 20:42:30 | 00,108,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\t2embed.dll
[2009.10.18 20:42:30 | 00,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2009.10.18 20:42:30 | 00,071,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2009.10.18 20:40:29 | 09,272,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtml.dll
[2009.10.18 20:40:29 | 05,958,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtml.dll
[2009.10.18 20:40:28 | 00,082,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedsbs.dll
[2009.10.18 20:40:28 | 00,064,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedsbs.dll
[2009.10.18 20:40:12 | 00,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msasn1.dll
[2009.10.18 20:40:12 | 00,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msasn1.dll
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka
[2009.10.18 20:08:01 | 00,000,000 | -HSD | C] -- C:\Recovery
[2009.10.18 20:00:49 | 00,000,000 | ---D | C] -- C:\Windows\Prefetch
[2009.10.18 20:00:32 | 00,000,000 | -HSD | C] -- C:\System Volume Information
[2009.09.28 20:22:22 | 00,032,896 | ---- | C] (Locktime Software) -- C:\Windows\SysNative\drivers\nlndis.sys

[color="#E56717"]========== Files - Modified Within 30 Days ==========[/color]

[2 C:\Windows\SysWow64\*.tmp files]
[2009.10.21 13:00:41 | 00,014,592 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2009.10.21 13:00:41 | 00,014,592 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2009.10.21 12:58:41 | 00,117,703 | ---- | M] () -- C:\Users\Jacmiszcz92\Desktop\Bez tytułu.jpg
[2009.10.21 12:57:16 | 01,523,412 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2009.10.21 12:57:16 | 00,687,590 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2009.10.21 12:57:16 | 00,606,992 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2009.10.21 12:57:16 | 00,131,176 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2009.10.21 12:57:16 | 00,103,370 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2009.10.21 12:52:56 | 00,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT
[2009.10.21 12:52:52 | 00,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2009.10.21 12:49:41 | 01,539,734 | -H-- | M] () -- C:\Users\Jacmiszcz92\AppData\Local\IconCache.db
[2009.10.21 00:13:34 | 01,008,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2009.10.20 23:45:58 | 03,600,824 | ---- | M] () -- C:\Users\Jacmiszcz92\Desktop\nl3setup-x64.exe
[2009.10.20 00:36:25 | 00,466,456 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll
[2009.10.20 00:36:25 | 00,444,952 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll
[2009.10.20 00:36:25 | 00,121,880 | ---- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll
[2009.10.20 00:36:25 | 00,109,080 | ---- | M] (Portions © Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll
[2009.10.19 21:34:36 | 00,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll
[2009.10.19 21:10:49 | 00,103,736 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2009.10.19 21:10:45 | 00,669,184 | ---- | M] () -- C:\Windows\SysWow64\pbsvc.exe
[2009.10.19 21:10:45 | 00,066,872 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2009.10.19 20:55:43 | 00,000,049 | ---- | M] () -- C:\Windows\nfsc_patch.ini
[2009.10.19 18:02:05 | 00,018,180 | ---- | M] () -- C:\Windows\SysNative\results.xml
[2009.10.19 17:38:43 | 00,063,960 | ---- | M] () -- C:\Users\Jacmiszcz92\AppData\Local\GDIPFONTCACHEV1.DAT
[2009.10.19 17:38:05 | 00,297,328 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2009.10.19 14:59:52 | 00,002,178 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2009.10.18 20:55:14 | 00,143,387 | ---- | M] () -- C:\Windows\SysNative\drivers\klin.dat
[2009.10.18 20:55:14 | 00,104,987 | ---- | M] () -- C:\Windows\SysNative\drivers\klick.dat
[2009.10.18 20:51:03 | 00,604,140 | -HS- | M] () -- C:\Windows\SysNative\drivers\ISwift3.dat
[2009.10.18 20:48:41 | 00,330,768 | ---- | M] (Kaspersky Lab) -- C:\Windows\SysNative\drivers\klif.sys
[2009.10.18 20:04:14 | 00,067,908 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2009.10.18 20:04:14 | 00,067,908 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2009.10.18 20:02:51 | 00,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2009.10.13 20:00:00 | 00,085,504 | ---- | M] () -- C:\Windows\SysWow64\ff_vfw.dll
[2009.10.13 20:00:00 | 00,000,038 | ---- | M] () -- C:\Windows\avisplitter.ini
[2009.10.02 11:40:20 | 26,575,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MRT.exe
[2009.10.02 06:32:07 | 00,982,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgkrnl.sys
[2009.10.01 10:29:14 | 00,238,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MpSigStub.exe
[2009.09.28 20:22:22 | 00,032,896 | ---- | M] (Locktime Software) -- C:\Windows\SysNative\drivers\nlndis.sys
[2009.09.24 19:42:58 | 00,309,760 | ---- | M] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2009.09.23 12:45:22 | 00,003,936 | ---- | M] () -- C:\Windows\SysNative\iglhxs64.vp
[2009.09.23 11:45:12 | 01,991,936 | ---- | M] () -- C:\Windows\SysNative\iglhxa64.cpa
[2009.09.23 11:45:12 | 00,060,254 | ---- | M] () -- C:\Windows\SysNative\iglhxg64.vp
[2009.09.23 11:45:12 | 00,060,226 | ---- | M] () -- C:\Windows\SysNative\iglhxc64.vp
[2009.09.23 11:45:12 | 00,060,015 | ---- | M] () -- C:\Windows\SysNative\iglhxo64.vp
[2009.09.23 11:45:12 | 00,001,090 | ---- | M] () -- C:\Windows\SysNative\iglhxa64.vp

[color="#E56717"]========== Files - No Company Name ==========[/color]
[2009.10.21 12:58:41 | 00,117,703 | ---- | C] () -- C:\Users\Jacmiszcz92\Desktop\Bez tytułu.jpg
[2009.10.20 23:45:44 | 03,600,824 | ---- | C] () -- C:\Users\Jacmiszcz92\Desktop\nl3setup-x64.exe
[2009.10.19 21:10:55 | 00,103,736 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2009.10.19 21:10:45 | 00,669,184 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2009.10.19 21:10:45 | 00,066,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2009.10.19 20:55:24 | 00,000,049 | ---- | C] () -- C:\Windows\nfsc_patch.ini
[2009.10.19 18:02:05 | 00,018,180 | ---- | C] () -- C:\Windows\SysNative\results.xml
[2009.10.19 14:58:22 | 00,002,178 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2009.10.19 08:58:16 | 01,539,734 | -H-- | C] () -- C:\Users\Jacmiszcz92\AppData\Local\IconCache.db
[2009.10.18 22:13:53 | 00,178,176 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll
[2009.10.18 22:13:53 | 00,000,414 | ---- | C] () -- C:\Windows\SysWow64\lame_acm.xml
[2009.10.18 22:13:53 | 00,000,038 | ---- | C] () -- C:\Windows\avisplitter.ini
[2009.10.18 22:13:52 | 00,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll
[2009.10.18 22:13:52 | 00,205,824 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll
[2009.10.18 22:13:52 | 00,000,547 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll.manifest
[2009.10.18 22:13:50 | 00,085,504 | ---- | C] () -- C:\Windows\SysWow64\ff_vfw.dll
[2009.10.18 20:58:13 | 00,063,960 | ---- | C] () -- C:\Users\Jacmiszcz92\AppData\Local\GDIPFONTCACHEV1.DAT
[2009.10.18 20:51:03 | 00,604,140 | -HS- | C] () -- C:\Windows\SysNative\drivers\ISwift3.dat
[2009.10.18 20:49:03 | 00,143,387 | ---- | C] () -- C:\Windows\SysNative\drivers\klin.dat
[2009.10.18 20:49:03 | 00,104,987 | ---- | C] () -- C:\Windows\SysNative\drivers\klick.dat
[2009.10.18 20:02:51 | 00,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2009.09.23 12:45:22 | 00,003,936 | ---- | C] () -- C:\Windows\SysNative\iglhxs64.vp
[2009.09.23 11:45:12 | 01,991,936 | ---- | C] () -- C:\Windows\SysNative\iglhxa64.cpa
[2009.09.23 11:45:12 | 00,060,254 | ---- | C] () -- C:\Windows\SysNative\iglhxg64.vp
[2009.09.23 11:45:12 | 00,060,226 | ---- | C] () -- C:\Windows\SysNative\iglhxc64.vp
[2009.09.23 11:45:12 | 00,060,015 | ---- | C] () -- C:\Windows\SysNative\iglhxo64.vp
[2009.09.23 11:45:12 | 00,001,090 | ---- | C] () -- C:\Windows\SysNative\iglhxa64.vp
[2009.07.14 06:54:24 | 00,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini
[2009.07.14 06:54:24 | 00,000,174 | -HS- | C] () -- C:\Program Files (x86)\desktop.ini
[2009.07.14 04:34:57 | 00,000,403 | ---- | C] () -- C:\Windows\win.ini
[2009.07.14 04:34:57 | 00,000,219 | ---- | C] () -- C:\Windows\system.ini
[2009.07.14 01:42:10 | 00,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009.07.13 23:03:59 | 00,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2009.06.19 20:06:22 | 00,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll
[2009.06.19 20:06:22 | 00,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll
[2008.10.22 05:29:06 | 00,173,550 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat

[color="#E56717"]========== LOP Check ==========[/color]

[2009.07.14 20:09:06 | 00,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming
[2009.07.14 20:09:06 | 00,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\Media Center Programs
[2009.07.14 20:09:06 | 00,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming
[2009.07.14 20:09:06 | 00,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\Media Center Programs
[2009.10.20 23:30:04 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming
[2009.10.20 22:52:32 | 00,000,000 | -HSD | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\.#
[2009.10.19 23:05:52 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\Leadertech
[2009.10.20 01:12:11 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\LockHunter
[2009.10.19 23:40:55 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\Locktime
[2009.07.14 20:09:06 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\Media Center Programs
[2009.10.19 08:42:09 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\Nowe Gadu-Gadu
[2009.10.20 00:48:26 | 00,000,000 | RH-D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\SecuROM
[2009.10.20 20:01:43 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\uTorrent
[2009.10.20 23:53:59 | 00,000,000 | ---D | M] -- C:\Users\Jacmiszcz92\AppData\Roaming\Vista Start Menu
[2009.10.21 12:52:56 | 00,000,006 | -H-- | M] () -- C:\Windows\Tasks\SA.DAT
[2009.07.14 07:08:49 | 00,008,302 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

[color="#E56717"]========== Purity Check ==========[/color]


< End of report >
[/log]

Psycholandia
komentarz
komentarz

W okienko OTL wklej poniższy skrypt i klik na Run Fix:

[code]:Processes
explorer.exe

:OTL
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found
O13 - gopher Prefix: missing
O13 - gopher Prefix: missing
O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found.

:Files
C:\Program Files\NetLimiter 3
C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115- 601632D005A0
C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115- 601632D005A0
C:\ProgramData\ntuser.pol

:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Przeskanuj komputer tym: [url="http://www.programosy.pl/program,malwarebytes-anti-malware.html"]Malware[/url] usuń wszystko co znajdzie i daj loga po kasowaniu (loga z Malware)

jacmiszcz92
komentarz
komentarz (edytowane)

[color="#1C2837"][color="#000000"][font="Arial"][size="2"]Andziorka :D Kiedyś nie sprawdzałaś logów ;) Ok zrobię. A Malwarem całego kompa czy C:\? Całego potrwa wieki [/size][/font][font="Arial"] [/font][font="Arial"][size="2"]Fotka po przeniesieniu do kosza C:\Windows\System32\drivers\nlndis.sys i restarcie [/size][/font][font="Arial"] [/font][url="http://img137.imageshack.us/img137/2554/beztytuudo.jpg"][font="Arial"][size="2"]>> KLIK <<[/size][/font][/url][font="Arial"] [/font][font="Arial"][size="2"]Teraz mam internet bo driver jest z powrotem w ścieżce.[/size][/font][font="Arial"] [/font][font="Arial"][size="2"]Aha format C:\ robiłem chyba w poniedziałek [/size][/font][/color][/color]

Psycholandia
komentarz
komentarz

Ale teraz sprawdzam.
Skan Malware wszystkich partycji.

jacmiszcz92
komentarz
komentarz
:)
Zrobiłem restart i znowu komputer się zawiesił przy uruchamianiu. Nie wyskakuje żaden błąd ani nic nie piszczy. Nawet Num lock'a nie da się wyłączyć, nie mruga podstawka ładująca i odbierająca sygnał bezprzewodowej myszki gdy ruszam gryzoniem.

Malwarebytes[log]Malwarebytes' Anti-Malware 1.41
Wersja bazy definicji: 3005
Windows 6.1.7600


21.10.2009 14:43:22
mbam-log-2009-10-21 (14-43-22).txt


Typ skanowania: Pełne skanowanie (C:\|D:\|)
Przeskanowane obiekty: 241723
Upłynęło: 34 minute(s), 47 second(s)

Zainfekowane pliki rejestru: 1


Zainfekowane pliki rejestru:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoActiveDesktopChanges (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.[/log]


Chciałbym dodać jeszcze, że czasami jak klikam PPM w oknie jakiegoś folderu to okno nagle się zamyka. Nie ma znaczenia na co kliknę. Przerywa to kopiowanie plików itd. Nigdy czegoś takiego nie miałem.
Zaraz edytuję i dam loga z OTL.
Psycholandia
komentarz
komentarz

Problem z NetLimiter znikł?
Komputer jest czysty jeśli o wirusy chodzi

  • Dobra wypowiedź 1
jacmiszcz92
komentarz
komentarz (edytowane)

Nie wiem, jeszcze nie zainstalowałem ponownie. Fajnie
log z OTL:
[log]All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== OTL ==========
Registry value HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
Registry value HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\RunOnce\\mctadmin deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\URL\Prefixes\\gopher|:gopher:// /E : value set successfully!
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\\VMApplet:/pagefile deleted successfully.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
========== FILES ==========
C:\Program Files\NetLimiter 3 moved successfully.
File\Folder C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115- not found.
File\Folder 601632D005A0 not found.
File\Folder C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115- not found.
File\Folder 601632D005A0 not found.
C:\ProgramData\ntuser.pol moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Jacmiszcz92
File delete failed. C:\Users\Jacmiszcz92\AppData\Local\Temp\FXSAPIDebugLogFile.txt scheduled to be deleted on reboot.
->Temp folder emptied: 432072 bytes
File delete failed. C:\Users\Jacmiszcz92\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
->Temporary Internet Files folder emptied: 3505393 bytes
->Java cache emptied: 25493434 bytes
->Google Chrome cache emptied: 5050736 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 1610800 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
Windows Temp folder emptied: 41119815 bytes
RecycleBin emptied: 37786641 bytes

Total Files Cleaned = 109,67 mb


OTL by OldTimer - Version 3.0.21.0 log created on 10212009_155253

Files\Folders moved on Reboot...
C:\Users\Jacmiszcz92\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully.

Registry entries deleted on Reboot...
[/log]
A co zrobić z tym zawieszającym się kompem? Przed formatem śmigał elegancko na x32 bitach. Miałem wtedy jeszcze 4GB ramu a teraz mam 6GB w tym 2x2GB A-Data w dualu i 2x1GB No-name.

Psycholandia
komentarz
komentarz

Uruchom OTL i klik na CleanUP.
Czysto.

jacmiszcz92
komentarz
komentarz (edytowane)

Zrobiłem. Dziękuje [img]http://www.forumpc.pl/public/style_emoticons/default/cmok.gif[/img]
Uruchomiłem go ponownie, więc jest to drugie uruchomienie od czasu ostatniej zawieszki. Jak go teraz zamkne/zresetuje to przy następnym uruchamianiu znowu się zawiesi. Co mam z tym zrobić. Zawieszka zdarza się zawsze co 3 uruchomienia.
edit@: Fajny avek ;)

Psycholandia
komentarz
komentarz

Co się zawiesi? Opisz dokładnie

jacmiszcz92
komentarz
komentarz

[quote name='jacmiszcz92' date='21 październik 2009 - 13:35 ' timestamp='1256124932' post='884442']
* 2 razy komputer normalnie się uruchamia, a za 3 zawiesza się całkowicie. Dzieje się to w momencie gdy powinno zniknąć logo ładowanie systemu Windows, a powinno mnie zalogować. Jestem jedynym użytkownikiem i mam włączoną opcję automatycznego logowania do systemu, mimo założonego hasła (netplwiz).[/quote]

O dziwo się nie zawiesił a to było już 3 uruchomienie. Mam nadzieję, że już przestał. Można zamknąć, jak coś to będę pisał w >Windows 7

Psycholandia
komentarz
komentarz

To już raczej nie jest problem wirusowy, tylko samego systemu albo sprzętu. W razie dalszych problemów musisz napisać w innym dziale.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.