Gość utworzono 3 kwietnia 2010 utworzono 3 kwietnia 2010 Witam! Ostatnimi czasy przy uruchamianiu komputera, na starcie systemu natykam się na pewny komunikat: "system nie może odnależć ścieżki do sshnas21.dll". Tutaj zamieszczam log z OTL: [log]OTL logfile created on: 2010-04-03 12:23:19 - Run 1 OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\Dawid\Desktop 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 34,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 54,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 149,04 Gb Total Space | 65,47 Gb Free Space | 43,93% Space Free | Partition Type: NTFS Drive D: | 148,65 Gb Total Space | 27,44 Gb Free Space | 18,46% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: TOSHIBA Current User Name: Dawid Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Include 64bit Scans Company Name Whitelist: On Skip Microsoft Files: On File Age = 90 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe PRC - [2010-04-02 23:38:09 | 000,182,272 | ---- | M] () -- C:\Windows\Lluhua.exe PRC - [2010-03-18 06:01:49 | 000,136,176 | ---- | M] (Google Inc.) -- C:\Users\Dawid\AppData\Local\Google\Update\1.2.183.23\GoogleCrashHandler.exe PRC - [2010-03-18 02:43:38 | 000,835,952 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe PRC - [2010-01-20 14:05:04 | 012,067,432 | ---- | M] (GG Network S.A.) -- C:\Program Files (x86)\Gadu-Gadu 10\gg.exe PRC - [2009-08-12 11:30:42 | 006,203,296 | ---- | M] (TOSHIBA) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\TOPI.exe PRC - [2009-07-28 21:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe PRC - [2009-07-14 20:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe PRC - [2009-07-14 03:14:16 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ctfmon.exe PRC - [2009-07-13 16:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe PRC - [2009-03-10 19:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe PRC - [2009-01-13 22:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe PRC - [2007-09-02 14:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe MOD - [2009-07-14 03:17:51 | 001,289,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll MOD - [2009-07-14 03:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll MOD - [2009-07-14 03:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll MOD - [2009-07-14 03:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll MOD - [2009-07-14 03:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll MOD - [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll MOD - [2009-07-14 03:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll MOD - [2009-07-14 03:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll MOD - [2009-07-14 03:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll MOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samlib.dll MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samcli.dll MOD - [2009-07-14 03:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll MOD - [2009-07-14 03:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll MOD - [2009-07-14 03:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll MOD - [2009-07-14 03:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll MOD - [2009-07-14 03:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\netutils.dll MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll MOD - [2009-07-14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll MOD - [2009-07-14 03:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll MOD - [2009-07-14 03:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll MOD - [2009-07-14 03:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv MOD - [2009-07-14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll MOD - [2009-07-14 03:11:24 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll MOD - [2009-07-14 03:11:23 | 000,836,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll MOD - [2009-07-14 03:11:23 | 000,662,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll MOD - [2009-07-14 03:11:23 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll MOD - [2009-07-14 03:11:21 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll MOD - [2009-07-14 03:11:21 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll MOD - [2007-09-02 14:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2009-08-27 14:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service) SRV:[b]64bit:[/b] - [2009-08-21 16:36:00 | 004,924,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc) SRV:[b]64bit:[/b] - [2009-08-18 03:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:[b]64bit:[/b] - [2009-08-05 15:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv) SRV:[b]64bit:[/b] - [2009-08-04 12:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv) SRV:[b]64bit:[/b] - [2009-08-03 19:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service) SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv) SRV:[b]64bit:[/b] - [2009-07-14 03:41:59 | 000,229,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wwansvc.dll -- (WwanSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbiosrvc.dll -- (WbioSrvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,163,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpo.dll -- (Power) SRV:[b]64bit:[/b] - [2009-07-14 03:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes) SRV:[b]64bit:[/b] - [2009-07-14 03:41:54 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sppuinotify.dll -- (sppuinotify) SRV:[b]64bit:[/b] - [2009-07-14 03:41:54 | 000,029,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sensrsvc.dll -- (SensrSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (PNRPsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (p2pimsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\provsvc.dll -- (HomeGroupProvider) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,067,072 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\SysNative\RpcEpMap.dll -- (RpcEptMapper) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\pnrpauto.dll -- (PNRPAutoReg) SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009-07-14 03:41:18 | 000,231,936 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ListSvc.dll -- (HomeGroupListener) SRV:[b]64bit:[/b] - [2009-07-14 03:41:08 | 000,451,072 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\inetsrv\iisw3adm.dll -- (WAS) SRV:[b]64bit:[/b] - [2009-07-14 03:41:08 | 000,451,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\iisw3adm.dll -- (W3SVC) SRV:[b]64bit:[/b] - [2009-07-14 03:40:55 | 000,349,184 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\ftpsvc.dll -- (ftpsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:54 | 001,127,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FntCache.dll -- (FontCache) SRV:[b]64bit:[/b] - [2009-07-14 03:40:28 | 000,314,368 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp) SRV:[b]64bit:[/b] - [2009-07-14 03:40:28 | 000,291,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\defragsvc.dll -- (defragsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:13 | 000,083,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\bthserv.dll -- (bthserv) SRV:[b]64bit:[/b] - [2009-07-14 03:40:10 | 000,100,864 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\SysNative\bdesvc.dll -- (BDESVC) SRV:[b]64bit:[/b] - [2009-07-14 03:40:05 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AxInstSv.dll -- (AxInstSV) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,065,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\apphostsvc.dll -- (AppHostSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,032,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appidsvc.dll -- (AppIDSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:39:51 | 001,503,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbengine.exe -- (wbengine) SRV:[b]64bit:[/b] - [2009-07-14 03:39:28 | 003,524,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\sppsvc.exe -- (sppsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:39:11 | 000,689,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FXSSVC.exe -- (Fax) SRV - [2009-08-21 16:47:14 | 030,510,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) SRV - [2009-08-17 11:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo) SRV - [2009-08-10 20:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService) SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO) SRV - [2009-07-14 20:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service) SRV - [2009-07-14 05:20:14 | 000,000,000 | ---D | M] [On_Demand | Stopped] -- C:\Windows\Vss -- (VSS) SRV - [2009-07-14 05:20:14 | 000,000,000 | ---D | M] [Unknown | Stopped] -- C:\Windows\SysWOW64\Msdtc -- (MSDTC) SRV - [2009-07-14 03:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC) SRV - [2009-07-14 03:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 03:14:53 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc) SRV - [2009-07-13 22:30:11 | 000,061,056 | ---- | M] () [On_Demand | Stopped] -- C:\Windows\SysWOW64\wbem\vds.mof -- (vds) SRV - [2009-06-10 22:39:58 | 000,089,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64) SRV - [2009-03-10 19:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service) SRV - [2008-12-22 12:52:16 | 000,104,944 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2010-03-20 00:28:08 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2010-02-12 21:30:26 | 000,145,360 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV:[b]64bit:[/b] - [2009-11-09 05:28:08 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu) DRV:[b]64bit:[/b] - [2009-08-18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV:[b]64bit:[/b] - [2009-08-13 09:18:46 | 000,439,808 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187Se.sys -- (RTL8187Se) DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst) DRV:[b]64bit:[/b] - [2009-07-30 18:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV:[b]64bit:[/b] - [2009-07-24 16:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64) DRV:[b]64bit:[/b] - [2009-07-20 18:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP) DRV:[b]64bit:[/b] - [2009-07-14 16:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,153,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ksecpkg.sys -- (KSecPkg) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,014,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hwpolicy.sys -- (hwpolicy) DRV:[b]64bit:[/b] - [2009-07-14 03:47:49 | 000,055,376 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fsdepends.sys -- (FsDepends) DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2009-07-14 03:45:56 | 000,022,096 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wimmount.sys -- (WIMMount) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,217,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhdmp.sys -- (vhdmp) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,036,432 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vdrvroot.sys -- (vdrvroot) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-14 03:45:46 | 000,214,096 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\rdyboost.sys -- (rdyboost) DRV:[b]64bit:[/b] - [2009-07-14 03:45:45 | 000,050,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pcw.sys -- (pcw) DRV:[b]64bit:[/b] - [2009-07-14 03:43:14 | 000,460,504 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cng.sys -- (CNG) DRV:[b]64bit:[/b] - [2009-07-14 03:43:13 | 000,223,448 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fvevol.sys -- (fvevol) DRV:[b]64bit:[/b] - [2009-07-14 02:17:46 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpbus.sys -- (rdpbus) DRV:[b]64bit:[/b] - [2009-07-14 02:16:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPREFMP.sys -- (RDPREFMP) DRV:[b]64bit:[/b] - [2009-07-14 02:10:24 | 000,060,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV:[b]64bit:[/b] - [2009-07-14 02:09:26 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\wfplwf.sys -- (WfpLwf) DRV:[b]64bit:[/b] - [2009-07-14 02:08:13 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndiscap.sys -- (NdisCap) DRV:[b]64bit:[/b] - [2009-07-14 02:07:22 | 000,059,904 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vwififlt.sys -- (vwififlt) DRV:[b]64bit:[/b] - [2009-07-14 02:07:21 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vwifibus.sys -- (vwifibus) DRV:[b]64bit:[/b] - [2009-07-14 02:07:13 | 000,227,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\1394ohci.sys -- (1394ohci) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,350,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HdAudio.sys -- (HdAudAddService) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,184,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbvideo.sys -- (usbvideo) Urządzenie wideo USB (WDM) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,118,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthpan.sys -- (BthPan) Urządzenie Bluetooth (sieć osobista) DRV:[b]64bit:[/b] - [2009-07-14 02:06:57 | 000,551,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthport.sys -- (BTHPORT) DRV:[b]64bit:[/b] - [2009-07-14 02:06:56 | 000,158,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rfcomm.sys -- (RFCOMM) Urządzenie Bluetooth (Protokół TDI RFCOMM) DRV:[b]64bit:[/b] - [2009-07-14 02:06:53 | 000,041,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthenum.sys -- (BthEnum) DRV:[b]64bit:[/b] - [2009-07-14 02:06:52 | 000,079,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BTHUSB.SYS -- (BTHUSB) DRV:[b]64bit:[/b] - [2009-07-14 02:06:52 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\umpass.sys -- (UmPass) DRV:[b]64bit:[/b] - [2009-07-14 02:06:24 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidkmdf.sys -- (mshidkmdf) DRV:[b]64bit:[/b] - [2009-07-14 02:05:37 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WUDFPf.sys -- (WudfPf) DRV:[b]64bit:[/b] - [2009-07-14 02:02:08 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MTConfig.sys -- (MTConfig) DRV:[b]64bit:[/b] - [2009-07-14 02:00:34 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CompositeBus.sys -- (CompositeBus) DRV:[b]64bit:[/b] - [2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\beep.sys -- (Beep) DRV:[b]64bit:[/b] - [2009-07-14 01:52:39 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\appid.sys -- (AppID) DRV:[b]64bit:[/b] - [2009-07-14 01:50:17 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\SysNative\drivers\scfilter.sys -- (scfilter) DRV:[b]64bit:[/b] - [2009-07-14 01:37:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\discache.sys -- (discache) DRV:[b]64bit:[/b] - [2009-07-14 01:31:06 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidbatt.sys -- (HidBatt) DRV:[b]64bit:[/b] - [2009-07-14 01:31:03 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CmBatt.sys -- (CmBatt) DRV:[b]64bit:[/b] - [2009-07-14 01:27:17 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipmi.sys -- (AcpiPmi) DRV:[b]64bit:[/b] - [2009-07-14 01:19:25 | 000,060,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdppm.sys -- (AmdPPM) DRV:[b]64bit:[/b] - [2009-07-02 15:55:38 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter) DRV:[b]64bit:[/b] - [2009-06-22 18:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect) DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr) DRV:[b]64bit:[/b] - [2009-06-19 20:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL) DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2009-05-20 19:04:56 | 000,202,016 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService) DRV:[b]64bit:[/b] - [2009-05-05 01:30:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO) DRV:[b]64bit:[/b] - [2008-02-12 04:59:18 | 000,297,496 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\VMM.sys -- (vmm) DRV:[b]64bit:[/b] - [2008-02-05 02:50:42 | 000,079,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMNetSrv.sys -- (VPCNetS2) DRV:[b]64bit:[/b] - [2006-09-30 12:36:14 | 000,013,008 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pstrip64.sys -- (PStrip64) DRV - [2010-03-28 16:11:09 | 000,222,160 | ---- | M] (TrueCrypt Foundation) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\truecrypt.sys -- (truecrypt) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 03:16:02 | 000,014,336 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysWOW64\netbios.dll -- (NetBIOS) DRV - [2009-06-10 23:28:14 | 000,001,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\wbem\mpsdrv.mof -- (mpsdrv) DRV - [2009-06-10 23:15:18 | 000,003,066 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysWOW64\wbem\tcpip.mof -- (Tcpip) DRV - [2008-04-30 21:05:04 | 000,115,912 | ---- | M] (DigitalPeers) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\dptrackerd.sys -- (dptrackerd) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.Google.com IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Pomocnik rejestracji usługi Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH) O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH) O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.) O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA) O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation) O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [ALLUpdate] C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [Canaveral] C:\Windows\SysWow64\sshnas21.DLL () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [RocketDock] C:\Program Files (x86)\RocketDock\RocketDock.exe () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [YVIBBBHA8C] C:\Users\Dawid\AppData\Local\Temp\Lsr.exe () O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - Startup: C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.40.1 8.8.8.8 O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28:[b]64bit:[/b] - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) O30:[b]64bit:[/b] - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation) O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{1de419f6-33fb-11df-a2c0-002622e644d3}\Shell - "" = AutoRun O33 - MountPoints2\{1de419f6-33fb-11df-a2c0-002622e644d3}\Shell\AutoRun\command - "" = F:\AUTOSTARTER.EXE -- File not found O33 - MountPoints2\F\Shell - "" = AutoRun O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\Autorun.exe -- File not found O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\autorun.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs:[b]64bit:[/b] Ias - C:\Windows\SysNative\ias [2009-07-14 05:20:14 | 000,000,000 | ---D | M] NetSvcs:[b]64bit:[/b] Irmon - C:\Windows\SysNative\irmon.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] Wmi - C:\Windows\SysNative\wmi.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] Themes - C:\Windows\SysNative\themeservice.dll (Microsoft Corporation) NetSvcs:[b]64bit:[/b] BDESVC - C:\Windows\SysNative\bdesvc.dll (Microsoft Corporation) NetSvcs: Ias - C:\Windows\SysWOW64\ias.dll (Microsoft Corporation) NetSvcs: Wmi - C:\Windows\SysWOW64\wmi.dll (Microsoft Corporation) MsConfig:64bit - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Monitor.lnk - C:\PROGRA~2\TOSHIBA\BLUETO~1\BtMon2.exe - File not found MsConfig:64bit - StartUpFolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^OfficeSAS.lnk - C:\PROGRA~2\MICROS~2\Office14\OFFICE~1\OFFICE~2.EXE - (Microsoft Corporation) MsConfig:64bit - StartUpFolder: C:^Users^Dawid^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^PowerStrip.lnk - C:\PROGRA~2\POWERS~1\PStrip.exe - (EnTech Taiwan) MsConfig:64bit - StartUpReg: [b]Adobe Reader Speed Launcher[/b] - hkey= - key= - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) MsConfig:64bit - StartUpReg: [b]BCSSync[/b] - hkey= - key= - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe (Microsoft Corporation) MsConfig:64bit - StartUpReg: [b]DAEMON Tools Lite[/b] - hkey= - key= - C:\Program Files (x86)\Nowy folder\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) MsConfig:64bit - StartUpReg: [b]EA Core[/b] - hkey= - key= - C:\Program Files (x86)\Electronic Arts\EADM\Core.exe File not found MsConfig:64bit - StartUpReg: [b]Gadu-Gadu 10[/b] - hkey= - key= - C:\Program Files (x86)\Gadu-Gadu 10\gg.exe (GG Network S.A.) MsConfig:64bit - StartUpReg: [b]IPLA![/b] - hkey= - key= - C:\Program Files (x86)\ipla\ipla.exe (Redefine Sp z o.o.) MsConfig:64bit - StartUpReg: [b]mcagent_exe[/b] - hkey= - key= - C:\Program Files (x86)\McAfee.com\Agent\mcagent.exe File not found MsConfig:64bit - StartUpReg: [b]PWRISOVM.EXE[/b] - hkey= - key= - C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.) MsConfig:64bit - StartUpReg: [b]RGSC[/b] - hkey= - key= - C:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe File not found MsConfig:64bit - StartUpReg: [b]Steam[/b] - hkey= - key= - C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) MsConfig:64bit - StartUpReg: [b]WinampAgent[/b] - hkey= - key= - C:\Program Files (x86)\Winamp\winampa.exe () MsConfig:64bit - State: "startup" - Reg Error: Key error. SafeBootMin:[b]64bit:[/b] AppMgmt - Service SafeBootMin:[b]64bit:[/b] Base - Driver Group SafeBootMin:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] Boot file system - Driver Group SafeBootMin:[b]64bit:[/b] File system - Driver Group SafeBootMin:[b]64bit:[/b] Filter - Driver Group SafeBootMin:[b]64bit:[/b] HelpSvc - Service SafeBootMin:[b]64bit:[/b] mcmscsvc - Service SafeBootMin:[b]64bit:[/b] MCODS - Service SafeBootMin:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootMin:[b]64bit:[/b] PNP Filter - Driver Group SafeBootMin:[b]64bit:[/b] Power - C:\Windows\SysNative\umpo.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] Primary disk - Driver Group SafeBootMin:[b]64bit:[/b] RpcEptMapper - C:\Windows\SysNative\RpcEpMap.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] sacsvr - Service SafeBootMin:[b]64bit:[/b] SCSI Class - Driver Group SafeBootMin:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootMin:[b]64bit:[/b] vmms - Service SafeBootMin:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] WudfPf - C:\Windows\SysNative\drivers\WUDFPf.sys (Microsoft Corporation) SafeBootMin:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootMin: AppMgmt - Service SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: HelpSvc - Service SafeBootMin: mcmscsvc - Service SafeBootMin: MCODS - Service SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: sacsvr - Service SafeBootMin: SCSI Class - Driver Group SafeBootMin: System Bus Extender - Driver Group SafeBootMin: VDS - C:\Windows\SysWOW64\wbem\vds.mof () SafeBootMin: vmms - Service SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootMin: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootMin: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet:[b]64bit:[/b] AppMgmt - Service SafeBootNet:[b]64bit:[/b] Base - Driver Group SafeBootNet:[b]64bit:[/b] Boot Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] Boot file system - Driver Group SafeBootNet:[b]64bit:[/b] Dhcp - C:\Windows\SysNative\dhcpcore.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] File system - Driver Group SafeBootNet:[b]64bit:[/b] Filter - Driver Group SafeBootNet:[b]64bit:[/b] HelpSvc - Service SafeBootNet:[b]64bit:[/b] mcmscsvc - Service SafeBootNet:[b]64bit:[/b] MCODS - Service SafeBootNet:[b]64bit:[/b] Messenger - Service SafeBootNet:[b]64bit:[/b] MpfService - Service SafeBootNet:[b]64bit:[/b] NDIS Wrapper - Driver Group SafeBootNet:[b]64bit:[/b] ndiscap - C:\Windows\SysNative\drivers\ndiscap.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] NetBIOSGroup - Driver Group SafeBootNet:[b]64bit:[/b] NetDDEGroup - Driver Group SafeBootNet:[b]64bit:[/b] Network - Driver Group SafeBootNet:[b]64bit:[/b] NetworkProvider - Driver Group SafeBootNet:[b]64bit:[/b] PCI Configuration - Driver Group SafeBootNet:[b]64bit:[/b] PNP Filter - Driver Group SafeBootNet:[b]64bit:[/b] PNP_TDI - Driver Group SafeBootNet:[b]64bit:[/b] Power - C:\Windows\SysNative\umpo.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] Primary disk - Driver Group SafeBootNet:[b]64bit:[/b] rdsessmgr - Service SafeBootNet:[b]64bit:[/b] RpcEptMapper - C:\Windows\SysNative\RpcEpMap.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] sacsvr - Service SafeBootNet:[b]64bit:[/b] SCSI Class - Driver Group SafeBootNet:[b]64bit:[/b] Streams Drivers - Driver Group SafeBootNet:[b]64bit:[/b] System Bus Extender - Driver Group SafeBootNet:[b]64bit:[/b] TDI - Driver Group SafeBootNet:[b]64bit:[/b] vmms - Service SafeBootNet:[b]64bit:[/b] WinDefend - C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WudfPf - C:\Windows\SysNative\drivers\WUDFPf.sys (Microsoft Corporation) SafeBootNet:[b]64bit:[/b] WudfUsbccidDriver - Driver SafeBootNet:[b]64bit:[/b] {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet:[b]64bit:[/b] {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet:[b]64bit:[/b] {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet:[b]64bit:[/b] {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet:[b]64bit:[/b] {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet:[b]64bit:[/b] {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet:[b]64bit:[/b] {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet:[b]64bit:[/b] {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet:[b]64bit:[/b] {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet:[b]64bit:[/b] {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet:[b]64bit:[/b] {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet:[b]64bit:[/b] {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet:[b]64bit:[/b] {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet:[b]64bit:[/b] {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet:[b]64bit:[/b] {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet:[b]64bit:[/b] {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet:[b]64bit:[/b] {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet:[b]64bit:[/b] {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet:[b]64bit:[/b] {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet:[b]64bit:[/b] {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet:[b]64bit:[/b] {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet:[b]64bit:[/b] {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices SafeBootNet: AppMgmt - Service SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: Dhcp - C:\Windows\SysWOW64\dhcpcore.dll (Microsoft Corporation) SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: HelpSvc - Service SafeBootNet: mcmscsvc - Service SafeBootNet: MCODS - Service SafeBootNet: Messenger - Service SafeBootNet: MpfService - Service SafeBootNet: MPSDrv - C:\Windows\SysWOW64\wbem\mpsdrv.mof () SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOS - C:\Windows\SysWOW64\netbios.dll (Microsoft Corporation) SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: rdsessmgr - Service SafeBootNet: sacsvr - Service SafeBootNet: SCSI Class - Driver Group SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: Tcpip - C:\Windows\SysWOW64\wbem\tcpip.mof () SafeBootNet: TDI - Driver Group SafeBootNet: VDS - C:\Windows\SysWOW64\wbem\vds.mof () SafeBootNet: vmms - Service SafeBootNet: WudfUsbccidDriver - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {50DD5230-BA8A-11D1-BF5D-0000F805F530} - Smart card readers SafeBootNet: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootNet: {6BDD1FC1-810F-11D0-BEC7-08002BE2092F} - IEEE 1394 Bus host controllers SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: {D48179BE-EC20-11D1-B6B8-00C04FA372A7} - SBP2 IEEE 1394 Devices SafeBootNet: {D94EE5D8-D189-4994-83D2-F68D7D41B0E6} - SecurityDevices [color=#E56717]========== Files/Folders - Created Within 90 Days ==========[/color] [2010-04-03 12:21:45 | 000,555,520 | ---- | C] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe [2010-04-02 23:31:57 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\CamTrack [2010-04-02 23:29:58 | 000,115,912 | ---- | C] (DigitalPeers) -- C:\Windows\SysWow64\drivers\dptrackerd.sys [2010-04-02 23:29:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DigitalPeers [2010-03-30 06:44:57 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Downloads [2010-03-30 02:09:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Student Notebook 2 [2010-03-30 00:36:24 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Sports Interactive [2010-03-29 17:29:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sports Interactive [2010-03-29 17:29:02 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Zero G Registry [2010-03-29 17:28:22 | 000,000,000 | -H-D | C] -- C:\Users\Dawid\InstallAnywhere [2010-03-28 16:11:41 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\TrueCrypt [2010-03-28 16:11:27 | 000,000,000 | ---D | C] -- C:\ProgramData\TrueCrypt [2010-03-28 16:11:09 | 000,222,160 | ---- | C] (TrueCrypt Foundation) -- C:\Windows\SysWow64\drivers\truecrypt.sys [2010-03-28 16:09:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrueCrypt [2010-03-28 13:57:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Robster Productions [2010-03-28 11:01:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Image Grabber II [2010-03-28 10:12:22 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Outlook Files [2010-03-27 22:59:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Valve [2010-03-27 16:44:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio .NET 2008 [2010-03-27 16:44:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio .NET 2005 [2010-03-27 16:43:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services [2010-03-27 16:43:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER [2010-03-27 16:41:59 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2010-03-27 16:41:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET [2010-03-27 16:41:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework [2010-03-27 16:36:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8 [2010-03-27 16:35:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2010-03-27 16:33:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services [2010-03-27 16:31:34 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft Help [2010-03-27 16:30:31 | 000,000,000 | RH-D | C] -- C:\MSOCache [2010-03-27 13:20:08 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\18 WoS Across America [2010-03-27 13:20:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trymedia [2010-03-27 12:05:33 | 000,201,728 | ---- | C] (AppWork UG (haftungsbeschränkt)) -- C:\Windows\SysWow64\allplugin.exe [2010-03-27 12:05:26 | 000,000,000 | ---D | C] -- C:\Program Files\Temp [2010-03-27 11:41:42 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Desktop\Total Commander 7.50 Final [2010-03-26 16:46:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Codemasters [2010-03-26 16:46:15 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Games [2010-03-26 16:39:02 | 000,872,448 | ---- | C] (Blue Ripple Sound Limited) -- C:\Windows\SysWow64\rapture3d_oal.dll [2010-03-26 16:39:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BRS [2010-03-26 16:38:28 | 000,466,520 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll [2010-03-26 16:38:28 | 000,445,016 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll [2010-03-26 16:38:28 | 000,122,968 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll [2010-03-26 16:38:28 | 000,109,144 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll [2010-03-26 16:38:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL [2010-03-26 16:12:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Codemasters [2010-03-25 22:25:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Rockstar Games [2010-03-25 20:16:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games1 [2010-03-25 01:34:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Rockstar Games [2010-03-25 01:28:12 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll [2010-03-25 01:25:43 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive [2010-03-25 01:25:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE [2010-03-23 22:25:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\.VirtualBox [2010-03-23 22:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\Sun [2010-03-23 22:22:04 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2010-03-23 20:22:15 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Media Player Classic [2010-03-22 14:19:44 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Logs [2010-03-21 11:34:59 | 000,000,000 | ---D | C] -- C:\Program Files\GetASFStream [2010-03-20 16:40:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Virtual Machines [2010-03-20 16:37:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Virtual PC [2010-03-20 10:47:21 | 000,000,000 | ---D | C] -- C:\Windows\B83FC356B7C0441F8A4DD71E088E7974.TMP [2010-03-20 00:36:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FLVPlayer [2010-03-20 00:26:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nowy folder [2010-03-20 00:26:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\deamon [2010-03-20 00:25:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\DAEMON Tools Lite [2010-03-20 00:25:49 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2010-03-20 00:12:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UltraISO [2010-03-20 00:12:34 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My ISO Files [2010-03-19 02:29:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NAPI-PROJEKT [2010-03-19 00:36:45 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\BestPractices [2010-03-19 00:36:42 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\BestPractices [2010-03-19 00:36:39 | 000,000,000 | ---D | C] -- C:\inetpub [2010-03-16 15:09:37 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\KONAMI [2010-03-16 14:59:26 | 000,000,000 | ---D | C] -- C:\ProgramData\KONAMI [2010-03-16 14:59:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KONAMI [2010-03-14 17:11:44 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Electronic Arts [2010-03-14 17:09:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft WSE [2010-03-14 13:22:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Publish Providers [2010-03-14 13:22:35 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Sony [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Sony [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Videos [2010-03-14 13:16:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Vstplugins [2010-03-14 13:16:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony [2010-03-14 13:15:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony [2010-03-14 13:12:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Setup [2010-03-14 01:18:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dzielenie i laczenie plikow [2010-03-13 23:53:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerStrip [2010-03-13 23:44:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavalys [2010-03-13 10:55:48 | 000,000,000 | ---D | C] -- C:\Windows\pss [2010-03-12 22:41:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RocketDock [2010-03-12 19:51:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FRAPS2 [2010-03-12 18:37:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HyCam2 [2010-03-12 18:11:23 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI [2010-03-12 09:16:53 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS Most Wanted [2010-03-12 01:14:20 | 000,000,000 | ---D | C] -- C:\Windows\Sun [2010-03-11 23:53:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2010-03-11 23:53:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2010-03-11 21:59:25 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies [2010-03-11 21:58:21 | 000,000,000 | ---D | C] -- C:\ATI [2010-03-11 20:57:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS Undercover [2010-03-11 20:56:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\PunkBuster [2010-03-11 20:46:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Games [2010-03-11 18:29:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\.rainlendar2 [2010-03-11 16:15:53 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ChomikBox [2010-03-11 16:09:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ChomikBox [2010-03-11 00:49:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\skypePM [2010-03-11 00:48:26 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Skype [2010-03-11 00:45:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2010-03-11 00:45:34 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2010-03-11 00:45:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2010-03-11 00:18:32 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\CircleDock [2010-03-11 00:02:50 | 000,000,000 | R-SD | C] -- C:\Users\Dawid\Documents\My Stationery [2010-03-10 23:51:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent [2010-03-10 23:50:58 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\uTorrent [2010-03-10 23:47:37 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ipla [2010-03-10 23:47:37 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla [2010-03-10 23:47:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ipla [2010-03-10 23:44:07 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu 10 [2010-03-10 23:44:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10 [2010-03-10 23:43:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gadu-Gadu 10 [2010-03-10 23:27:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Opera [2010-03-10 23:27:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Opera [2010-03-10 23:27:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera [2010-03-10 22:35:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ApplicationHistory [2010-03-10 22:23:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\URTTEMP [2010-03-10 22:11:25 | 000,000,000 | ---D | C] -- C:\Windows\San Andreas Mod Installer [2010-03-10 22:11:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\San Andreas Mod Installer [2010-03-10 22:00:49 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Adobe [2010-03-10 21:10:24 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Documents\Downloads [2010-03-10 20:45:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Deployment [2010-03-10 20:45:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Apps [2010-03-10 20:40:19 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Mikrotik [2010-03-10 20:29:22 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ElevatedDiagnostics [2010-03-10 18:06:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Activision [2010-03-10 16:23:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\WinRAR [2010-03-10 16:22:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinRAR [2010-03-09 22:03:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Malwarebytes [2010-03-09 22:03:41 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys [2010-03-09 22:03:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010-03-09 22:03:38 | 000,022,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2010-03-09 22:03:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2010-03-09 21:22:52 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu [2010-03-09 20:53:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FIFA 09 [2010-03-09 20:31:28 | 000,000,000 | RH-D | C] -- C:\Users\Dawid\AppData\Roaming\SecuROM [2010-03-09 20:20:49 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Gadu-Gadu [2010-03-09 15:42:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FRAPS [2010-03-07 09:24:18 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Adobe [2010-03-06 17:30:43 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS SHIFT [2010-03-05 23:26:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\icytower1.3 [2010-03-05 19:59:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts [2010-03-05 18:52:41 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\AGEIA [2010-03-05 18:52:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies [2010-03-05 14:58:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts [2010-03-05 00:11:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CCleaner [2010-03-04 23:55:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sierra On-Line [2010-03-04 23:55:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SIERRA [2010-03-04 00:59:50 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Nowy folder [2010-03-03 23:53:44 | 000,000,000 | ---D | C] -- C:\cdigit [2010-03-03 23:30:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Winamp [2010-03-03 22:04:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\GHISLER [2010-03-03 18:40:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FFOutput [2010-03-03 18:37:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeTime [2010-03-03 18:37:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gabest [2010-03-03 17:12:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\!ALL [2010-03-03 17:07:20 | 000,000,000 | ---D | C] -- C:\!PrisonBreak [2010-03-03 16:21:41 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\TOSHIBA_Corporation [2010-03-03 16:21:21 | 000,091,568 | ---- | C] (PowerISO Computing, Inc.) -- C:\Windows\SysNative\drivers\scdemu.sys [2010-03-03 16:21:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerISO [2010-03-03 14:43:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Total Video Converter [2010-03-03 01:03:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinX DVD Player 3.0 [2010-03-03 00:46:55 | 000,892,928 | ---- | C] (Free Software Foundation) -- C:\Windows\SysWow64\iconv.dll [2010-03-03 00:46:55 | 000,000,000 | ---D | C] -- C:\ProgramData\ALLPlayer [2010-03-03 00:46:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ALLPlayer [2010-03-03 00:36:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xvid [2010-03-03 00:31:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\totalcmd [2010-03-03 00:31:26 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\GHISLER [2010-03-03 00:14:10 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\Windows\SysWow64\pncrt.dll [2010-03-03 00:14:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Real Alternative [2010-03-02 22:39:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\GTA San Andreas User Files [2010-03-02 22:28:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FIFA 07 [2010-03-02 22:15:43 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed [2010-03-02 21:48:13 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Diagnostics [2010-03-02 21:36:21 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft Games [2010-03-02 21:33:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Ashampoo [2010-03-02 21:19:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games [2010-03-02 20:41:03 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ashampoo [2010-03-02 20:41:03 | 000,000,000 | ---D | C] -- C:\ProgramData\ashampoo [2010-03-02 20:40:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo [2010-03-02 20:05:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Google [2010-03-02 20:05:38 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Google [2010-03-02 20:01:30 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Leadertech [2010-03-02 19:47:35 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Toshiba [2010-03-02 19:39:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Sports [2010-03-02 19:32:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ATI [2010-03-02 19:32:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ATI [2010-03-02 19:32:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Toshiba [2010-03-02 19:32:05 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Searches [2010-03-02 19:31:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Identities [2010-03-02 19:31:45 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Contacts [2010-03-02 19:31:42 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\VirtualStore [2010-03-02 19:29:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ToshibaEurope [2010-03-02 19:29:11 | 000,000,000 | --SD | C] -- C:\Users\Dawid\AppData\Roaming\Microsoft [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Saved Games [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Music [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Links [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Favorites [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Documents [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Desktop [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Ustawienia lokalne [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Temporary Internet Files [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Szablony [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\SendTo [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Recent [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\PrintHood [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\NetHood [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moje wideo [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moje obrazy [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Moje dokumenty [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moja muzyka [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Menu Start [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Historia [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Dane aplikacji [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Dane aplikacji [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Cookies [2010-03-02 19:29:11 | 000,000,000 | -H-D | C] -- C:\Users\Dawid\AppData [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Videos [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Temp [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Pictures [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Media Center Programs [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Macromedia [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files - Modified Within 90 Days ==========[/color] [2010-04-03 12:26:50 | 002,359,296 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT [2010-04-03 12:26:09 | 000,000,286 | -H-- | M] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [2010-04-03 12:26:03 | 000,000,246 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe [2010-04-03 12:06:02 | 000,001,058 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000UA.job [2010-04-03 11:56:16 | 000,016,080 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010-04-03 11:56:16 | 000,016,080 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010-04-03 11:55:55 | 001,639,364 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2010-04-03 11:55:55 | 000,734,302 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2010-04-03 11:55:55 | 000,647,596 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2010-04-03 11:55:55 | 000,148,782 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2010-04-03 11:55:55 | 000,116,476 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2010-04-03 11:55:09 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKC4380.html [2010-04-03 11:55:09 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempuB4380.html [2010-04-03 11:48:26 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-04-03 11:48:20 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-04-03 11:48:16 | 1407,995,904 | -HS- | M] () -- C:\hiberfil.sys [2010-04-03 11:47:21 | 006,510,681 | -H-- | M] () -- C:\Users\Dawid\AppData\Local\IconCache.db [2010-04-03 11:43:24 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJw5480.html [2010-04-03 11:43:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXI5480.html [2010-04-03 05:06:00 | 000,001,006 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000Core.job [2010-04-03 00:20:02 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUc4340.html [2010-04-03 00:20:02 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUV4340.html [2010-04-02 23:38:09 | 000,182,272 | ---- | M] () -- C:\Windows\Lluhua.exe [2010-04-02 23:38:04 | 000,207,872 | ---- | M] () -- C:\Windows\SysWow64\sshnas21.dll [2010-04-02 23:30:06 | 000,001,123 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk [2010-04-02 21:33:20 | 000,030,295 | ---- | M] () -- C:\Users\Dawid\Desktop\The_Girl_Next_Door_2004_ENG_DVDrip[www.btmon.com].torrent [2010-04-02 20:12:19 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.ini [2010-04-02 20:10:14 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bak [2010-03-31 15:31:04 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bk! [2010-03-31 14:28:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCG3740.html [2010-03-31 14:28:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPZ3740.html [2010-03-31 07:20:46 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bko [2010-03-31 01:26:29 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYe3456.html [2010-03-31 01:26:29 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplU3456.html [2010-03-30 22:12:26 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempxs4128.html [2010-03-30 22:12:26 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFD4128.html [2010-03-30 21:29:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLN4792.html [2010-03-30 21:29:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdE4792.html [2010-03-30 18:40:11 | 000,425,960 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2010-03-30 17:30:47 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSw4712.html [2010-03-30 17:30:47 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOF4712.html [2010-03-29 17:25:53 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempML1984.html [2010-03-29 17:25:53 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOO1984.html [2010-03-29 14:37:56 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDi3088.html [2010-03-29 14:37:56 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempyh3088.html [2010-03-29 14:03:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMw6648.html [2010-03-29 14:03:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVi6648.html [2010-03-28 21:35:16 | 000,000,192 | ---- | M] () -- C:\Windows\winamp.ini [2010-03-28 21:18:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templb6472.html [2010-03-28 21:18:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEp6472.html [2010-03-28 16:11:09 | 000,222,160 | ---- | M] (TrueCrypt Foundation) -- C:\Windows\SysWow64\drivers\truecrypt.sys [2010-03-28 15:51:52 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNS2772.html [2010-03-28 15:51:52 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNA2772.html [2010-03-28 14:47:17 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNH6716.html [2010-03-28 14:47:17 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyR6716.html [2010-03-28 10:31:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempkrG900.html [2010-03-28 10:31:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdJm900.html [2010-03-28 10:08:51 | 001,661,362 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010-03-28 09:04:58 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphQ6436.html [2010-03-28 09:04:58 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdU6436.html [2010-03-27 21:43:51 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFP1184.html [2010-03-27 21:43:51 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOw1184.html [2010-03-27 18:53:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnlv892.html [2010-03-27 18:53:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFeJ892.html [2010-03-27 17:44:54 | 000,111,224 | ---- | M] () -- C:\Users\Dawid\AppData\Local\GDIPFONTCACHEV1.DAT [2010-03-27 17:09:20 | 000,002,765 | ---- | M] () -- C:\Users\Dawid\Desktop\Office 2010.lnk [2010-03-27 16:54:13 | 000,000,039 | ---- | M] () -- C:\Windows\vbaddin.ini [2010-03-27 16:34:50 | 000,000,510 | ---- | M] () -- C:\Windows\win.ini [2010-03-27 12:50:50 | 000,111,530 | ---- | M] () -- C:\Windows\SysWow64\MH_iZBolAv.exe [2010-03-27 12:05:56 | 000,201,728 | ---- | M] (AppWork UG (haftungsbeschränkt)) -- C:\Windows\SysWow64\allplugin.exe [2010-03-27 10:58:39 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdP6384.html [2010-03-27 10:58:39 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFe6384.html [2010-03-26 17:49:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYg5796.html [2010-03-26 17:49:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYT5796.html [2010-03-26 17:15:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDr2904.html [2010-03-26 17:15:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempfP2904.html [2010-03-26 16:44:49 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTt1504.html [2010-03-26 16:44:49 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempuz1504.html [2010-03-26 16:38:28 | 000,466,520 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll [2010-03-26 16:38:28 | 000,445,016 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll [2010-03-26 16:38:28 | 000,122,968 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll [2010-03-26 16:38:28 | 000,109,144 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll [2010-03-26 14:55:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEt6276.html [2010-03-26 14:55:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJG6276.html [2010-03-25 21:08:28 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTS6072.html [2010-03-25 21:08:28 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptp6072.html [2010-03-25 19:55:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVc6944.html [2010-03-25 19:55:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXg6944.html [2010-03-25 18:15:10 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempet4564.html [2010-03-25 18:15:10 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempBd4564.html [2010-03-25 16:36:53 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdD5384.html [2010-03-25 16:36:53 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEp5384.html [2010-03-25 01:28:12 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll [2010-03-25 00:22:48 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml [2010-03-25 00:22:48 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml [2010-03-24 00:40:27 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempnJ5532.html [2010-03-24 00:40:27 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempHv5532.html [2010-03-23 16:03:27 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemppS1224.html [2010-03-23 16:03:27 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempBa1224.html [2010-03-22 21:26:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplW5416.html [2010-03-22 21:26:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCV5416.html [2010-03-22 15:38:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCK2924.html [2010-03-22 15:38:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempew2924.html [2010-03-22 14:50:08 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptl8068.html [2010-03-22 14:50:08 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLy8068.html [2010-03-22 14:29:28 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRd5228.html [2010-03-22 14:29:28 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLx5228.html [2010-03-22 14:19:09 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempjX2844.html [2010-03-22 14:19:09 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUd2844.html [2010-03-21 22:23:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIc6356.html [2010-03-21 22:23:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCW6356.html [2010-03-21 17:21:18 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempxt6776.html [2010-03-21 17:21:18 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFd6776.html [2010-03-21 16:58:45 | 000,004,608 | ---- | M] () -- C:\Users\Dawid\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-03-21 13:01:16 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempmj7620.html [2010-03-21 13:01:16 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIi7620.html [2010-03-21 11:45:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOa3532.html [2010-03-21 11:45:58 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptv3532.html [2010-03-20 18:05:19 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQIQ592.html [2010-03-20 18:05:19 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDMa592.html [2010-03-20 16:19:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKK2080.html [2010-03-20 16:19:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempoG2080.html [2010-03-20 14:32:39 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempgx5332.html [2010-03-20 14:32:39 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPE5332.html [2010-03-20 12:43:05 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSx3676.html [2010-03-20 12:43:05 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempif3676.html [2010-03-20 10:31:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJC6856.html [2010-03-20 10:31:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJF6856.html [2010-03-20 00:28:08 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys [2010-03-19 22:47:11 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVk4152.html [2010-03-19 22:47:11 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempeZ4152.html [2010-03-19 01:26:02 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyS5860.html [2010-03-19 01:26:02 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempiB5860.html [2010-03-18 21:55:04 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUW3516.html [2010-03-18 21:55:04 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDq3516.html [2010-03-18 19:49:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempuia708.html [2010-03-18 19:49:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempsjp708.html [2010-03-18 14:56:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOu1956.html [2010-03-18 14:56:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempux1956.html [2010-03-18 02:06:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQF2812.html [2010-03-18 02:06:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMk2812.html [2010-03-17 01:55:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCO3140.html [2010-03-17 01:55:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempkX3140.html [2010-03-16 20:01:42 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAD4276.html [2010-03-16 20:01:42 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempnX4276.html [2010-03-16 17:56:55 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphLn916.html [2010-03-16 17:56:55 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAwk916.html [2010-03-16 16:48:44 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphD2564.html [2010-03-16 16:48:44 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templx2564.html [2010-03-16 02:16:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnj4596.html [2010-03-16 02:16:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNQ4596.html [2010-03-15 22:31:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDd2172.html [2010-03-15 22:31:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNF2172.html [2010-03-15 19:46:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAH5644.html [2010-03-15 19:46:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempil5644.html [2010-03-15 16:49:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSS2140.html [2010-03-15 16:49:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTv2140.html [2010-03-15 15:31:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPe6356.html [2010-03-15 15:31:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphV6356.html [2010-03-15 00:40:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFC5384.html [2010-03-15 00:40:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempcl5384.html [2010-03-14 21:57:06 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKv6828.html [2010-03-14 21:57:06 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMm6828.html [2010-03-14 21:43:21 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempaG6336.html [2010-03-14 21:43:21 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempWt6336.html [2010-03-14 20:01:55 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempxhD788.html [2010-03-14 20:01:55 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempwoI788.html [2010-03-14 18:22:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempas6812.html [2010-03-14 18:22:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJD6812.html [2010-03-14 17:21:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempvcN148.html [2010-03-14 17:21:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplaH148.html [2010-03-14 15:23:10 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprWb148.html [2010-03-14 15:23:10 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYVU148.html [2010-03-14 14:13:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRl4988.html [2010-03-14 14:13:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempmG4988.html [2010-03-14 12:49:42 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprG5148.html [2010-03-14 12:49:42 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIQ5148.html [2010-03-14 12:43:21 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVO5768.html [2010-03-14 12:43:21 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempww5768.html [2010-03-14 11:30:18 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOoo788.html [2010-03-14 11:30:18 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprAI788.html [2010-03-14 03:00:16 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCK3008.html [2010-03-14 03:00:16 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdW3008.html [2010-03-14 02:13:57 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSx5164.html [2010-03-14 02:13:57 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOs5164.html [2010-03-13 23:54:16 | 000,000,729 | ---- | M] () -- C:\Users\Dawid\Documents\ps_mon.inf [2010-03-13 21:58:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFa5456.html [2010-03-13 21:58:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXN5456.html [2010-03-13 15:46:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVHT820.html [2010-03-13 15:46:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOHE820.html [2010-03-13 12:08:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDx4396.html [2010-03-13 12:08:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKg4396.html [2010-03-13 10:56:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRT2664.html [2010-03-13 10:56:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOH2664.html [2010-03-13 00:45:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQu6396.html [2010-03-13 00:45:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyW6396.html [2010-03-13 00:24:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempER1108.html [2010-03-13 00:24:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYz1108.html [2010-03-12 23:30:51 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempyr2700.html [2010-03-12 23:30:51 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDl2700.html [2010-03-12 18:56:29 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnq4680.html [2010-03-12 18:56:29 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIE4680.html [2010-03-12 14:58:30 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templa2980.html [2010-03-12 14:58:30 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTz2980.html [2010-03-12 01:24:24 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVG1172.html [2010-03-12 01:24:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempbQ1172.html [2010-03-11 22:46:59 | 000,183,112 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe [2010-03-11 20:57:03 | 000,066,872 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe [2010-03-11 20:38:31 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempbO4644.html [2010-03-11 20:38:31 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempup4644.html [2010-03-11 19:13:56 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempusg968.html [2010-03-11 19:13:56 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempepv968.html [2010-03-11 14:59:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempzk3952.html [2010-03-11 14:59:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempcI3952.html [2010-03-11 08:33:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempga5840.html [2010-03-11 08:33:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempvH5840.html [2010-03-11 00:49:18 | 000,000,056 | -H-- | M] () -- C:\Windows\SysWow64\ezsidmv.dat [2010-03-10 22:35:39 | 000,000,093 | ---- | M] () -- C:\Users\Dawid\AppData\Local\fusioncache.dat [2010-03-10 18:13:51 | 000,000,331 | ---- | M] () -- C:\Windows\game.ini [2010-03-06 00:32:04 | 000,000,017 | ---- | M] () -- C:\Users\Dawid\AppData\Local\resmon.resmoncfg [2010-03-04 23:55:55 | 000,000,180 | ---- | M] () -- C:\Windows\SIERRA.INI [2010-03-03 16:22:01 | 000,524,288 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010-03-03 16:22:01 | 000,524,288 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010-03-03 16:22:01 | 000,065,536 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010-03-02 20:29:44 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010-03-02 19:29:11 | 000,000,020 | -HS- | M] () -- C:\Users\Dawid\ntuser.ini [2010-03-02 18:28:16 | 000,064,519 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2010-03-02 18:28:16 | 000,064,519 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2010-03-02 18:26:51 | 000,000,000 | RHS- | M] () -- C:\Windows\SysWow64\drivers\TOSHIBA_Satellite L500D_10747-PL_PSLT0E-00G00.MRK [2010-01-07 17:07:14 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys [2010-01-07 17:07:06 | 000,022,104 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ] [2 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-04-03 11:55:09 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKC4380.html [2010-04-03 11:55:09 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempuB4380.html [2010-04-03 09:25:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJw5480.html [2010-04-03 09:25:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXI5480.html [2010-04-02 23:38:23 | 000,000,286 | -H-- | C] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [2010-04-02 23:38:16 | 000,182,272 | ---- | C] () -- C:\Windows\Lluhua.exe [2010-04-02 23:38:11 | 000,000,246 | -H-- | C] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-02 23:38:04 | 000,207,872 | ---- | C] () -- C:\Windows\SysWow64\sshnas21.dll [2010-04-02 23:30:06 | 000,001,123 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk [2010-04-02 21:33:20 | 000,030,295 | ---- | C] () -- C:\Users\Dawid\Desktop\The_Girl_Next_Door_2004_ENG_DVDrip[www.btmon.com].torrent [2010-04-02 20:17:10 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUc4340.html [2010-04-02 20:17:10 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUV4340.html [2010-03-31 13:45:02 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCG3740.html [2010-03-31 13:45:02 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPZ3740.html [2010-03-31 00:29:36 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYe3456.html [2010-03-31 00:29:36 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplU3456.html [2010-03-30 21:56:06 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempxs4128.html [2010-03-30 21:56:06 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFD4128.html [2010-03-30 18:49:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLN4792.html [2010-03-30 18:49:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdE4792.html [2010-03-29 19:47:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSw4712.html [2010-03-29 19:47:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOF4712.html [2010-03-29 16:44:57 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempML1984.html [2010-03-29 16:44:57 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOO1984.html [2010-03-29 14:20:32 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDi3088.html [2010-03-29 14:20:32 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempyh3088.html [2010-03-28 21:55:57 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMw6648.html [2010-03-28 21:55:57 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVi6648.html [2010-03-28 15:56:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templb6472.html [2010-03-28 15:56:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEp6472.html [2010-03-28 15:35:22 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNS2772.html [2010-03-28 15:35:22 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNA2772.html [2010-03-28 10:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNH6716.html [2010-03-28 10:34:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyR6716.html [2010-03-28 09:54:18 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempkrG900.html [2010-03-28 09:54:18 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdJm900.html [2010-03-27 23:00:03 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphQ6436.html [2010-03-27 23:00:03 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdU6436.html [2010-03-27 19:28:37 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFP1184.html [2010-03-27 19:28:37 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOw1184.html [2010-03-27 17:06:58 | 000,002,765 | ---- | C] () -- C:\Users\Dawid\Desktop\Office 2010.lnk [2010-03-27 13:11:04 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnlv892.html [2010-03-27 13:11:04 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFeJ892.html [2010-03-27 12:50:50 | 000,111,530 | ---- | C] () -- C:\Windows\SysWow64\MH_iZBolAv.exe [2010-03-26 21:38:10 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdP6384.html [2010-03-26 21:38:10 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFe6384.html [2010-03-26 17:25:45 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYg5796.html [2010-03-26 17:25:45 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYT5796.html [2010-03-26 17:10:25 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDr2904.html [2010-03-26 17:10:25 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempfP2904.html [2010-03-26 15:37:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTt1504.html [2010-03-26 15:37:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempuz1504.html [2010-03-25 22:36:33 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEt6276.html [2010-03-25 22:36:33 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJG6276.html [2010-03-25 21:06:59 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTS6072.html [2010-03-25 21:06:59 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptp6072.html [2010-03-25 19:36:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVc6944.html [2010-03-25 19:36:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXg6944.html [2010-03-25 18:10:47 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempet4564.html [2010-03-25 18:10:47 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempBd4564.html [2010-03-24 14:52:20 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdD5384.html [2010-03-24 14:52:20 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEp5384.html [2010-03-23 17:12:17 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempnJ5532.html [2010-03-23 17:12:17 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempHv5532.html [2010-03-22 22:11:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemppS1224.html [2010-03-22 22:11:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempBa1224.html [2010-03-22 21:16:48 | 000,002,562 | ---- | C] () -- C:\Windows\diagwrn.xml [2010-03-22 21:16:48 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml [2010-03-22 20:55:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplW5416.html [2010-03-22 20:55:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCV5416.html [2010-03-22 15:15:53 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCK2924.html [2010-03-22 15:15:53 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempew2924.html [2010-03-22 14:42:17 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptl8068.html [2010-03-22 14:42:17 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLy8068.html [2010-03-22 14:19:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRd5228.html [2010-03-22 14:19:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLx5228.html [2010-03-21 23:15:26 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempjX2844.html [2010-03-21 23:15:26 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUd2844.html [2010-03-21 22:11:27 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIc6356.html [2010-03-21 22:11:27 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCW6356.html [2010-03-21 13:56:56 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempxt6776.html [2010-03-21 13:56:56 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFd6776.html [2010-03-21 12:51:12 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempmj7620.html [2010-03-21 12:51:12 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIi7620.html [2010-03-20 20:48:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOa3532.html [2010-03-20 20:48:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptv3532.html [2010-03-20 17:49:43 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQIQ592.html [2010-03-20 17:49:43 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDMa592.html [2010-03-20 16:09:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKK2080.html [2010-03-20 16:09:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempoG2080.html [2010-03-20 13:54:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempgx5332.html [2010-03-20 13:54:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPE5332.html [2010-03-20 12:05:24 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSx3676.html [2010-03-20 12:05:24 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempif3676.html [2010-03-20 00:28:08 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys [2010-03-19 23:38:34 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJC6856.html [2010-03-19 23:38:34 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJF6856.html [2010-03-19 20:45:55 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVk4152.html [2010-03-19 20:45:55 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempeZ4152.html [2010-03-18 22:20:30 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyS5860.html [2010-03-18 22:20:30 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempiB5860.html [2010-03-18 21:10:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUW3516.html [2010-03-18 21:10:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDq3516.html [2010-03-18 19:49:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempuia708.html [2010-03-18 19:49:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempsjp708.html [2010-03-18 14:51:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOu1956.html [2010-03-18 14:51:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempux1956.html [2010-03-18 13:50:55 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bko [2010-03-17 15:01:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQF2812.html [2010-03-17 15:01:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMk2812.html [2010-03-17 14:47:07 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bk! [2010-03-17 14:46:15 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bak [2010-03-16 21:54:08 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCO3140.html [2010-03-16 21:54:08 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempkX3140.html [2010-03-16 19:50:46 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAD4276.html [2010-03-16 19:50:46 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempnX4276.html [2010-03-16 17:56:23 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphLn916.html [2010-03-16 17:56:23 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAwk916.html [2010-03-16 16:05:42 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphD2564.html [2010-03-16 16:05:42 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templx2564.html [2010-03-15 23:51:04 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnj4596.html [2010-03-15 23:51:04 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNQ4596.html [2010-03-15 22:27:31 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDd2172.html [2010-03-15 22:27:31 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNF2172.html [2010-03-15 18:25:38 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAH5644.html [2010-03-15 18:25:38 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempil5644.html [2010-03-15 16:47:44 | 000,004,608 | ---- | C] () -- C:\Users\Dawid\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-03-15 16:46:33 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSS2140.html [2010-03-15 16:46:33 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTv2140.html [2010-03-15 15:05:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPe6356.html [2010-03-15 15:05:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphV6356.html [2010-03-14 22:17:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFC5384.html [2010-03-14 22:17:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempcl5384.html [2010-03-14 21:56:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKv6828.html [2010-03-14 21:56:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMm6828.html [2010-03-14 21:40:39 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempaG6336.html [2010-03-14 21:40:39 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempWt6336.html [2010-03-14 19:30:24 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempxhD788.html [2010-03-14 19:30:24 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempwoI788.html [2010-03-14 18:00:20 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempas6812.html [2010-03-14 18:00:20 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJD6812.html [2010-03-14 16:24:42 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempvcN148.html [2010-03-14 16:24:42 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplaH148.html [2010-03-14 15:22:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprWb148.html [2010-03-14 15:22:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYVU148.html [2010-03-14 14:07:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRl4988.html [2010-03-14 14:07:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempmG4988.html [2010-03-14 12:45:59 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprG5148.html [2010-03-14 12:45:59 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIQ5148.html [2010-03-14 12:42:51 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVO5768.html [2010-03-14 12:42:51 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempww5768.html [2010-03-14 11:29:05 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOoo788.html [2010-03-14 11:29:05 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprAI788.html [2010-03-14 02:27:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCK3008.html [2010-03-14 02:27:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdW3008.html [2010-03-13 23:54:16 | 000,000,729 | ---- | C] () -- C:\Users\Dawid\Documents\ps_mon.inf [2010-03-13 23:53:44 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.ini [2010-03-13 23:53:09 | 000,013,008 | ---- | C] () -- C:\Windows\SysNative\drivers\pstrip64.sys [2010-03-13 22:33:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSx5164.html [2010-03-13 22:33:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOs5164.html [2010-03-13 16:23:38 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFa5456.html [2010-03-13 16:23:38 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXN5456.html [2010-03-13 15:06:07 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVHT820.html [2010-03-13 15:06:07 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOHE820.html [2010-03-13 11:38:39 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDx4396.html [2010-03-13 11:38:39 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKg4396.html [2010-03-13 10:53:23 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRT2664.html [2010-03-13 10:53:23 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOH2664.html [2010-03-13 00:25:03 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQu6396.html [2010-03-13 00:25:03 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyW6396.html [2010-03-13 00:24:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempER1108.html [2010-03-13 00:24:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYz1108.html [2010-03-12 19:48:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempyr2700.html [2010-03-12 19:48:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDl2700.html [2010-03-12 16:49:56 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnq4680.html [2010-03-12 16:49:56 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIE4680.html [2010-03-12 14:58:30 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templa2980.html [2010-03-12 14:58:30 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTz2980.html [2010-03-11 22:45:35 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVG1172.html [2010-03-11 22:45:35 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempbQ1172.html [2010-03-11 19:50:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempbO4644.html [2010-03-11 19:50:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempup4644.html [2010-03-11 18:28:31 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempusg968.html [2010-03-11 18:28:31 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempepv968.html [2010-03-11 14:48:53 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempzk3952.html [2010-03-11 14:48:53 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempcI3952.html [2010-03-11 00:49:18 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2010-03-10 23:45:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempga5840.html [2010-03-10 23:45:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempvH5840.html [2010-03-10 22:35:39 | 000,000,093 | ---- | C] () -- C:\Users\Dawid\AppData\Local\fusioncache.dat [2010-03-10 22:24:06 | 001,661,362 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010-03-10 20:45:31 | 000,001,058 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000UA.job [2010-03-10 20:45:30 | 000,001,006 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000Core.job [2010-03-10 18:14:13 | 000,183,112 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe [2010-03-10 18:13:55 | 000,066,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe [2010-03-10 18:13:51 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini [2010-03-06 00:32:04 | 000,000,017 | ---- | C] () -- C:\Users\Dawid\AppData\Local\resmon.resmoncfg [2010-03-04 23:54:37 | 000,000,180 | ---- | C] () -- C:\Windows\SIERRA.INI [2010-03-03 23:30:52 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\pxhpinst.exe [2010-03-03 23:30:46 | 000,000,192 | ---- | C] () -- C:\Windows\winamp.ini [2010-03-03 00:46:55 | 000,797,184 | ---- | C] () -- C:\Windows\SysWow64\ac3filter.ax [2010-03-03 00:36:34 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2010-03-03 00:36:34 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2010-03-03 00:36:34 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\xvid.ax [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\UC.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\RAR.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\PKZIP.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\PKUNZIP.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\NOCLOSE.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\LHA.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\ARJ.PIF [2010-03-02 20:29:44 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010-03-02 19:29:11 | 002,359,296 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT [2010-03-02 19:29:11 | 000,524,288 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010-03-02 19:29:11 | 000,524,288 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010-03-02 19:29:11 | 000,065,536 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010-03-02 19:29:11 | 000,000,020 | -HS- | C] () -- C:\Users\Dawid\ntuser.ini [2010-03-02 18:26:51 | 000,000,000 | RHS- | C] () -- C:\Windows\SysWow64\drivers\TOSHIBA_Satellite L500D_10747-PL_PSLT0E-00G00.MRK [2009-11-06 11:58:04 | 000,178,975 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat [2009-11-06 00:34:22 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009-06-19 21:06:22 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll [2009-04-28 05:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll [2002-10-16 00:54:04 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [color=#E56717]========== LOP Check ==========[/color] [2010-03-02 21:33:12 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Ashampoo [2010-04-03 00:19:56 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\CamTrack [2010-03-11 19:13:57 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\ChomikBox [2010-03-20 10:35:27 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\DAEMON Tools Lite [2010-03-09 21:22:52 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu [2010-03-11 08:37:09 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu 10 [2010-03-04 00:13:15 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\GHISLER [2010-03-28 14:52:31 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\ipla [2010-03-02 20:01:30 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Leadertech [2010-03-10 20:40:19 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Mikrotik [2010-03-10 23:27:33 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Opera [2010-03-14 13:22:51 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Publish Providers [2010-03-14 13:22:29 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Sony [2010-03-30 00:36:24 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Sports Interactive [2010-03-02 21:20:46 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Toshiba [2010-03-28 16:14:58 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\TrueCrypt [2010-04-03 10:04:11 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\uTorrent [2009-07-14 07:08:49 | 000,015,188 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-04-03 12:26:03 | 000,000,246 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-03 12:26:09 | 000,000,286 | -H-- | M] () -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1028.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1031.txt [2007-11-07 09:00:40 | 000,010,134 | ---- | M] () -- C:\eula.1033.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1036.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1040.txt [2007-11-07 09:00:40 | 000,000,118 | ---- | M] () -- C:\eula.1041.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.1042.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.2052.txt [2007-11-07 09:00:40 | 000,017,734 | ---- | M] () -- C:\eula.3082.txt [2007-11-07 09:00:40 | 000,001,110 | ---- | M] () -- C:\globdata.ini [2010-04-03 11:48:16 | 1407,995,904 | -HS- | M] () -- C:\hiberfil.sys [2007-11-07 09:03:18 | 000,562,688 | ---- | M] (Microsoft Corporation) -- C:\install.exe [2007-11-07 09:00:40 | 000,000,843 | ---- | M] () -- C:\install.ini [2007-11-07 09:03:18 | 000,076,304 | ---- | M] (Microsoft Corporation) -- C:\install.res.1028.dll [2007-11-07 09:03:18 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.1031.dll [2007-11-07 09:03:18 | 000,091,152 | ---- | M] (Microsoft Corporation) -- C:\install.res.1033.dll [2007-11-07 09:03:18 | 000,097,296 | ---- | M] (Microsoft Corporation) -- C:\install.res.1036.dll [2007-11-07 09:03:18 | 000,095,248 | ---- | M] (Microsoft Corporation) -- C:\install.res.1040.dll [2007-11-07 09:03:18 | 000,081,424 | ---- | M] (Microsoft Corporation) -- C:\install.res.1041.dll [2007-11-07 09:03:18 | 000,079,888 | ---- | M] (Microsoft Corporation) -- C:\install.res.1042.dll [2007-11-07 09:03:18 | 000,075,792 | ---- | M] (Microsoft Corporation) -- C:\install.res.2052.dll [2007-11-07 09:03:18 | 000,096,272 | ---- | M] (Microsoft Corporation) -- C:\install.res.3082.dll [2010-04-03 12:14:32 | 1877,327,872 | -HS- | M] () -- C:\pagefile.sys [2009-11-06 00:17:49 | 000,003,133 | ---- | M] () -- C:\RHDSetup.log [2009-10-19 15:18:44 | 000,000,123 | -H-- | M] () -- C:\SWSTAMP.TXT [2007-11-07 09:00:40 | 000,005,686 | ---- | M] () -- C:\vcredist.bmp [2007-11-07 09:09:22 | 001,442,522 | ---- | M] () -- C:\VC_RED.cab [2007-11-07 09:12:28 | 000,232,960 | ---- | M] () -- C:\VC_RED.MSI [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\SysWow64\DriverStore\FileRepository\machine.inf_amd64_neutral_9e6bb86c3b39a3e9\AGP440.sys [2009-07-14 03:52:21 | 000,061,008 | ---- | M] (Microsoft Corporation) MD5=608C14DBA7299D8CB6ED035A68A15799 -- C:\Windows\winsxs\amd64_machine.inf_31bf3856ad364e35_6.1.7600.16385_none_1607dee2d861e021\AGP440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\SysWow64\DriverStore\FileRepository\mshdc.inf_amd64_neutral_a69a58a4286f0b22\atapi.sys [2009-07-14 03:52:21 | 000,024,128 | ---- | M] (Microsoft Corporation) MD5=02062C0B390B7729EDC9E69C680A6F3C -- C:\Windows\winsxs\amd64_mshdc.inf_31bf3856ad364e35_6.1.7600.16385_none_392d19c13b3ad543\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) MD5=16A47CE2DECC9B099349A5F840654746 -- C:\Windows\winsxs\amd64_microsoft-windows-beepsys_31bf3856ad364e35_6.1.7600.16385_none_201592fa214e4f02\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\SysWow64\DriverStore\FileRepository\cdrom.inf_amd64_neutral_8363d00ecae4322d\cdrom.sys [2009-07-14 01:19:54 | 000,147,456 | ---- | M] (Microsoft Corporation) MD5=83D2D75E1EFB81B3450C18131443F7DB -- C:\Windows\winsxs\amd64_cdrom.inf_31bf3856ad364e35_6.1.7600.16385_none_bb9e4d89bd7870f1\cdrom.sys [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2009-07-14 03:48:27 | 000,947,776 | ---- | M] (Microsoft Corporation) MD5=CAD515DBD07D082BB317D9928CE8962C -- C:\Windows\winsxs\amd64_microsoft-windows-ndis_31bf3856ad364e35_6.1.7600.16385_none_03bc1d6e35c013bf\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2009-07-14 03:39:52 | 000,389,120 | ---- | M] (Microsoft Corporation) MD5=132328DF455B0028F13BF0ABEE51A63A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16385_none_cbb7f2bdeea2829c\winlogon.exe [2009-10-28 09:01:57 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=A93D41A4D4B0D91C072D11DD8AF266DE -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.20560_none_cc522fd507b468f8\winlogon.exe [2009-10-28 08:24:40 | 000,389,632 | ---- | M] (Microsoft Corporation) MD5=DA3E2A6FA9660CC75B471530CE88453A -- C:\Windows\winsxs\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.1.7600.16447_none_cbe534e7ee8042ad\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:888AFB86 < End of report > [/log] Proszę o pomoc, i pozdrawiam! PS. Jeśli system napotkał się jeszcze na jakieś błędy, lub wirusy etc to proszę, aby nasi forumowi specjaliści również pomogli mi to zwalczyć.
Mateusz J. komentarz 3 kwietnia 2010 komentarz 3 kwietnia 2010 Uruchom OTL i w oknie Custom Scans/Fixes wklej[code] :Processes explorer.exe :OTL PRC - [2010-04-02 23:38:09 | 000,182,272 | ---- | M] () -- C:\Windows\Lluhua.exe O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [Canaveral] C:\Windows\SysWow64\sshnas21.DLL () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [YVIBBBHA8C] C:\Users\Dawid\AppData\Local\Temp\Lsr.exe () O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\SysWow64\mctadmin.exe File not found O33 - MountPoints2\{1de419f6-33fb-11df-a2c0-002622e644d3}\Shell - "" = AutoRun O33 - MountPoints2\{1de419f6-33fb-11df-a2c0-002622e644d3}\Shell\AutoRun\command - "" = F:\AUTOSTARTER.EXE -- File not found O33 - MountPoints2\F\Shell - "" = AutoRun O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\Autorun.exe -- File not found O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\autorun.exe -- File not found :Files C:\Windows\SysWow64\sshnas21.DLL C:\Windows\Lluhua.exe C:\Users\Dawid\AppData\Local\Temp\Lsr.exe :Commands [emptytemp] [Reboot][/code]Kliknij Run Fix. Zatwierdź restart komputera. Po ponownym uruchomieniu komputera tworzysz nowy log i pokazujesz do kontroli. Wykonaj: http://www.forumpc.pl/index.php?showtopic=107753 Usuwasz wszystko co znajdzie program, a raport pokazuje na forum.
Gość komentarz 3 kwietnia 2010 komentarz 3 kwietnia 2010 Problem z komunikatem ustąpił. Dzięki LOG Z OTL [log]OTL logfile created on: 2010-04-03 14:11:18 - Run 2 OTL by OldTimer - Version 3.1.37.3 Folder = C:\Users\Dawid\Desktop 64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 35,00% Memory free 3,00 Gb Paging File | 2,00 Gb Available in Paging File | 50,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 149,04 Gb Total Space | 64,57 Gb Free Space | 43,32% Space Free | Partition Type: NTFS Drive D: | 148,65 Gb Total Space | 28,08 Gb Free Space | 18,89% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: TOSHIBA Current User Name: Dawid Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Include 64bit Scans Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe PRC - [2010-03-18 06:01:49 | 000,136,176 | ---- | M] (Google Inc.) -- C:\Users\Dawid\AppData\Local\Google\Update\1.2.183.23\GoogleCrashHandler.exe PRC - [2010-03-18 02:43:38 | 000,835,952 | ---- | M] (Opera Software) -- C:\Program Files (x86)\Opera\opera.exe PRC - [2010-01-26 15:34:04 | 001,054,280 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\Common Files\G DATA\AVKProxy\AVKProxy.exe PRC - [2009-12-21 17:45:46 | 000,950,344 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe PRC - [2009-11-26 13:50:52 | 000,302,152 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\Common Files\G DATA\GDScan\GDScan.exe PRC - [2009-10-30 11:05:31 | 001,123,912 | ---- | M] (G DATA Software AG) -- C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe PRC - [2009-10-30 11:05:26 | 000,397,896 | ---- | M] (G Data Software AG) -- C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe PRC - [2009-08-12 11:30:42 | 006,203,296 | ---- | M] (TOSHIBA) -- C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\TOPI.exe PRC - [2009-07-28 21:26:42 | 000,062,848 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe PRC - [2009-07-14 20:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe PRC - [2009-07-13 16:24:00 | 000,304,496 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe PRC - [2009-03-10 19:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe PRC - [2009-01-13 22:33:40 | 000,034,088 | ---- | M] (TOSHIBA CORPORATION) -- C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe PRC - [2008-04-30 21:05:30 | 000,468,584 | ---- | M] (DigitalPeers) -- C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe PRC - [2007-09-02 14:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe MOD - [2009-07-14 03:17:51 | 001,289,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntdll.dll MOD - [2009-07-14 03:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\Wldap32.dll MOD - [2009-07-14 03:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vssapi.dll MOD - [2009-07-14 03:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\usp10.dll MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\vsstrace.dll MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\version.dll MOD - [2009-07-14 03:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\spp.dll MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\srclient.dll MOD - [2009-07-14 03:16:14 | 012,866,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shell32.dll MOD - [2009-07-14 03:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\setupapi.dll MOD - [2009-07-14 03:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shlwapi.dll MOD - [2009-07-14 03:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\shdocvw.dll MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sechost.dll MOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samlib.dll MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\samcli.dll MOD - [2009-07-14 03:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\secur32.dll MOD - [2009-07-14 03:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ole32.dll MOD - [2009-07-14 03:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\propsys.dll MOD - [2009-07-14 03:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\oleaut32.dll MOD - [2009-07-14 03:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\olepro32.dll MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\profapi.dll MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\psapi.dll MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\ntmarta.dll MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\netutils.dll MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msvcrt.dll MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\msctf.dll MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\dwmapi.dll MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\devobj.dll MOD - [2009-07-14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\comdlg32.dll MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cryptbase.dll MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\clbcatq.dll MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\cfgmgr32.dll MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\atl.dll MOD - [2009-07-14 03:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\advapi32.dll MOD - [2009-07-14 03:14:53 | 000,292,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\apphelp.dll MOD - [2009-07-14 03:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\winspool.drv MOD - [2009-07-14 03:11:24 | 000,833,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\user32.dll MOD - [2009-07-14 03:11:24 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\uxtheme.dll MOD - [2009-07-14 03:11:24 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\sspicli.dll MOD - [2009-07-14 03:11:23 | 000,836,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\kernel32.dll MOD - [2009-07-14 03:11:23 | 000,662,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\rpcrt4.dll MOD - [2009-07-14 03:11:23 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\KernelBase.dll MOD - [2009-07-14 03:11:23 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\lpk.dll MOD - [2009-07-14 03:11:21 | 000,310,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\gdi32.dll MOD - [2009-07-14 03:11:21 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\imm32.dll MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll MOD - [2007-09-02 14:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files (x86)\RocketDock\RocketDock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV:[b]64bit:[/b] - [2009-08-27 14:38:22 | 000,251,760 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\TECO\TecoService.exe -- (TOSHIBA eco Utility Service) SRV:[b]64bit:[/b] - [2009-08-21 16:36:00 | 004,924,336 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc) SRV:[b]64bit:[/b] - [2009-08-18 03:36:20 | 000,203,264 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:[b]64bit:[/b] - [2009-08-05 15:20:12 | 000,488,800 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe -- (TosCoSrv) SRV:[b]64bit:[/b] - [2009-08-04 12:15:06 | 000,826,224 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe -- (TPCHSrv) SRV:[b]64bit:[/b] - [2009-08-03 19:17:56 | 000,137,560 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe -- (TOSHIBA HDD SSD Alert Service) SRV:[b]64bit:[/b] - [2009-07-28 15:48:06 | 000,140,632 | ---- | M] (TOSHIBA Corporation) [Auto | Running] -- C:\Windows\SysNative\TODDSrv.exe -- (TODDSrv) SRV:[b]64bit:[/b] - [2009-07-14 03:41:59 | 000,229,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wwansvc.dll -- (WwanSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbiosrvc.dll -- (WbioSrvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:56 | 000,163,840 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\umpo.dll -- (Power) SRV:[b]64bit:[/b] - [2009-07-14 03:41:55 | 000,044,544 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\themeservice.dll -- (Themes) SRV:[b]64bit:[/b] - [2009-07-14 03:41:54 | 000,065,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sppuinotify.dll -- (sppuinotify) SRV:[b]64bit:[/b] - [2009-07-14 03:41:54 | 000,029,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\sensrsvc.dll -- (SensrSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (PNRPsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,327,168 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\pnrpsvc.dll -- (p2pimsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\provsvc.dll -- (HomeGroupProvider) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,067,072 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\SysNative\RpcEpMap.dll -- (RpcEptMapper) SRV:[b]64bit:[/b] - [2009-07-14 03:41:53 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\pnrpauto.dll -- (PNRPAutoReg) SRV:[b]64bit:[/b] - [2009-07-14 03:41:27 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV:[b]64bit:[/b] - [2009-07-14 03:41:18 | 000,231,936 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ListSvc.dll -- (HomeGroupListener) SRV:[b]64bit:[/b] - [2009-07-14 03:41:08 | 000,451,072 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\inetsrv\iisw3adm.dll -- (WAS) SRV:[b]64bit:[/b] - [2009-07-14 03:41:08 | 000,451,072 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\iisw3adm.dll -- (W3SVC) SRV:[b]64bit:[/b] - [2009-07-14 03:40:55 | 000,349,184 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\ftpsvc.dll -- (ftpsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:54 | 001,127,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FntCache.dll -- (FontCache) SRV:[b]64bit:[/b] - [2009-07-14 03:40:28 | 000,314,368 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\dhcpcore.dll -- (Dhcp) SRV:[b]64bit:[/b] - [2009-07-14 03:40:28 | 000,291,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\defragsvc.dll -- (defragsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:13 | 000,083,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\bthserv.dll -- (bthserv) SRV:[b]64bit:[/b] - [2009-07-14 03:40:10 | 000,100,864 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\SysNative\bdesvc.dll -- (BDESVC) SRV:[b]64bit:[/b] - [2009-07-14 03:40:05 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AxInstSv.dll -- (AxInstSV) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,065,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\inetsrv\apphostsvc.dll -- (AppHostSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,032,256 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appidsvc.dll -- (AppIDSvc) SRV:[b]64bit:[/b] - [2009-07-14 03:39:51 | 001,503,744 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wbengine.exe -- (wbengine) SRV:[b]64bit:[/b] - [2009-07-14 03:39:28 | 003,524,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\SysNative\sppsvc.exe -- (sppsvc) SRV:[b]64bit:[/b] - [2009-07-14 03:39:11 | 000,689,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\FXSSVC.exe -- (Fax) SRV - [2010-01-26 15:34:04 | 001,054,280 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\G DATA\AVKProxy\AVKProxy.exe -- (AVKProxy) SRV - [2009-11-26 13:50:52 | 000,302,152 | ---- | M] (G Data Software AG) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\G DATA\GDScan\GDScan.exe -- (GDScan) SRV - [2009-11-25 03:07:32 | 001,731,504 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKWCtlX64.exe -- (AVKWCtl) SRV - [2009-11-25 03:05:05 | 001,664,560 | ---- | M] (G Data Software AG) [On_Demand | Running] -- C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFwSvcx64.exe -- (GDFwSvc) SRV - [2009-10-30 11:05:26 | 000,397,896 | ---- | M] (G Data Software AG) [Auto | Running] -- C:\Program Files (x86)\G Data\InternetSecurity\AVK\AVKService.exe -- (AVKService) SRV - [2009-08-21 16:47:14 | 030,510,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE -- (Microsoft SharePoint Workspace Audit Service) SRV - [2009-08-17 11:48:42 | 000,051,512 | ---- | M] (TOSHIBA Corporation) [On_Demand | Running] -- C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe -- (TMachInfo) SRV - [2009-08-10 20:55:58 | 000,248,688 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe -- (cfWiMAXService) SRV - [2009-08-06 16:02:50 | 000,116,104 | ---- | M] (Toshiba Europe GmbH) [Auto | Running] -- C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe -- (TemproMonitoringService) Notebook Performance Tuning Service (TEMPRO) SRV - [2009-07-14 20:10:30 | 000,042,368 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe -- (ConfigFree Gadget Service) SRV - [2009-07-14 05:20:14 | 000,000,000 | ---D | M] [On_Demand | Stopped] -- C:\Windows\Vss -- (VSS) SRV - [2009-07-14 05:20:14 | 000,000,000 | ---D | M] [Unknown | Stopped] -- C:\Windows\SysWOW64\Msdtc -- (MSDTC) SRV - [2009-07-14 03:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS) SRV - [2009-07-14 03:15:31 | 000,396,288 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC) SRV - [2009-07-14 03:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 03:14:53 | 000,061,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc) SRV - [2009-07-13 22:30:11 | 000,061,056 | ---- | M] () [On_Demand | Stopped] -- C:\Windows\SysWOW64\wbem\vds.mof -- (vds) SRV - [2009-06-10 22:39:58 | 000,089,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_64) SRV - [2009-03-10 19:51:20 | 000,046,448 | ---- | M] (TOSHIBA CORPORATION) [Auto | Running] -- C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe -- (ConfigFree Service) SRV - [2008-12-22 12:52:16 | 000,104,944 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV:[b]64bit:[/b] - [2010-04-03 14:00:15 | 000,074,184 | ---- | M] (G Data Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MiniIcpt.sys -- (GDMnIcpt) DRV:[b]64bit:[/b] - [2010-04-03 14:00:08 | 000,057,288 | ---- | M] (G DATA Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PktIcpt.sys -- (GDPkIcpt) DRV:[b]64bit:[/b] - [2010-04-03 13:12:03 | 000,106,224 | ---- | M] (G Data Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\GRD.sys -- (GRD) DRV:[b]64bit:[/b] - [2010-04-03 13:11:29 | 000,048,584 | ---- | M] (G DATA Software AG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\gdwfpcd64.sys -- (gdwfpcd) DRV:[b]64bit:[/b] - [2010-04-03 13:11:15 | 000,034,760 | ---- | M] (G Data Software AG) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\GDBehave.sys -- (GDBehave) DRV:[b]64bit:[/b] - [2010-04-03 12:40:29 | 000,042,952 | ---- | M] (G Data Software AG) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HookCentre.sys -- (HookCentre) DRV:[b]64bit:[/b] - [2010-03-20 00:28:08 | 000,834,544 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd) DRV:[b]64bit:[/b] - [2010-02-12 21:30:26 | 000,145,360 | ---- | M] (Sun Microsystems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VBoxNetAdp.sys -- (VBoxNetAdp) DRV:[b]64bit:[/b] - [2009-11-09 05:28:08 | 000,091,568 | ---- | M] (PowerISO Computing, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\scdemu.sys -- (SCDEmu) DRV:[b]64bit:[/b] - [2009-08-18 04:48:48 | 006,037,504 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (atikmdag) DRV:[b]64bit:[/b] - [2009-08-13 09:18:46 | 000,439,808 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RTL8187Se.sys -- (RTL8187Se) DRV:[b]64bit:[/b] - [2009-07-30 20:22:04 | 000,027,784 | ---- | M] (TOSHIBA Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tdcmdpst.sys -- (tdcmdpst) DRV:[b]64bit:[/b] - [2009-07-30 18:46:22 | 000,222,208 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsUStor.sys -- (RSUSBSTOR) DRV:[b]64bit:[/b] - [2009-07-24 16:57:08 | 000,482,384 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\tos_sps64.sys -- (tos_sps64) DRV:[b]64bit:[/b] - [2009-07-20 18:48:32 | 000,274,480 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP) DRV:[b]64bit:[/b] - [2009-07-14 16:31:18 | 000,026,840 | ---- | M] (TOSHIBA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\TVALZ_O.SYS -- (TVALZ) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,106,576 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:21 | 000,028,752 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,153,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\ksecpkg.sys -- (KSecPkg) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,014,416 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hwpolicy.sys -- (hwpolicy) DRV:[b]64bit:[/b] - [2009-07-14 03:47:49 | 000,055,376 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fsdepends.sys -- (FsDepends) DRV:[b]64bit:[/b] - [2009-07-14 03:47:48 | 000,077,888 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:[b]64bit:[/b] - [2009-07-14 03:45:56 | 000,022,096 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wimmount.sys -- (WIMMount) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,217,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vhdmp.sys -- (vhdmp) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,036,432 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\vdrvroot.sys -- (vdrvroot) DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:[b]64bit:[/b] - [2009-07-14 03:45:46 | 000,214,096 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\rdyboost.sys -- (rdyboost) DRV:[b]64bit:[/b] - [2009-07-14 03:45:45 | 000,050,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pcw.sys -- (pcw) DRV:[b]64bit:[/b] - [2009-07-14 03:43:14 | 000,460,504 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\cng.sys -- (CNG) DRV:[b]64bit:[/b] - [2009-07-14 03:43:13 | 000,223,448 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\fvevol.sys -- (fvevol) DRV:[b]64bit:[/b] - [2009-07-14 02:17:46 | 000,024,064 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpbus.sys -- (rdpbus) DRV:[b]64bit:[/b] - [2009-07-14 02:16:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\RDPREFMP.sys -- (RDPREFMP) DRV:[b]64bit:[/b] - [2009-07-14 02:10:24 | 000,060,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV:[b]64bit:[/b] - [2009-07-14 02:09:26 | 000,012,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\wfplwf.sys -- (WfpLwf) DRV:[b]64bit:[/b] - [2009-07-14 02:08:13 | 000,035,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ndiscap.sys -- (NdisCap) DRV:[b]64bit:[/b] - [2009-07-14 02:07:22 | 000,059,904 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\vwififlt.sys -- (vwififlt) DRV:[b]64bit:[/b] - [2009-07-14 02:07:21 | 000,024,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\vwifibus.sys -- (vwifibus) DRV:[b]64bit:[/b] - [2009-07-14 02:07:13 | 000,227,840 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\1394ohci.sys -- (1394ohci) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,350,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HdAudio.sys -- (HdAudAddService) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,184,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbvideo.sys -- (usbvideo) Urządzenie wideo USB (WDM) DRV:[b]64bit:[/b] - [2009-07-14 02:07:00 | 000,118,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthpan.sys -- (BthPan) Urządzenie Bluetooth (sieć osobista) DRV:[b]64bit:[/b] - [2009-07-14 02:06:57 | 000,551,936 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthport.sys -- (BTHPORT) DRV:[b]64bit:[/b] - [2009-07-14 02:06:56 | 000,158,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rfcomm.sys -- (RFCOMM) Urządzenie Bluetooth (Protokół TDI RFCOMM) DRV:[b]64bit:[/b] - [2009-07-14 02:06:53 | 000,041,984 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthenum.sys -- (BthEnum) DRV:[b]64bit:[/b] - [2009-07-14 02:06:52 | 000,079,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BTHUSB.SYS -- (BTHUSB) DRV:[b]64bit:[/b] - [2009-07-14 02:06:52 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\umpass.sys -- (UmPass) DRV:[b]64bit:[/b] - [2009-07-14 02:06:24 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidkmdf.sys -- (mshidkmdf) DRV:[b]64bit:[/b] - [2009-07-14 02:05:37 | 000,112,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WUDFPf.sys -- (WudfPf) DRV:[b]64bit:[/b] - [2009-07-14 02:02:08 | 000,015,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\MTConfig.sys -- (MTConfig) DRV:[b]64bit:[/b] - [2009-07-14 02:00:34 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CompositeBus.sys -- (CompositeBus) DRV:[b]64bit:[/b] - [2009-07-14 02:00:13 | 000,006,656 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\beep.sys -- (Beep) DRV:[b]64bit:[/b] - [2009-07-14 01:52:39 | 000,061,440 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\appid.sys -- (AppID) DRV:[b]64bit:[/b] - [2009-07-14 01:50:17 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\SysNative\drivers\scfilter.sys -- (scfilter) DRV:[b]64bit:[/b] - [2009-07-14 01:37:18 | 000,040,448 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\discache.sys -- (discache) DRV:[b]64bit:[/b] - [2009-07-14 01:31:06 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidbatt.sys -- (HidBatt) DRV:[b]64bit:[/b] - [2009-07-14 01:31:03 | 000,017,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\CmBatt.sys -- (CmBatt) DRV:[b]64bit:[/b] - [2009-07-14 01:27:17 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipmi.sys -- (AcpiPmi) DRV:[b]64bit:[/b] - [2009-07-14 01:19:25 | 000,060,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdppm.sys -- (AmdPPM) DRV:[b]64bit:[/b] - [2009-07-02 15:55:38 | 000,044,912 | ---- | M] (COMPAL ELECTRONIC INC.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\LPCFilter.sys -- (LPCFilter) DRV:[b]64bit:[/b] - [2009-06-22 18:06:38 | 000,035,008 | ---- | M] (TOSHIBA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\PGEffect.sys -- (PGEffect) DRV:[b]64bit:[/b] - [2009-06-20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr) DRV:[b]64bit:[/b] - [2009-06-19 20:15:22 | 000,014,472 | ---- | M] (TOSHIBA Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\TVALZFL.sys -- (TVALZFL) DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:[b]64bit:[/b] - [2009-05-22 22:52:30 | 000,215,040 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:[b]64bit:[/b] - [2009-05-20 19:04:56 | 000,202,016 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtHDMIVX.sys -- (RTHDMIAzAudService) DRV:[b]64bit:[/b] - [2009-05-05 01:30:28 | 000,016,440 | ---- | M] (Advanced Micro Devices Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\AtiPcie.sys -- (AtiPcie) AMD PCI Express (3GIO) DRV:[b]64bit:[/b] - [2008-02-22 18:54:00 | 000,019,496 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GearAspiWDM) DRV:[b]64bit:[/b] - [2008-02-12 04:59:18 | 000,297,496 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\VMM.sys -- (vmm) DRV:[b]64bit:[/b] - [2008-02-05 02:50:42 | 000,079,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VMNetSrv.sys -- (VPCNetS2) DRV:[b]64bit:[/b] - [2006-09-30 12:36:14 | 000,013,008 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\pstrip64.sys -- (PStrip64) DRV - [2010-03-28 16:11:09 | 000,222,160 | ---- | M] (TrueCrypt Foundation) [Kernel | System | Running] -- C:\Windows\SysWOW64\drivers\truecrypt.sys -- (truecrypt) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 03:16:02 | 000,014,336 | ---- | M] (Microsoft Corporation) [File_System | System | Running] -- C:\Windows\SysWOW64\netbios.dll -- (NetBIOS) DRV - [2009-06-10 23:28:14 | 000,001,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\wbem\mpsdrv.mof -- (mpsdrv) DRV - [2009-06-10 23:15:18 | 000,003,066 | ---- | M] () [Kernel | System | Running] -- C:\Windows\SysWOW64\wbem\tcpip.mof -- (Tcpip) DRV - [2008-04-30 21:05:04 | 000,115,912 | ---- | M] (DigitalPeers) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\dptrackerd.sys -- (dptrackerd) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.Google.com IE - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:[b]64bit:[/b] - BHO: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\Webfilter\AVKWebIEx64.dll (G Data Software AG) O2:[b]64bit:[/b] - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O2:[b]64bit:[/b] - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) O2 - BHO: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\Webfilter\AVKWebIE.dll (G Data Software AG) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) O2 - BHO: (Pomocnik rejestracji usługi Windows Live) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) O2 - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) O3:[b]64bit:[/b] - HKLM\..\Toolbar: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\Webfilter\AVKWebIEx64.dll (G Data Software AG) O3 - HKLM\..\Toolbar: (G Data WebFilter) - {0124123D-61B4-456f-AF86-78C53A0790C5} - C:\Program Files (x86)\G Data\InternetSecurity\Webfilter\AVKWebIE.dll (G Data Software AG) O4:[b]64bit:[/b] - HKLM..\Run: [00TCrdMain] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) O4:[b]64bit:[/b] - HKLM..\Run: [SmartFaceVWatcher] C:\Program Files\TOSHIBA\SmartFaceV\SmartFaceVWatcher.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [SmoothView] C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Teco] C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba Registration] C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (Toshiba Europe GmbH) O4:[b]64bit:[/b] - HKLM..\Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Toshiba Europe GmbH) O4:[b]64bit:[/b] - HKLM..\Run: [TosNC] C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosReelTimeMonitor] C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TosWaitSrv] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe (TOSHIBA Corporation) O4:[b]64bit:[/b] - HKLM..\Run: [TPwrMain] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) O4 - HKLM..\Run: [G DATA AntiVirus Trayapplication] C:\Program Files (x86)\G Data\InternetSecurity\AVKTray\AVKTray.exe (G Data Software AG) O4 - HKLM..\Run: [GDFirewallTray] C:\Program Files (x86)\G Data\InternetSecurity\Firewall\GDFirewallTray.exe (G DATA Software AG) O4 - HKLM..\Run: [HWSetup] C:\Program Files\TOSHIBA\Utilities\HWSetup.exe (TOSHIBA Electronics, Inc.) O4 - HKLM..\Run: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe (TOSHIBA CORPORATION) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe (TOSHIBA) O4 - HKLM..\Run: [ToshibaServiceStation] C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation) O4 - HKU\.DEFAULT..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKU\S-1-5-18..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation) O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [ALLUpdate] C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [RocketDock] C:\Program Files (x86)\RocketDock\RocketDock.exe () O4 - HKU\S-1-5-21-2871891977-2857288528-1801616501-1000..\Run: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe (TOSHIBA) O4 - Startup: C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk = C:\Program Files (x86)\DigitalPeers\CamTrack\camtrack.exe (DigitalPeers) O4 - Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk = C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O9:[b]64bit:[/b] - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9:[b]64bit:[/b] - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Wpis w blogu - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : &Wpis w blogu w Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll (Microsoft Corporation) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll (Microsoft Corporation) O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysNative\wshbth.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Windows\SysWOW64\wshbth.dll (Microsoft Corporation) O13 - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab (Java Plug-in 1.6.0_14) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.40.1 8.8.8.8 O18:[b]64bit:[/b] - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found O18:[b]64bit:[/b] - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found O18 - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~2\WIC4A1~1\MESSEN~1\MSGRAP~1.DLL (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O18 - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) O18:[b]64bit:[/b] - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:[b]64bit:[/b] - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysWow64\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O28:[b]64bit:[/b] - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) O30:[b]64bit:[/b] - LSA: Security Packages - (pku2u) - C:\Windows\SysNative\pku2u.dll (Microsoft Corporation) O30 - LSA: Security Packages - (pku2u) - C:\Windows\SysWow64\pku2u.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %* O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %* O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-04-03 13:56:49 | 000,000,000 | ---D | C] -- C:\_OTL [2010-04-03 13:12:03 | 000,106,224 | ---- | C] (G Data Software) -- C:\Windows\SysNative\drivers\GRD.sys [2010-04-03 12:41:18 | 000,074,184 | ---- | C] (G Data Software AG) -- C:\Windows\SysNative\drivers\MiniIcpt.sys [2010-04-03 12:40:48 | 000,057,288 | ---- | C] (G DATA Software AG) -- C:\Windows\SysNative\drivers\PktIcpt.sys [2010-04-03 12:40:29 | 000,042,952 | ---- | C] (G Data Software AG) -- C:\Windows\SysNative\drivers\HookCentre.sys [2010-04-03 12:39:33 | 000,034,760 | ---- | C] (G Data Software AG) -- C:\Windows\SysNative\drivers\GDBehave.sys [2010-04-03 12:39:29 | 000,048,584 | ---- | C] (G DATA Software AG) -- C:\Windows\SysNative\drivers\gdwfpcd64.sys [2010-04-03 12:38:35 | 000,000,000 | ---D | C] -- C:\ProgramData\G DATA [2010-04-03 12:38:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\G Data [2010-04-03 12:38:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\G DATA [2010-04-03 12:21:45 | 000,555,520 | ---- | C] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe [2010-04-02 23:31:57 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\CamTrack [2010-04-02 23:29:58 | 000,115,912 | ---- | C] (DigitalPeers) -- C:\Windows\SysWow64\drivers\dptrackerd.sys [2010-04-02 23:29:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DigitalPeers [2010-03-30 06:44:57 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Downloads [2010-03-30 02:09:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Student Notebook 2 [2010-03-30 00:36:24 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Sports Interactive [2010-03-29 17:29:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sports Interactive [2010-03-29 17:29:02 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Zero G Registry [2010-03-29 17:28:22 | 000,000,000 | -H-D | C] -- C:\Users\Dawid\InstallAnywhere [2010-03-28 16:11:41 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\TrueCrypt [2010-03-28 16:11:27 | 000,000,000 | ---D | C] -- C:\ProgramData\TrueCrypt [2010-03-28 16:11:09 | 000,222,160 | ---- | C] (TrueCrypt Foundation) -- C:\Windows\SysWow64\drivers\truecrypt.sys [2010-03-28 16:09:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TrueCrypt [2010-03-28 13:57:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Robster Productions [2010-03-28 11:01:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Image Grabber II [2010-03-28 10:12:22 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Outlook Files [2010-03-27 22:59:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Valve [2010-03-27 16:44:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio .NET 2008 [2010-03-27 16:44:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio .NET 2005 [2010-03-27 16:43:48 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services [2010-03-27 16:43:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER [2010-03-27 16:41:59 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2010-03-27 16:41:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET [2010-03-27 16:41:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Sync Framework [2010-03-27 16:36:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 8 [2010-03-27 16:35:02 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2010-03-27 16:33:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Analysis Services [2010-03-27 16:31:34 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft Help [2010-03-27 16:30:31 | 000,000,000 | RH-D | C] -- C:\MSOCache [2010-03-27 13:20:08 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\18 WoS Across America [2010-03-27 13:20:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trymedia [2010-03-27 12:05:26 | 000,000,000 | ---D | C] -- C:\Program Files\Temp [2010-03-27 11:41:42 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Desktop\Total Commander 7.50 Final [2010-03-26 16:46:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Codemasters [2010-03-26 16:46:15 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Games [2010-03-26 16:39:02 | 000,872,448 | ---- | C] (Blue Ripple Sound Limited) -- C:\Windows\SysWow64\rapture3d_oal.dll [2010-03-26 16:39:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BRS [2010-03-26 16:38:28 | 000,466,520 | ---- | C] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll [2010-03-26 16:38:28 | 000,445,016 | ---- | C] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll [2010-03-26 16:38:28 | 000,122,968 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll [2010-03-26 16:38:28 | 000,109,144 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll [2010-03-26 16:38:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenAL [2010-03-26 16:12:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Codemasters [2010-03-25 22:25:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Rockstar Games [2010-03-25 20:16:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games1 [2010-03-25 01:34:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Rockstar Games [2010-03-25 01:28:12 | 000,178,800 | ---- | C] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll [2010-03-25 01:25:43 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive [2010-03-25 01:25:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE [2010-03-23 22:25:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\.VirtualBox [2010-03-23 22:23:17 | 000,000,000 | ---D | C] -- C:\Program Files\Sun [2010-03-23 22:22:04 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2010-03-23 20:22:15 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Media Player Classic [2010-03-22 14:19:44 | 000,000,000 | ---D | C] -- C:\ProgramData\EA Logs [2010-03-21 11:34:59 | 000,000,000 | ---D | C] -- C:\Program Files\GetASFStream [2010-03-20 16:40:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Virtual Machines [2010-03-20 16:37:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Virtual PC [2010-03-20 00:36:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FLVPlayer [2010-03-20 00:26:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Nowy folder [2010-03-20 00:26:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\deamon [2010-03-20 00:25:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\DAEMON Tools Lite [2010-03-20 00:25:49 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2010-03-20 00:12:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\UltraISO [2010-03-20 00:12:34 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My ISO Files [2010-03-19 02:29:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NAPI-PROJEKT [2010-03-19 00:36:45 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\BestPractices [2010-03-19 00:36:42 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\BestPractices [2010-03-19 00:36:39 | 000,000,000 | ---D | C] -- C:\inetpub [2010-03-16 15:09:37 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\KONAMI [2010-03-16 14:59:26 | 000,000,000 | ---D | C] -- C:\ProgramData\KONAMI [2010-03-16 14:59:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KONAMI [2010-03-14 17:11:44 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\Electronic Arts [2010-03-14 17:09:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft WSE [2010-03-14 13:22:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Publish Providers [2010-03-14 13:22:35 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Sony [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Sony [2010-03-14 13:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\My Videos [2010-03-14 13:16:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Vstplugins [2010-03-14 13:16:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony [2010-03-14 13:15:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony [2010-03-14 13:12:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Setup [2010-03-14 01:18:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dzielenie i laczenie plikow [2010-03-13 23:53:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerStrip [2010-03-13 23:44:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavalys [2010-03-13 10:55:48 | 000,000,000 | ---D | C] -- C:\Windows\pss [2010-03-12 22:41:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RocketDock [2010-03-12 19:51:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FRAPS2 [2010-03-12 18:37:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HyCam2 [2010-03-12 18:11:23 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI [2010-03-12 09:16:53 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS Most Wanted [2010-03-12 01:14:20 | 000,000,000 | ---D | C] -- C:\Windows\Sun [2010-03-11 23:53:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2010-03-11 23:53:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2010-03-11 21:59:25 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies [2010-03-11 21:58:21 | 000,000,000 | ---D | C] -- C:\ATI [2010-03-11 20:57:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS Undercover [2010-03-11 20:56:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\PunkBuster [2010-03-11 20:46:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Games [2010-03-11 18:29:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\.rainlendar2 [2010-03-11 16:15:53 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ChomikBox [2010-03-11 16:09:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ChomikBox [2010-03-11 00:49:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\skypePM [2010-03-11 00:48:26 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Skype [2010-03-11 00:45:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2010-03-11 00:45:34 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2010-03-11 00:45:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2010-03-11 00:18:32 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\CircleDock [2010-03-11 00:02:50 | 000,000,000 | R-SD | C] -- C:\Users\Dawid\Documents\My Stationery [2010-03-10 23:51:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTorrent [2010-03-10 23:50:58 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\uTorrent [2010-03-10 23:47:37 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ipla [2010-03-10 23:47:37 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla [2010-03-10 23:47:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ipla [2010-03-10 23:44:07 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu 10 [2010-03-10 23:44:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Gadu-Gadu 10 [2010-03-10 23:43:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gadu-Gadu 10 [2010-03-10 23:27:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Opera [2010-03-10 23:27:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Opera [2010-03-10 23:27:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Opera [2010-03-10 22:35:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ApplicationHistory [2010-03-10 22:23:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\URTTEMP [2010-03-10 22:11:25 | 000,000,000 | ---D | C] -- C:\Windows\San Andreas Mod Installer [2010-03-10 22:11:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\San Andreas Mod Installer [2010-03-10 22:00:49 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Adobe [2010-03-10 21:10:24 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Documents\Downloads [2010-03-10 20:45:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Deployment [2010-03-10 20:45:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Apps [2010-03-10 20:40:19 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Mikrotik [2010-03-10 20:29:22 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ElevatedDiagnostics [2010-03-10 18:06:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Activision [2010-03-10 16:23:29 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\WinRAR [2010-03-10 16:22:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinRAR [2010-03-09 22:03:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Malwarebytes [2010-03-09 22:03:41 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys [2010-03-09 22:03:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010-03-09 22:03:38 | 000,022,104 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2010-03-09 22:03:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2010-03-09 21:22:52 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu [2010-03-09 20:53:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FIFA 09 [2010-03-09 20:31:28 | 000,000,000 | RH-D | C] -- C:\Users\Dawid\AppData\Roaming\SecuROM [2010-03-09 20:20:49 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Gadu-Gadu [2010-03-09 15:42:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FRAPS [2010-03-07 09:24:18 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Adobe [2010-03-06 17:30:43 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\NFS SHIFT [2010-03-05 23:26:01 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\icytower1.3 [2010-03-05 19:59:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts [2010-03-05 18:52:41 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\AGEIA [2010-03-05 18:52:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AGEIA Technologies [2010-03-05 14:58:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts [2010-03-05 00:11:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CCleaner [2010-03-04 23:55:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sierra On-Line [2010-03-04 23:55:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SIERRA [2010-03-04 00:59:50 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Nowy folder [2010-03-03 23:53:44 | 000,000,000 | ---D | C] -- C:\cdigit [2010-03-03 23:30:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Winamp [2010-03-03 22:04:04 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\GHISLER [2010-03-03 18:40:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FFOutput [2010-03-03 18:37:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FreeTime [2010-03-03 18:37:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gabest [2010-03-03 17:12:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\!ALL [2010-03-03 17:07:20 | 000,000,000 | ---D | C] -- C:\!PrisonBreak [2010-03-03 16:21:41 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\TOSHIBA_Corporation [2010-03-03 16:21:21 | 000,091,568 | ---- | C] (PowerISO Computing, Inc.) -- C:\Windows\SysNative\drivers\scdemu.sys [2010-03-03 16:21:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerISO [2010-03-03 14:43:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Total Video Converter [2010-03-03 01:03:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\WinX DVD Player 3.0 [2010-03-03 00:46:55 | 000,892,928 | ---- | C] (Free Software Foundation) -- C:\Windows\SysWow64\iconv.dll [2010-03-03 00:46:55 | 000,000,000 | ---D | C] -- C:\ProgramData\ALLPlayer [2010-03-03 00:46:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ALLPlayer [2010-03-03 00:36:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Xvid [2010-03-03 00:31:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\totalcmd [2010-03-03 00:31:26 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\GHISLER [2010-03-03 00:14:10 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\Windows\SysWow64\pncrt.dll [2010-03-03 00:14:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Real Alternative [2010-03-02 22:39:16 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\GTA San Andreas User Files [2010-03-02 22:28:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Documents\FIFA 07 [2010-03-02 22:15:43 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed [2010-03-02 21:48:13 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Diagnostics [2010-03-02 21:36:21 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft Games [2010-03-02 21:33:12 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Ashampoo [2010-03-02 21:19:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Rockstar Games [2010-03-02 20:41:03 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ashampoo [2010-03-02 20:41:03 | 000,000,000 | ---D | C] -- C:\ProgramData\ashampoo [2010-03-02 20:40:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo [2010-03-02 20:05:39 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Google [2010-03-02 20:05:38 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Google [2010-03-02 20:01:30 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Leadertech [2010-03-02 19:47:35 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Toshiba [2010-03-02 19:39:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Sports [2010-03-02 19:32:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\ATI [2010-03-02 19:32:45 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\ATI [2010-03-02 19:32:33 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Toshiba [2010-03-02 19:32:05 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Searches [2010-03-02 19:31:51 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Identities [2010-03-02 19:31:45 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Contacts [2010-03-02 19:31:42 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\VirtualStore [2010-03-02 19:29:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ToshibaEurope [2010-03-02 19:29:11 | 000,000,000 | --SD | C] -- C:\Users\Dawid\AppData\Roaming\Microsoft [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Saved Games [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Music [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Links [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Favorites [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Documents [2010-03-02 19:29:11 | 000,000,000 | R--D | C] -- C:\Users\Dawid\Desktop [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Ustawienia lokalne [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Temporary Internet Files [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Szablony [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\SendTo [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Recent [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\PrintHood [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\NetHood [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moje wideo [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moje obrazy [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Moje dokumenty [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Documents\Moja muzyka [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Menu Start [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Historia [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Dane aplikacji [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\AppData\Local\Dane aplikacji [2010-03-02 19:29:11 | 000,000,000 | -HSD | C] -- C:\Users\Dawid\Cookies [2010-03-02 19:29:11 | 000,000,000 | -H-D | C] -- C:\Users\Dawid\AppData [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Videos [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Temp [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\Pictures [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Local\Microsoft [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Media Center Programs [2010-03-02 19:29:11 | 000,000,000 | ---D | C] -- C:\Users\Dawid\AppData\Roaming\Macromedia [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2010-03-02 19:28:55 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-04-03 14:26:03 | 000,000,246 | -H-- | M] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-03 14:25:32 | 002,359,296 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT [2010-04-03 14:19:03 | 000,000,286 | -H-- | M] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [2010-04-03 14:12:43 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKg3040.html [2010-04-03 14:12:43 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVW3040.html [2010-04-03 14:06:57 | 000,016,080 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010-04-03 14:06:57 | 000,016,080 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010-04-03 14:06:04 | 000,001,058 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000UA.job [2010-04-03 14:00:15 | 000,074,184 | ---- | M] (G Data Software AG) -- C:\Windows\SysNative\drivers\MiniIcpt.sys [2010-04-03 14:00:08 | 000,057,288 | ---- | M] (G DATA Software AG) -- C:\Windows\SysNative\drivers\PktIcpt.sys [2010-04-03 13:59:30 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-04-03 13:59:25 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-04-03 13:59:21 | 1407,995,904 | -HS- | M] () -- C:\hiberfil.sys [2010-04-03 13:58:25 | 006,514,571 | -H-- | M] () -- C:\Users\Dawid\AppData\Local\IconCache.db [2010-04-03 13:12:03 | 000,106,224 | ---- | M] (G Data Software) -- C:\Windows\SysNative\drivers\GRD.sys [2010-04-03 13:11:29 | 000,048,584 | ---- | M] (G DATA Software AG) -- C:\Windows\SysNative\drivers\gdwfpcd64.sys [2010-04-03 13:11:15 | 000,034,760 | ---- | M] (G Data Software AG) -- C:\Windows\SysNative\drivers\GDBehave.sys [2010-04-03 12:49:45 | 001,639,364 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2010-04-03 12:49:45 | 000,734,302 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat [2010-04-03 12:49:45 | 000,647,596 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2010-04-03 12:49:45 | 000,148,782 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat [2010-04-03 12:49:45 | 000,116,476 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2010-04-03 12:41:55 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKC4380.html [2010-04-03 12:41:55 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempuB4380.html [2010-04-03 12:40:30 | 000,002,089 | ---- | M] () -- C:\Users\Public\Desktop\G Data.lnk [2010-04-03 12:40:29 | 000,042,952 | ---- | M] (G Data Software AG) -- C:\Windows\SysNative\drivers\HookCentre.sys [2010-04-03 12:21:59 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Users\Dawid\Desktop\OTL.exe [2010-04-03 11:43:24 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJw5480.html [2010-04-03 11:43:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXI5480.html [2010-04-03 05:06:00 | 000,001,006 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000Core.job [2010-04-03 00:20:02 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUc4340.html [2010-04-03 00:20:02 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUV4340.html [2010-04-02 21:33:20 | 000,030,295 | ---- | M] () -- C:\Users\Dawid\Desktop\The_Girl_Next_Door_2004_ENG_DVDrip[www.btmon.com].torrent [2010-04-02 20:12:19 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.ini [2010-04-02 20:10:14 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bak [2010-03-31 15:31:04 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bk! [2010-03-31 14:28:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCG3740.html [2010-03-31 14:28:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPZ3740.html [2010-03-31 07:20:46 | 000,010,485 | ---- | M] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bko [2010-03-31 01:26:29 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYe3456.html [2010-03-31 01:26:29 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplU3456.html [2010-03-30 22:12:26 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempxs4128.html [2010-03-30 22:12:26 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFD4128.html [2010-03-30 21:29:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLN4792.html [2010-03-30 21:29:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdE4792.html [2010-03-30 18:40:11 | 000,425,960 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2010-03-30 17:30:47 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSw4712.html [2010-03-30 17:30:47 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOF4712.html [2010-03-29 17:25:53 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempML1984.html [2010-03-29 17:25:53 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOO1984.html [2010-03-29 14:37:56 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDi3088.html [2010-03-29 14:37:56 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempyh3088.html [2010-03-29 14:03:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMw6648.html [2010-03-29 14:03:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVi6648.html [2010-03-28 21:35:16 | 000,000,192 | ---- | M] () -- C:\Windows\winamp.ini [2010-03-28 21:18:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templb6472.html [2010-03-28 21:18:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEp6472.html [2010-03-28 16:11:09 | 000,222,160 | ---- | M] (TrueCrypt Foundation) -- C:\Windows\SysWow64\drivers\truecrypt.sys [2010-03-28 15:51:52 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNS2772.html [2010-03-28 15:51:52 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNA2772.html [2010-03-28 14:47:17 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNH6716.html [2010-03-28 14:47:17 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyR6716.html [2010-03-28 10:31:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempkrG900.html [2010-03-28 10:31:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdJm900.html [2010-03-28 10:08:51 | 001,661,362 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010-03-28 09:04:58 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphQ6436.html [2010-03-28 09:04:58 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdU6436.html [2010-03-27 21:43:51 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFP1184.html [2010-03-27 21:43:51 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOw1184.html [2010-03-27 18:53:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnlv892.html [2010-03-27 18:53:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFeJ892.html [2010-03-27 17:44:54 | 000,111,224 | ---- | M] () -- C:\Users\Dawid\AppData\Local\GDIPFONTCACHEV1.DAT [2010-03-27 17:09:20 | 000,002,765 | ---- | M] () -- C:\Users\Dawid\Desktop\Office 2010.lnk [2010-03-27 16:54:13 | 000,000,039 | ---- | M] () -- C:\Windows\vbaddin.ini [2010-03-27 16:34:50 | 000,000,510 | ---- | M] () -- C:\Windows\win.ini [2010-03-27 12:50:50 | 000,111,530 | ---- | M] () -- C:\Windows\SysWow64\MH_iZBolAv.exe [2010-03-27 10:58:39 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdP6384.html [2010-03-27 10:58:39 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFe6384.html [2010-03-26 17:49:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYg5796.html [2010-03-26 17:49:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYT5796.html [2010-03-26 17:15:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDr2904.html [2010-03-26 17:15:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempfP2904.html [2010-03-26 16:44:49 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTt1504.html [2010-03-26 16:44:49 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempuz1504.html [2010-03-26 16:38:28 | 000,466,520 | ---- | M] (Creative Labs) -- C:\Windows\SysNative\wrap_oal.dll [2010-03-26 16:38:28 | 000,445,016 | ---- | M] (Creative Labs) -- C:\Windows\SysWow64\wrap_oal.dll [2010-03-26 16:38:28 | 000,122,968 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysNative\OpenAL32.dll [2010-03-26 16:38:28 | 000,109,144 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\SysWow64\OpenAL32.dll [2010-03-26 14:55:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEt6276.html [2010-03-26 14:55:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJG6276.html [2010-03-25 21:08:28 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTS6072.html [2010-03-25 21:08:28 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptp6072.html [2010-03-25 19:55:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVc6944.html [2010-03-25 19:55:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXg6944.html [2010-03-25 18:15:10 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempet4564.html [2010-03-25 18:15:10 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempBd4564.html [2010-03-25 16:36:53 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdD5384.html [2010-03-25 16:36:53 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempEp5384.html [2010-03-25 01:28:12 | 000,178,800 | ---- | M] (Sony DADC Austria AG.) -- C:\Windows\SysWow64\CmdLineExt_x64.dll [2010-03-25 00:22:48 | 000,002,562 | ---- | M] () -- C:\Windows\diagwrn.xml [2010-03-25 00:22:48 | 000,001,908 | ---- | M] () -- C:\Windows\diagerr.xml [2010-03-24 00:40:27 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempnJ5532.html [2010-03-24 00:40:27 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempHv5532.html [2010-03-23 16:03:27 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemppS1224.html [2010-03-23 16:03:27 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempBa1224.html [2010-03-22 21:26:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplW5416.html [2010-03-22 21:26:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCV5416.html [2010-03-22 15:38:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCK2924.html [2010-03-22 15:38:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempew2924.html [2010-03-22 14:50:08 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptl8068.html [2010-03-22 14:50:08 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLy8068.html [2010-03-22 14:29:28 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRd5228.html [2010-03-22 14:29:28 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempLx5228.html [2010-03-22 14:19:09 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempjX2844.html [2010-03-22 14:19:09 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUd2844.html [2010-03-21 22:23:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIc6356.html [2010-03-21 22:23:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCW6356.html [2010-03-21 17:21:18 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempxt6776.html [2010-03-21 17:21:18 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFd6776.html [2010-03-21 16:58:45 | 000,004,608 | ---- | M] () -- C:\Users\Dawid\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-03-21 13:01:16 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempmj7620.html [2010-03-21 13:01:16 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIi7620.html [2010-03-21 11:45:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOa3532.html [2010-03-21 11:45:58 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Temptv3532.html [2010-03-20 18:05:19 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQIQ592.html [2010-03-20 18:05:19 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDMa592.html [2010-03-20 16:19:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKK2080.html [2010-03-20 16:19:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempoG2080.html [2010-03-20 14:32:39 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempgx5332.html [2010-03-20 14:32:39 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPE5332.html [2010-03-20 12:43:05 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSx3676.html [2010-03-20 12:43:05 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempif3676.html [2010-03-20 10:31:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJC6856.html [2010-03-20 10:31:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJF6856.html [2010-03-20 00:28:08 | 000,834,544 | ---- | M] () -- C:\Windows\SysNative\drivers\sptd.sys [2010-03-19 22:47:11 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVk4152.html [2010-03-19 22:47:11 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempeZ4152.html [2010-03-19 01:26:02 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyS5860.html [2010-03-19 01:26:02 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempiB5860.html [2010-03-18 21:55:04 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempUW3516.html [2010-03-18 21:55:04 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDq3516.html [2010-03-18 19:49:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempuia708.html [2010-03-18 19:49:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempsjp708.html [2010-03-18 14:56:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOu1956.html [2010-03-18 14:56:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempux1956.html [2010-03-18 02:06:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQF2812.html [2010-03-18 02:06:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMk2812.html [2010-03-17 01:55:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCO3140.html [2010-03-17 01:55:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempkX3140.html [2010-03-16 20:01:42 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAD4276.html [2010-03-16 20:01:42 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempnX4276.html [2010-03-16 17:56:55 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphLn916.html [2010-03-16 17:56:55 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAwk916.html [2010-03-16 16:48:44 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphD2564.html [2010-03-16 16:48:44 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templx2564.html [2010-03-16 02:16:32 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnj4596.html [2010-03-16 02:16:32 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNQ4596.html [2010-03-15 22:31:00 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDd2172.html [2010-03-15 22:31:00 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempNF2172.html [2010-03-15 19:46:12 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempAH5644.html [2010-03-15 19:46:12 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempil5644.html [2010-03-15 16:49:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSS2140.html [2010-03-15 16:49:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTv2140.html [2010-03-15 15:31:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempPe6356.html [2010-03-15 15:31:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemphV6356.html [2010-03-15 00:40:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFC5384.html [2010-03-15 00:40:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempcl5384.html [2010-03-14 21:57:06 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKv6828.html [2010-03-14 21:57:06 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempMm6828.html [2010-03-14 21:43:21 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempaG6336.html [2010-03-14 21:43:21 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempWt6336.html [2010-03-14 20:01:55 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempxhD788.html [2010-03-14 20:01:55 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempwoI788.html [2010-03-14 18:22:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempas6812.html [2010-03-14 18:22:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempJD6812.html [2010-03-14 17:21:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempvcN148.html [2010-03-14 17:21:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemplaH148.html [2010-03-14 15:23:10 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprWb148.html [2010-03-14 15:23:10 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYVU148.html [2010-03-14 14:13:50 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRl4988.html [2010-03-14 14:13:50 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempmG4988.html [2010-03-14 12:49:42 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprG5148.html [2010-03-14 12:49:42 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIQ5148.html [2010-03-14 12:43:21 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVO5768.html [2010-03-14 12:43:21 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempww5768.html [2010-03-14 11:30:18 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOoo788.html [2010-03-14 11:30:18 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TemprAI788.html [2010-03-14 03:00:16 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempCK3008.html [2010-03-14 03:00:16 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempdW3008.html [2010-03-14 02:13:57 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempSx5164.html [2010-03-14 02:13:57 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOs5164.html [2010-03-13 23:54:16 | 000,000,729 | ---- | M] () -- C:\Users\Dawid\Documents\ps_mon.inf [2010-03-13 21:58:03 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempFa5456.html [2010-03-13 21:58:03 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempXN5456.html [2010-03-13 15:46:25 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVHT820.html [2010-03-13 15:46:25 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOHE820.html [2010-03-13 12:08:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDx4396.html [2010-03-13 12:08:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempKg4396.html [2010-03-13 10:56:01 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempRT2664.html [2010-03-13 10:56:01 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempOH2664.html [2010-03-13 00:45:45 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempQu6396.html [2010-03-13 00:45:45 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempyW6396.html [2010-03-13 00:24:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempER1108.html [2010-03-13 00:24:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempYz1108.html [2010-03-12 23:30:51 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempyr2700.html [2010-03-12 23:30:51 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempDl2700.html [2010-03-12 18:56:29 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempnq4680.html [2010-03-12 18:56:29 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempIE4680.html [2010-03-12 14:58:30 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Templa2980.html [2010-03-12 14:58:30 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempTz2980.html [2010-03-12 01:24:24 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempVG1172.html [2010-03-12 01:24:24 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempbQ1172.html [2010-03-11 22:46:59 | 000,183,112 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.exe [2010-03-11 20:57:03 | 000,066,872 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrA.exe [2010-03-11 20:38:31 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempbO4644.html [2010-03-11 20:38:31 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempup4644.html [2010-03-11 19:13:56 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempusg968.html [2010-03-11 19:13:56 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempepv968.html [2010-03-11 14:59:59 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempzk3952.html [2010-03-11 14:59:59 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempcI3952.html [2010-03-11 08:33:46 | 000,002,432 | ---- | M] () -- C:\Users\Dawid\AppData\Local\Tempga5840.html [2010-03-11 08:33:46 | 000,002,089 | ---- | M] () -- C:\Users\Dawid\AppData\Local\TempvH5840.html [2010-03-11 00:49:18 | 000,000,056 | -H-- | M] () -- C:\Windows\SysWow64\ezsidmv.dat [2010-03-10 22:35:39 | 000,000,093 | ---- | M] () -- C:\Users\Dawid\AppData\Local\fusioncache.dat [2010-03-10 18:13:51 | 000,000,331 | ---- | M] () -- C:\Windows\game.ini [2010-03-06 00:32:04 | 000,000,017 | ---- | M] () -- C:\Users\Dawid\AppData\Local\resmon.resmoncfg [2010-03-04 23:55:55 | 000,000,180 | ---- | M] () -- C:\Windows\SIERRA.INI [2010-03-03 16:22:01 | 000,524,288 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010-03-03 16:22:01 | 000,524,288 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010-03-03 16:22:01 | 000,065,536 | -HS- | M] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010-03-02 20:29:44 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010-03-02 19:29:11 | 000,000,020 | -HS- | M] () -- C:\Users\Dawid\ntuser.ini [2010-03-02 18:28:16 | 000,064,519 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2010-03-02 18:28:16 | 000,064,519 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2010-03-02 18:26:51 | 000,000,000 | RHS- | M] () -- C:\Windows\SysWow64\drivers\TOSHIBA_Satellite L500D_10747-PL_PSLT0E-00G00.MRK [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-04-03 14:12:43 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKg3040.html [2010-04-03 14:12:43 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVW3040.html [2010-04-03 12:40:30 | 000,002,089 | ---- | C] () -- C:\Users\Public\Desktop\G Data.lnk [2010-04-03 11:55:09 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKC4380.html [2010-04-03 11:55:09 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempuB4380.html [2010-04-03 09:25:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJw5480.html [2010-04-03 09:25:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXI5480.html [2010-04-02 23:38:23 | 000,000,286 | -H-- | C] () -- C:\Windows\tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [2010-04-02 23:38:11 | 000,000,246 | -H-- | C] () -- C:\Windows\tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-02 23:30:06 | 000,001,123 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CamTrack.lnk [2010-04-02 21:33:20 | 000,030,295 | ---- | C] () -- C:\Users\Dawid\Desktop\The_Girl_Next_Door_2004_ENG_DVDrip[www.btmon.com].torrent [2010-04-02 20:17:10 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUc4340.html [2010-04-02 20:17:10 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUV4340.html [2010-03-31 13:45:02 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCG3740.html [2010-03-31 13:45:02 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPZ3740.html [2010-03-31 00:29:36 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYe3456.html [2010-03-31 00:29:36 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplU3456.html [2010-03-30 21:56:06 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempxs4128.html [2010-03-30 21:56:06 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFD4128.html [2010-03-30 18:49:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLN4792.html [2010-03-30 18:49:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdE4792.html [2010-03-29 19:47:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSw4712.html [2010-03-29 19:47:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOF4712.html [2010-03-29 16:44:57 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempML1984.html [2010-03-29 16:44:57 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOO1984.html [2010-03-29 14:20:32 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDi3088.html [2010-03-29 14:20:32 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempyh3088.html [2010-03-28 21:55:57 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMw6648.html [2010-03-28 21:55:57 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVi6648.html [2010-03-28 15:56:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templb6472.html [2010-03-28 15:56:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEp6472.html [2010-03-28 15:35:22 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNS2772.html [2010-03-28 15:35:22 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNA2772.html [2010-03-28 10:34:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNH6716.html [2010-03-28 10:34:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyR6716.html [2010-03-28 09:54:18 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempkrG900.html [2010-03-28 09:54:18 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdJm900.html [2010-03-27 23:00:03 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphQ6436.html [2010-03-27 23:00:03 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdU6436.html [2010-03-27 19:28:37 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFP1184.html [2010-03-27 19:28:37 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOw1184.html [2010-03-27 17:06:58 | 000,002,765 | ---- | C] () -- C:\Users\Dawid\Desktop\Office 2010.lnk [2010-03-27 13:11:04 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnlv892.html [2010-03-27 13:11:04 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFeJ892.html [2010-03-27 12:50:50 | 000,111,530 | ---- | C] () -- C:\Windows\SysWow64\MH_iZBolAv.exe [2010-03-27 12:05:33 | 000,201,728 | ---- | C] () -- C:\Windows\SysWow64\allplugin.exe [2010-03-26 21:38:10 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdP6384.html [2010-03-26 21:38:10 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFe6384.html [2010-03-26 17:25:45 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYg5796.html [2010-03-26 17:25:45 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYT5796.html [2010-03-26 17:10:25 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDr2904.html [2010-03-26 17:10:25 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempfP2904.html [2010-03-26 15:37:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTt1504.html [2010-03-26 15:37:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempuz1504.html [2010-03-25 22:36:33 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEt6276.html [2010-03-25 22:36:33 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJG6276.html [2010-03-25 21:06:59 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTS6072.html [2010-03-25 21:06:59 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptp6072.html [2010-03-25 19:36:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVc6944.html [2010-03-25 19:36:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXg6944.html [2010-03-25 18:10:47 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempet4564.html [2010-03-25 18:10:47 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempBd4564.html [2010-03-24 14:52:20 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdD5384.html [2010-03-24 14:52:20 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempEp5384.html [2010-03-23 17:12:17 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempnJ5532.html [2010-03-23 17:12:17 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempHv5532.html [2010-03-22 22:11:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemppS1224.html [2010-03-22 22:11:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempBa1224.html [2010-03-22 21:16:48 | 000,002,562 | ---- | C] () -- C:\Windows\diagwrn.xml [2010-03-22 21:16:48 | 000,001,908 | ---- | C] () -- C:\Windows\diagerr.xml [2010-03-22 20:55:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplW5416.html [2010-03-22 20:55:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCV5416.html [2010-03-22 15:15:53 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCK2924.html [2010-03-22 15:15:53 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempew2924.html [2010-03-22 14:42:17 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptl8068.html [2010-03-22 14:42:17 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLy8068.html [2010-03-22 14:19:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRd5228.html [2010-03-22 14:19:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempLx5228.html [2010-03-21 23:15:26 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempjX2844.html [2010-03-21 23:15:26 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUd2844.html [2010-03-21 22:11:27 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIc6356.html [2010-03-21 22:11:27 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCW6356.html [2010-03-21 13:56:56 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempxt6776.html [2010-03-21 13:56:56 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFd6776.html [2010-03-21 12:51:12 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempmj7620.html [2010-03-21 12:51:12 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIi7620.html [2010-03-20 20:48:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOa3532.html [2010-03-20 20:48:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Temptv3532.html [2010-03-20 17:49:43 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQIQ592.html [2010-03-20 17:49:43 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDMa592.html [2010-03-20 16:09:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKK2080.html [2010-03-20 16:09:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempoG2080.html [2010-03-20 13:54:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempgx5332.html [2010-03-20 13:54:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPE5332.html [2010-03-20 12:05:24 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSx3676.html [2010-03-20 12:05:24 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempif3676.html [2010-03-20 00:28:08 | 000,834,544 | ---- | C] () -- C:\Windows\SysNative\drivers\sptd.sys [2010-03-19 23:38:34 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJC6856.html [2010-03-19 23:38:34 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJF6856.html [2010-03-19 20:45:55 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVk4152.html [2010-03-19 20:45:55 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempeZ4152.html [2010-03-18 22:20:30 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyS5860.html [2010-03-18 22:20:30 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempiB5860.html [2010-03-18 21:10:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempUW3516.html [2010-03-18 21:10:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDq3516.html [2010-03-18 19:49:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempuia708.html [2010-03-18 19:49:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempsjp708.html [2010-03-18 14:51:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOu1956.html [2010-03-18 14:51:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempux1956.html [2010-03-18 13:50:55 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bko [2010-03-17 15:01:40 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQF2812.html [2010-03-17 15:01:40 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMk2812.html [2010-03-17 14:47:07 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bk! [2010-03-17 14:46:15 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.bak [2010-03-16 21:54:08 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCO3140.html [2010-03-16 21:54:08 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempkX3140.html [2010-03-16 19:50:46 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAD4276.html [2010-03-16 19:50:46 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempnX4276.html [2010-03-16 17:56:23 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphLn916.html [2010-03-16 17:56:23 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAwk916.html [2010-03-16 16:05:42 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphD2564.html [2010-03-16 16:05:42 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templx2564.html [2010-03-15 23:51:04 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnj4596.html [2010-03-15 23:51:04 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNQ4596.html [2010-03-15 22:27:31 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDd2172.html [2010-03-15 22:27:31 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempNF2172.html [2010-03-15 18:25:38 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempAH5644.html [2010-03-15 18:25:38 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempil5644.html [2010-03-15 16:47:44 | 000,004,608 | ---- | C] () -- C:\Users\Dawid\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-03-15 16:46:33 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSS2140.html [2010-03-15 16:46:33 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTv2140.html [2010-03-15 15:05:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempPe6356.html [2010-03-15 15:05:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemphV6356.html [2010-03-14 22:17:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFC5384.html [2010-03-14 22:17:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempcl5384.html [2010-03-14 21:56:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKv6828.html [2010-03-14 21:56:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempMm6828.html [2010-03-14 21:40:39 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempaG6336.html [2010-03-14 21:40:39 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempWt6336.html [2010-03-14 19:30:24 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempxhD788.html [2010-03-14 19:30:24 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempwoI788.html [2010-03-14 18:00:20 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempas6812.html [2010-03-14 18:00:20 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempJD6812.html [2010-03-14 16:24:42 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempvcN148.html [2010-03-14 16:24:42 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemplaH148.html [2010-03-14 15:22:29 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprWb148.html [2010-03-14 15:22:29 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYVU148.html [2010-03-14 14:07:50 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRl4988.html [2010-03-14 14:07:50 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempmG4988.html [2010-03-14 12:45:59 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprG5148.html [2010-03-14 12:45:59 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIQ5148.html [2010-03-14 12:42:51 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVO5768.html [2010-03-14 12:42:51 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempww5768.html [2010-03-14 11:29:05 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOoo788.html [2010-03-14 11:29:05 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TemprAI788.html [2010-03-14 02:27:14 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempCK3008.html [2010-03-14 02:27:14 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempdW3008.html [2010-03-13 23:54:16 | 000,000,729 | ---- | C] () -- C:\Users\Dawid\Documents\ps_mon.inf [2010-03-13 23:53:44 | 000,010,485 | ---- | C] () -- C:\Users\Dawid\AppData\Roaming\PStrip.ini [2010-03-13 23:53:09 | 000,013,008 | ---- | C] () -- C:\Windows\SysNative\drivers\pstrip64.sys [2010-03-13 22:33:13 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempSx5164.html [2010-03-13 22:33:13 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOs5164.html [2010-03-13 16:23:38 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempFa5456.html [2010-03-13 16:23:38 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempXN5456.html [2010-03-13 15:06:07 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVHT820.html [2010-03-13 15:06:07 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOHE820.html [2010-03-13 11:38:39 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDx4396.html [2010-03-13 11:38:39 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempKg4396.html [2010-03-13 10:53:23 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempRT2664.html [2010-03-13 10:53:23 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempOH2664.html [2010-03-13 00:25:03 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempQu6396.html [2010-03-13 00:25:03 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempyW6396.html [2010-03-13 00:24:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempER1108.html [2010-03-13 00:24:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempYz1108.html [2010-03-12 19:48:49 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempyr2700.html [2010-03-12 19:48:49 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempDl2700.html [2010-03-12 16:49:56 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempnq4680.html [2010-03-12 16:49:56 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempIE4680.html [2010-03-12 14:58:30 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Templa2980.html [2010-03-12 14:58:30 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempTz2980.html [2010-03-11 22:45:35 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempVG1172.html [2010-03-11 22:45:35 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempbQ1172.html [2010-03-11 19:50:28 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempbO4644.html [2010-03-11 19:50:28 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempup4644.html [2010-03-11 18:28:31 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempusg968.html [2010-03-11 18:28:31 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempepv968.html [2010-03-11 14:48:53 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempzk3952.html [2010-03-11 14:48:53 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempcI3952.html [2010-03-11 00:49:18 | 000,000,056 | -H-- | C] () -- C:\Windows\SysWow64\ezsidmv.dat [2010-03-10 23:45:16 | 000,002,432 | ---- | C] () -- C:\Users\Dawid\AppData\Local\Tempga5840.html [2010-03-10 23:45:16 | 000,002,089 | ---- | C] () -- C:\Users\Dawid\AppData\Local\TempvH5840.html [2010-03-10 22:35:39 | 000,000,093 | ---- | C] () -- C:\Users\Dawid\AppData\Local\fusioncache.dat [2010-03-10 22:24:06 | 001,661,362 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2010-03-10 20:45:31 | 000,001,058 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000UA.job [2010-03-10 20:45:30 | 000,001,006 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-2871891977-2857288528-1801616501-1000Core.job [2010-03-10 18:14:13 | 000,183,112 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe [2010-03-10 18:13:55 | 000,066,872 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe [2010-03-10 18:13:51 | 000,000,331 | ---- | C] () -- C:\Windows\game.ini [2010-03-06 00:32:04 | 000,000,017 | ---- | C] () -- C:\Users\Dawid\AppData\Local\resmon.resmoncfg [2010-03-04 23:54:37 | 000,000,180 | ---- | C] () -- C:\Windows\SIERRA.INI [2010-03-03 23:30:52 | 000,053,248 | ---- | C] () -- C:\Windows\SysWow64\pxhpinst.exe [2010-03-03 23:30:46 | 000,000,192 | ---- | C] () -- C:\Windows\winamp.ini [2010-03-03 00:46:55 | 000,797,184 | ---- | C] () -- C:\Windows\SysWow64\ac3filter.ax [2010-03-03 00:36:34 | 000,881,664 | ---- | C] () -- C:\Windows\SysWow64\xvidcore.dll [2010-03-03 00:36:34 | 000,180,224 | ---- | C] () -- C:\Windows\SysWow64\xvidvfw.dll [2010-03-03 00:36:34 | 000,077,824 | ---- | C] () -- C:\Windows\SysWow64\xvid.ax [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\UC.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\RAR.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\PKZIP.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\PKUNZIP.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\NOCLOSE.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\LHA.PIF [2010-03-03 00:31:26 | 000,000,545 | ---- | C] () -- C:\Windows\ARJ.PIF [2010-03-02 20:29:44 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2010-03-02 19:29:11 | 002,359,296 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT [2010-03-02 19:29:11 | 000,524,288 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000002.regtrans-ms [2010-03-02 19:29:11 | 000,524,288 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TMContainer00000000000000000001.regtrans-ms [2010-03-02 19:29:11 | 000,065,536 | -HS- | C] () -- C:\Users\Dawid\NTUSER.DAT{016888bd-6c6f-11de-8d1d-001e0bcde3ec}.TM.blf [2010-03-02 19:29:11 | 000,000,020 | -HS- | C] () -- C:\Users\Dawid\ntuser.ini [2010-03-02 18:26:51 | 000,000,000 | RHS- | C] () -- C:\Windows\SysWow64\drivers\TOSHIBA_Satellite L500D_10747-PL_PSLT0E-00G00.MRK [2009-11-06 11:58:04 | 000,178,975 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat [2009-11-06 00:34:22 | 000,000,000 | ---- | C] () -- C:\Windows\NDSTray.INI [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009-07-13 23:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009-06-19 21:06:22 | 000,197,912 | ---- | C] () -- C:\Windows\SysWow64\physxcudart_20.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelTraditionalChinese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSwedish.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSpanish.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelSimplifiedChinese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelPortugese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelKorean.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelJapanese.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelGerman.dll [2009-06-19 21:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\SysWow64\AgCPanelFrench.dll [2009-04-28 05:37:00 | 000,028,672 | ---- | C] () -- C:\Windows\SysWow64\SPCtl.dll [2002-10-16 00:54:04 | 000,153,088 | ---- | C] () -- C:\Windows\SysWow64\unrar.dll [color=#E56717]========== LOP Check ==========[/color] [2010-03-02 21:33:12 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Ashampoo [2010-04-03 00:19:56 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\CamTrack [2010-03-11 19:13:57 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\ChomikBox [2010-03-20 10:35:27 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\DAEMON Tools Lite [2010-03-09 21:22:52 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu [2010-03-11 08:37:09 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Gadu-Gadu 10 [2010-03-04 00:13:15 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\GHISLER [2010-04-03 13:12:29 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\ipla [2010-03-02 20:01:30 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Leadertech [2010-03-10 20:40:19 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Mikrotik [2010-03-10 23:27:33 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Opera [2010-03-14 13:22:51 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Publish Providers [2010-03-14 13:22:29 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Sony [2010-03-30 00:36:24 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Sports Interactive [2010-03-02 21:20:46 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\Toshiba [2010-03-28 16:14:58 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\TrueCrypt [2010-04-03 14:34:27 | 000,000,000 | ---D | M] -- C:\Users\Dawid\AppData\Roaming\uTorrent [2009-07-14 07:08:49 | 000,015,716 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2010-04-03 14:26:03 | 000,000,246 | -H-- | M] () -- C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job [2010-04-03 14:19:03 | 000,000,286 | -H-- | M] () -- C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 110 bytes -> C:\ProgramData\TEMP:888AFB86 < End of report > [/log] LOG Z MALWARE [log]Malwarebytes' Anti-Malware 1.44 Wersja bazy definicji: 3510 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 2010-04-03 14:48:04 mbam-log-2010-04-03 (14-48-04).txt Typ skanowania: Szybkie skanowanie Przeskanowane obiekty: 97632 Upłynęło: 9 minute(s), 32 second(s) Zainfekowane procesy w pamięci: 0 Zainfekowane moduły pamięci: 0 Zainfekowane klucze rejestru: 2 Zainfekowane wartości rejestru: 0 Zainfekowane pliki rejestru: 0 Zainfekowane foldery: 0 Zainfekowane pliki: 2 Zainfekowane procesy w pamięci: (Nie wykryto groźnych plików) Zainfekowane moduły pamięci: (Nie wykryto groźnych plików) Zainfekowane klucze rejestru: HKEY_CURRENT_USER\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Handle (Malware.Trace) -> Quarantined and deleted successfully. Zainfekowane wartości rejestru: (Nie wykryto groźnych plików) Zainfekowane pliki rejestru: (Nie wykryto groźnych plików) Zainfekowane foldery: (Nie wykryto groźnych plików) Zainfekowane pliki: C:\Windows\Tasks\{66BA574B-1E11-49b8-909C-8CC9E0E8E015}.job (Trojan.Downloader) -> Quarantined and deleted successfully. C:\Windows\Tasks\{35DC3473-A719-4d14-B7C1-FD326CA84A0C}.job (Trojan.Downloader) -> Quarantined and deleted successfully. [/log] Co do Malware znalazło 4 zainfekowane pliki, które usunąłem.
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.