zagajgsi utworzono 16 czerwca 2010 utworzono 16 czerwca 2010 (edytowane) Witam opisze wpierw mój problem mianowicie po włączeniu kompa jest wszystko ok chwile korzystam coś porobię internet i takie tam po czym pojawiają ie kłopoty z otworzeniem plików np zdjęcia po najechaniu myszka się folder zamyka otwieranie jakich aplikacji i wyskakuje ze jakiegoś pliku brakuje - a po restarcie jest wszystko ok aż do chwili gdy się dalej pojawiają problemy... przeglądarki same się zamykają i występuje błąd Log RSIT [log] Logfile of random's system information tool 1.07 (written by random/random) Run by ZaJkOwSkI at 2010-06-16 23:38:20 Microsoft Windows XP Professional Dodatek Service Pack 3 System drive D: has 5 GB (20%) free of 26 GB Total RAM: 1023 MB (38% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 23:38:26, on 2010-06-16 Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: D:\WINDOWS\System32\smss.exe D:\WINDOWS\system32\winlogon.exe D:\WINDOWS\system32\services.exe D:\WINDOWS\system32\lsass.exe D:\WINDOWS\system32\nvsvc32.exe D:\WINDOWS\system32\svchost.exe D:\WINDOWS\System32\svchost.exe D:\WINDOWS\system32\svchost.exe D:\Program Files\Alwil Software\Avast5\AvastSvc.exe D:\WINDOWS\Explorer.EXE D:\Program Files\Mouse Driver\StartAutorun.exe D:\Program Files\Mouse Driver\KMConfig.exe D:\Program Files\Google\Gmail Notifier\gnotify.exe D:\Program Files\HP\hpcoretech\hpcmpmgr.exe D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe D:\WINDOWS\system32\spoolsv.exe D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe D:\Program Files\Mouse Driver\KMProcess.exe D:\WINDOWS\system32\CTHELPER.EXE D:\WINDOWS\system32\RUNDLL32.EXE D:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe D:\WINDOWS\system32\ctfmon.exe D:\Program Files\Gadu-Gadu\gg.exe D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe D:\WINDOWS\system32\CTsvcCDA.exe D:\Program Files\Mouse Driver\KMWDSrv.exe g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe D:\Program Files\BHPS\JRE142\bin\javaw.exe D:\WINDOWS\system32\svchost.exe D:\Program Files\Airytec\Switch Off\swoff.exe D:\Program Files\Skype\Phone\Skype.exe D:\WINDOWS\system32\MsPMSPSv.exe g:\Program Files\BHPS\Gmg\bin\DBMonService.exe g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe D:\Program Files\DAEMON Tools Lite\DTLite.exe D:\Program Files\Microsoft ActiveSync\Wcescomm.exe g:\Program Files\BHPS\Gmg\bin\tbmux32.exe D:\PROGRA~1\MI3AA1~1\rapimgr.exe D:\Program Files\BHPS\JRE142\bin\java.exe D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe D:\WINDOWS\system32\wbem\wmiapsrv.exe g:\Program Files\BHPS\Gmg\bin\tbkern32.exe D:\WINDOWS\System32\svchost.exe g:\Program Files\BHPS\Gmg\bin\tbkern32.exe g:\Program Files\BHPS\Gmg\bin\tbkern32.exe g:\Program Files\BHPS\Gmg\bin\tbkern32.exe D:\Program Files\Opera\opera.exe D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe D:\Program Files\trend micro\ZaJkOwSkI.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent O4 - HKLM\..\Run: [KMCONFIG] D:\Program Files\Mouse Driver\StartAutorun.exe KMConfig.exe O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [SkyTel] SkyTel.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe O4 - HKLM\..\Run: [HP Component Manager] "D:\Program Files\HP\hpcoretech\hpcmpmgr.exe" O4 - HKLM\..\Run: [HP Software Update] "D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe" O4 - HKLM\..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe O4 - HKLM\..\Run: [GrooveMonitor] "D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [ISUSPM Startup] "D:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup O4 - HKLM\..\Run: [ISUSScheduler] "D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe O4 - HKLM\..\Run: [BtTray] "D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe" O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE O4 - HKLM\..\Run: [UpdReg] D:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [Jet Detection] "D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe" O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [WinSys2] D:\WINDOWS\system32\winsys2.exe O4 - HKLM\..\Run: [nwiz] D:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [avast5] D:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gadu-Gadu] "D:\Program Files\Gadu-Gadu\gg.exe" /tray O4 - HKCU\..\Run: [Skype] "D:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [DAEMON Tools Lite] "D:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun O4 - HKCU\..\Run: [H/PC Connection Agent] "D:\Program Files\Microsoft ActiveSync\Wcescomm.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: 20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll O9 - Extra button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra 'Tools' menuitem: Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\PROGRA~1\MI3AA1~1\INetRepl.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll O23 - Service: avast! Antivirus - ALWIL Software - D:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Mail Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: avast! Web Scanner - ALWIL Software - D:\Program Files\Alwil Software\Avast5\AvastSvc.exe O23 - Service: BlueSoleilCS - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe O23 - Service: BsHelpCS - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe O23 - Service: BsMobileCS - Unknown owner - D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\WINDOWS\system32\CTsvcCDA.exe O23 - Service: Dragon Age: Początek - Aktualizator zawartości (DAUpdaterSvc) - BioWare - g:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe O23 - Service: Keyboard And Mouse Communication Service (KMWDSERVICE) - UASSOFT.COM - D:\Program Files\Mouse Driver\KMWDSrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe O23 - Service: pqeauto.database.dbmonitor.GMG - ProQuest Business Solutions - g:\Program Files\BHPS\Gmg\bin\DBMonService.exe O23 - Service: pqeauto.energy.mappermonitor - ProQuest Business Solutions - g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe O23 - Service: pqeauto.engine.tomcatmonitor.GMG - ProQuest Business Solutions - g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe O23 - Service: ServiceLayer - Nokia - D:\Program Files\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Airytec Switch Off - Task Scheduler (SwOffScheduler) - Airytec - D:\Program Files\Airytec\Switch Off\swoff.exe O23 - Service: Airytec Switch Off - Web Interface (SwOffWeb) - Airytec - D:\Program Files\Airytec\Switch Off\swoff.exe -- End of file - 11367 bytes ======Scheduled tasks folder====== D:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - D:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-04-04 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}] Groove GFS Browser Helper - D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}] Ask Toolbar - D:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - D:\Program Files\Ask.com\GenericAskToolbar.dll [2010-05-26 1385864] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "BluetoothAuthenticationAgent"=bthprops.cpl,,BluetoothAuthenticationAgent [] "KMCONFIG"=D:\Program Files\Mouse Driver\StartAutorun.exe [2008-05-30 212992] "RTHDCPL"=D:\WINDOWS\RTHDCPL.EXE [2006-11-14 16270848] "SkyTel"=D:\WINDOWS\SkyTel.EXE [2006-05-16 2879488] "Alcmtr"=D:\WINDOWS\ALCMTR.EXE [2005-05-03 69632] "{0228e555-4f9c-4e35-a3ec-b109a192b4c2}"=D:\Program Files\Google\Gmail Notifier\gnotify.exe [2005-07-16 479232] "HP Component Manager"=D:\Program Files\HP\hpcoretech\hpcmpmgr.exe [2003-10-23 233472] "HP Software Update"=D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe [2003-06-25 49152] "HPDJ Taskbar Utility"=D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe [2003-11-08 176128] "GrooveMonitor"=D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016] "Adobe Reader Speed Launcher"=D:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-04-04 36272] "Adobe ARM"=D:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-03-24 952768] "ISUSPM Startup"=D:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe [2005-08-11 249856] "ISUSScheduler"=D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2005-08-11 81920] "SunJavaUpdateSched"=D:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe [2003-11-19 32881] "BtTray"=D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe [2008-08-04 226816] "CTHelper"=D:\WINDOWS\system32\CTHELPER.EXE [2003-08-28 24576] "UpdReg"=D:\WINDOWS\UpdReg.EXE [2000-05-11 90112] "Jet Detection"=D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe [2001-11-29 28672] "KernelFaultCheck"=D:\WINDOWS\system32\dumprep 0 -k [] "WinSys2"=D:\WINDOWS\system32\winsys2.exe [2009-05-18 208896] "nwiz"=D:\Program Files\NVIDIA Corporation\nView\nwiz.exe /installquiet [] "NvCplDaemon"=D:\WINDOWS\system32\NvCpl.dll [2010-06-07 13902440] "NvMediaCenter"=D:\WINDOWS\system32\NvMcTray.dll [2010-06-07 110696] "avast5"=D:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe [2010-05-07 2815192] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2009-06-10 15360] "Gadu-Gadu"=D:\Program Files\Gadu-Gadu\gg.exe [2008-03-20 2127296] "Skype"=D:\Program Files\Skype\Phone\Skype.exe [2010-03-09 26100520] "DAEMON Tools Lite"=D:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696] "H/PC Connection Agent"=D:\Program Files\Microsoft ActiveSync\Wcescomm.exe [2006-11-13 1289000] D:\Documents and Settings\All Users\Menu Start\Programy\Autostart 20Dollars2Surf.lnk - D:\Program Files\20Dollars2Surf\20dollars2surf.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll [2009-06-10 133632] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] "{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=D:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL [2006-10-27 2210608] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"= [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser" "D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil_.exe"="D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil_.exe:*:Enabled:BlueSoleil" "D:\Program Files\uTorrent\uTorrent.exe"="D:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent" "D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="D:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook" "D:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="D:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove" "D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="D:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote" "D:\Program Files\Skype\Plugin Manager\skypePM.exe"="D:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager" "C:\Program Files\Ubisoft\THE SETTLERS - Rise of an Empire\base\bin\Settlers6.exe"="C:\Program Files\Ubisoft\THE SETTLERS - Rise of an Empire\base\bin\Settlers6.exe:*:Enabled:THE SETTLERS - Rise of an Empire" "G:\Program Files\KONAMI\Pro Evolution Soccer 2010\pes2010.exe"="G:\Program Files\KONAMI\Pro Evolution Soccer 2010\pes2010.exe:*:Enabled:Pro Evolution Soccer 2010" "D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe"="D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe:*:Enabled:BlueSoleilCS" "G:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe"="G:\Program Files\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe:*:Enabled:Rockstar Games Social Club" "G:\Program Files\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe"="G:\Program Files\Rockstar Games\Grand Theft Auto IV\LaunchGTAIV.exe:*:Enabled:Grand Theft Auto IV" "G:\Program Files\Dragon Age\DAOriginsLauncher.exe"="G:\Program Files\Dragon Age\DAOriginsLauncher.exe:*:Enabled:${SafeProductName} ${FirewallName_Launcher}" "G:\Program Files\Dragon Age\bin_ship\daorigins.exe"="G:\Program Files\Dragon Age\bin_ship\daorigins.exe:*:Enabled:${SafeProductName} ${FirewallName_Game}" "G:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe"="G:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe:*:Enabled:${SafeProductName} ${FirewallName_Updater}" "D:\Program Files\Skype\Phone\Skype.exe"="D:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype" "D:\Program Files\Microsoft ActiveSync\rapimgr.exe"="D:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager" "D:\Program Files\Microsoft ActiveSync\wcescomm.exe"="D:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager" "D:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="D:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application" "D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "D:\Program Files\Microsoft ActiveSync\rapimgr.exe"="D:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager" "D:\Program Files\Microsoft ActiveSync\wcescomm.exe"="D:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager" "D:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="D:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application" "D:\Program Files\Pando Networks\Media Booster\PMB.exe"="D:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster" [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}] shell\AutoRun\command - XCOPY.EXE ======List of files/folders created in the last 1 months====== 2010-06-16 23:38:20 ----D---- D:\rsit 2010-06-16 23:38:20 ----D---- D:\Program Files\trend micro 2010-06-16 23:18:07 ----A---- D:\WINDOWS\IE4 Error Log.txt 2010-06-16 16:42:41 ----A---- D:\WINDOWS\system32\aswBoot.exe 2010-06-15 20:16:06 ----D---- D:\Program Files\NVIDIA Corporation 2010-06-15 20:15:39 ----A---- D:\WINDOWS\system32\OpenCL.dll 2010-06-15 20:15:37 ----A---- D:\WINDOWS\system32\nvcompiler.dll 2010-06-14 23:49:35 ----A---- D:\WINDOWS\msicpl.ini 2010-06-14 00:04:36 ----D---- D:\WINDOWS\system32\AGEIA 2010-06-14 00:04:36 ----D---- D:\Program Files\AGEIA Technologies 2010-06-14 00:04:27 ----D---- D:\Program Files\Common Files\Wise Installation Wizard 2010-06-14 00:03:31 ----A---- D:\WINDOWS\system32\WinSys2.exe 2010-06-14 00:03:31 ----A---- D:\WINDOWS\system32\smdll.dll 2010-06-14 00:03:29 ----A---- D:\WINDOWS\system32\nvcuvid.dll 2010-06-14 00:03:29 ----A---- D:\WINDOWS\system32\nvcuvenc.dll 2010-06-14 00:03:29 ----A---- D:\WINDOWS\system32\nvcuda.dll 2010-06-14 00:03:27 ----A---- D:\WINDOWS\system32\msvcr80.dll 2010-06-14 00:03:27 ----A---- D:\WINDOWS\system32\msicpl.dll 2010-06-14 00:03:27 ----A---- D:\WINDOWS\system32\MadCHook.dll 2010-06-14 00:03:27 ----A---- D:\WINDOWS\system32\Auxiliary.dll 2010-06-08 22:55:04 ----D---- D:\Program Files\MSECache 2010-06-08 22:08:21 ----D---- D:\WINDOWS\nview 2010-06-08 21:26:00 ----D---- D:\Program Files\Microsoft SDKs 2010-06-08 21:25:29 ----D---- D:\Program Files\Debugging Tools for Windows 2010-06-07 22:45:02 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files 2010-06-07 22:44:42 ----D---- D:\Program Files\Pando Networks 2010-06-07 17:35:38 ----A---- D:\WINDOWS\system32\nvwddi.dll 2010-06-07 17:35:30 ----A---- D:\WINDOWS\system32\nvrsth.dll 2010-06-07 17:35:30 ----A---- D:\WINDOWS\system32\nvrseng.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrszht.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrsnl.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrshe.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrsfi.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrsesm.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrsel.dll 2010-06-07 17:35:28 ----A---- D:\WINDOWS\system32\nvrsda.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrszhc.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrstr.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrssv.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrssl.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrssk.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsru.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsptb.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrspt.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrspl.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsno.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsko.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsja.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsit.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrshu.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsfr.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrses.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsde.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrscs.dll 2010-06-07 17:35:26 ----A---- D:\WINDOWS\system32\nvrsar.dll 2010-06-07 17:35:24 ----A---- D:\WINDOWS\system32\nvmctray.dll 2010-06-07 17:35:24 ----A---- D:\WINDOWS\system32\nvmccs.dll 2010-06-07 17:35:22 ----A---- D:\WINDOWS\system32\nvsvc32.exe 2010-06-07 17:35:22 ----A---- D:\WINDOWS\system32\nvcpl.dll 2010-06-07 17:35:22 ----A---- D:\WINDOWS\system32\nvcolor.exe 2010-06-07 00:13:02 ----N---- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK 2010-06-06 23:19:33 ----A---- D:\WINDOWS\unins000.exe 2010-06-06 20:47:02 ----D---- D:\Program Files\Microsoft ActiveSync 2010-06-06 20:44:08 ----A---- D:\AutoMapaSetupLog.txt 2010-06-06 20:26:25 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative 2010-06-06 20:19:40 ----N---- D:\WINDOWS\Updreg.EXE 2010-06-06 20:19:38 ----N---- D:\WINDOWS\system32\SFCVRT32.DLL 2010-06-06 20:19:38 ----N---- D:\WINDOWS\system32\MFCUIA32.DLL 2010-06-06 20:19:38 ----N---- D:\WINDOWS\system32\MFCANS32.DLL 2010-06-06 20:19:38 ----N---- D:\WINDOWS\CTRES.DLL 2010-06-06 20:19:38 ----N---- D:\WINDOWS\CTCCW.DLL 2010-06-06 20:19:38 ----N---- D:\WINDOWS\AC3API.INI 2010-06-06 20:19:37 ----N---- D:\WINDOWS\system32\CTWFLT32.DLL 2010-06-06 20:19:37 ----N---- D:\WINDOWS\system32\CTL3D.DLL 2010-06-06 20:19:33 ----D---- D:\WINDOWS\system32\Defaults 2010-06-06 20:19:00 ----D---- D:\WINDOWS\system32\Data 2010-06-06 20:19:00 ----A---- D:\WINDOWS\system32\Emu10kx.ini 2010-06-06 20:19:00 ----A---- D:\WINDOWS\system32\ctzapxx.ini 2010-06-06 20:19:00 ----A---- D:\WINDOWS\INRES.DLL 2010-06-06 20:18:41 ----A---- D:\WINDOWS\CTDCRES.DLL 2010-06-06 20:18:40 ----A---- D:\WINDOWS\system32\SFMS32.DLL 2010-06-06 20:18:40 ----A---- D:\WINDOWS\system32\sfman32.dll 2010-06-06 20:18:40 ----A---- D:\WINDOWS\system32\REGPLIB.EXE 2010-06-06 20:18:40 ----A---- D:\WINDOWS\system32\PIAPROXY.DLL 2010-06-06 20:18:40 ----A---- D:\WINDOWS\system32\OPENAL32.DLL 2010-06-06 20:18:40 ----A---- D:\WINDOWS\READREG.EXE 2010-06-06 20:18:40 ----A---- D:\WINDOWS\PSCONV.EXE 2010-06-06 20:18:40 ----A---- D:\WINDOWS\MIDIDEF.EXE 2010-06-06 20:18:39 ----A---- D:\WINDOWS\system32\KILLAPPS.EXE 2010-06-06 20:18:39 ----A---- D:\WINDOWS\system32\KILL.INI 2010-06-06 20:18:39 ----A---- D:\WINDOWS\system32\ENSDEF.INI 2010-06-06 20:18:39 ----A---- D:\WINDOWS\system32\ENSDEF.EXE 2010-06-06 20:18:39 ----A---- D:\WINDOWS\system32\EAXAC3.DLL 2010-06-06 20:18:39 ----A---- D:\WINDOWS\DEVREG.DLL 2010-06-06 20:18:37 ----A---- D:\WINDOWS\system32\CTSPKHLP.DLL 2010-06-06 20:18:37 ----A---- D:\WINDOWS\system32\CTSCAL.DLL 2010-06-06 20:18:37 ----A---- D:\WINDOWS\system32\CTSBLFX.DLL 2010-06-06 20:18:36 ----A---- D:\WINDOWS\system32\CTOSUSER.DLL 2010-06-06 20:18:36 ----A---- D:\WINDOWS\system32\CTMMEP.DLL 2010-06-06 20:18:36 ----A---- D:\WINDOWS\system32\CTHELPER.EXE 2010-06-06 20:18:36 ----A---- D:\WINDOWS\system32\CTEMUPIA.DLL 2010-06-06 20:18:28 ----A---- D:\WINDOWS\system32\CTDPROXY.DLL 2010-06-06 20:18:27 ----A---- D:\WINDOWS\system32\CTDCIFCE.DLL 2010-06-06 20:18:27 ----A---- D:\WINDOWS\system32\CTDC0001.DLL 2010-06-06 20:18:26 ----A---- D:\WINDOWS\system32\CTDC0000.DLL 2010-06-06 20:18:26 ----A---- D:\WINDOWS\system32\CTAUDFX.DLL 2010-06-06 20:18:26 ----A---- D:\WINDOWS\system32\CTASIO.DLL 2010-06-06 20:18:26 ----A---- D:\WINDOWS\system32\CTAGENT.DLL 2010-06-06 20:18:23 ----A---- D:\WINDOWS\system32\COMMONFX.DLL 2010-06-06 20:18:23 ----A---- D:\WINDOWS\system32\AC3API.DLL 2010-06-06 20:18:23 ----A---- D:\WINDOWS\system32\a3d.dll 2010-06-06 20:17:48 ----A---- D:\WINDOWS\SBWIN.INI 2010-06-06 20:16:16 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Creative 2010-06-06 20:16:04 ----A---- D:\WINDOWS\system32\CTMERes.DLL 2010-06-06 20:16:04 ----A---- D:\WINDOWS\system32\CTIntRes.dll 2010-06-06 20:16:04 ----A---- D:\WINDOWS\system32\CTDrmRes.dll 2010-06-06 20:16:03 ----D---- D:\Media 2010-06-06 20:16:01 ----N---- D:\WINDOWS\system32\Inetwh32.dll 2010-06-06 20:16:01 ----N---- D:\WINDOWS\system32\CTMedEng.dll 2010-06-06 20:16:01 ----N---- D:\WINDOWS\system32\CTDRMUI.dll 2010-06-06 20:15:55 ----A---- D:\WINDOWS\system32\CTDetres.dll 2010-06-06 20:15:54 ----A---- D:\WINDOWS\system32\CTSVCCTL.EXE 2010-06-06 20:15:54 ----A---- D:\WINDOWS\system32\CTSVCCDA.EXE 2010-06-06 20:15:35 ----A---- D:\WINDOWS\system32\AHQCpURes.dll 2010-06-06 20:15:00 ----D---- D:\Program Files\Creative 2010-05-29 07:11:07 ----SHD---- D:\WINDOWS\CSC 2010-05-26 06:37:30 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Airytec 2010-05-25 23:05:53 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec 2010-05-25 23:03:49 ----D---- D:\Program Files\Airytec 2010-05-23 18:16:09 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation 2010-05-23 18:15:05 ----D---- D:\NVIDIA 2010-05-23 16:41:29 ----A---- D:\WINDOWS\system32\CmdLineExt.dll 2010-05-23 16:39:30 ----HDC---- D:\WINDOWS\$NtUninstallWMFDist11$ 2010-05-23 16:38:48 ----D---- D:\WINDOWS\system32\xlive 2010-05-23 16:38:48 ----D---- D:\Program Files\Microsoft Games for Windows - LIVE 2010-05-23 16:18:07 ----D---- D:\WINDOWS\system32\XPSViewer 2010-05-23 16:18:06 ----D---- D:\WINDOWS\system32\en-us 2010-05-23 16:17:36 ----D---- D:\Program Files\Reference Assemblies 2010-05-23 16:17:14 ----N---- D:\WINDOWS\system32\spmsg2.dll 2010-05-22 20:26:50 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\BioWare 2010-05-22 08:01:25 ----A---- D:\WINDOWS\BsMobileModel.ini 2010-05-22 08:00:51 ----D---- D:\WINDOWS\system32\ivtMobCache 2010-05-22 08:00:45 ----A---- D:\WINDOWS\system32\SHORTCUT.INI 2010-05-22 08:00:29 ----A---- D:\WINDOWS\system32\REMOTEDEVICE.INI 2010-05-22 07:54:35 ----A---- D:\WINDOWS\system32\LOCALSERVICE.INI 2010-05-22 07:54:13 ----A---- D:\WINDOWS\system32\LOCALDEVICE.INI 2010-05-22 07:52:32 ----A---- D:\WINDOWS\system32\BSPRINT.INI 2010-05-19 21:29:05 ----D---- D:\Program Files\Farming-Simulator 2009 ======List of files/folders modified in the last 1 months====== 2010-06-16 23:38:20 ----RD---- D:\Program Files 2010-06-16 23:22:40 ----D---- D:\WINDOWS\Temp 2010-06-16 23:21:59 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Skype 2010-06-16 23:21:52 ----A---- D:\WINDOWS\system32\bscs.ini 2010-06-16 23:21:48 ----D---- D:\WINDOWS 2010-06-16 23:19:03 ----A---- D:\WINDOWS\SchedLgU.Txt 2010-06-16 23:06:04 ----D---- D:\WINDOWS\Prefetch 2010-06-16 18:27:47 ----D---- D:\WINDOWS\Minidump 2010-06-16 16:42:55 ----D---- D:\WINDOWS\system32\drivers 2010-06-16 16:42:50 ----SHD---- D:\WINDOWS\Installer 2010-06-16 16:42:49 ----D---- D:\WINDOWS\WinSxS 2010-06-16 16:42:42 ----D---- D:\WINDOWS\system32 2010-06-16 16:42:37 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software 2010-06-16 16:08:52 ----D---- D:\Program Files\Gadu-Gadu 2010-06-15 20:17:13 ----D---- D:\WINDOWS\Help 2010-06-15 20:16:17 ----RSHDC---- D:\WINDOWS\system32\dllcache 2010-06-15 20:16:02 ----HD---- D:\WINDOWS\inf 2010-06-15 20:16:02 ----D---- D:\WINDOWS\system32\ReinstallBackups 2010-06-15 20:16:00 ----D---- D:\WINDOWS\system32\CatRoot2 2010-06-14 18:09:56 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\uTorrent 2010-06-14 00:04:27 ----D---- D:\Program Files\Common Files 2010-06-11 11:01:09 ----SD---- D:\WINDOWS\Tasks 2010-06-11 11:01:09 ----D---- D:\Program Files\Ask.com 2010-06-10 10:12:08 ----SD---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Microsoft 2010-06-08 22:54:13 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft Help 2010-06-08 22:07:18 ----D---- D:\WINDOWS\system32\CatRoot 2010-06-08 21:26:00 ----D---- D:\Program Files\MSBuild 2010-06-08 04:27:00 ----AC---- D:\WINDOWS\system32\nvudisp.exe 2010-06-08 04:27:00 ----A---- D:\WINDOWS\system32\nvoglnt.dll 2010-06-08 04:27:00 ----A---- D:\WINDOWS\system32\nvcodins.dll 2010-06-08 04:27:00 ----A---- D:\WINDOWS\system32\nvcod.dll 2010-06-08 04:27:00 ----A---- D:\WINDOWS\system32\nvapi.dll 2010-06-08 04:27:00 ----A---- D:\WINDOWS\system32\nv4_disp.dll 2010-06-07 23:11:12 ----HD---- D:\Program Files\InstallShield Installation Information 2010-06-06 20:47:03 ----D---- D:\Program Files\Common Files\Microsoft Shared 2010-06-06 20:15:35 ----D---- D:\WINDOWS\Media 2010-06-06 20:14:59 ----D---- D:\Program Files\Common Files\InstallShield 2010-06-02 17:22:29 ----A---- D:\WINDOWS\DUMP5f75.tmp 2010-05-29 06:28:29 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\skypePM 2010-05-28 12:58:26 ----AC---- D:\WINDOWS\system32\NVUNINST.EXE 2010-05-24 08:22:39 ----RSD---- D:\WINDOWS\assembly 2010-05-24 08:22:39 ----D---- D:\WINDOWS\Microsoft.NET 2010-05-23 16:40:13 ----D---- D:\WINDOWS\system32\DirectX 2010-05-23 16:38:48 ----SD---- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft 2010-05-23 16:20:00 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI 2010-05-23 16:18:04 ----RSD---- D:\WINDOWS\Fonts 2010-05-23 16:17:20 ----D---- D:\WINDOWS\system32\spool 2010-05-22 20:17:57 ----D---- D:\Program Files\Common Files\BioWare 2010-05-22 07:52:54 ----D---- D:\WINDOWS\security 2010-05-22 07:33:54 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth 2010-05-22 07:26:11 ----D---- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\PC Suite ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 Aavmker4;avast! Asynchronous Virus Monitor; D:\WINDOWS\system32\drivers\Aavmker4.sys [2010-05-07 28880] R1 aswSP;aswSP; D:\WINDOWS\system32\drivers\aswSP.sys [2010-05-07 164048] R1 aswTdi;avast! Network Shield Support; D:\WINDOWS\system32\drivers\aswTdi.sys [2010-05-07 46672] R1 intelppm;Sterownik procesora Intel; D:\WINDOWS\system32\DRIVERS\intelppm.sys [2009-06-10 40448] R1 kbdhid;Sterownik klawiatury HID; D:\WINDOWS\system32\DRIVERS\kbdhid.sys [2009-06-10 14720] R2 aswFsBlk;aswFsBlk; D:\WINDOWS\system32\drivers\aswFsBlk.sys [2010-05-07 19024] R2 aswMon2;aswMon2; D:\WINDOWS\system32\drivers\aswMon2.sys [2010-05-07 100432] R2 atksgt;atksgt; D:\WINDOWS\system32\DRIVERS\atksgt.sys [2010-04-12 278728] R2 lirsgt;lirsgt; D:\WINDOWS\system32\DRIVERS\lirsgt.sys [2010-04-12 25416] R2 PfModNT;PfModNT; \??\D:\WINDOWS\system32\drivers\PfModNT.sys [] R3 aswRdr;aswRdr; D:\WINDOWS\system32\drivers\aswRdr.sys [2010-05-07 23376] R3 BT;Bluetooth PAN Network Adapter; D:\WINDOWS\system32\DRIVERS\btnetdrv.sys [2008-01-21 14600] R3 BTCAMDRV;Mobiola Web Camera driver; D:\WINDOWS\system32\DRIVERS\BTCamDrv.sys [2006-11-01 219264] R3 Btcsrusb;Bluetooth USB For Bluetooth Service; D:\WINDOWS\System32\Drivers\btcusb.sys [2008-07-02 38920] R3 ctac32k;Creative AC3 Software Decoder; D:\WINDOWS\System32\drivers\ctac32k.sys [2003-08-28 186068] R3 ctaud2k;Creative Audio Driver (WDM); D:\WINDOWS\system32\drivers\ctaud2k.sys [2003-09-19 496800] R3 ctprxy2k;Creative Proxy Driver; D:\WINDOWS\System32\drivers\ctprxy2k.sys [2003-08-28 6144] R3 ctsfm2k;Creative SoundFont Management Device Driver; D:\WINDOWS\System32\drivers\ctsfm2k.sys [2003-08-28 136448] R3 emupia;E-mu Plug-in Architecture Driver; D:\WINDOWS\System32\drivers\emupia2k.sys [2003-08-28 145504] R3 ha10kx2k;Creative Hardware Abstract Layer Driver; D:\WINDOWS\system32\drivers\ha10kx2k.sys [2003-08-28 823456] R3 hidusb;Sterownik Microsoft klasy HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2009-06-10 10368] R3 IvtBtBUs;IVT Bluetooth Bus Service; D:\WINDOWS\System32\Drivers\IvtBtBus.sys [2008-07-02 26248] R3 KMWDFilter;KMWDFilter; \??\D:\WINDOWS\System32\Drivers\KMWDFilter.SYS [] R3 mouhid;Sterownik myszy HID; D:\WINDOWS\system32\DRIVERS\mouhid.sys [2009-06-10 12160] R3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2010-06-08 10531200] R3 ossrv;Creative OS Services Driver; D:\WINDOWS\system32\drivers\ctoss2k.sys [2003-08-28 113840] R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; D:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2006-12-14 85120] R3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2009-06-10 32128] R3 usbehci;Sterownik Miniport rozszerzonego kontrolera hosta USB 2.0 Microsoft; D:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208] R3 usbhub;Koncentrator z obsługą USB2; D:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520] R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 VcommMgr;Bluetooth VComm Manager Service; D:\WINDOWS\System32\Drivers\VcommMgr.sys [2008-07-02 29960] S3 av47qhdi;av47qhdi; D:\WINDOWS\system32\drivers\av47qhdi.sys [] S3 BlueletAudio;Bluetooth Audio Service; D:\WINDOWS\system32\DRIVERS\blueletaudio.sys [2008-07-02 33800] S3 BlueletSCOAudio;Bluetooth SCO Audio Service; D:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys [2008-07-02 27528] S3 BthEnum;Sterownik Bluetooth Request Block; D:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024] S3 BTHMODEM;Sterownik komunikacyjny modemu Bluetooth; D:\WINDOWS\system32\DRIVERS\bthmodem.sys [2008-04-13 37888] S3 BthPan;Bluetooth Device (Personal Area Network); D:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120] S3 BTHPORT;Sterownik portu Bluetooth; D:\WINDOWS\System32\Drivers\BTHport.sys [2009-06-10 273024] S3 BTHUSB;Sterownik USB odbiornika radiowego Bluetooth; D:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944] S3 CCDECODE;Dekoder napisów; D:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024] S3 ctdvda2k;Creative DVD-Audio Device Driver; D:\WINDOWS\System32\drivers\ctdvda2k.sys [] S3 ctljystk;Port gier dla karty Creative SB Live!; D:\WINDOWS\system32\DRIVERS\ctljystk.sys [2001-08-17 3712] S3 hap16v2k;Creative P16V HAL Driver; D:\WINDOWS\System32\drivers\hap16v2k.sys [2003-08-28 135696] S3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; D:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2009-06-10 144384] S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\WINDOWS\system32\drivers\RtkHDAud.sys [2006-11-15 4225920] S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; D:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504] S3 NABTSFEC;Koder-dekoder NABTS/FEC VBI; D:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248] S3 NdisIP;Połączenie TV/wideo firmy Microsoft; D:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880] S3 nmwcd;Nokia USB Phone Parent; D:\WINDOWS\system32\drivers\ccdcmb.sys [2010-01-21 18048] S3 nmwcdc;Nokia USB Generic; D:\WINDOWS\system32\drivers\ccdcmbo.sys [2009-12-30 22016] S3 nmwcdnsu;Nokia USB Flashing Phone Parent; D:\WINDOWS\system32\drivers\nmwcdnsu.sys [2009-12-30 137344] S3 nmwcdnsuc;Nokia USB Flashing Generic; D:\WINDOWS\system32\drivers\nmwcdnsuc.sys [2009-12-30 8320] S3 pccsmcfd;PCCS Mode Change Filter Driver; D:\WINDOWS\system32\DRIVERS\pccsmcfd.sys [2008-08-26 18816] S3 PRODIGY;PRODIGY; D:\WINDOWS\System32\Drivers\PRODIGY.SYS [2006-08-29 32377] S3 RFCOMM;Urządzenie Bluetooth (Protokół TDI RFCOMM); D:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136] S3 ROOTMODEM;Microsoft Legacy Modem Driver; D:\WINDOWS\System32\Drivers\RootMdm.sys [2009-06-10 5888] S3 SLIP;BDA Slip De-Framer; D:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136] S3 streamip;BDA IPSink; D:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232] S3 upperdev;upperdev; D:\WINDOWS\system32\DRIVERS\usbser_lowerflt.sys [2009-12-30 7936] S3 usbprint;Klasa PRINTER USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbser;USB Modem Driver; D:\WINDOWS\system32\drivers\usbser.sys [2008-04-13 26112] S3 UsbserFilt;UsbserFilt; D:\WINDOWS\system32\DRIVERS\usbser_lowerfltj.sys [2009-12-30 7936] S3 USBSTOR;Sterownik magazynu masowego USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 VComm;Virtual Serial port driver; D:\WINDOWS\system32\DRIVERS\VComm.sys [2008-01-21 14856] S3 wceusbsh;Windows CE USB Serial Host Driver; D:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672] S3 Wdf01000;Kernel Mode Driver Frameworks service; D:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008] S3 WSTCODEC;Kodery-dekodery teletekstu w standardzie światowym; D:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; D:\WINDOWS\system32\DRIVERS\wudfrd.sys [2008-01-18 83328] S4 IntelIde;IntelIde; D:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 avast! Antivirus;avast! Antivirus; D:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-07 40384] R2 BlueSoleilCS;BlueSoleilCS; D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe [2010-05-22 775168] R2 BsMobileCS;BsMobileCS; D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe [2008-08-01 143467] R2 BthServ;Bluetooth Support Service; D:\WINDOWS\system32\svchost.exe [2009-06-10 14336] R2 Creative Service for CDROM Access;Creative Service for CDROM Access; D:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032] R2 KMWDSERVICE;Keyboard And Mouse Communication Service; D:\Program Files\Mouse Driver\KMWDSrv.exe [2008-06-23 208896] R2 NVSvc;NVIDIA Display Driver Service; D:\WINDOWS\system32\nvsvc32.exe [2010-06-07 154728] R2 pqeauto.database.dbmonitor.GMG;pqeauto.database.dbmonitor.GMG; g:\Program Files\BHPS\Gmg\bin\DBMonService.exe [2010-04-28 73728] R2 pqeauto.energy.mappermonitor;pqeauto.energy.mappermonitor; g:\Program Files\BHPS\Pmap1\bin\Map [2010-04-28 473] R2 pqeauto.engine.tomcatmonitor.GMG;pqeauto.engine.tomcatmonitor.GMG; g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe [2010-04-28 69632] R2 SwOffScheduler;Airytec Switch Off - Task Scheduler; D:\Program Files\Airytec\Switch Off\swoff.exe [2010-02-05 121344] R2 WMDM PMSP Service;WMDM PMSP Service; D:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; D:\WINDOWS\system32\svchost.exe [2009-06-10 14336] R3 avast! Mail Scanner;avast! Mail Scanner; D:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-07 40384] R3 avast! Web Scanner;avast! Web Scanner; D:\Program Files\Alwil Software\Avast5\AvastSvc.exe [2010-05-07 40384] R3 BsHelpCS;BsHelpCS; D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe [2008-08-01 69735] S2 SwOffWeb;Airytec Switch Off - Web Interface; D:\Program Files\Airytec\Switch Off\swoff.exe [2010-02-05 121344] S3 aspnet_state;ASP.NET State Service; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 DAUpdaterSvc;Dragon Age: Początek - Aktualizator zawartości; g:\Program Files\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [2009-07-26 25832] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2006-10-20 36864] S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2006-10-30 741376] S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; D:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824] S3 odserv;Microsoft Office Diagnostics Service; D:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136] S3 ose;Office Source Engine; D:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184] S3 ServiceLayer;ServiceLayer; D:\Program Files\PC Connectivity Solution\ServiceLayer.exe [2010-01-26 652800] S3 WMPNetworkSvc;Usługa udostępniania w sieci programu Windows Media Player; D:\Program Files\Windows Media Player\WMPNetwk.exe [2006-12-01 918016] S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2006-10-30 122880] -----------------EOF----------------- [/log] LOG OTL [log]OTL logfile created on: 2010-06-16 23:37:27 - Run 1 OTL by OldTimer - Version 3.2.6.0 Folder = D:\Documents and Settings\ZaJkOwSkI\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 415,00 Mb Available Physical Memory | 41,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 78,00% Paging File free Paging file location(s): D:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 110,27 Gb Total Space | 95,55 Gb Free Space | 86,65% Space Free | Partition Type: NTFS Drive D: | 24,94 Gb Total Space | 5,11 Gb Free Space | 20,50% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 44,41 Gb Free Space | 45,48% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 232,88 Gb Total Space | 180,31 Gb Free Space | 77,43% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ZAGAJ Current User Name: ZaJkOwSkI Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe PRC - [2010-06-07 17:35:22 | 000,154,728 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2010-05-07 01:29:42 | 002,815,192 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe PRC - [2010-04-28 21:57:56 | 001,748,992 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbkern32.exe PRC - [2010-04-28 21:57:56 | 000,380,928 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbmux32.exe PRC - [2010-04-28 21:57:45 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe PRC - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe PRC - [2010-04-28 21:54:57 | 000,028,779 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\javaw.exe PRC - [2010-04-28 21:54:57 | 000,024,681 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\java.exe PRC - [2010-04-28 13:45:50 | 000,835,952 | ---- | M] (Opera Software) -- D:\Program Files\Opera\opera.exe PRC - [2010-04-01 13:46:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2010-03-09 10:02:14 | 026,100,520 | R--- | M] (Skype Technologies S.A.) -- D:\Program Files\Skype\Phone\Skype.exe PRC - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) -- D:\Program Files\Airytec\Switch Off\swoff.exe PRC - [2009-06-10 02:15:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2009-06-10 02:15:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2009-06-10 02:15:00 | 000,126,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\wmiapsrv.exe PRC - [2009-06-10 02:15:00 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2009-06-10 02:15:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2009-06-10 02:15:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2009-06-10 02:15:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\alg.exe PRC - [2009-06-10 02:15:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rundll32.exe PRC - [2009-06-10 02:15:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [BTHSVCS] PRC - [2009-06-10 02:15:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2009-06-10 02:15:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2008-08-04 18:04:38 | 000,226,816 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe PRC - [2008-07-06 17:31:02 | 000,331,776 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMProcess.exe PRC - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMWDSrv.exe PRC - [2008-06-14 01:02:04 | 000,397,312 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMCONFIG.exe PRC - [2008-05-30 01:22:32 | 000,212,992 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\StartAutorun.exe PRC - [2008-03-20 14:34:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\gg.exe PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\wcescomm.exe PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\rapimgr.exe PRC - [2006-10-27 00:47:42 | 000,031,016 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2005-08-11 16:30:30 | 000,081,920 | ---- | M] (Macrovision Corporation) -- D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe PRC - [2005-07-16 02:18:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2003-10-23 19:51:18 | 000,233,472 | ---- | M] (Hewlett-Packard Company) -- D:\Program Files\HP\hpcoretech\hpcmpmgr.exe PRC - [2003-08-28 13:15:38 | 000,024,576 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTHELPER.EXE PRC - [2003-06-25 11:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- D:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd.exe PRC - [2000-06-26 07:44:20 | 000,053,520 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MsPMSPSv.exe PRC - [1999-12-13 01:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe MOD - [2009-06-10 02:15:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2006-12-21 17:00:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\ggwhook.dll MOD - [2003-08-28 13:15:56 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTAGENT.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- -- (pqeauto.engine.tomcatmonitor.GMG) SRV - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [Auto | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe -- (pqeauto.database.dbmonitor.GMG) SRV - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe -- (pqeauto.energy.mappermonitor) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Stopped] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Running] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler) SRV - [2010-01-26 12:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-07-26 06:43:14 | 000,025,832 | ---- | M] (BioWare) [On_Demand | Stopped] -- g:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe -- (DAUpdaterSvc) SRV - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () [On_Demand | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) [Auto | Running] -- D:\Program Files\Mouse Driver\KMWDSrv.exe -- (KMWDSERVICE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP) DRV - [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2) DRV - [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2010-04-12 11:14:36 | 000,278,728 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-04-12 11:14:35 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-04-12 10:28:08 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-01-21 14:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 11:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 11:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 11:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-30 11:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2009-12-30 11:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2009-06-10 02:15:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:59:06 | 000,027,528 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2008-07-02 14:59:02 | 000,033,800 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2008-07-02 14:58:28 | 000,038,920 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-04-13 22:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-03-22 11:31:58 | 000,017,024 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\KMWDFilter.SYS -- (KMWDFilter) DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2006-12-14 13:14:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-15 11:04:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-11-01 18:45:14 | 000,219,264 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BTCamDrv.sys -- (BTCAMDRV) DRV - [2006-08-29 19:26:19 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY) DRV - [2003-09-19 06:17:22 | 000,496,800 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM) DRV - [2003-08-28 12:54:36 | 000,145,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\EMUPIA2K.SYS -- (emupia) DRV - [2003-08-28 12:54:24 | 000,136,448 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTSFM2K.SYS -- (ctsfm2k) DRV - [2003-08-28 12:54:08 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTPRXY2K.SYS -- (ctprxy2k) DRV - [2003-08-28 12:54:04 | 000,113,840 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2003-08-28 12:52:32 | 000,186,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTAC32K.SYS -- (ctac32k) DRV - [2003-08-28 12:52:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HAP16V2K.SYS -- (hap16v2k) DRV - [2003-08-28 12:52:04 | 000,823,456 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k) DRV - [2003-03-05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT) DRV - [2001-08-17 22:49:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010-04-28 22:49:58 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-04-28 22:49:58 | 000,000,000 | ---D | M] [2010-03-30 22:47:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Extensions [2010-06-12 22:36:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions [2010-03-30 22:51:48 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-03-30 22:47:41 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions [2010-04-28 22:41:33 | 000,163,840 | ---- | M] (ProQuest Automotive) -- D:\Program Files\Mozilla Firefox\plugins\npImgrPlg.dll [2010-03-17 00:20:20 | 000,002,767 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-17 00:20:20 | 000,001,406 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-17 00:20:20 | 000,000,917 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-17 00:20:20 | 000,000,858 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-17 00:20:20 | 000,001,183 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-17 00:20:20 | 000,001,683 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 02:15:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [Alcmtr] D:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast5] D:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] D:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [BtTray] D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [CTHelper] D:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [ISUSPM Startup] D:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe (Macrovision Corporation) O4 - HKLM..\Run: [ISUSScheduler] D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation) O4 - HKLM..\Run: [Jet Detection] D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [KMCONFIG] D:\Program Files\Mouse Driver\StartAutorun.exe KMConfig.exe File not found O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\Program Files\NVIDIA Corporation\nView\nwiz.exe File not found O4 - HKLM..\Run: [SkyTel] D:\WINDOWS\SkyTel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunJavaUpdateSched] D:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe () O4 - HKLM..\Run: [UpdReg] D:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [WinSys2] D:\WINDOWS\system32\WinSys2.exe () O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [Gadu-Gadu] D:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [H/PC Connection Agent] D:\Program Files\Microsoft ActiveSync\Wcescomm.exe (Microsoft Corporation) O4 - Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe (20Dollars2Surf.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.128.1 192.168.0.1 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - D:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-01-02 20:24:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-06-06 22:09:20 | 000,019,657 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2010-06-06 18:39:35 | 000,000,000 | ---D | M] - G:\AutoMapa 6.5.0 [PL] Final -- [ NTFS ] O33 - MountPoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\xcopy.exe -- [2009-06-10 02:15:00 | 000,030,720 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\Program Files\trend micro [2010-06-16 23:36:13 | 000,572,416 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:25:00 | 000,218,112 | ---- | C] (Soeperman Enterprises Ltd.) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\HijackThis.exe [2010-06-16 22:14:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Baner mu [2010-06-16 17:31:51 | 000,170,027 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,164,048 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-06-16 16:42:55 | 000,019,024 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-06-16 16:42:54 | 000,023,376 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-06-16 16:42:53 | 000,046,672 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-06-16 16:42:52 | 000,100,432 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-06-16 16:42:52 | 000,094,800 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-06-16 16:42:52 | 000,028,880 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-06-16 16:42:41 | 000,165,032 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-06-16 16:42:41 | 000,038,848 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-06-15 20:16:06 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-06-15 20:15:39 | 000,061,440 | ---- | C] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-15 20:15:37 | 010,256,384 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcompiler.dll [2010-06-15 16:33:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql [2010-06-15 16:28:48 | 021,400,396 | ---- | C] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql.exe [2010-06-15 16:22:33 | 119,555,768 | ---- | C] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\257.21_desktop_winxp_32bit_international_whql.exe [2010-06-15 15:47:21 | 073,665,272 | ---- | C] (NVIDIA Corporation ) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\169.21_forceware_winxp_32bit_international_whql.exe [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-06-14 00:04:27 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-06-14 00:03:29 | 004,554,752 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuda.dll [2010-06-14 00:03:29 | 002,632,296 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuvenc.dll [2010-06-14 00:03:29 | 002,165,352 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuvid.dll [2010-06-14 00:03:27 | 001,798,144 | ---- | C] (MSI) -- D:\WINDOWS\System32\msicpl.dll [2010-06-14 00:03:27 | 000,614,400 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\msvcr80.dll [2010-06-14 00:03:27 | 000,130,048 | ---- | C] (www.madshi.net) -- D:\WINDOWS\System32\MadCHook.dll [2010-06-14 00:03:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP [2010-06-13 23:43:07 | 082,045,688 | ---- | C] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\197.45_desktop_winxp_32bit_english_whql.exe [2010-06-12 10:09:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Album [2010-06-12 08:47:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\jj [2010-06-11 11:18:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy folder [2010-06-11 11:00:06 | 294,786,846 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 22:08:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dokumenciki Moniki [2010-06-08 22:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\MSECache [2010-06-08 22:08:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\nview [2010-06-08 21:26:00 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SDKs [2010-06-08 21:25:29 | 000,000,000 | ---D | C] -- D:\Program Files\Debugging Tools for Windows [2010-06-07 22:45:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files [2010-06-07 22:45:02 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-06-07 22:44:42 | 000,000,000 | ---D | C] -- D:\Program Files\Pando Networks [2010-06-07 17:35:38 | 000,081,920 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvwddi.dll [2010-06-07 17:35:30 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsth.dll [2010-06-07 17:35:30 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrseng.dll [2010-06-07 17:35:28 | 000,331,776 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrshe.dll [2010-06-07 17:35:28 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsel.dll [2010-06-07 17:35:28 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsnl.dll [2010-06-07 17:35:28 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsesm.dll [2010-06-07 17:35:28 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsda.dll [2010-06-07 17:35:28 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsfi.dll [2010-06-07 17:35:28 | 000,126,976 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrszht.dll [2010-06-07 17:35:26 | 000,335,872 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsar.dll [2010-06-07 17:35:26 | 000,286,720 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsfr.dll [2010-06-07 17:35:26 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsit.dll [2010-06-07 17:35:26 | 000,282,624 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrses.dll [2010-06-07 17:35:26 | 000,278,528 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsde.dll [2010-06-07 17:35:26 | 000,274,432 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrspt.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsru.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsptb.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsja.dll [2010-06-07 17:35:26 | 000,266,240 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsko.dll [2010-06-07 17:35:26 | 000,262,144 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrshu.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrstr.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssl.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssk.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrspl.dll [2010-06-07 17:35:26 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssv.dll [2010-06-07 17:35:26 | 000,253,952 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsno.dll [2010-06-07 17:35:26 | 000,249,856 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrscs.dll [2010-06-07 17:35:26 | 000,229,376 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrszhc.dll [2010-06-07 17:35:24 | 000,277,608 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvmccs.dll [2010-06-07 17:35:24 | 000,110,696 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvmctray.dll [2010-06-07 17:35:22 | 013,902,440 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcpl.dll [2010-06-07 17:35:22 | 000,145,000 | ---- | C] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcolor.exe [2010-06-06 20:47:02 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync [2010-06-06 20:26:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative [2010-06-06 20:19:40 | 000,090,112 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\Updreg.EXE [2010-06-06 20:19:38 | 000,149,504 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\MFCANS32.DLL [2010-06-06 20:19:38 | 000,108,032 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\MFCUIA32.DLL [2010-06-06 20:19:38 | 000,084,992 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\SFCVRT32.DLL [2010-06-06 20:19:38 | 000,053,552 | ---- | C] (Creative® Technology Ltd.) -- D:\WINDOWS\CTCCW.DLL [2010-06-06 20:19:38 | 000,024,976 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\CTRES.DLL [2010-06-06 20:19:37 | 000,082,432 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTWFLT32.DLL [2010-06-06 20:19:37 | 000,026,768 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\CTL3D.DLL [2010-06-06 20:19:33 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Defaults [2010-06-06 20:19:00 | 000,020,480 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\INRES.DLL [2010-06-06 20:19:00 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Data [2010-06-06 20:18:48 | 000,135,696 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\HAP16V2K.SYS [2010-06-06 20:18:47 | 000,823,456 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\ha10kx2k.sys [2010-06-06 20:18:47 | 000,145,504 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\EMUPIA2K.SYS [2010-06-06 20:18:45 | 000,136,448 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\CTSFM2K.SYS [2010-06-06 20:18:45 | 000,113,840 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\drivers\ctoss2k.sys [2010-06-06 20:18:45 | 000,006,144 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\CTPRXY2K.SYS [2010-06-06 20:18:44 | 000,496,800 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\ctaud2k.sys [2010-06-06 20:18:44 | 000,186,068 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\drivers\CTAC32K.SYS [2010-06-06 20:18:41 | 000,049,152 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\CTDCRES.DLL [2010-06-06 20:18:40 | 000,270,336 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\SFMS32.DLL [2010-06-06 20:18:40 | 000,180,224 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\READREG.EXE [2010-06-06 20:18:40 | 000,131,072 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\OPENAL32.DLL [2010-06-06 20:18:40 | 000,110,592 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\PIAPROXY.DLL [2010-06-06 20:18:40 | 000,049,152 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\MIDIDEF.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\sfman32.dll [2010-06-06 20:18:39 | 000,094,208 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\DEVREG.DLL [2010-06-06 20:18:39 | 000,077,824 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\EAXAC3.DLL [2010-06-06 20:18:39 | 000,020,480 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\ENSDEF.EXE [2010-06-06 20:18:37 | 000,655,360 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTSBLFX.DLL [2010-06-06 20:18:37 | 000,110,592 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTSCAL.DLL [2010-06-06 20:18:37 | 000,045,056 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTSPKHLP.DLL [2010-06-06 20:18:36 | 000,155,648 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTOSUSER.DLL [2010-06-06 20:18:36 | 000,036,864 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTEMUPIA.DLL [2010-06-06 20:18:36 | 000,028,672 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTMMEP.DLL [2010-06-06 20:18:36 | 000,024,576 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTHELPER.EXE [2010-06-06 20:18:28 | 000,110,592 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTDPROXY.DLL [2010-06-06 20:18:27 | 000,372,736 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTDC0001.DLL [2010-06-06 20:18:27 | 000,139,353 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTDCIFCE.DLL [2010-06-06 20:18:26 | 000,495,616 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTAUDFX.DLL [2010-06-06 20:18:26 | 000,356,445 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTDC0000.DLL [2010-06-06 20:18:26 | 000,106,496 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTASIO.DLL [2010-06-06 20:18:26 | 000,057,344 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTAGENT.DLL [2010-06-06 20:18:23 | 000,126,976 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\COMMONFX.DLL [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\dllcache\a3d.dll [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\a3d.dll [2010-06-06 20:18:23 | 000,053,248 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\AC3API.DLL [2010-06-06 20:16:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Creative [2010-06-06 20:16:15 | 000,055,808 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTMp3.crl [2010-06-06 20:16:04 | 000,139,264 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\Video.skn [2010-06-06 20:16:04 | 000,073,728 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTDrmRes.dll [2010-06-06 20:16:04 | 000,028,672 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTIntRes.dll [2010-06-06 20:16:04 | 000,024,576 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTMERes.DLL [2010-06-06 20:16:03 | 000,000,000 | ---D | C] -- D:\Media [2010-06-06 20:16:01 | 000,364,544 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\ctmp3.acm [2010-06-06 20:16:01 | 000,331,776 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTMedEng.dll [2010-06-06 20:16:01 | 000,163,840 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTDRMUI.dll [2010-06-06 20:16:01 | 000,054,784 | ---- | C] (Blue Sky Software Corporation.) -- D:\WINDOWS\System32\Inetwh32.dll [2010-06-06 20:15:55 | 000,062,976 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\CTDetres.dll [2010-06-06 20:15:54 | 000,025,088 | ---- | C] (Creative Technology Ltd) -- D:\WINDOWS\System32\CTSVCCTL.EXE [2010-06-06 20:15:35 | 000,032,768 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\AudioHQU.cpl [2010-06-06 20:15:35 | 000,012,288 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\AHQCpURes.dll [2010-06-06 20:15:00 | 000,015,840 | ---- | C] (Creative Technology Ltd.) -- D:\WINDOWS\System32\drivers\PFMODNT.SYS [2010-06-06 20:15:00 | 000,000,000 | ---D | C] -- D:\Program Files\Creative [2010-05-29 07:11:07 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2010-05-26 06:37:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-05-25 23:05:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-05-25 23:03:49 | 000,000,000 | ---D | C] -- D:\Program Files\Airytec [2010-05-23 18:16:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-05-23 18:15:05 | 000,000,000 | ---D | C] -- D:\NVIDIA [2010-05-23 16:47:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rockstar Games [2010-05-23 16:43:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\Rockstar Games [2010-05-23 16:42:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\microsoft [2010-05-23 16:41:29 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Games for Windows - LIVE [2010-05-23 16:18:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-05-23 16:18:06 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-us [2010-05-23 16:17:36 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-05-23 16:17:14 | 000,014,048 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\spmsg2.dll [2010-05-22 20:26:50 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 20:26:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\BioWare [2010-05-22 08:00:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ivtMobCache [2010-05-22 07:54:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\bluesoleil [2010-05-19 21:29:05 | 000,000,000 | ---D | C] -- D:\Program Files\Farming-Simulator 2009 [2010-05-19 17:06:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\My Games [2010-05-18 19:23:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3 [2010-05-16 20:50:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl [2010-05-13 10:12:50 | 000,000,000 | ---D | C] -- D:\Casino [2010-05-12 22:43:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BioWare [2010-05-04 16:33:09 | 000,000,000 | ---D | C] -- D:\Program Files\WebClicker [2010-05-02 20:59:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\KONAMI [2010-05-02 20:40:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-05-02 08:37:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b [2010-04-28 22:28:52 | 001,127,424 | ---- | C] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:57:07 | 000,344,064 | ---- | C] (Microsoft Corporation) -- D:\WINDOWS\System32\msvcr70.dll [2010-04-28 21:55:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BHPS [2010-04-28 21:55:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Sun [2010-04-28 21:55:25 | 000,061,555 | ---- | C] (Sun Microsystems) -- D:\WINDOWS\System32\jpicpl32.cpl [2010-04-28 21:55:13 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-04-28 21:55:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-04-28 21:55:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2010-04-28 21:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\BHPS [2010-04-24 23:21:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON [2010-04-20 15:48:04 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Corel [2010-04-20 15:47:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2010-04-20 15:45:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Corel [2010-04-20 15:45:56 | 000,000,000 | ---D | C] -- D:\Program Files\Corel [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-16 23:36:39 | 000,824,681 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 23:21:52 | 000,001,142 | ---- | M] () -- D:\WINDOWS\System32\bscs.ini [2010-06-16 23:21:44 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-06-16 23:21:37 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-06-16 23:19:07 | 003,670,016 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\NTUSER.DAT [2010-06-16 23:19:07 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-16 23:19:07 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settings.sfm [2010-06-16 23:19:07 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-16 23:19:07 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-16 23:19:06 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-16 23:19:06 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-16 23:19:06 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-16 23:19:06 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-16 23:01:00 | 000,000,242 | ---- | M] () -- D:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job [2010-06-16 22:15:41 | 000,070,868 | ---- | M] () -- D:\WINDOWS\FontData.fdb [2010-06-16 17:31:51 | 000,170,027 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:42:53 | 000,002,645 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-06-16 16:37:10 | 047,796,832 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:22 | 000,000,001 | ---- | M] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-15 20:09:50 | 021,400,396 | ---- | M] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql.exe [2010-06-15 20:04:41 | 000,127,254 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-15 16:26:36 | 119,555,768 | ---- | M] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\257.21_desktop_winxp_32bit_international_whql.exe [2010-06-15 15:49:51 | 073,665,272 | ---- | M] (NVIDIA Corporation ) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\169.21_forceware_winxp_32bit_international_whql.exe [2010-06-15 00:17:32 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\ZaJkOwSkI\ntuser.ini [2010-06-15 00:10:11 | 000,010,383 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 18:15:51 | 000,001,956 | ---- | M] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:06:49 | 082,045,688 | ---- | M] (NVIDIA Corporation) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\197.45_desktop_winxp_32bit_english_whql.exe [2010-06-14 00:03:01 | 113,528,521 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-12 08:50:55 | 000,010,046 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-11 11:15:24 | 294,786,846 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 10:59:07 | 000,004,535 | ---- | M] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-06-10 10:57:28 | 000,002,205 | ---- | M] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-06-10 10:57:28 | 000,000,097 | ---- | M] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-06-09 12:21:04 | 000,000,228 | ---- | M] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-06-09 00:46:43 | 000,317,520 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:45 | 004,525,985 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 04:27:00 | 015,192,064 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvoglnt.dll [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\drivers\nv4_mini.sys [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\dllcache\nv4_mini.sys [2010-06-08 04:27:00 | 010,256,384 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcompiler.dll [2010-06-08 04:27:00 | 006,300,544 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nv4_disp.dll [2010-06-08 04:27:00 | 004,554,752 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuda.dll [2010-06-08 04:27:00 | 002,632,296 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuvenc.dll [2010-06-08 04:27:00 | 002,186,342 | ---- | M] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-08 04:27:00 | 002,165,352 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcuvid.dll [2010-06-08 04:27:00 | 001,359,872 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvapi.dll [2010-06-08 04:27:00 | 000,600,680 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvudisp.exe [2010-06-08 04:27:00 | 000,232,040 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcodins.dll [2010-06-08 04:27:00 | 000,232,040 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcod.dll [2010-06-08 04:27:00 | 000,061,440 | ---- | M] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-08 04:27:00 | 000,025,836 | ---- | M] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-06-08 04:27:00 | 000,007,959 | ---- | M] () -- D:\WINDOWS\System32\nvinfo.pb [2010-06-07 23:15:39 | 000,000,625 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 22:18:05 | 000,001,056 | -HS- | M] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-06-07 17:35:38 | 000,081,920 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvwddi.dll [2010-06-07 17:35:30 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsth.dll [2010-06-07 17:35:30 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrseng.dll [2010-06-07 17:35:28 | 000,331,776 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrshe.dll [2010-06-07 17:35:28 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsel.dll [2010-06-07 17:35:28 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsnl.dll [2010-06-07 17:35:28 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsesm.dll [2010-06-07 17:35:28 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsda.dll [2010-06-07 17:35:28 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsfi.dll [2010-06-07 17:35:28 | 000,126,976 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrszht.dll [2010-06-07 17:35:26 | 000,335,872 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsar.dll [2010-06-07 17:35:26 | 000,286,720 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsfr.dll [2010-06-07 17:35:26 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsit.dll [2010-06-07 17:35:26 | 000,282,624 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrses.dll [2010-06-07 17:35:26 | 000,278,528 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsde.dll [2010-06-07 17:35:26 | 000,274,432 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrspt.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsru.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsptb.dll [2010-06-07 17:35:26 | 000,270,336 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsja.dll [2010-06-07 17:35:26 | 000,266,240 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsko.dll [2010-06-07 17:35:26 | 000,262,144 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrshu.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrstr.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssl.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssk.dll [2010-06-07 17:35:26 | 000,258,048 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrspl.dll [2010-06-07 17:35:26 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrssv.dll [2010-06-07 17:35:26 | 000,253,952 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrsno.dll [2010-06-07 17:35:26 | 000,249,856 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrscs.dll [2010-06-07 17:35:26 | 000,229,376 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvrszhc.dll [2010-06-07 17:35:24 | 000,277,608 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvmccs.dll [2010-06-07 17:35:24 | 000,110,696 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvmctray.dll [2010-06-07 17:35:22 | 013,902,440 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcpl.dll [2010-06-07 17:35:22 | 000,145,000 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\nvcolor.exe [2010-06-06 23:39:03 | 000,103,472 | ---- | M] () -- D:\WINDOWS\unins000.dat [2010-06-06 23:38:24 | 000,709,641 | ---- | M] () -- D:\WINDOWS\unins000.exe [2010-06-06 20:47:22 | 000,002,528 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:19:40 | 000,000,307 | ---- | M] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:19:32 | 000,000,338 | ---- | M] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 17:48:14 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-05-28 12:58:26 | 000,600,680 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\System32\NVUNINST.EXE [2010-05-27 11:46:00 | 000,084,842 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:57 | 015,067,326 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 19:36:42 | 000,144,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-23 17:03:28 | 000,486,872 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-05-23 16:41:29 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:42 | 000,000,885 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:20:00 | 001,219,326 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-05-23 16:20:00 | 000,542,592 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-05-23 16:20:00 | 000,481,130 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-05-23 16:20:00 | 000,103,002 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-05-23 16:20:00 | 000,082,136 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:10:53 | 000,000,000 | ---- | M] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 07:52:34 | 000,000,032 | ---- | M] () -- D:\WINDOWS\0 [2010-05-22 07:52:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 17:36:55 | 640,585,421 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-15 10:52:47 | 006,951,908 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-13 10:37:39 | 000,011,474 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-09 13:18:38 | 000,013,312 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-07 04:51:43 | 000,018,432 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-05-07 04:51:19 | 000,015,360 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-05-07 01:29:57 | 000,038,848 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-05-07 01:29:36 | 000,165,032 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-05-07 01:03:55 | 000,094,800 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-05-04 22:05:39 | 000,000,599 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-05-02 08:37:39 | 000,266,577 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:32:17 | 006,707,908 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:42:48 | 000,212,029 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 12:04:57 | 000,011,875 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:31:29 | 021,133,541 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 22:28:52 | 001,127,424 | ---- | M] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:57:07 | 000,344,064 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\System32\msvcr70.dll [2010-04-24 23:20:16 | 084,280,567 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 20:00:36 | 002,041,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 19:59:03 | 000,107,780 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 18:51:32 | 000,107,087 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:32 | 000,106,665 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:29 | 000,107,626 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:49:13 | 000,104,248 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:41 | 000,092,118 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:22 | 000,116,034 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:47:21 | 000,112,049 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:47:18 | 000,111,307 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:46:06 | 000,117,076 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:46:00 | 000,092,220 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:45:25 | 000,115,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-16 23:36:39 | 000,824,681 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 17:32:02 | 000,018,432 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-06-16 17:32:02 | 000,015,360 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:30:18 | 047,796,832 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,001 | ---- | C] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-14 23:50:09 | 000,010,383 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | C] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 00:19:19 | 000,001,956 | ---- | C] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:31 | 000,208,896 | ---- | C] () -- D:\WINDOWS\System32\WinSys2.exe [2010-06-14 00:03:31 | 000,131,072 | ---- | C] () -- D:\WINDOWS\System32\smdll.dll [2010-06-14 00:03:29 | 002,186,342 | ---- | C] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-14 00:03:27 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\Auxiliary.dll [2010-06-13 23:52:46 | 113,528,521 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 08:50:55 | 000,010,046 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-09 00:46:42 | 000,317,520 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:32 | 004,525,985 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 22:09:01 | 000,127,254 | ---- | C] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-07 23:15:39 | 000,000,625 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settings.sfm [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:02 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-06 23:19:33 | 000,709,641 | ---- | C] () -- D:\WINDOWS\unins000.exe [2010-06-06 23:19:33 | 000,103,472 | ---- | C] () -- D:\WINDOWS\unins000.dat [2010-06-06 20:47:22 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:26:27 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-06 20:19:38 | 000,000,231 | ---- | C] () -- D:\WINDOWS\AC3API.INI [2010-06-06 20:19:36 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\SFMAN.DAT [2010-06-06 20:19:32 | 000,000,338 | ---- | C] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 20:19:00 | 000,035,766 | ---- | C] () -- D:\WINDOWS\System32\Emu10kx.ini [2010-06-06 20:19:00 | 000,000,029 | ---- | C] () -- D:\WINDOWS\System32\ctzapxx.ini [2010-06-06 20:18:48 | 000,004,398 | ---- | C] () -- D:\WINDOWS\System32\SBLive.ico [2010-06-06 20:18:48 | 000,003,126 | ---- | C] () -- D:\WINDOWS\System32\Live.bmp [2010-06-06 20:18:45 | 002,259,067 | ---- | C] () -- D:\WINDOWS\System32\default.ecw [2010-06-06 20:18:45 | 000,251,970 | ---- | C] () -- D:\WINDOWS\System32\ctstatic.dat [2010-06-06 20:18:45 | 000,189,704 | ---- | C] () -- D:\WINDOWS\System32\ctdlang.dat [2010-06-06 20:18:44 | 000,142,968 | ---- | C] () -- D:\WINDOWS\System32\CTBAS2W.DAT [2010-06-06 20:18:44 | 000,115,322 | ---- | C] () -- D:\WINDOWS\System32\ctbasicw.dat [2010-06-06 20:18:44 | 000,053,674 | ---- | C] () -- D:\WINDOWS\System32\ctdaught.dat [2010-06-06 20:18:40 | 000,184,320 | ---- | C] () -- D:\WINDOWS\PSCONV.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\REGPLIB.EXE [2010-06-06 20:18:39 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\KILLAPPS.EXE [2010-06-06 20:18:39 | 000,005,515 | ---- | C] () -- D:\WINDOWS\System32\ENSDEF.INI [2010-06-06 20:18:39 | 000,000,192 | ---- | C] () -- D:\WINDOWS\System32\KILL.INI [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT8.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT4.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT.SFM [2010-06-06 20:18:33 | 004,174,291 | ---- | C] () -- D:\WINDOWS\CTDVAUDY.CDF [2010-06-06 20:18:30 | 003,735,544 | ---- | C] () -- D:\WINDOWS\CTDV10K2.CDF [2010-06-06 20:18:28 | 003,375,093 | ---- | C] () -- D:\WINDOWS\CTDV10K1.CDF [2010-06-06 20:18:24 | 002,167,684 | ---- | C] () -- D:\WINDOWS\System32\CT2MGM.SF2 [2010-06-06 20:18:23 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\CT1MGM.ROM [2010-06-06 20:17:56 | 004,174,814 | ---- | C] () -- D:\WINDOWS\System32\CT4MGM.SF2 [2010-06-06 20:17:48 | 000,000,307 | ---- | C] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:15:55 | 000,017,350 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.hlp [2010-06-06 20:15:55 | 000,000,641 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.cnt [2010-05-28 12:41:36 | 000,070,868 | ---- | C] () -- D:\WINDOWS\FontData.fdb [2010-05-27 11:45:57 | 000,084,842 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:49 | 015,067,326 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 18:15:15 | 000,007,959 | ---- | C] () -- D:\WINDOWS\System32\nvinfo.pb [2010-05-23 16:38:42 | 000,000,885 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:19:38 | 000,460,360 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:01:25 | 000,000,000 | ---- | C] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 08:00:45 | 000,002,205 | ---- | C] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-05-22 08:00:29 | 000,000,228 | ---- | C] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-05-22 07:54:35 | 000,004,535 | ---- | C] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-05-22 07:54:13 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-05-22 07:52:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 15:34:24 | 640,585,421 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-02 08:37:39 | 000,266,577 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:31:55 | 006,707,908 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:43:24 | 000,001,056 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-05-01 16:42:48 | 000,212,029 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 11:48:09 | 000,011,474 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-01 11:40:53 | 000,011,875 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:29:12 | 021,133,541 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 21:55:25 | 000,028,779 | ---- | C] () -- D:\WINDOWS\System32\javaw.exe [2010-04-28 21:55:25 | 000,024,681 | ---- | C] () -- D:\WINDOWS\System32\java.exe [2010-04-24 22:54:57 | 084,280,567 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 19:57:24 | 000,107,780 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 19:57:21 | 002,041,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 18:51:08 | 000,107,087 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:05 | 000,106,665 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:01 | 000,107,626 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:48:44 | 000,104,248 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:18 | 000,092,118 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:07 | 000,116,034 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:46:50 | 000,112,049 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:46:48 | 000,111,307 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:45:58 | 000,117,076 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:45:36 | 000,092,220 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:44:56 | 000,115,728 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [2010-04-12 11:14:36 | 000,278,728 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys [2010-04-12 11:14:35 | 000,025,416 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-12 10:28:08 | 000,691,696 | ---- | C] () -- D:\WINDOWS\System32\drivers\sptd.sys [2010-03-30 21:29:40 | 000,010,620 | ---- | C] () -- D:\WINDOWS\hpdj3500.ini [2008-10-22 05:29:06 | 000,173,550 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2008-08-04 18:04:44 | 000,001,142 | ---- | C] () -- D:\WINDOWS\System32\bscs.ini [2008-08-04 17:36:50 | 000,405,589 | ---- | C] () -- D:\WINDOWS\System32\BsUI.dll [2008-08-01 15:58:50 | 000,278,647 | ---- | C] () -- D:\WINDOWS\System32\outlookAddin.dll [2008-08-01 15:58:30 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\HtmPrintHelper.dll [2008-08-01 15:58:14 | 000,622,693 | ---- | C] () -- D:\WINDOWS\System32\BSShell.dll [2008-08-01 15:55:40 | 000,118,880 | ---- | C] () -- D:\WINDOWS\System32\BsMobileSDK.dll [2008-08-01 15:55:30 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\BsMobileCSps.dll [2008-08-01 15:54:12 | 000,102,499 | ---- | C] () -- D:\WINDOWS\System32\Bs2Res.dll [2008-08-01 15:46:30 | 017,907,824 | ---- | C] () -- D:\WINDOWS\System32\BsLangInDepRes.dll [2008-08-01 15:46:30 | 000,065,536 | ---- | C] () -- D:\WINDOWS\System32\BsVistaCommon.dll [2007-06-28 21:13:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:9D1B94FD < End of report > [/log]
Sohei komentarz 17 czerwca 2010 komentarz 17 czerwca 2010 (edytowane) [code] :OTL O4 - HKLM..\Run: [WinSys2] D:\WINDOWS\system32\WinSys2.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found :files D:\WINDOWS\system32\WinSys2.exe [commands] [emptytemp] [reboot][/code] Do OTL i run fix. [2010-05-07 04:51:43 | 000,018,432 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-05-07 04:51:19 | 000,015,360 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe Te pliki przeskanuj na virustotal Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL
Tomek01 komentarz 17 czerwca 2010 komentarz 17 czerwca 2010 (edytowane) Pobierz [b][url=http://www.instalki.pl/programy/download/antyspyware/get.php?file=avenger]Avenger[/url][/b] W polu input script here wklej taki tekst (bez frazy kod): [code]Files to delete: D:\WINDOWS\system32\WinSys2.exe[/code] Klikasz execute, komputer uruchamia się ponownie. Odinstaluj AskToolbar. W trybie awaryjnym uruchom HiJackThis, zaznacz fajki przy podanych wpisach a następnie fix checked: [code]O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - D:\Program Files\Ask.com\GenericAskToolbar.dll (Ask) O4 - HKLM..\Run: [WinSys2] D:\WINDOWS\system32\WinSys2.exe ()[/code] Następnie nowy log OTL i RSIT oraz raport z Avenger'a.
Sohei komentarz 18 czerwca 2010 komentarz 18 czerwca 2010 hmm tomek ale ja to samo napisałem wyzej:P Tylko że użyłem OTL bo po co sciągać inne programy?
Tomek01 komentarz 18 czerwca 2010 komentarz 18 czerwca 2010 (edytowane) A no ja byłem w trakcie edycji. Nie zauważyłem Twojego posta Sohei Myślę, że z infekcją WinSys32.exe doskonale poradzi sobie Avenger.
zagajgsi komentarz 19 czerwca 2010 Autor komentarz 19 czerwca 2010 (edytowane) MBAM [log]Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Wersja bazy: 4215 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 8.0.6001.18702 2010-06-19 14:52:32 mbam-log-2010-06-19 (14-52-32).txt Typ skanowania: Szybkie skanowanie Przeskanowano obiektów: 126088 Upłynęło: 5 minut(y), 23 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 3 Zainfekowanych folderów: 0 Zainfekowanych plików: 0 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken. Zainfekowanych folderów: (Nie znaleziono zagrożeń) Zainfekowanych plików: (Nie znaleziono zagrożeń) [/log] OTL [log]OTL logfile created on: 2010-06-19 15:45:54 - Run 3 OTL by OldTimer - Version 3.2.6.0 Folder = D:\Documents and Settings\ZaJkOwSkI\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 503,00 Mb Available Physical Memory | 49,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 84,00% Paging File free Paging file location(s): D:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 110,27 Gb Total Space | 95,55 Gb Free Space | 86,65% Space Free | Partition Type: NTFS Drive D: | 24,94 Gb Total Space | 5,68 Gb Free Space | 22,78% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 44,41 Gb Free Space | 45,48% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 232,88 Gb Total Space | 180,31 Gb Free Space | 77,43% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ZAGAJ Current User Name: ZaJkOwSkI Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe PRC - [2010-06-07 17:35:22 | 000,154,728 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2010-05-07 01:29:42 | 002,815,192 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe PRC - [2010-04-28 21:57:56 | 001,748,992 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbkern32.exe PRC - [2010-04-28 21:57:56 | 000,380,928 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbmux32.exe PRC - [2010-04-28 21:57:45 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe PRC - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe PRC - [2010-04-28 21:54:57 | 000,028,779 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\javaw.exe PRC - [2010-04-28 21:54:57 | 000,024,681 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\java.exe PRC - [2010-04-04 10:12:51 | 000,036,272 | ---- | M] (Adobe Systems Incorporated) -- D:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe PRC - [2010-04-01 13:46:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2010-03-09 10:02:14 | 026,100,520 | R--- | M] (Skype Technologies S.A.) -- D:\Program Files\Skype\Phone\Skype.exe PRC - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) -- D:\Program Files\Airytec\Switch Off\swoff.exe PRC - [2009-06-10 02:15:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2009-06-10 02:15:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2009-06-10 02:15:00 | 000,227,840 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2009-06-10 02:15:00 | 000,126,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\wmiapsrv.exe PRC - [2009-06-10 02:15:00 | 000,112,128 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wuauclt.exe PRC - [2009-06-10 02:15:00 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2009-06-10 02:15:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2009-06-10 02:15:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2009-06-10 02:15:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\alg.exe PRC - [2009-06-10 02:15:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rundll32.exe PRC - [2009-06-10 02:15:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [BTHSVCS] PRC - [2009-06-10 02:15:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2009-06-10 02:15:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2008-08-04 18:04:38 | 000,226,816 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe PRC - [2008-07-06 17:31:02 | 000,331,776 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMProcess.exe PRC - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMWDSrv.exe PRC - [2008-06-14 01:02:04 | 000,397,312 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMCONFIG.exe PRC - [2008-05-30 01:22:32 | 000,212,992 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\StartAutorun.exe PRC - [2008-03-20 14:34:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\gg.exe PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\wcescomm.exe PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\rapimgr.exe PRC - [2006-10-27 00:47:42 | 000,031,016 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2005-08-11 16:30:30 | 000,081,920 | ---- | M] (Macrovision Corporation) -- D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe PRC - [2005-07-16 02:18:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2003-11-08 01:36:50 | 000,176,128 | ---- | M] (HP) -- D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe PRC - [2003-10-23 19:51:18 | 000,233,472 | ---- | M] (Hewlett-Packard Company) -- D:\Program Files\HP\hpcoretech\hpcmpmgr.exe PRC - [2003-08-28 13:15:38 | 000,024,576 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTHELPER.EXE PRC - [2003-06-25 11:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- D:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd.exe PRC - [2000-06-26 07:44:20 | 000,053,520 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MsPMSPSv.exe PRC - [1999-12-13 01:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe MOD - [2009-06-10 02:15:00 | 008,490,496 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll MOD - [2009-06-10 02:15:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll MOD - [2009-06-10 02:15:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2009-06-10 02:15:00 | 001,020,416 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll MOD - [2009-06-10 02:15:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll MOD - [2009-06-10 02:15:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll MOD - [2009-06-10 02:15:00 | 000,723,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll MOD - [2009-06-10 02:15:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll MOD - [2009-06-10 02:15:00 | 000,585,216 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll MOD - [2009-06-10 02:15:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll MOD - [2009-06-10 02:15:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll MOD - [2009-06-10 02:15:00 | 000,498,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll MOD - [2009-06-10 02:15:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-10 02:15:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll MOD - [2009-06-10 02:15:00 | 000,297,984 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll MOD - [2009-06-10 02:15:00 | 000,286,720 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll MOD - [2009-06-10 02:15:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll MOD - [2009-06-10 02:15:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll MOD - [2009-06-10 02:15:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll MOD - [2009-06-10 02:15:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTFIME.IME MOD - [2009-06-10 02:15:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv MOD - [2009-06-10 02:15:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2009-06-10 02:15:00 | 000,110,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\imm32.dll MOD - [2009-06-10 02:15:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll MOD - [2009-06-10 02:15:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll MOD - [2009-06-10 02:15:00 | 000,056,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll MOD - [2009-06-10 02:15:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll MOD - [2009-06-10 02:15:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll MOD - [2006-12-21 17:00:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\ggwhook.dll MOD - [2003-08-28 13:15:56 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTAGENT.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- -- (pqeauto.engine.tomcatmonitor.GMG) SRV - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [Auto | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe -- (pqeauto.database.dbmonitor.GMG) SRV - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe -- (pqeauto.energy.mappermonitor) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Stopped] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Running] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler) SRV - [2010-01-26 12:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-07-26 06:43:14 | 000,025,832 | ---- | M] (BioWare) [On_Demand | Stopped] -- g:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe -- (DAUpdaterSvc) SRV - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () [On_Demand | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) [Auto | Running] -- D:\Program Files\Mouse Driver\KMWDSrv.exe -- (KMWDSERVICE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP) DRV - [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2) DRV - [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2010-04-12 11:14:36 | 000,278,728 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-04-12 11:14:35 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-04-12 10:28:08 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-01-21 14:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 11:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 11:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 11:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-30 11:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2009-12-30 11:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2009-06-10 02:15:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:59:06 | 000,027,528 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2008-07-02 14:59:02 | 000,033,800 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2008-07-02 14:58:28 | 000,038,920 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-04-13 22:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-03-22 11:31:58 | 000,017,024 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\KMWDFilter.SYS -- (KMWDFilter) DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2006-12-14 13:14:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-15 11:04:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-11-01 18:45:14 | 000,219,264 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BTCamDrv.sys -- (BTCAMDRV) DRV - [2006-08-29 19:26:19 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY) DRV - [2003-09-19 06:17:22 | 000,496,800 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM) DRV - [2003-08-28 12:54:36 | 000,145,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\EMUPIA2K.SYS -- (emupia) DRV - [2003-08-28 12:54:24 | 000,136,448 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTSFM2K.SYS -- (ctsfm2k) DRV - [2003-08-28 12:54:08 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTPRXY2K.SYS -- (ctprxy2k) DRV - [2003-08-28 12:54:04 | 000,113,840 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2003-08-28 12:52:32 | 000,186,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTAC32K.SYS -- (ctac32k) DRV - [2003-08-28 12:52:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HAP16V2K.SYS -- (hap16v2k) DRV - [2003-08-28 12:52:04 | 000,823,456 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k) DRV - [2003-03-05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT) DRV - [2001-08-17 22:49:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010-04-28 22:49:58 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-04-28 22:49:58 | 000,000,000 | ---D | M] [2010-03-30 22:47:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Extensions [2010-06-18 22:29:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions [2010-03-30 22:51:48 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-03-30 22:47:41 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions [2010-04-28 22:41:33 | 000,163,840 | ---- | M] (ProQuest Automotive) -- D:\Program Files\Mozilla Firefox\plugins\npImgrPlg.dll [2010-03-17 00:20:20 | 000,002,767 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-17 00:20:20 | 000,001,406 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-17 00:20:20 | 000,000,917 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-17 00:20:20 | 000,000,858 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-17 00:20:20 | 000,001,183 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-17 00:20:20 | 000,001,683 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 02:15:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [Alcmtr] D:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast5] D:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] D:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [BtTray] D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [CTHelper] D:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [ISUSPM Startup] D:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe (Macrovision Corporation) O4 - HKLM..\Run: [ISUSScheduler] D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation) O4 - HKLM..\Run: [Jet Detection] D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [KMCONFIG] D:\Program Files\Mouse Driver\StartAutorun.exe KMConfig.exe File not found O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\Program Files\NVIDIA Corporation\nView\nwiz.exe File not found O4 - HKLM..\Run: [SkyTel] D:\WINDOWS\SkyTel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunJavaUpdateSched] D:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe () O4 - HKLM..\Run: [UpdReg] D:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [WinSys2] D:\WINDOWS\system32\WinSys2.exe () O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [Gadu-Gadu] D:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [H/PC Connection Agent] D:\Program Files\Microsoft ActiveSync\Wcescomm.exe (Microsoft Corporation) O4 - Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe (20Dollars2Surf.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.128.1 192.168.0.1 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - D:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-01-02 20:24:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-06-06 22:09:20 | 000,019,657 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2010-06-06 18:39:35 | 000,000,000 | ---D | M] - G:\AutoMapa 6.5.0 [PL] Final -- [ NTFS ] O33 - MountPoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\xcopy.exe -- [2009-06-10 02:15:00 | 000,030,720 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-19 14:58:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\DoctorWeb [2010-06-19 14:45:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Malwarebytes [2010-06-19 14:45:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-06-19 14:45:16 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 14:44:31 | 000,000,000 | ---D | C] -- D:\_OTL [2010-06-17 15:40:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\backups [2010-06-16 23:52:31 | 000,000,000 | ---D | C] -- D:\WINDOWS\pss [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\Program Files\trend micro [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\rsit [2010-06-16 23:36:13 | 000,572,416 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:25:00 | 000,218,112 | ---- | C] (Soeperman Enterprises Ltd.) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\HijackThis.exe [2010-06-16 22:14:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Baner mu [2010-06-16 17:31:51 | 000,170,027 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,164,048 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-06-16 16:42:55 | 000,019,024 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-06-16 16:42:54 | 000,023,376 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-06-16 16:42:53 | 000,046,672 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-06-16 16:42:52 | 000,100,432 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-06-16 16:42:52 | 000,094,800 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-06-16 16:42:52 | 000,028,880 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-06-16 16:42:41 | 000,165,032 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-06-16 16:42:41 | 000,038,848 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-06-15 20:16:06 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-06-15 20:15:39 | 000,061,440 | ---- | C] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-15 16:33:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-06-14 00:04:27 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-06-14 00:03:27 | 001,798,144 | ---- | C] (MSI) -- D:\WINDOWS\System32\msicpl.dll [2010-06-14 00:03:27 | 000,130,048 | ---- | C] (www.madshi.net) -- D:\WINDOWS\System32\MadCHook.dll [2010-06-14 00:03:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP [2010-06-12 10:09:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Album [2010-06-12 08:47:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\jj [2010-06-11 11:18:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy folder [2010-06-11 11:00:06 | 294,786,846 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 22:08:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dokumenciki Moniki [2010-06-08 22:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\MSECache [2010-06-08 22:08:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\nview [2010-06-08 21:26:00 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SDKs [2010-06-08 21:25:29 | 000,000,000 | ---D | C] -- D:\Program Files\Debugging Tools for Windows [2010-06-07 22:45:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files [2010-06-07 22:45:02 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-06-07 22:44:42 | 000,000,000 | ---D | C] -- D:\Program Files\Pando Networks [2010-06-06 20:47:02 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync [2010-06-06 20:26:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative [2010-06-06 20:19:38 | 000,053,552 | ---- | C] (Creative® Technology Ltd.) -- D:\WINDOWS\CTCCW.DLL [2010-06-06 20:19:33 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Defaults [2010-06-06 20:19:00 | 000,020,480 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\INRES.DLL [2010-06-06 20:19:00 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Data [2010-06-06 20:18:40 | 000,180,224 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\READREG.EXE [2010-06-06 20:18:40 | 000,131,072 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\OPENAL32.DLL [2010-06-06 20:18:39 | 000,077,824 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\EAXAC3.DLL [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\dllcache\a3d.dll [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\a3d.dll [2010-06-06 20:16:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Creative [2010-06-06 20:16:03 | 000,000,000 | ---D | C] -- D:\Media [2010-06-06 20:16:01 | 000,054,784 | ---- | C] (Blue Sky Software Corporation.) -- D:\WINDOWS\System32\Inetwh32.dll [2010-06-06 20:15:00 | 000,000,000 | ---D | C] -- D:\Program Files\Creative [2010-05-29 07:11:07 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2010-05-26 06:37:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-05-25 23:05:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-05-25 23:03:49 | 000,000,000 | ---D | C] -- D:\Program Files\Airytec [2010-05-23 18:16:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-05-23 18:15:05 | 000,000,000 | ---D | C] -- D:\NVIDIA [2010-05-23 16:47:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rockstar Games [2010-05-23 16:43:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\Rockstar Games [2010-05-23 16:42:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\microsoft [2010-05-23 16:41:29 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Games for Windows - LIVE [2010-05-23 16:18:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-05-23 16:18:06 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-us [2010-05-23 16:17:36 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-05-22 20:26:50 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 20:26:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\BioWare [2010-05-22 08:00:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ivtMobCache [2010-05-22 07:54:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\bluesoleil [2010-05-19 21:29:05 | 000,000,000 | ---D | C] -- D:\Program Files\Farming-Simulator 2009 [2010-05-19 17:06:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\My Games [2010-05-18 19:23:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3 [2010-05-16 20:50:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl [2010-05-13 10:12:50 | 000,000,000 | ---D | C] -- D:\Casino [2010-05-12 22:43:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BioWare [2010-05-04 16:33:09 | 000,000,000 | ---D | C] -- D:\Program Files\WebClicker [2010-05-02 20:59:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\KONAMI [2010-05-02 20:40:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-05-02 08:37:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b [2010-04-28 22:28:52 | 001,127,424 | ---- | C] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:55:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BHPS [2010-04-28 21:55:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Sun [2010-04-28 21:55:25 | 000,061,555 | ---- | C] (Sun Microsystems) -- D:\WINDOWS\System32\jpicpl32.cpl [2010-04-28 21:55:13 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-04-28 21:55:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-04-28 21:55:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2010-04-28 21:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\BHPS [2010-04-24 23:21:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON [2010-04-20 15:48:04 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Corel [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-19 15:43:26 | 000,001,142 | ---- | M] () -- D:\WINDOWS\System32\bscs.ini [2010-06-19 15:43:19 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-06-19 15:43:14 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-06-19 15:39:18 | 003,670,016 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\NTUSER.DAT [2010-06-19 15:08:59 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 15:08:59 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 15:08:59 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 15:08:59 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 15:08:59 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-19 15:08:59 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settings.sfm [2010-06-19 15:08:59 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-19 15:08:59 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-19 15:08:37 | 000,000,582 | ---- | M] () -- D:\WINDOWS\win.ini [2010-06-19 15:08:37 | 000,000,227 | ---- | M] () -- D:\WINDOWS\system.ini [2010-06-19 14:52:09 | 044,884,120 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-19 14:45:19 | 000,000,703 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-18 18:20:21 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-06-16 23:42:42 | 000,293,376 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 22:15:41 | 000,070,868 | ---- | M] () -- D:\WINDOWS\FontData.fdb [2010-06-16 17:31:51 | 000,170,027 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:42:53 | 000,002,645 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-06-16 16:37:10 | 047,796,832 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:22 | 000,000,001 | ---- | M] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-15 20:04:41 | 000,127,254 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-15 00:17:32 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\ZaJkOwSkI\ntuser.ini [2010-06-15 00:10:11 | 000,010,383 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 18:15:51 | 000,001,956 | ---- | M] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:01 | 113,528,521 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-12 08:50:55 | 000,010,046 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-11 11:15:24 | 294,786,846 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 10:59:07 | 000,004,535 | ---- | M] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-06-10 10:57:28 | 000,002,205 | ---- | M] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-06-10 10:57:28 | 000,000,097 | ---- | M] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-06-09 12:21:04 | 000,000,228 | ---- | M] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-06-09 00:46:43 | 000,317,520 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:45 | 004,525,985 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 04:27:00 | 002,186,342 | ---- | M] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-08 04:27:00 | 000,061,440 | ---- | M] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-08 04:27:00 | 000,025,836 | ---- | M] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-06-08 04:27:00 | 000,007,959 | ---- | M] () -- D:\WINDOWS\System32\nvinfo.pb [2010-06-07 23:15:39 | 000,000,625 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 22:18:05 | 000,001,056 | -HS- | M] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-06-06 23:39:03 | 000,103,472 | ---- | M] () -- D:\WINDOWS\unins000.dat [2010-06-06 23:38:24 | 000,709,641 | ---- | M] () -- D:\WINDOWS\unins000.exe [2010-06-06 20:47:22 | 000,002,528 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:19:40 | 000,000,307 | ---- | M] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:19:32 | 000,000,338 | ---- | M] () -- D:\WINDOWS\ctrunonce.reg [2010-05-27 11:46:00 | 000,084,842 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:57 | 015,067,326 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 19:36:42 | 000,144,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-23 17:03:28 | 000,486,872 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-05-23 16:41:29 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:42 | 000,000,885 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:20:00 | 001,219,326 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-05-23 16:20:00 | 000,542,592 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-05-23 16:20:00 | 000,481,130 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-05-23 16:20:00 | 000,103,002 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-05-23 16:20:00 | 000,082,136 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:10:53 | 000,000,000 | ---- | M] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 07:52:34 | 000,000,032 | ---- | M] () -- D:\WINDOWS\0 [2010-05-22 07:52:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 17:36:55 | 640,585,421 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-15 10:52:47 | 006,951,908 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-13 10:37:39 | 000,011,474 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-09 13:18:38 | 000,013,312 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-07 04:51:43 | 000,018,432 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-05-07 04:51:19 | 000,015,360 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-05-07 01:29:57 | 000,038,848 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-05-07 01:29:36 | 000,165,032 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-05-07 01:03:55 | 000,094,800 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-05-04 22:05:39 | 000,000,599 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-05-02 08:37:39 | 000,266,577 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:32:17 | 006,707,908 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:42:48 | 000,212,029 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 12:04:57 | 000,011,875 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:31:29 | 021,133,541 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-04-29 11:54:21 | 000,036,804 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 22:28:52 | 001,127,424 | ---- | M] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-24 23:20:16 | 084,280,567 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 20:00:36 | 002,041,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 19:59:03 | 000,107,780 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 18:51:32 | 000,107,087 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:32 | 000,106,665 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:29 | 000,107,626 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:49:13 | 000,104,248 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:41 | 000,092,118 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:22 | 000,116,034 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:47:21 | 000,112,049 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:47:18 | 000,111,307 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:46:06 | 000,117,076 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:46:00 | 000,092,220 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:45:25 | 000,115,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-19 14:45:19 | 000,000,703 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 14:44:56 | 044,884,120 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-16 23:42:42 | 000,293,376 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 17:32:02 | 000,018,432 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-06-16 17:32:02 | 000,015,360 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:30:18 | 047,796,832 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,001 | ---- | C] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-14 23:50:09 | 000,010,383 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | C] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 00:19:19 | 000,001,956 | ---- | C] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:31 | 000,208,896 | ---- | C] () -- D:\WINDOWS\System32\WinSys2.exe [2010-06-14 00:03:31 | 000,131,072 | ---- | C] () -- D:\WINDOWS\System32\smdll.dll [2010-06-14 00:03:29 | 002,186,342 | ---- | C] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-14 00:03:27 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\Auxiliary.dll [2010-06-13 23:52:46 | 113,528,521 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 08:50:55 | 000,010,046 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-09 00:46:42 | 000,317,520 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:32 | 004,525,985 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 22:09:01 | 000,127,254 | ---- | C] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-07 23:15:39 | 000,000,625 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settings.sfm [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:02 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-06 23:19:33 | 000,709,641 | ---- | C] () -- D:\WINDOWS\unins000.exe [2010-06-06 23:19:33 | 000,103,472 | ---- | C] () -- D:\WINDOWS\unins000.dat [2010-06-06 20:47:22 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:26:27 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-06 20:19:38 | 000,000,231 | ---- | C] () -- D:\WINDOWS\AC3API.INI [2010-06-06 20:19:36 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\SFMAN.DAT [2010-06-06 20:19:32 | 000,000,338 | ---- | C] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 20:19:00 | 000,035,766 | ---- | C] () -- D:\WINDOWS\System32\Emu10kx.ini [2010-06-06 20:19:00 | 000,000,029 | ---- | C] () -- D:\WINDOWS\System32\ctzapxx.ini [2010-06-06 20:18:48 | 000,004,398 | ---- | C] () -- D:\WINDOWS\System32\SBLive.ico [2010-06-06 20:18:48 | 000,003,126 | ---- | C] () -- D:\WINDOWS\System32\Live.bmp [2010-06-06 20:18:45 | 002,259,067 | ---- | C] () -- D:\WINDOWS\System32\default.ecw [2010-06-06 20:18:45 | 000,251,970 | ---- | C] () -- D:\WINDOWS\System32\ctstatic.dat [2010-06-06 20:18:45 | 000,189,704 | ---- | C] () -- D:\WINDOWS\System32\ctdlang.dat [2010-06-06 20:18:44 | 000,142,968 | ---- | C] () -- D:\WINDOWS\System32\CTBAS2W.DAT [2010-06-06 20:18:44 | 000,115,322 | ---- | C] () -- D:\WINDOWS\System32\ctbasicw.dat [2010-06-06 20:18:44 | 000,053,674 | ---- | C] () -- D:\WINDOWS\System32\ctdaught.dat [2010-06-06 20:18:40 | 000,184,320 | ---- | C] () -- D:\WINDOWS\PSCONV.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\REGPLIB.EXE [2010-06-06 20:18:39 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\KILLAPPS.EXE [2010-06-06 20:18:39 | 000,005,515 | ---- | C] () -- D:\WINDOWS\System32\ENSDEF.INI [2010-06-06 20:18:39 | 000,000,192 | ---- | C] () -- D:\WINDOWS\System32\KILL.INI [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT8.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT4.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT.SFM [2010-06-06 20:18:33 | 004,174,291 | ---- | C] () -- D:\WINDOWS\CTDVAUDY.CDF [2010-06-06 20:18:30 | 003,735,544 | ---- | C] () -- D:\WINDOWS\CTDV10K2.CDF [2010-06-06 20:18:28 | 003,375,093 | ---- | C] () -- D:\WINDOWS\CTDV10K1.CDF [2010-06-06 20:18:24 | 002,167,684 | ---- | C] () -- D:\WINDOWS\System32\CT2MGM.SF2 [2010-06-06 20:18:23 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\CT1MGM.ROM [2010-06-06 20:17:56 | 004,174,814 | ---- | C] () -- D:\WINDOWS\System32\CT4MGM.SF2 [2010-06-06 20:17:48 | 000,000,307 | ---- | C] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:15:55 | 000,017,350 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.hlp [2010-06-06 20:15:55 | 000,000,641 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.cnt [2010-05-28 12:41:36 | 000,070,868 | ---- | C] () -- D:\WINDOWS\FontData.fdb [2010-05-27 11:45:57 | 000,084,842 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:49 | 015,067,326 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 18:15:15 | 000,007,959 | ---- | C] () -- D:\WINDOWS\System32\nvinfo.pb [2010-05-23 16:38:42 | 000,000,885 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:19:38 | 000,460,360 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:01:25 | 000,000,000 | ---- | C] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 08:00:45 | 000,002,205 | ---- | C] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-05-22 08:00:29 | 000,000,228 | ---- | C] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-05-22 07:54:35 | 000,004,535 | ---- | C] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-05-22 07:54:13 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-05-22 07:52:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 15:34:24 | 640,585,421 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-02 08:37:39 | 000,266,577 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:31:55 | 006,707,908 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:43:24 | 000,001,056 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-05-01 16:42:48 | 000,212,029 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 11:48:09 | 000,011,474 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-01 11:40:53 | 000,011,875 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:29:12 | 021,133,541 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 21:55:25 | 000,028,779 | ---- | C] () -- D:\WINDOWS\System32\javaw.exe [2010-04-28 21:55:25 | 000,024,681 | ---- | C] () -- D:\WINDOWS\System32\java.exe [2010-04-24 22:54:57 | 084,280,567 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 19:57:24 | 000,107,780 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 19:57:21 | 002,041,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 18:51:08 | 000,107,087 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:05 | 000,106,665 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:01 | 000,107,626 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:48:44 | 000,104,248 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:18 | 000,092,118 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:07 | 000,116,034 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:46:50 | 000,112,049 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:46:48 | 000,111,307 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:45:58 | 000,117,076 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:45:36 | 000,092,220 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:44:56 | 000,115,728 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [2010-04-12 11:14:36 | 000,278,728 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys [2010-04-12 11:14:35 | 000,025,416 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-12 10:28:08 | 000,691,696 | ---- | C] () -- D:\WINDOWS\System32\drivers\sptd.sys [2010-03-30 21:29:40 | 000,010,620 | ---- | C] () -- D:\WINDOWS\hpdj3500.ini [2008-10-22 05:29:06 | 000,173,550 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2008-08-04 18:04:44 | 000,001,142 | ---- | C] () -- D:\WINDOWS\System32\bscs.ini [2008-08-04 17:36:50 | 000,405,589 | ---- | C] () -- D:\WINDOWS\System32\BsUI.dll [2008-08-01 15:58:50 | 000,278,647 | ---- | C] () -- D:\WINDOWS\System32\outlookAddin.dll [2008-08-01 15:58:30 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\HtmPrintHelper.dll [2008-08-01 15:58:14 | 000,622,693 | ---- | C] () -- D:\WINDOWS\System32\BSShell.dll [2008-08-01 15:55:40 | 000,118,880 | ---- | C] () -- D:\WINDOWS\System32\BsMobileSDK.dll [2008-08-01 15:55:30 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\BsMobileCSps.dll [2008-08-01 15:54:12 | 000,102,499 | ---- | C] () -- D:\WINDOWS\System32\Bs2Res.dll [2008-08-01 15:46:30 | 017,907,824 | ---- | C] () -- D:\WINDOWS\System32\BsLangInDepRes.dll [2008-08-01 15:46:30 | 000,065,536 | ---- | C] () -- D:\WINDOWS\System32\BsVistaCommon.dll [2007-06-28 21:13:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-26 06:37:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-06-16 16:42:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-05-22 20:26:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 07:33:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2010-04-12 10:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-04-08 19:04:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-05-02 20:40:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-04-08 19:00:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-04-08 19:06:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-07 22:45:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-04-01 17:51:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-04-12 10:51:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\2K Sports [2010-05-25 23:05:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-04-12 10:31:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\DAEMON Tools Lite [2010-03-25 23:54:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Gadu-Gadu [2010-04-08 19:09:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Nokia [2010-03-24 03:08:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Opera [2010-05-22 07:26:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\PC Suite [2010-06-14 18:09:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:9D1B94FD < End of report > [/log] Strasznie długi jest log zCureIt i nei chce siw zaladowac na strone
Sohei komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 wykonaj ponownie polecenie z postu 2! czyli wklejasz tamto do OTL i run fix. Potem daj mi loga z usuwania OTL + nowy log z OTL
zagajgsi komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 [i]FIX:[/i] [log]Error: Unable to interpret <[2010-05-07 04:51:43 | 000,018,432 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll> in the current context! Error: Unable to interpret <[2010-05-07 04:51:19 | 000,015,360 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe> in the current context! OTL by OldTimer - Version 3.2.6.0 log created on 06202010_115113 [/log] [i]SKANY:[/i] [img]http://img17.imageshack.us/img17/9629/beztytuunai.jpg[/img] [img]http://img227.imageshack.us/img227/4884/beztytuu1m.jpg[/img] [i]LOG OTL:[/i] [log]OTL logfile created on: 2010-06-20 11:53:45 - Run 4 OTL by OldTimer - Version 3.2.6.0 Folder = D:\Documents and Settings\ZaJkOwSkI\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 355,00 Mb Available Physical Memory | 35,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 76,00% Paging File free Paging file location(s): D:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 110,27 Gb Total Space | 95,55 Gb Free Space | 86,65% Space Free | Partition Type: NTFS Drive D: | 24,94 Gb Total Space | 5,42 Gb Free Space | 21,74% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 44,41 Gb Free Space | 45,48% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 232,88 Gb Total Space | 180,31 Gb Free Space | 77,43% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ZAGAJ Current User Name: ZaJkOwSkI Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe PRC - [2010-06-07 17:35:22 | 000,154,728 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2010-05-07 01:29:42 | 002,815,192 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe PRC - [2010-04-28 21:57:56 | 001,748,992 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbkern32.exe PRC - [2010-04-28 21:57:56 | 000,380,928 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbmux32.exe PRC - [2010-04-28 21:57:45 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe PRC - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe PRC - [2010-04-28 21:54:57 | 000,028,779 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\javaw.exe PRC - [2010-04-28 21:54:57 | 000,024,681 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\java.exe PRC - [2010-04-28 13:45:50 | 000,835,952 | ---- | M] (Opera Software) -- D:\Program Files\Opera\opera.exe PRC - [2010-04-01 13:46:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- D:\Program Files\DAEMON Tools Lite\DTLite.exe PRC - [2010-03-09 10:02:14 | 026,100,520 | R--- | M] (Skype Technologies S.A.) -- D:\Program Files\Skype\Phone\Skype.exe PRC - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) -- D:\Program Files\Airytec\Switch Off\swoff.exe PRC - [2010-01-28 18:57:04 | 000,089,088 | ---- | M] (20Dollars2Surf.com) -- D:\Program Files\20Dollars2Surf\20dollars2surf.exe PRC - [2009-06-10 02:15:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2009-06-10 02:15:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2009-06-10 02:15:00 | 000,227,840 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2009-06-10 02:15:00 | 000,126,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\wmiapsrv.exe PRC - [2009-06-10 02:15:00 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2009-06-10 02:15:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2009-06-10 02:15:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2009-06-10 02:15:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\alg.exe PRC - [2009-06-10 02:15:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rundll32.exe PRC - [2009-06-10 02:15:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [BTHSVCS] PRC - [2009-06-10 02:15:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2009-06-10 02:15:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2008-08-04 18:04:38 | 000,226,816 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe PRC - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe PRC - [2008-07-06 17:31:02 | 000,331,776 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMProcess.exe PRC - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMWDSrv.exe PRC - [2008-06-14 01:02:04 | 000,397,312 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMCONFIG.exe PRC - [2008-05-30 01:22:32 | 000,212,992 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\StartAutorun.exe PRC - [2008-03-20 14:34:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\gg.exe PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\wcescomm.exe PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft ActiveSync\rapimgr.exe PRC - [2006-10-27 00:47:42 | 000,031,016 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe PRC - [2005-07-16 02:18:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2003-10-23 19:51:18 | 000,233,472 | ---- | M] (Hewlett-Packard Company) -- D:\Program Files\HP\hpcoretech\hpcmpmgr.exe PRC - [2003-08-28 13:15:38 | 000,024,576 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTHELPER.EXE PRC - [2003-06-25 11:24:48 | 000,049,152 | ---- | M] (Hewlett-Packard) -- D:\Program Files\Hewlett-Packard\HP Software Update\hpwuSchd.exe PRC - [2000-06-26 07:44:20 | 000,053,520 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MsPMSPSv.exe PRC - [1999-12-13 01:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe MOD - [2009-07-12 01:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll MOD - [2009-07-11 19:41:02 | 000,097,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll MOD - [2009-06-10 02:15:00 | 008,490,496 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll MOD - [2009-06-10 02:15:00 | 001,985,024 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\iertutil.dll MOD - [2009-06-10 02:15:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll MOD - [2009-06-10 02:15:00 | 001,207,808 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\urlmon.dll MOD - [2009-06-10 02:15:00 | 001,106,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msxml3.dll MOD - [2009-06-10 02:15:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2009-06-10 02:15:00 | 001,020,416 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll MOD - [2009-06-10 02:15:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll MOD - [2009-06-10 02:15:00 | 000,915,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wininet.dll MOD - [2009-06-10 02:15:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll MOD - [2009-06-10 02:15:00 | 000,723,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll MOD - [2009-06-10 02:15:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll MOD - [2009-06-10 02:15:00 | 000,602,624 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\crypt32.dll MOD - [2009-06-10 02:15:00 | 000,585,216 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll MOD - [2009-06-10 02:15:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll MOD - [2009-06-10 02:15:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll MOD - [2009-06-10 02:15:00 | 000,498,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll MOD - [2009-06-10 02:15:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-10 02:15:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll MOD - [2009-06-10 02:15:00 | 000,339,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\netapi32.dll MOD - [2009-06-10 02:15:00 | 000,297,984 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll MOD - [2009-06-10 02:15:00 | 000,286,720 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll MOD - [2009-06-10 02:15:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll MOD - [2009-06-10 02:15:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll MOD - [2009-06-10 02:15:00 | 000,208,384 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rsaenh.dll MOD - [2009-06-10 02:15:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll MOD - [2009-06-10 02:15:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTFIME.IME MOD - [2009-06-10 02:15:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv MOD - [2009-06-10 02:15:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\apphelp.dll MOD - [2009-06-10 02:15:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2009-06-10 02:15:00 | 000,110,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\imm32.dll MOD - [2009-06-10 02:15:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll MOD - [2009-06-10 02:15:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll MOD - [2009-06-10 02:15:00 | 000,057,344 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msasn1.dll MOD - [2009-06-10 02:15:00 | 000,056,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll MOD - [2009-06-10 02:15:00 | 000,023,552 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\normaliz.dll MOD - [2009-06-10 02:15:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll MOD - [2009-06-10 02:15:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll MOD - [2009-06-10 02:15:00 | 000,004,608 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msimg32.dll MOD - [2006-12-21 17:00:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\ggwhook.dll MOD - [2006-10-27 00:48:42 | 002,210,608 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll MOD - [2006-10-27 00:48:34 | 000,955,680 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveUtil.dll MOD - [2006-10-27 00:48:02 | 000,222,512 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll MOD - [2006-10-27 00:47:40 | 000,022,808 | ---- | M] (Microsoft Corporation) -- D:\Program Files\Microsoft Office\Office12\GrooveNew.dll MOD - [2003-08-28 13:15:56 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTAGENT.DLL [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- -- (pqeauto.engine.tomcatmonitor.GMG) SRV - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [On_Demand | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-05-07 01:29:38 | 000,040,384 | ---- | M] (ALWIL Software) [Auto | Running] -- D:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe -- (pqeauto.database.dbmonitor.GMG) SRV - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe -- (pqeauto.energy.mappermonitor) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Stopped] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Running] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler) SRV - [2010-01-26 12:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-07-26 06:43:14 | 000,025,832 | ---- | M] (BioWare) [On_Demand | Stopped] -- g:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe -- (DAUpdaterSvc) SRV - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () [On_Demand | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) [Auto | Running] -- D:\Program Files\Mouse Driver\KMWDSrv.exe -- (KMWDSERVICE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP) DRV - [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswmon2.sys -- (aswMon2) DRV - [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) [File_System | Auto | Running] -- D:\WINDOWS\system32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\aavmker4.sys -- (Aavmker4) DRV - [2010-04-12 11:14:36 | 000,278,728 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-04-12 11:14:35 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-04-12 10:28:08 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-01-21 14:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 11:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 11:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 11:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-30 11:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2009-12-30 11:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2009-06-10 02:15:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:59:06 | 000,027,528 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2008-07-02 14:59:02 | 000,033,800 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2008-07-02 14:58:28 | 000,038,920 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-04-13 22:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-03-22 11:31:58 | 000,017,024 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\KMWDFilter.SYS -- (KMWDFilter) DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2006-12-14 13:14:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-15 11:04:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-11-01 18:45:14 | 000,219,264 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BTCamDrv.sys -- (BTCAMDRV) DRV - [2006-08-29 19:26:19 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY) DRV - [2003-09-19 06:17:22 | 000,496,800 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM) DRV - [2003-08-28 12:54:36 | 000,145,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\EMUPIA2K.SYS -- (emupia) DRV - [2003-08-28 12:54:24 | 000,136,448 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTSFM2K.SYS -- (ctsfm2k) DRV - [2003-08-28 12:54:08 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTPRXY2K.SYS -- (ctprxy2k) DRV - [2003-08-28 12:54:04 | 000,113,840 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2003-08-28 12:52:32 | 000,186,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTAC32K.SYS -- (ctac32k) DRV - [2003-08-28 12:52:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HAP16V2K.SYS -- (hap16v2k) DRV - [2003-08-28 12:52:04 | 000,823,456 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k) DRV - [2003-03-05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT) DRV - [2001-08-17 22:49:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010-04-28 22:49:58 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-04-28 22:49:58 | 000,000,000 | ---D | M] [2010-03-30 22:47:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Extensions [2010-06-18 22:29:38 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions [2010-03-30 22:51:48 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-03-30 22:47:41 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions [2010-04-28 22:41:33 | 000,163,840 | ---- | M] (ProQuest Automotive) -- D:\Program Files\Mozilla Firefox\plugins\npImgrPlg.dll [2010-03-17 00:20:20 | 000,002,767 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-17 00:20:20 | 000,001,406 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-17 00:20:20 | 000,000,917 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-17 00:20:20 | 000,000,858 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-17 00:20:20 | 000,001,183 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-17 00:20:20 | 000,001,683 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 02:15:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [Alcmtr] D:\WINDOWS\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [avast5] D:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] D:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [BtTray] D:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe () O4 - HKLM..\Run: [CTHelper] D:\WINDOWS\System32\CTHELPER.EXE (Creative Technology Ltd) O4 - HKLM..\Run: [HP Software Update] D:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe (Hewlett-Packard) O4 - HKLM..\Run: [HPDJ Taskbar Utility] D:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb09.exe (HP) O4 - HKLM..\Run: [ISUSPM Startup] D:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe (Macrovision Corporation) O4 - HKLM..\Run: [ISUSScheduler] D:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (Macrovision Corporation) O4 - HKLM..\Run: [Jet Detection] D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [KMCONFIG] D:\Program Files\Mouse Driver\StartAutorun.exe KMConfig.exe File not found O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\Program Files\NVIDIA Corporation\nView\nwiz.exe File not found O4 - HKLM..\Run: [SkyTel] D:\WINDOWS\SkyTel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunJavaUpdateSched] D:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe () O4 - HKLM..\Run: [UpdReg] D:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [WinSys2] D:\WINDOWS\system32\WinSys2.exe () O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [DAEMON Tools Lite] D:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [Gadu-Gadu] D:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [H/PC Connection Agent] D:\Program Files\Microsoft ActiveSync\Wcescomm.exe (Microsoft Corporation) O4 - Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe (20Dollars2Surf.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.128.1 192.168.0.1 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - D:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-01-02 20:24:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-06-06 22:09:20 | 000,019,657 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2010-06-06 18:39:35 | 000,000,000 | ---D | M] - G:\AutoMapa 6.5.0 [PL] Final -- [ NTFS ] O33 - MountPoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\xcopy.exe -- [2009-06-10 02:15:00 | 000,030,720 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-19 14:58:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\DoctorWeb [2010-06-19 14:45:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Malwarebytes [2010-06-19 14:45:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-06-19 14:45:16 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 14:44:31 | 000,000,000 | ---D | C] -- D:\_OTL [2010-06-17 15:40:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\backups [2010-06-16 23:52:31 | 000,000,000 | ---D | C] -- D:\WINDOWS\pss [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\Program Files\trend micro [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\rsit [2010-06-16 23:36:13 | 000,572,416 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:25:00 | 000,218,112 | ---- | C] (Soeperman Enterprises Ltd.) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\HijackThis.exe [2010-06-16 22:14:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Baner mu [2010-06-16 17:31:51 | 000,170,027 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,164,048 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-06-16 16:42:55 | 000,019,024 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-06-16 16:42:54 | 000,023,376 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-06-16 16:42:53 | 000,046,672 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-06-16 16:42:52 | 000,100,432 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-06-16 16:42:52 | 000,094,800 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-06-16 16:42:52 | 000,028,880 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-06-16 16:42:41 | 000,165,032 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-06-16 16:42:41 | 000,038,848 | ---- | C] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-06-15 20:16:06 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-06-15 20:15:39 | 000,061,440 | ---- | C] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-15 16:33:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-06-14 00:04:27 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-06-14 00:03:27 | 001,798,144 | ---- | C] (MSI) -- D:\WINDOWS\System32\msicpl.dll [2010-06-14 00:03:27 | 000,130,048 | ---- | C] (www.madshi.net) -- D:\WINDOWS\System32\MadCHook.dll [2010-06-14 00:03:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP [2010-06-12 10:09:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Album [2010-06-12 08:47:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\jj [2010-06-11 11:18:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy folder [2010-06-11 11:00:06 | 294,786,846 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 22:08:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dokumenciki Moniki [2010-06-08 22:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\MSECache [2010-06-08 22:08:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\nview [2010-06-08 21:26:00 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SDKs [2010-06-08 21:25:29 | 000,000,000 | ---D | C] -- D:\Program Files\Debugging Tools for Windows [2010-06-07 22:45:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files [2010-06-07 22:45:02 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-06-07 22:44:42 | 000,000,000 | ---D | C] -- D:\Program Files\Pando Networks [2010-06-06 20:47:02 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync [2010-06-06 20:26:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative [2010-06-06 20:19:38 | 000,053,552 | ---- | C] (Creative® Technology Ltd.) -- D:\WINDOWS\CTCCW.DLL [2010-06-06 20:19:33 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Defaults [2010-06-06 20:19:00 | 000,020,480 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\INRES.DLL [2010-06-06 20:19:00 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Data [2010-06-06 20:18:40 | 000,180,224 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\READREG.EXE [2010-06-06 20:18:40 | 000,131,072 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\OPENAL32.DLL [2010-06-06 20:18:39 | 000,077,824 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\EAXAC3.DLL [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\dllcache\a3d.dll [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\a3d.dll [2010-06-06 20:16:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Creative [2010-06-06 20:16:03 | 000,000,000 | ---D | C] -- D:\Media [2010-06-06 20:16:01 | 000,054,784 | ---- | C] (Blue Sky Software Corporation.) -- D:\WINDOWS\System32\Inetwh32.dll [2010-06-06 20:15:00 | 000,000,000 | ---D | C] -- D:\Program Files\Creative [2010-05-29 07:11:07 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2010-05-26 06:37:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-05-25 23:05:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-05-25 23:03:49 | 000,000,000 | ---D | C] -- D:\Program Files\Airytec [2010-05-23 18:16:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-05-23 18:15:05 | 000,000,000 | ---D | C] -- D:\NVIDIA [2010-05-23 16:47:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rockstar Games [2010-05-23 16:43:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\Rockstar Games [2010-05-23 16:42:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\microsoft [2010-05-23 16:41:29 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Games for Windows - LIVE [2010-05-23 16:18:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-05-23 16:18:06 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-us [2010-05-23 16:17:36 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-05-22 20:26:50 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 20:26:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\BioWare [2010-05-22 08:00:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ivtMobCache [2010-05-22 07:54:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\bluesoleil [2010-05-19 21:29:05 | 000,000,000 | ---D | C] -- D:\Program Files\Farming-Simulator 2009 [2010-05-19 17:06:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\My Games [2010-05-18 19:23:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3 [2010-05-16 20:50:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl [2010-05-13 10:12:50 | 000,000,000 | ---D | C] -- D:\Casino [2010-05-12 22:43:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BioWare [2010-05-04 16:33:09 | 000,000,000 | ---D | C] -- D:\Program Files\WebClicker [2010-05-02 20:59:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\KONAMI [2010-05-02 20:40:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-05-02 08:37:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b [2010-04-28 22:28:52 | 001,127,424 | ---- | C] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:55:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BHPS [2010-04-28 21:55:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Sun [2010-04-28 21:55:25 | 000,061,555 | ---- | C] (Sun Microsystems) -- D:\WINDOWS\System32\jpicpl32.cpl [2010-04-28 21:55:13 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-04-28 21:55:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-04-28 21:55:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2010-04-28 21:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\BHPS [2010-04-24 23:21:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 11:42:26 | 000,001,142 | ---- | M] () -- D:\WINDOWS\System32\bscs.ini [2010-06-20 11:42:19 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-06-20 11:42:04 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-06-19 19:40:18 | 003,670,016 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\NTUSER.DAT [2010-06-19 19:40:17 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 19:40:17 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 19:40:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 19:40:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-19 19:40:17 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-19 19:40:17 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settings.sfm [2010-06-19 19:40:17 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-19 19:40:17 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-19 19:40:13 | 000,004,535 | ---- | M] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-06-19 17:43:02 | 000,000,228 | ---- | M] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-06-19 17:40:15 | 000,129,566 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:28 | 000,002,017 | ---- | M] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-06-19 17:20:20 | 000,000,097 | ---- | M] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-06-19 17:20:06 | 001,070,419 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 17:13:56 | 165,141,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 15:08:37 | 000,000,582 | ---- | M] () -- D:\WINDOWS\win.ini [2010-06-19 15:08:37 | 000,000,227 | ---- | M] () -- D:\WINDOWS\system.ini [2010-06-19 14:52:09 | 044,884,120 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-19 14:45:19 | 000,000,703 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-18 18:20:21 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-06-16 23:42:42 | 000,293,376 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 22:15:41 | 000,070,868 | ---- | M] () -- D:\WINDOWS\FontData.fdb [2010-06-16 17:31:51 | 000,170,027 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:42:53 | 000,002,645 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-06-16 16:37:10 | 047,796,832 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:22 | 000,000,001 | ---- | M] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-15 20:04:41 | 000,127,254 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-15 00:17:32 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\ZaJkOwSkI\ntuser.ini [2010-06-15 00:10:11 | 000,010,383 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 18:15:51 | 000,001,956 | ---- | M] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:01 | 113,528,521 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-12 08:50:55 | 000,010,046 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-11 11:15:24 | 294,786,846 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-09 00:46:43 | 000,317,520 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:45 | 004,525,985 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 04:27:00 | 002,186,342 | ---- | M] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-08 04:27:00 | 000,061,440 | ---- | M] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-08 04:27:00 | 000,025,836 | ---- | M] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-06-08 04:27:00 | 000,007,959 | ---- | M] () -- D:\WINDOWS\System32\nvinfo.pb [2010-06-07 23:15:39 | 000,000,625 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 22:18:05 | 000,001,056 | -HS- | M] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-06-06 23:39:03 | 000,103,472 | ---- | M] () -- D:\WINDOWS\unins000.dat [2010-06-06 23:38:24 | 000,709,641 | ---- | M] () -- D:\WINDOWS\unins000.exe [2010-06-06 20:47:22 | 000,002,528 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:19:40 | 000,000,307 | ---- | M] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:19:32 | 000,000,338 | ---- | M] () -- D:\WINDOWS\ctrunonce.reg [2010-05-27 11:46:00 | 000,084,842 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:57 | 015,067,326 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 19:36:42 | 000,144,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-23 17:03:28 | 000,486,872 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-05-23 16:41:29 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:42 | 000,000,885 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:20:00 | 001,219,326 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-05-23 16:20:00 | 000,542,592 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-05-23 16:20:00 | 000,481,130 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-05-23 16:20:00 | 000,103,002 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-05-23 16:20:00 | 000,082,136 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:10:53 | 000,000,000 | ---- | M] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 07:52:34 | 000,000,032 | ---- | M] () -- D:\WINDOWS\0 [2010-05-22 07:52:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 17:36:55 | 640,585,421 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-15 10:52:47 | 006,951,908 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-13 10:37:39 | 000,011,474 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-09 13:18:38 | 000,013,312 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-07 04:51:43 | 000,018,432 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-05-07 04:51:19 | 000,015,360 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-05-07 01:29:57 | 000,038,848 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\avastSS.scr [2010-05-07 01:29:36 | 000,165,032 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\aswBoot.exe [2010-05-07 01:09:23 | 000,046,672 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswTdi.sys [2010-05-07 01:09:00 | 000,164,048 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswSP.sys [2010-05-07 01:04:27 | 000,023,376 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswRdr.sys [2010-05-07 01:03:59 | 000,100,432 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon2.sys [2010-05-07 01:03:55 | 000,094,800 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswmon.sys [2010-05-07 01:03:47 | 000,019,024 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aswFsBlk.sys [2010-05-07 01:03:29 | 000,028,880 | ---- | M] (ALWIL Software) -- D:\WINDOWS\System32\drivers\aavmker4.sys [2010-05-04 22:05:39 | 000,000,599 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-05-02 08:37:39 | 000,266,577 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:32:17 | 006,707,908 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:42:48 | 000,212,029 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 12:04:57 | 000,011,875 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:31:29 | 021,133,541 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-04-29 11:54:21 | 000,036,804 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 22:28:52 | 001,127,424 | ---- | M] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-24 23:20:16 | 084,280,567 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 20:00:36 | 002,041,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 19:59:03 | 000,107,780 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 18:51:32 | 000,107,087 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:32 | 000,106,665 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:29 | 000,107,626 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:49:13 | 000,104,248 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:41 | 000,092,118 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:22 | 000,116,034 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:47:21 | 000,112,049 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:47:18 | 000,111,307 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:46:06 | 000,117,076 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:46:00 | 000,092,220 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:45:25 | 000,115,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-19 17:40:14 | 000,129,566 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:06 | 001,070,419 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 16:56:01 | 165,141,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 14:45:19 | 000,000,703 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 14:44:56 | 044,884,120 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-16 23:42:42 | 000,293,376 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 17:32:02 | 000,018,432 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll [2010-06-16 17:32:02 | 000,015,360 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [2010-06-16 16:42:55 | 000,001,707 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\avast! Free Antivirus.lnk [2010-06-16 16:30:18 | 047,796,832 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,001 | ---- | C] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-14 23:50:09 | 000,010,383 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | C] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 00:19:19 | 000,001,956 | ---- | C] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:31 | 000,208,896 | ---- | C] () -- D:\WINDOWS\System32\WinSys2.exe [2010-06-14 00:03:31 | 000,131,072 | ---- | C] () -- D:\WINDOWS\System32\smdll.dll [2010-06-14 00:03:29 | 002,186,342 | ---- | C] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-14 00:03:27 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\Auxiliary.dll [2010-06-13 23:52:46 | 113,528,521 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 08:50:55 | 000,010,046 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-09 00:46:42 | 000,317,520 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:32 | 004,525,985 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 22:09:01 | 000,127,254 | ---- | C] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-07 23:15:39 | 000,000,625 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settings.sfm [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:02 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-06 23:19:33 | 000,709,641 | ---- | C] () -- D:\WINDOWS\unins000.exe [2010-06-06 23:19:33 | 000,103,472 | ---- | C] () -- D:\WINDOWS\unins000.dat [2010-06-06 20:47:22 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:26:27 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-06 20:19:38 | 000,000,231 | ---- | C] () -- D:\WINDOWS\AC3API.INI [2010-06-06 20:19:36 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\SFMAN.DAT [2010-06-06 20:19:32 | 000,000,338 | ---- | C] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 20:19:00 | 000,035,766 | ---- | C] () -- D:\WINDOWS\System32\Emu10kx.ini [2010-06-06 20:19:00 | 000,000,029 | ---- | C] () -- D:\WINDOWS\System32\ctzapxx.ini [2010-06-06 20:18:48 | 000,004,398 | ---- | C] () -- D:\WINDOWS\System32\SBLive.ico [2010-06-06 20:18:48 | 000,003,126 | ---- | C] () -- D:\WINDOWS\System32\Live.bmp [2010-06-06 20:18:45 | 002,259,067 | ---- | C] () -- D:\WINDOWS\System32\default.ecw [2010-06-06 20:18:45 | 000,251,970 | ---- | C] () -- D:\WINDOWS\System32\ctstatic.dat [2010-06-06 20:18:45 | 000,189,704 | ---- | C] () -- D:\WINDOWS\System32\ctdlang.dat [2010-06-06 20:18:44 | 000,142,968 | ---- | C] () -- D:\WINDOWS\System32\CTBAS2W.DAT [2010-06-06 20:18:44 | 000,115,322 | ---- | C] () -- D:\WINDOWS\System32\ctbasicw.dat [2010-06-06 20:18:44 | 000,053,674 | ---- | C] () -- D:\WINDOWS\System32\ctdaught.dat [2010-06-06 20:18:40 | 000,184,320 | ---- | C] () -- D:\WINDOWS\PSCONV.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\REGPLIB.EXE [2010-06-06 20:18:39 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\KILLAPPS.EXE [2010-06-06 20:18:39 | 000,005,515 | ---- | C] () -- D:\WINDOWS\System32\ENSDEF.INI [2010-06-06 20:18:39 | 000,000,192 | ---- | C] () -- D:\WINDOWS\System32\KILL.INI [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT8.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT4.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT.SFM [2010-06-06 20:18:33 | 004,174,291 | ---- | C] () -- D:\WINDOWS\CTDVAUDY.CDF [2010-06-06 20:18:30 | 003,735,544 | ---- | C] () -- D:\WINDOWS\CTDV10K2.CDF [2010-06-06 20:18:28 | 003,375,093 | ---- | C] () -- D:\WINDOWS\CTDV10K1.CDF [2010-06-06 20:18:24 | 002,167,684 | ---- | C] () -- D:\WINDOWS\System32\CT2MGM.SF2 [2010-06-06 20:18:23 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\CT1MGM.ROM [2010-06-06 20:17:56 | 004,174,814 | ---- | C] () -- D:\WINDOWS\System32\CT4MGM.SF2 [2010-06-06 20:17:48 | 000,000,307 | ---- | C] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:15:55 | 000,017,350 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.hlp [2010-06-06 20:15:55 | 000,000,641 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.cnt [2010-05-28 12:41:36 | 000,070,868 | ---- | C] () -- D:\WINDOWS\FontData.fdb [2010-05-27 11:45:57 | 000,084,842 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:49 | 015,067,326 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 18:15:15 | 000,007,959 | ---- | C] () -- D:\WINDOWS\System32\nvinfo.pb [2010-05-23 16:38:42 | 000,000,885 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:19:38 | 000,460,360 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:01:25 | 000,000,000 | ---- | C] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 08:00:45 | 000,002,017 | ---- | C] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-05-22 08:00:29 | 000,000,228 | ---- | C] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-05-22 07:54:35 | 000,004,535 | ---- | C] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-05-22 07:54:13 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-05-22 07:52:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 15:34:24 | 640,585,421 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-02 08:37:39 | 000,266,577 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:31:55 | 006,707,908 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:43:24 | 000,001,056 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-05-01 16:42:48 | 000,212,029 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 11:48:09 | 000,011,474 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-01 11:40:53 | 000,011,875 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:29:12 | 021,133,541 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 21:55:25 | 000,028,779 | ---- | C] () -- D:\WINDOWS\System32\javaw.exe [2010-04-28 21:55:25 | 000,024,681 | ---- | C] () -- D:\WINDOWS\System32\java.exe [2010-04-24 22:54:57 | 084,280,567 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 19:57:24 | 000,107,780 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 19:57:21 | 002,041,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 18:51:08 | 000,107,087 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:05 | 000,106,665 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:01 | 000,107,626 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:48:44 | 000,104,248 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:18 | 000,092,118 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:07 | 000,116,034 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:46:50 | 000,112,049 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:46:48 | 000,111,307 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:45:58 | 000,117,076 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:45:36 | 000,092,220 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:44:56 | 000,115,728 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [2010-04-12 11:14:36 | 000,278,728 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys [2010-04-12 11:14:35 | 000,025,416 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-12 10:28:08 | 000,691,696 | ---- | C] () -- D:\WINDOWS\System32\drivers\sptd.sys [2010-03-30 21:29:40 | 000,010,620 | ---- | C] () -- D:\WINDOWS\hpdj3500.ini [2008-10-22 05:29:06 | 000,173,550 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2008-08-04 18:04:44 | 000,001,142 | ---- | C] () -- D:\WINDOWS\System32\bscs.ini [2008-08-04 17:36:50 | 000,405,589 | ---- | C] () -- D:\WINDOWS\System32\BsUI.dll [2008-08-01 15:58:50 | 000,278,647 | ---- | C] () -- D:\WINDOWS\System32\outlookAddin.dll [2008-08-01 15:58:30 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\HtmPrintHelper.dll [2008-08-01 15:58:14 | 000,622,693 | ---- | C] () -- D:\WINDOWS\System32\BSShell.dll [2008-08-01 15:55:40 | 000,118,880 | ---- | C] () -- D:\WINDOWS\System32\BsMobileSDK.dll [2008-08-01 15:55:30 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\BsMobileCSps.dll [2008-08-01 15:54:12 | 000,102,499 | ---- | C] () -- D:\WINDOWS\System32\Bs2Res.dll [2008-08-01 15:46:30 | 017,907,824 | ---- | C] () -- D:\WINDOWS\System32\BsLangInDepRes.dll [2008-08-01 15:46:30 | 000,065,536 | ---- | C] () -- D:\WINDOWS\System32\BsVistaCommon.dll [2007-06-28 21:13:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-26 06:37:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-06-16 16:42:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-05-22 20:26:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 07:33:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2010-04-12 10:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-04-08 19:04:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-05-02 20:40:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-04-08 19:00:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-04-08 19:06:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-07 22:45:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-04-01 17:51:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-04-12 10:51:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\2K Sports [2010-05-25 23:05:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-04-12 10:31:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\DAEMON Tools Lite [2010-03-25 23:54:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Gadu-Gadu [2010-04-08 19:09:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Nokia [2010-03-24 03:08:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Opera [2010-05-22 07:26:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\PC Suite [2010-06-14 18:09:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:9D1B94FD < End of report > [/log]jeszcze to: [log]All processes killed ========== OTL ========== Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\WinSys2 deleted successfully. D:\WINDOWS\system32\WinSys2.exe moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\KernelFaultCheck deleted successfully. ========== FILES ========== File\Folder D:\WINDOWS\system32\WinSys2.exe not found. File\Folder [commands] not found. File\Folder [emptytemp] not found. File\Folder [reboot] not found. OTL by OldTimer - Version 3.2.6.0 log created on 06202010_120350 Files\Folders moved on Reboot... Registry entries deleted on Reboot... [/log]
Sohei komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 (edytowane) Widzę efekty wciąż 0 Wykonaj to co tomek01 napisał. Czyli usuwasz te pliki za pomoca Avangera [code] Files to delete: D:\WINDOWS\system32\WinSys2.exe D:\Documents and Settings\ZaJkOwSkI\Pulpit\winm.dll D:\Documents and Settings\ZaJkOwSkI\Pulpit\winmu.exe [/code] Dodałem 2 pliki
zagajgsi komentarz 20 czerwca 2010 Autor komentarz 20 czerwca 2010 LOG [log]OTL logfile created on: 2010-06-20 18:08:14 - Run 5 OTL by OldTimer - Version 3.2.6.0 Folder = D:\Documents and Settings\ZaJkOwSkI\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 561,00 Mb Available Physical Memory | 55,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 83,00% Paging File free Paging file location(s): D:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 110,27 Gb Total Space | 95,55 Gb Free Space | 86,65% Space Free | Partition Type: NTFS Drive D: | 24,94 Gb Total Space | 4,63 Gb Free Space | 18,57% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 44,41 Gb Free Space | 45,48% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 232,88 Gb Total Space | 180,31 Gb Free Space | 77,43% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ZAGAJ Current User Name: ZaJkOwSkI Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe PRC - [2010-06-07 17:35:22 | 000,154,728 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe PRC - [2010-04-28 21:57:56 | 001,748,992 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbkern32.exe PRC - [2010-04-28 21:57:56 | 000,380,928 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbmux32.exe PRC - [2010-04-28 21:57:45 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe PRC - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe PRC - [2010-04-28 21:54:57 | 000,028,779 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\javaw.exe PRC - [2010-04-28 21:54:57 | 000,024,681 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\java.exe PRC - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) -- D:\Program Files\Airytec\Switch Off\swoff.exe PRC - [2010-01-28 18:57:04 | 000,089,088 | ---- | M] (20Dollars2Surf.com) -- D:\Program Files\20Dollars2Surf\20dollars2surf.exe PRC - [2009-10-20 19:39:28 | 000,340,456 | ---- | M] (Kaspersky Lab) -- D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe PRC - [2009-06-10 02:15:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2009-06-10 02:15:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2009-06-10 02:15:00 | 000,112,128 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wuauclt.exe PRC - [2009-06-10 02:15:00 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2009-06-10 02:15:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2009-06-10 02:15:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2009-06-10 02:15:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\alg.exe PRC - [2009-06-10 02:15:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [BTHSVCS] PRC - [2009-06-10 02:15:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2009-06-10 02:15:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe PRC - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMWDSrv.exe PRC - [2008-03-20 14:34:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\gg.exe PRC - [2005-07-16 02:18:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2000-06-26 07:44:20 | 000,053,520 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MsPMSPSv.exe PRC - [1999-12-13 01:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe MOD - [2009-06-10 02:15:00 | 008,490,496 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll MOD - [2009-06-10 02:15:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll MOD - [2009-06-10 02:15:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2009-06-10 02:15:00 | 001,020,416 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll MOD - [2009-06-10 02:15:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll MOD - [2009-06-10 02:15:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll MOD - [2009-06-10 02:15:00 | 000,723,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll MOD - [2009-06-10 02:15:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll MOD - [2009-06-10 02:15:00 | 000,585,216 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll MOD - [2009-06-10 02:15:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll MOD - [2009-06-10 02:15:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll MOD - [2009-06-10 02:15:00 | 000,498,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll MOD - [2009-06-10 02:15:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-10 02:15:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll MOD - [2009-06-10 02:15:00 | 000,297,984 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll MOD - [2009-06-10 02:15:00 | 000,286,720 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll MOD - [2009-06-10 02:15:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll MOD - [2009-06-10 02:15:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll MOD - [2009-06-10 02:15:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll MOD - [2009-06-10 02:15:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTFIME.IME MOD - [2009-06-10 02:15:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv MOD - [2009-06-10 02:15:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2009-06-10 02:15:00 | 000,110,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\imm32.dll MOD - [2009-06-10 02:15:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll MOD - [2009-06-10 02:15:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll MOD - [2009-06-10 02:15:00 | 000,056,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll MOD - [2009-06-10 02:15:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll MOD - [2009-06-10 02:15:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll MOD - [2006-12-21 17:00:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\ggwhook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- -- (pqeauto.engine.tomcatmonitor.GMG) SRV - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe -- (pqeauto.database.dbmonitor.GMG) SRV - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe -- (pqeauto.energy.mappermonitor) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Stopped] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Running] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler) SRV - [2010-01-26 12:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-10-20 19:39:28 | 000,340,456 | ---- | M] (Kaspersky Lab) [Auto | Running] -- D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe -- (AVP) SRV - [2009-07-26 06:43:14 | 000,025,832 | ---- | M] (BioWare) [On_Demand | Stopped] -- g:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe -- (DAUpdaterSvc) SRV - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () [On_Demand | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) [Auto | Running] -- D:\Program Files\Mouse Driver\KMWDSrv.exe -- (KMWDSERVICE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-06-20 17:15:58 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- D:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-04-12 11:14:36 | 000,278,728 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-04-12 11:14:35 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-04-12 10:28:08 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-01-21 14:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 11:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 11:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 11:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-30 11:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2009-12-30 11:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2009-10-14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\klbg.sys -- (klbg) DRV - [2009-10-02 18:39:44 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-09-14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-09-01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\kl1.sys -- (kl1) DRV - [2009-06-10 02:15:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:59:06 | 000,027,528 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2008-07-02 14:59:02 | 000,033,800 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2008-07-02 14:58:28 | 000,038,920 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-04-13 22:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-03-22 11:31:58 | 000,017,024 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\KMWDFilter.SYS -- (KMWDFilter) DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2006-12-14 13:14:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-15 11:04:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-11-01 18:45:14 | 000,219,264 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BTCamDrv.sys -- (BTCAMDRV) DRV - [2006-08-29 19:26:19 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY) DRV - [2003-09-19 06:17:22 | 000,496,800 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM) DRV - [2003-08-28 12:54:36 | 000,145,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\EMUPIA2K.SYS -- (emupia) DRV - [2003-08-28 12:54:24 | 000,136,448 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTSFM2K.SYS -- (ctsfm2k) DRV - [2003-08-28 12:54:08 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTPRXY2K.SYS -- (ctprxy2k) DRV - [2003-08-28 12:54:04 | 000,113,840 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2003-08-28 12:52:32 | 000,186,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTAC32K.SYS -- (ctac32k) DRV - [2003-08-28 12:52:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HAP16V2K.SYS -- (hap16v2k) DRV - [2003-08-28 12:52:04 | 000,823,456 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k) DRV - [2003-03-05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT) DRV - [2001-08-17 22:49:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010-04-28 22:49:58 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-04-28 22:49:58 | 000,000,000 | ---D | M] [2010-03-30 22:47:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Extensions [2010-06-20 13:23:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions [2010-03-30 22:51:48 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-06-20 16:50:02 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions [2010-06-20 16:50:02 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru [2010-04-28 22:41:33 | 000,163,840 | ---- | M] (ProQuest Automotive) -- D:\Program Files\Mozilla Firefox\plugins\npImgrPlg.dll [2010-03-17 00:20:20 | 000,002,767 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-17 00:20:20 | 000,001,406 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-17 00:20:20 | 000,000,917 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-17 00:20:20 | 000,000,858 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-17 00:20:20 | 000,001,183 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-17 00:20:20 | 000,001,683 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 02:15:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [AVP] D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] D:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [Jet Detection] D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [Gadu-Gadu] D:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe (20Dollars2Surf.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: &Wirtualna klawiatura - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: &Sprawdzanie adresów - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.128.1 192.168.0.1 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - D:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (D:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - D:\WINDOWS\system32\klogon.dll - D:\WINDOWS\system32\klogon.dll (Kaspersky Lab) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-01-02 20:24:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-06-06 22:09:20 | 000,019,657 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2010-06-06 18:39:35 | 000,000,000 | ---D | M] - G:\AutoMapa 6.5.0 [PL] Final -- [ NTFS ] O33 - MountPoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\xcopy.exe -- [2009-06-10 02:15:00 | 000,030,720 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-20 18:06:01 | 000,000,000 | ---D | C] -- D:\Avenger [2010-06-20 18:03:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger [2010-06-20 16:51:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma [2010-06-20 16:48:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab [2010-06-20 16:48:52 | 000,000,000 | ---D | C] -- D:\Program Files\Kaspersky Lab [2010-06-20 16:48:37 | 000,315,408 | ---- | C] (Kaspersky Lab) -- D:\WINDOWS\System32\drivers\klif.sys [2010-06-20 16:47:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab Setup Files [2010-06-20 15:23:24 | 069,737,656 | ---- | C] (Kaspersky Lab) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Kaspersky_Anti-Virus_2010_9.0.0.736_PL.exe [2010-06-20 15:17:08 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WindowsXP-KB936929-SP3-x86-symbols-full-ENU [2010-06-19 14:58:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\DoctorWeb [2010-06-19 14:45:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Malwarebytes [2010-06-19 14:45:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-06-19 14:45:16 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 14:44:31 | 000,000,000 | ---D | C] -- D:\_OTL [2010-06-17 15:40:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\backups [2010-06-16 23:52:31 | 000,000,000 | ---D | C] -- D:\WINDOWS\pss [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\Program Files\trend micro [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\rsit [2010-06-16 23:36:13 | 000,572,416 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:25:00 | 000,218,112 | ---- | C] (Soeperman Enterprises Ltd.) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\HijackThis.exe [2010-06-16 22:14:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Baner mu [2010-06-16 17:31:51 | 000,170,027 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-15 20:16:06 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-06-15 20:15:39 | 000,061,440 | ---- | C] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-15 16:33:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-06-14 00:04:27 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-06-14 00:03:27 | 001,798,144 | ---- | C] (MSI) -- D:\WINDOWS\System32\msicpl.dll [2010-06-14 00:03:27 | 000,130,048 | ---- | C] (www.madshi.net) -- D:\WINDOWS\System32\MadCHook.dll [2010-06-14 00:03:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP [2010-06-12 10:09:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Album [2010-06-12 08:47:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\jj [2010-06-11 11:18:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy folder [2010-06-11 11:00:06 | 294,786,846 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 22:08:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dokumenciki Moniki [2010-06-08 22:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\MSECache [2010-06-08 22:08:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\nview [2010-06-08 21:26:00 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SDKs [2010-06-08 21:25:29 | 000,000,000 | ---D | C] -- D:\Program Files\Debugging Tools for Windows [2010-06-07 22:45:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files [2010-06-07 22:45:02 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-06-07 22:44:42 | 000,000,000 | ---D | C] -- D:\Program Files\Pando Networks [2010-06-06 20:47:02 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync [2010-06-06 20:26:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative [2010-06-06 20:19:38 | 000,053,552 | ---- | C] (Creative® Technology Ltd.) -- D:\WINDOWS\CTCCW.DLL [2010-06-06 20:19:33 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Defaults [2010-06-06 20:19:00 | 000,020,480 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\INRES.DLL [2010-06-06 20:19:00 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Data [2010-06-06 20:18:40 | 000,180,224 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\READREG.EXE [2010-06-06 20:18:40 | 000,131,072 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\OPENAL32.DLL [2010-06-06 20:18:39 | 000,077,824 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\EAXAC3.DLL [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\dllcache\a3d.dll [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\a3d.dll [2010-06-06 20:16:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Creative [2010-06-06 20:16:03 | 000,000,000 | ---D | C] -- D:\Media [2010-06-06 20:16:01 | 000,054,784 | ---- | C] (Blue Sky Software Corporation.) -- D:\WINDOWS\System32\Inetwh32.dll [2010-06-06 20:15:00 | 000,000,000 | ---D | C] -- D:\Program Files\Creative [2010-05-29 07:11:07 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2010-05-26 06:37:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-05-25 23:05:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-05-25 23:03:49 | 000,000,000 | ---D | C] -- D:\Program Files\Airytec [2010-05-23 18:16:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-05-23 18:15:05 | 000,000,000 | ---D | C] -- D:\NVIDIA [2010-05-23 16:47:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rockstar Games [2010-05-23 16:43:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\Rockstar Games [2010-05-23 16:42:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\microsoft [2010-05-23 16:41:29 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Games for Windows - LIVE [2010-05-23 16:18:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-05-23 16:18:06 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-us [2010-05-23 16:17:36 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-05-22 20:26:50 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 20:26:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\BioWare [2010-05-22 08:00:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ivtMobCache [2010-05-22 07:54:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\bluesoleil [2010-05-19 21:29:05 | 000,000,000 | ---D | C] -- D:\Program Files\Farming-Simulator 2009 [2010-05-19 17:06:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\My Games [2010-05-18 19:23:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3 [2010-05-16 20:50:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl [2010-05-13 10:12:50 | 000,000,000 | ---D | C] -- D:\Casino [2010-05-12 22:43:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BioWare [2010-05-04 16:33:09 | 000,000,000 | ---D | C] -- D:\Program Files\WebClicker [2010-05-02 20:59:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\KONAMI [2010-05-02 20:40:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-05-02 08:37:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b [2010-04-28 22:28:52 | 001,127,424 | ---- | C] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:55:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BHPS [2010-04-28 21:55:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Sun [2010-04-28 21:55:25 | 000,061,555 | ---- | C] (Sun Microsystems) -- D:\WINDOWS\System32\jpicpl32.cpl [2010-04-28 21:55:13 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-04-28 21:55:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-04-28 21:55:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2010-04-28 21:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\BHPS [2010-04-24 23:21:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 18:06:33 | 000,001,142 | ---- | M] () -- D:\WINDOWS\System32\bscs.ini [2010-06-20 18:06:24 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-06-20 18:06:22 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-06-20 18:05:19 | 003,670,016 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\NTUSER.DAT [2010-06-20 18:05:18 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:18 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-20 18:05:18 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settings.sfm [2010-06-20 18:05:18 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-20 18:05:18 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-20 18:05:17 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 17:58:00 | 000,724,952 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger.zip [2010-06-20 17:15:58 | 000,315,408 | ---- | M] (Kaspersky Lab) -- D:\WINDOWS\System32\drivers\klif.sys [2010-06-20 17:15:56 | 000,113,933 | ---- | M] () -- D:\WINDOWS\System32\drivers\klin.dat [2010-06-20 17:15:56 | 000,097,549 | ---- | M] () -- D:\WINDOWS\System32\drivers\klick.dat [2010-06-20 17:06:43 | 000,002,596 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-06-20 15:44:31 | 069,737,656 | ---- | M] (Kaspersky Lab) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Kaspersky_Anti-Virus_2010_9.0.0.736_PL.exe [2010-06-20 15:25:20 | 000,288,544 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma.rar [2010-06-20 13:43:37 | 000,000,582 | ---- | M] () -- D:\WINDOWS\win.ini [2010-06-20 13:43:37 | 000,000,227 | ---- | M] () -- D:\WINDOWS\system.ini [2010-06-19 19:40:13 | 000,004,535 | ---- | M] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-06-19 17:43:02 | 000,000,228 | ---- | M] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-06-19 17:40:15 | 000,129,566 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:28 | 000,002,017 | ---- | M] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-06-19 17:20:20 | 000,000,097 | ---- | M] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-06-19 17:20:06 | 001,070,419 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 17:13:56 | 165,141,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 14:52:09 | 044,884,120 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-19 14:45:19 | 000,000,703 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-18 18:20:21 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-06-16 23:42:42 | 000,293,376 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 22:15:41 | 000,070,868 | ---- | M] () -- D:\WINDOWS\FontData.fdb [2010-06-16 17:31:51 | 000,170,027 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:37:10 | 047,796,832 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:22 | 000,000,001 | ---- | M] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-15 20:04:41 | 000,127,254 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-15 00:17:32 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\ZaJkOwSkI\ntuser.ini [2010-06-15 00:10:11 | 000,010,383 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 18:15:51 | 000,001,956 | ---- | M] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:01 | 113,528,521 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-12 08:50:55 | 000,010,046 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-11 11:15:24 | 294,786,846 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-09 00:46:43 | 000,317,520 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:45 | 004,525,985 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 04:27:00 | 002,186,342 | ---- | M] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-08 04:27:00 | 000,061,440 | ---- | M] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-08 04:27:00 | 000,025,836 | ---- | M] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-06-08 04:27:00 | 000,007,959 | ---- | M] () -- D:\WINDOWS\System32\nvinfo.pb [2010-06-07 23:15:39 | 000,000,625 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 22:18:05 | 000,001,056 | -HS- | M] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-06-06 23:39:03 | 000,103,472 | ---- | M] () -- D:\WINDOWS\unins000.dat [2010-06-06 23:38:24 | 000,709,641 | ---- | M] () -- D:\WINDOWS\unins000.exe [2010-06-06 20:47:22 | 000,002,528 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:19:40 | 000,000,307 | ---- | M] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:19:32 | 000,000,338 | ---- | M] () -- D:\WINDOWS\ctrunonce.reg [2010-05-27 11:46:00 | 000,084,842 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:57 | 015,067,326 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 19:36:42 | 000,144,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-23 17:03:28 | 000,486,872 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-05-23 16:41:29 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:42 | 000,000,885 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:20:00 | 001,219,326 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-05-23 16:20:00 | 000,542,592 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-05-23 16:20:00 | 000,481,130 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-05-23 16:20:00 | 000,103,002 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-05-23 16:20:00 | 000,082,136 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:10:53 | 000,000,000 | ---- | M] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 07:52:34 | 000,000,032 | ---- | M] () -- D:\WINDOWS\0 [2010-05-22 07:52:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 17:36:55 | 640,585,421 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-15 10:52:47 | 006,951,908 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-13 10:37:39 | 000,011,474 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-09 13:18:38 | 000,013,312 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-04 22:05:39 | 000,000,599 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-05-02 08:37:39 | 000,266,577 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:32:17 | 006,707,908 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:42:48 | 000,212,029 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 12:04:57 | 000,011,875 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:31:29 | 021,133,541 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-04-29 11:54:21 | 000,036,804 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 22:28:52 | 001,127,424 | ---- | M] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-24 23:20:16 | 084,280,567 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 20:00:36 | 002,041,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 19:59:03 | 000,107,780 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 18:51:32 | 000,107,087 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:32 | 000,106,665 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:29 | 000,107,626 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:49:13 | 000,104,248 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:41 | 000,092,118 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:22 | 000,116,034 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:47:21 | 000,112,049 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:47:18 | 000,111,307 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:46:06 | 000,117,076 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:46:00 | 000,092,220 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:45:25 | 000,115,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-20 17:57:59 | 000,724,952 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger.zip [2010-06-20 16:49:50 | 000,113,933 | ---- | C] () -- D:\WINDOWS\System32\drivers\klin.dat [2010-06-20 16:49:49 | 000,097,549 | ---- | C] () -- D:\WINDOWS\System32\drivers\klick.dat [2010-06-20 15:25:18 | 000,288,544 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma.rar [2010-06-19 17:40:14 | 000,129,566 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:06 | 001,070,419 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 16:56:01 | 165,141,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 14:45:19 | 000,000,703 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 14:44:56 | 044,884,120 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-16 23:42:42 | 000,293,376 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 16:30:18 | 047,796,832 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,001 | ---- | C] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-14 23:50:09 | 000,010,383 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | C] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 00:19:19 | 000,001,956 | ---- | C] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:31 | 000,131,072 | ---- | C] () -- D:\WINDOWS\System32\smdll.dll [2010-06-14 00:03:29 | 002,186,342 | ---- | C] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-14 00:03:27 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\Auxiliary.dll [2010-06-13 23:52:46 | 113,528,521 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 08:50:55 | 000,010,046 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-09 00:46:42 | 000,317,520 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:32 | 004,525,985 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 22:09:01 | 000,127,254 | ---- | C] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-07 23:15:39 | 000,000,625 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settings.sfm [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:02 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-06 23:19:33 | 000,709,641 | ---- | C] () -- D:\WINDOWS\unins000.exe [2010-06-06 23:19:33 | 000,103,472 | ---- | C] () -- D:\WINDOWS\unins000.dat [2010-06-06 20:47:22 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:26:27 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-06 20:19:38 | 000,000,231 | ---- | C] () -- D:\WINDOWS\AC3API.INI [2010-06-06 20:19:36 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\SFMAN.DAT [2010-06-06 20:19:32 | 000,000,338 | ---- | C] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 20:19:00 | 000,035,766 | ---- | C] () -- D:\WINDOWS\System32\Emu10kx.ini [2010-06-06 20:19:00 | 000,000,029 | ---- | C] () -- D:\WINDOWS\System32\ctzapxx.ini [2010-06-06 20:18:48 | 000,004,398 | ---- | C] () -- D:\WINDOWS\System32\SBLive.ico [2010-06-06 20:18:48 | 000,003,126 | ---- | C] () -- D:\WINDOWS\System32\Live.bmp [2010-06-06 20:18:45 | 002,259,067 | ---- | C] () -- D:\WINDOWS\System32\default.ecw [2010-06-06 20:18:45 | 000,251,970 | ---- | C] () -- D:\WINDOWS\System32\ctstatic.dat [2010-06-06 20:18:45 | 000,189,704 | ---- | C] () -- D:\WINDOWS\System32\ctdlang.dat [2010-06-06 20:18:44 | 000,142,968 | ---- | C] () -- D:\WINDOWS\System32\CTBAS2W.DAT [2010-06-06 20:18:44 | 000,115,322 | ---- | C] () -- D:\WINDOWS\System32\ctbasicw.dat [2010-06-06 20:18:44 | 000,053,674 | ---- | C] () -- D:\WINDOWS\System32\ctdaught.dat [2010-06-06 20:18:40 | 000,184,320 | ---- | C] () -- D:\WINDOWS\PSCONV.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\REGPLIB.EXE [2010-06-06 20:18:39 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\KILLAPPS.EXE [2010-06-06 20:18:39 | 000,005,515 | ---- | C] () -- D:\WINDOWS\System32\ENSDEF.INI [2010-06-06 20:18:39 | 000,000,192 | ---- | C] () -- D:\WINDOWS\System32\KILL.INI [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT8.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT4.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT.SFM [2010-06-06 20:18:33 | 004,174,291 | ---- | C] () -- D:\WINDOWS\CTDVAUDY.CDF [2010-06-06 20:18:30 | 003,735,544 | ---- | C] () -- D:\WINDOWS\CTDV10K2.CDF [2010-06-06 20:18:28 | 003,375,093 | ---- | C] () -- D:\WINDOWS\CTDV10K1.CDF [2010-06-06 20:18:24 | 002,167,684 | ---- | C] () -- D:\WINDOWS\System32\CT2MGM.SF2 [2010-06-06 20:18:23 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\CT1MGM.ROM [2010-06-06 20:17:56 | 004,174,814 | ---- | C] () -- D:\WINDOWS\System32\CT4MGM.SF2 [2010-06-06 20:17:48 | 000,000,307 | ---- | C] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:15:55 | 000,017,350 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.hlp [2010-06-06 20:15:55 | 000,000,641 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.cnt [2010-05-28 12:41:36 | 000,070,868 | ---- | C] () -- D:\WINDOWS\FontData.fdb [2010-05-27 11:45:57 | 000,084,842 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:49 | 015,067,326 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 18:15:15 | 000,007,959 | ---- | C] () -- D:\WINDOWS\System32\nvinfo.pb [2010-05-23 16:38:42 | 000,000,885 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:19:38 | 000,460,360 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:01:25 | 000,000,000 | ---- | C] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 08:00:45 | 000,002,017 | ---- | C] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-05-22 08:00:29 | 000,000,228 | ---- | C] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-05-22 07:54:35 | 000,004,535 | ---- | C] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-05-22 07:54:13 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-05-22 07:52:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 15:34:24 | 640,585,421 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-02 08:37:39 | 000,266,577 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:31:55 | 006,707,908 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:43:24 | 000,001,056 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-05-01 16:42:48 | 000,212,029 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 11:48:09 | 000,011,474 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-01 11:40:53 | 000,011,875 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:29:12 | 021,133,541 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 21:55:25 | 000,028,779 | ---- | C] () -- D:\WINDOWS\System32\javaw.exe [2010-04-28 21:55:25 | 000,024,681 | ---- | C] () -- D:\WINDOWS\System32\java.exe [2010-04-24 22:54:57 | 084,280,567 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 19:57:24 | 000,107,780 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 19:57:21 | 002,041,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 18:51:08 | 000,107,087 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:05 | 000,106,665 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:01 | 000,107,626 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:48:44 | 000,104,248 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:18 | 000,092,118 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:07 | 000,116,034 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:46:50 | 000,112,049 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:46:48 | 000,111,307 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:45:58 | 000,117,076 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:45:36 | 000,092,220 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:44:56 | 000,115,728 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [2010-04-12 11:14:36 | 000,278,728 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys [2010-04-12 11:14:35 | 000,025,416 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-12 10:28:08 | 000,691,696 | ---- | C] () -- D:\WINDOWS\System32\drivers\sptd.sys [2010-03-30 21:29:40 | 000,010,620 | ---- | C] () -- D:\WINDOWS\hpdj3500.ini [2008-10-22 05:29:06 | 000,173,550 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2008-08-04 18:04:44 | 000,001,142 | ---- | C] () -- D:\WINDOWS\System32\bscs.ini [2008-08-04 17:36:50 | 000,405,589 | ---- | C] () -- D:\WINDOWS\System32\BsUI.dll [2008-08-01 15:58:50 | 000,278,647 | ---- | C] () -- D:\WINDOWS\System32\outlookAddin.dll [2008-08-01 15:58:30 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\HtmPrintHelper.dll [2008-08-01 15:58:14 | 000,622,693 | ---- | C] () -- D:\WINDOWS\System32\BSShell.dll [2008-08-01 15:55:40 | 000,118,880 | ---- | C] () -- D:\WINDOWS\System32\BsMobileSDK.dll [2008-08-01 15:55:30 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\BsMobileCSps.dll [2008-08-01 15:54:12 | 000,102,499 | ---- | C] () -- D:\WINDOWS\System32\Bs2Res.dll [2008-08-01 15:46:30 | 017,907,824 | ---- | C] () -- D:\WINDOWS\System32\BsLangInDepRes.dll [2008-08-01 15:46:30 | 000,065,536 | ---- | C] () -- D:\WINDOWS\System32\BsVistaCommon.dll [2007-06-28 21:13:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-26 06:37:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-06-16 16:42:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-05-22 20:26:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 07:33:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2010-04-12 10:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-04-08 19:04:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-05-02 20:40:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-04-08 19:00:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-04-08 19:06:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-07 22:45:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-04-01 17:51:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-04-12 10:51:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\2K Sports [2010-05-25 23:05:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-04-12 10:31:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\DAEMON Tools Lite [2010-03-25 23:54:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Gadu-Gadu [2010-04-08 19:09:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Nokia [2010-03-24 03:08:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Opera [2010-05-22 07:26:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\PC Suite [2010-06-14 18:09:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:9D1B94FD < End of report > [/log][log]OTL logfile created on: 2010-06-20 18:08:14 - Run 5 OTL by OldTimer - Version 3.2.6.0 Folder = D:\Documents and Settings\ZaJkOwSkI\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 8.0.6001.18702) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 1 023,00 Mb Total Physical Memory | 561,00 Mb Available Physical Memory | 55,00% Memory free 2,00 Gb Paging File | 2,00 Gb Available in Paging File | 83,00% Paging File free Paging file location(s): D:\pagefile.sys 1536 3072 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 110,27 Gb Total Space | 95,55 Gb Free Space | 86,65% Space Free | Partition Type: NTFS Drive D: | 24,94 Gb Total Space | 4,63 Gb Free Space | 18,57% Space Free | Partition Type: NTFS Drive E: | 97,65 Gb Total Space | 44,41 Gb Free Space | 45,48% Space Free | Partition Type: NTFS F: Drive not present or media not loaded Drive G: | 232,88 Gb Total Space | 180,31 Gb Free Space | 77,43% Space Free | Partition Type: NTFS H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: ZAGAJ Current User Name: ZaJkOwSkI Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe PRC - [2010-06-07 17:35:22 | 000,154,728 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe PRC - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe PRC - [2010-04-28 21:57:56 | 001,748,992 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbkern32.exe PRC - [2010-04-28 21:57:56 | 000,380,928 | ---- | M] (Transaction Software, D 81737 Munich) -- g:\Program Files\BHPS\Gmg\bin\tbmux32.exe PRC - [2010-04-28 21:57:45 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Gmg\bin\TomcatMonService.exe PRC - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe PRC - [2010-04-28 21:54:57 | 000,028,779 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\javaw.exe PRC - [2010-04-28 21:54:57 | 000,024,681 | ---- | M] () -- D:\Program Files\BHPS\JRE142\bin\java.exe PRC - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) -- D:\Program Files\Airytec\Switch Off\swoff.exe PRC - [2010-01-28 18:57:04 | 000,089,088 | ---- | M] (20Dollars2Surf.com) -- D:\Program Files\20Dollars2Surf\20dollars2surf.exe PRC - [2009-10-20 19:39:28 | 000,340,456 | ---- | M] (Kaspersky Lab) -- D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe PRC - [2009-06-10 02:15:00 | 001,035,264 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2009-06-10 02:15:00 | 000,510,464 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2009-06-10 02:15:00 | 000,112,128 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wuauclt.exe PRC - [2009-06-10 02:15:00 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2009-06-10 02:15:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2009-06-10 02:15:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2009-06-10 02:15:00 | 000,044,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\alg.exe PRC - [2009-06-10 02:15:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [WUDFSERVICEGROUP] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2009-06-10 02:15:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [BTHSVCS] PRC - [2009-06-10 02:15:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2009-06-10 02:15:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe PRC - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe PRC - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) -- D:\Program Files\Mouse Driver\KMWDSrv.exe PRC - [2008-03-20 14:34:46 | 002,127,296 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\gg.exe PRC - [2005-07-16 02:18:33 | 000,479,232 | ---- | M] (Google Inc.) -- D:\Program Files\Google\Gmail Notifier\gnotify.exe PRC - [2000-06-26 07:44:20 | 000,053,520 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MsPMSPSv.exe PRC - [1999-12-13 01:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- D:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe MOD - [2009-06-10 02:15:00 | 008,490,496 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll MOD - [2009-06-10 02:15:00 | 001,287,168 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll MOD - [2009-06-10 02:15:00 | 001,054,208 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2009-06-10 02:15:00 | 001,020,416 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll MOD - [2009-06-10 02:15:00 | 000,997,888 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll MOD - [2009-06-10 02:15:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll MOD - [2009-06-10 02:15:00 | 000,723,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll MOD - [2009-06-10 02:15:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll MOD - [2009-06-10 02:15:00 | 000,585,216 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll MOD - [2009-06-10 02:15:00 | 000,580,096 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll MOD - [2009-06-10 02:15:00 | 000,551,936 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll MOD - [2009-06-10 02:15:00 | 000,498,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll MOD - [2009-06-10 02:15:00 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-10 02:15:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll MOD - [2009-06-10 02:15:00 | 000,297,984 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll MOD - [2009-06-10 02:15:00 | 000,286,720 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll MOD - [2009-06-10 02:15:00 | 000,280,064 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll MOD - [2009-06-10 02:15:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll MOD - [2009-06-10 02:15:00 | 000,185,344 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll MOD - [2009-06-10 02:15:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTFIME.IME MOD - [2009-06-10 02:15:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv MOD - [2009-06-10 02:15:00 | 000,110,592 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2009-06-10 02:15:00 | 000,110,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\imm32.dll MOD - [2009-06-10 02:15:00 | 000,084,992 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll MOD - [2009-06-10 02:15:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll MOD - [2009-06-10 02:15:00 | 000,056,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll MOD - [2009-06-10 02:15:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll MOD - [2009-06-10 02:15:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll MOD - [2006-12-21 17:00:44 | 000,102,400 | ---- | M] (Gadu-Gadu S.A.) -- D:\Program Files\Gadu-Gadu\ggwhook.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Auto | Running] -- -- (pqeauto.engine.tomcatmonitor.GMG) SRV - [2010-05-22 07:29:14 | 000,775,168 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe -- (BlueSoleilCS) SRV - [2010-04-28 21:58:01 | 000,073,728 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Gmg\bin\DBMonService.exe -- (pqeauto.database.dbmonitor.GMG) SRV - [2010-04-28 21:57:12 | 000,069,632 | ---- | M] (ProQuest Business Solutions) [Auto | Running] -- g:\Program Files\BHPS\Pmap1\bin\MapperMonService.exe -- (pqeauto.energy.mappermonitor) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Stopped] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffWeb) SRV - [2010-02-05 01:45:14 | 000,121,344 | ---- | M] (Airytec) [Auto | Running] -- D:\Program Files\Airytec\Switch Off\swoff.exe -- (SwOffScheduler) SRV - [2010-01-26 12:41:08 | 000,652,800 | ---- | M] (Nokia) [On_Demand | Stopped] -- D:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer) SRV - [2009-10-20 19:39:28 | 000,340,456 | ---- | M] (Kaspersky Lab) [Auto | Running] -- D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe -- (AVP) SRV - [2009-07-26 06:43:14 | 000,025,832 | ---- | M] (BioWare) [On_Demand | Stopped] -- g:\Program Files\Dragon Age\bin_ship\daupdatersvc.service.exe -- (DAUpdaterSvc) SRV - [2008-08-01 15:56:42 | 000,069,735 | ---- | M] () [On_Demand | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe -- (BsHelpCS) SRV - [2008-08-01 15:55:28 | 000,143,467 | ---- | M] () [Auto | Running] -- D:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe -- (BsMobileCS) SRV - [2008-06-23 21:28:08 | 000,208,896 | ---- | M] (UASSOFT.COM) [Auto | Running] -- D:\Program Files\Mouse Driver\KMWDSrv.exe -- (KMWDSERVICE) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-06-20 17:15:58 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- D:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2010-06-08 04:27:00 | 010,531,200 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-04-12 11:14:36 | 000,278,728 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt) DRV - [2010-04-12 11:14:35 | 000,025,416 | ---- | M] () [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-04-12 10:28:08 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-01-21 14:53:16 | 000,018,048 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd) DRV - [2009-12-30 11:30:56 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerfltj.sys -- (UsbserFilt) DRV - [2009-12-30 11:30:48 | 000,022,016 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc) DRV - [2009-12-30 11:30:48 | 000,007,936 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\usbser_lowerflt.sys -- (upperdev) DRV - [2009-12-30 11:25:12 | 000,137,344 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsu.sys -- (nmwcdnsu) DRV - [2009-12-30 11:25:12 | 000,008,320 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\nmwcdnsuc.sys -- (nmwcdnsuc) DRV - [2009-10-14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- D:\WINDOWS\system32\drivers\klbg.sys -- (klbg) DRV - [2009-10-02 18:39:44 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-09-14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-09-01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- D:\WINDOWS\system32\drivers\kl1.sys -- (kl1) DRV - [2009-06-10 02:15:00 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-08-26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd) DRV - [2008-07-31 20:45:42 | 000,020,616 | ---- | M] (IVT Corporation.) [Kernel | Boot | Running] -- D:\WINDOWS\System32\Drivers\BtHidBus.sys -- (BtHidBus) DRV - [2008-07-02 14:59:06 | 000,027,528 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\BlueletSCOAudio.sys -- (BlueletSCOAudio) DRV - [2008-07-02 14:59:02 | 000,033,800 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\blueletaudio.sys -- (BlueletAudio) DRV - [2008-07-02 14:58:48 | 000,026,248 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\IvtBtBus.sys -- (IvtBtBUs) DRV - [2008-07-02 14:58:36 | 000,029,960 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\VcommMgr.sys -- (VcommMgr) DRV - [2008-07-02 14:58:28 | 000,038,920 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btcusb.sys -- (Btcsrusb) DRV - [2008-04-13 22:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-03-22 11:31:58 | 000,017,024 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\KMWDFilter.SYS -- (KMWDFilter) DRV - [2008-01-21 19:28:12 | 000,014,600 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\btnetdrv.sys -- (BT) DRV - [2008-01-21 19:27:50 | 000,014,856 | ---- | M] (IVT Corporation.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\VComm.sys -- (VComm) DRV - [2006-12-14 13:14:06 | 000,085,120 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Rtnicxp.sys -- (RTL8023xp) DRV - [2006-11-15 11:04:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2006-11-01 18:45:14 | 000,219,264 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\BTCamDrv.sys -- (BTCAMDRV) DRV - [2006-08-29 19:26:19 | 000,032,377 | ---- | M] (B-phreaks) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\prodigy.sys -- (PRODIGY) DRV - [2003-09-19 06:17:22 | 000,496,800 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctaud2k.sys -- (ctaud2k) Creative Audio Driver (WDM) DRV - [2003-08-28 12:54:36 | 000,145,504 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\EMUPIA2K.SYS -- (emupia) DRV - [2003-08-28 12:54:24 | 000,136,448 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTSFM2K.SYS -- (ctsfm2k) DRV - [2003-08-28 12:54:08 | 000,006,144 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTPRXY2K.SYS -- (ctprxy2k) DRV - [2003-08-28 12:54:04 | 000,113,840 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2003-08-28 12:52:32 | 000,186,068 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\CTAC32K.SYS -- (ctac32k) DRV - [2003-08-28 12:52:20 | 000,135,696 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\HAP16V2K.SYS -- (hap16v2k) DRV - [2003-08-28 12:52:04 | 000,823,456 | ---- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\ha10kx2k.sys -- (ha10kx2k) DRV - [2003-03-05 12:19:28 | 000,015,840 | ---- | M] (Creative Technology Ltd.) [Kernel | Auto | Running] -- D:\WINDOWS\system32\drivers\PFMODNT.SYS -- (PfModNT) DRV - [2001-08-17 22:49:20 | 000,003,712 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\ctljystk.sys -- (ctljystk) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.1.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: D:\Program Files\Mozilla Firefox\components [2010-04-28 22:49:58 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: D:\Program Files\Mozilla Firefox\plugins [2010-04-28 22:49:58 | 000,000,000 | ---D | M] [2010-03-30 22:47:49 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Extensions [2010-06-20 13:23:55 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions [2010-03-30 22:51:48 | 000,000,000 | ---D | M] (Adblock Plus) -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Mozilla\Firefox\Profiles\fboilp9f.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} [2010-06-20 16:50:02 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions [2010-06-20 16:50:02 | 000,000,000 | ---D | M] -- D:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru [2010-04-28 22:41:33 | 000,163,840 | ---- | M] (ProQuest Automotive) -- D:\Program Files\Mozilla Firefox\plugins\npImgrPlg.dll [2010-03-17 00:20:20 | 000,002,767 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-03-17 00:20:20 | 000,001,406 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-03-17 00:20:20 | 000,000,917 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-03-17 00:20:20 | 000,000,858 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-03-17 00:20:20 | 000,001,183 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-03-17 00:20:20 | 000,001,683 | ---- | M] () -- D:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 02:15:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O3 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] D:\Program Files\Google\Gmail Notifier\gnotify.exe (Google Inc.) O4 - HKLM..\Run: [AVP] D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab) O4 - HKLM..\Run: [BluetoothAuthenticationAgent] D:\WINDOWS\System32\bthprops.cpl (Microsoft Corporation) O4 - HKLM..\Run: [Jet Detection] D:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe () O4 - HKLM..\Run: [KernelFaultCheck] File not found O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003..\Run: [Gadu-Gadu] D:\Program Files\Gadu-Gadu\gg.exe (Gadu-Gadu S.A.) O4 - Startup: D:\Documents and Settings\All Users\Menu Start\Programy\Autostart\20Dollars2Surf.lnk = D:\Program Files\20Dollars2Surf\20dollars2surf.exe (20Dollars2Surf.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-57989841-1078081533-1177238915-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - D:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Wyslij przez wiadomosc(&M)... - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm () O8 - Extra context menu item: Wyślij przez Bluetooth - D:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm () O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - D:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: &Wirtualna klawiatura - {4248FE82-7FCB-46AC-B270-339F08212110} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: &Sprawdzanie adresów - {CCF151D8-D089-449F-A5A4-D9909053F20F} - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab (Java Plug-in 1.4.2_03) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.175.128.1 192.168.0.1 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - D:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - D:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - D:\WINDOWS\system32\skype4com.dll (Skype Technologies) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (D:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab) O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\klogon: DllName - D:\WINDOWS\system32\klogon.dll - D:\WINDOWS\system32\klogon.dll (Kaspersky Lab) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Moje obrazy\14906_4875.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2010-01-02 20:24:08 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2010-06-06 22:09:20 | 000,019,657 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2010-06-06 18:39:35 | 000,000,000 | ---D | M] - G:\AutoMapa 6.5.0 [PL] Final -- [ NTFS ] O33 - MountPoints2\{f2b24552-52e9-11df-b9c5-00158315a1de}\Shell\AutoRun\command - "" = D:\WINDOWS\System32\xcopy.exe -- [2009-06-10 02:15:00 | 000,030,720 | ---- | M] (Microsoft Corporation) O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-06-20 18:06:01 | 000,000,000 | ---D | C] -- D:\Avenger [2010-06-20 18:03:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger [2010-06-20 16:51:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma [2010-06-20 16:48:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab [2010-06-20 16:48:52 | 000,000,000 | ---D | C] -- D:\Program Files\Kaspersky Lab [2010-06-20 16:48:37 | 000,315,408 | ---- | C] (Kaspersky Lab) -- D:\WINDOWS\System32\drivers\klif.sys [2010-06-20 16:47:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab Setup Files [2010-06-20 15:23:24 | 069,737,656 | ---- | C] (Kaspersky Lab) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Kaspersky_Anti-Virus_2010_9.0.0.736_PL.exe [2010-06-20 15:17:08 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WindowsXP-KB936929-SP3-x86-symbols-full-ENU [2010-06-19 14:58:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\DoctorWeb [2010-06-19 14:45:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Malwarebytes [2010-06-19 14:45:17 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-06-19 14:45:16 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Program Files\Malwarebytes' Anti-Malware [2010-06-19 14:45:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes [2010-06-19 14:44:31 | 000,000,000 | ---D | C] -- D:\_OTL [2010-06-17 15:40:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\backups [2010-06-16 23:52:31 | 000,000,000 | ---D | C] -- D:\WINDOWS\pss [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\Program Files\trend micro [2010-06-16 23:38:20 | 000,000,000 | ---D | C] -- D:\rsit [2010-06-16 23:36:13 | 000,572,416 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:25:00 | 000,218,112 | ---- | C] (Soeperman Enterprises Ltd.) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\HijackThis.exe [2010-06-16 22:14:20 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Baner mu [2010-06-16 17:31:51 | 000,170,027 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-15 20:16:06 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-06-15 20:15:39 | 000,061,440 | ---- | C] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-15 16:33:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\257.21_desktop_winxp_32bit_international_whql [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-06-14 00:04:36 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-06-14 00:04:27 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-06-14 00:03:27 | 001,798,144 | ---- | C] (MSI) -- D:\WINDOWS\System32\msicpl.dll [2010-06-14 00:03:27 | 000,130,048 | ---- | C] (www.madshi.net) -- D:\WINDOWS\System32\MadCHook.dll [2010-06-14 00:03:27 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP [2010-06-12 10:09:06 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Album [2010-06-12 08:47:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\jj [2010-06-11 11:18:12 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy folder [2010-06-11 11:00:06 | 294,786,846 | ---- | C] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-10 22:08:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dokumenciki Moniki [2010-06-08 22:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\MSECache [2010-06-08 22:08:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\nview [2010-06-08 21:26:00 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft SDKs [2010-06-08 21:25:29 | 000,000,000 | ---D | C] -- D:\Program Files\Debugging Tools for Windows [2010-06-07 22:45:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files [2010-06-07 22:45:02 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-06-07 22:44:42 | 000,000,000 | ---D | C] -- D:\Program Files\Pando Networks [2010-06-06 20:47:02 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft ActiveSync [2010-06-06 20:26:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Creative [2010-06-06 20:19:38 | 000,053,552 | ---- | C] (Creative® Technology Ltd.) -- D:\WINDOWS\CTCCW.DLL [2010-06-06 20:19:33 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Defaults [2010-06-06 20:19:00 | 000,020,480 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\INRES.DLL [2010-06-06 20:19:00 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Data [2010-06-06 20:18:40 | 000,180,224 | ---- | C] (Creative Technology Limited) -- D:\WINDOWS\READREG.EXE [2010-06-06 20:18:40 | 000,131,072 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\OPENAL32.DLL [2010-06-06 20:18:39 | 000,077,824 | ---- | C] (Creative Labs) -- D:\WINDOWS\System32\EAXAC3.DLL [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\dllcache\a3d.dll [2010-06-06 20:18:23 | 000,065,536 | ---- | C] ( ) -- D:\WINDOWS\System32\a3d.dll [2010-06-06 20:16:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Creative [2010-06-06 20:16:03 | 000,000,000 | ---D | C] -- D:\Media [2010-06-06 20:16:01 | 000,054,784 | ---- | C] (Blue Sky Software Corporation.) -- D:\WINDOWS\System32\Inetwh32.dll [2010-06-06 20:15:00 | 000,000,000 | ---D | C] -- D:\Program Files\Creative [2010-05-29 07:11:07 | 000,000,000 | -HSD | C] -- D:\WINDOWS\CSC [2010-05-26 06:37:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-05-25 23:05:53 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-05-25 23:03:49 | 000,000,000 | ---D | C] -- D:\Program Files\Airytec [2010-05-23 18:16:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\NVIDIA Corporation [2010-05-23 18:15:05 | 000,000,000 | ---D | C] -- D:\NVIDIA [2010-05-23 16:47:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rockstar Games [2010-05-23 16:43:05 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\Rockstar Games [2010-05-23 16:42:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dokumenty\microsoft [2010-05-23 16:41:29 | 000,107,888 | ---- | C] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xlive [2010-05-23 16:38:48 | 000,000,000 | ---D | C] -- D:\Program Files\Microsoft Games for Windows - LIVE [2010-05-23 16:18:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-05-23 16:18:06 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-us [2010-05-23 16:17:36 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-05-22 20:26:50 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 20:26:30 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\BioWare [2010-05-22 08:00:51 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ivtMobCache [2010-05-22 07:54:22 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\bluesoleil [2010-05-19 21:29:05 | 000,000,000 | ---D | C] -- D:\Program Files\Farming-Simulator 2009 [2010-05-19 17:06:19 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\My Games [2010-05-18 19:23:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3 [2010-05-16 20:50:28 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl [2010-05-13 10:12:50 | 000,000,000 | ---D | C] -- D:\Casino [2010-05-12 22:43:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BioWare [2010-05-04 16:33:09 | 000,000,000 | ---D | C] -- D:\Program Files\WebClicker [2010-05-02 20:59:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\KONAMI [2010-05-02 20:40:07 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-05-02 08:37:54 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b [2010-04-28 22:28:52 | 001,127,424 | ---- | C] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-28 21:55:36 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\BHPS [2010-04-28 21:55:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Sun [2010-04-28 21:55:25 | 000,061,555 | ---- | C] (Sun Microsystems) -- D:\WINDOWS\System32\jpicpl32.cpl [2010-04-28 21:55:13 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-04-28 21:55:12 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-04-28 21:55:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\{7148F0A6-6813-11D6-A77B-00B0D0142030} [2010-04-28 21:55:04 | 000,000,000 | ---D | C] -- D:\Program Files\BHPS [2010-04-24 23:21:25 | 000,000,000 | ---D | C] -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-06-20 18:06:33 | 000,001,142 | ---- | M] () -- D:\WINDOWS\System32\bscs.ini [2010-06-20 18:06:24 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-06-20 18:06:22 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-06-20 18:05:19 | 003,670,016 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\NTUSER.DAT [2010-06-20 18:05:18 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:18 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-20 18:05:18 | 000,001,080 | ---- | M] () -- D:\WINDOWS\System32\settings.sfm [2010-06-20 18:05:18 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-20 18:05:18 | 000,000,288 | ---- | M] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-20 18:05:17 | 000,029,004 | ---- | M] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 18:05:17 | 000,017,456 | ---- | M] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-20 17:58:00 | 000,724,952 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger.zip [2010-06-20 17:15:58 | 000,315,408 | ---- | M] (Kaspersky Lab) -- D:\WINDOWS\System32\drivers\klif.sys [2010-06-20 17:15:56 | 000,113,933 | ---- | M] () -- D:\WINDOWS\System32\drivers\klin.dat [2010-06-20 17:15:56 | 000,097,549 | ---- | M] () -- D:\WINDOWS\System32\drivers\klick.dat [2010-06-20 17:06:43 | 000,002,596 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-06-20 15:44:31 | 069,737,656 | ---- | M] (Kaspersky Lab) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Kaspersky_Anti-Virus_2010_9.0.0.736_PL.exe [2010-06-20 15:25:20 | 000,288,544 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma.rar [2010-06-20 13:43:37 | 000,000,582 | ---- | M] () -- D:\WINDOWS\win.ini [2010-06-20 13:43:37 | 000,000,227 | ---- | M] () -- D:\WINDOWS\system.ini [2010-06-19 19:40:13 | 000,004,535 | ---- | M] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-06-19 17:43:02 | 000,000,228 | ---- | M] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-06-19 17:40:15 | 000,129,566 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:28 | 000,002,017 | ---- | M] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-06-19 17:20:20 | 000,000,097 | ---- | M] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-06-19 17:20:06 | 001,070,419 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 17:13:56 | 165,141,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 14:52:09 | 044,884,120 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-19 14:45:19 | 000,000,703 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-18 18:20:21 | 000,002,206 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-06-16 23:42:42 | 000,293,376 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:36:14 | 000,572,416 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\OTL.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 22:15:41 | 000,070,868 | ---- | M] () -- D:\WINDOWS\FontData.fdb [2010-06-16 17:31:51 | 000,170,027 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.winmode.v4.exe [2010-06-16 16:37:10 | 047,796,832 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:22 | 000,000,001 | ---- | M] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | M] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-15 20:04:41 | 000,127,254 | ---- | M] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-15 00:17:32 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\ZaJkOwSkI\ntuser.ini [2010-06-15 00:10:11 | 000,010,383 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | M] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 18:15:51 | 000,001,956 | ---- | M] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:01 | 113,528,521 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-12 11:08:12 | 003,375,681 | ---- | M] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-12 08:50:55 | 000,010,046 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-11 11:15:24 | 294,786,846 | ---- | M] (Igor Pavlov) -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\WarkaMu.client.v9.music.sound.exe [2010-06-09 00:46:43 | 000,317,520 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:45 | 004,525,985 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 04:27:00 | 002,186,342 | ---- | M] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-08 04:27:00 | 000,061,440 | ---- | M] (Khronos Group) -- D:\WINDOWS\System32\OpenCL.dll [2010-06-08 04:27:00 | 000,025,836 | ---- | M] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-06-08 04:27:00 | 000,007,959 | ---- | M] () -- D:\WINDOWS\System32\nvinfo.pb [2010-06-07 23:15:39 | 000,000,625 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 22:18:05 | 000,001,056 | -HS- | M] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-06-06 23:39:03 | 000,103,472 | ---- | M] () -- D:\WINDOWS\unins000.dat [2010-06-06 23:38:24 | 000,709,641 | ---- | M] () -- D:\WINDOWS\unins000.exe [2010-06-06 20:47:22 | 000,002,528 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:19:40 | 000,000,307 | ---- | M] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:19:32 | 000,000,338 | ---- | M] () -- D:\WINDOWS\ctrunonce.reg [2010-05-27 11:46:00 | 000,084,842 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:57 | 015,067,326 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 19:36:42 | 000,144,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-05-23 17:03:28 | 000,486,872 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-05-23 16:41:29 | 000,107,888 | ---- | M] (Sony DADC Austria AG.) -- D:\WINDOWS\System32\CmdLineExt.dll [2010-05-23 16:38:42 | 000,000,885 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:20:00 | 001,219,326 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-05-23 16:20:00 | 000,542,592 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-05-23 16:20:00 | 000,481,130 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-05-23 16:20:00 | 000,103,002 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-05-23 16:20:00 | 000,082,136 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:10:53 | 000,000,000 | ---- | M] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 07:52:34 | 000,000,032 | ---- | M] () -- D:\WINDOWS\0 [2010-05-22 07:52:32 | 000,000,000 | ---- | M] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 17:36:55 | 640,585,421 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-15 10:52:47 | 006,951,908 | -H-- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-05-13 10:37:39 | 000,011,474 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-09 13:18:38 | 000,013,312 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-05-04 22:05:39 | 000,000,599 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-05-02 08:37:39 | 000,266,577 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:32:17 | 006,707,908 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:42:48 | 000,212,029 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 12:04:57 | 000,011,875 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:31:29 | 021,133,541 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- D:\WINDOWS\System32\drivers\mbam.sys [2010-04-29 11:54:21 | 000,036,804 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 22:28:52 | 001,127,424 | ---- | M] (AccuSoft Corporation) -- D:\WINDOWS\System32\GEAR32PD.DLL [2010-04-24 23:20:16 | 084,280,567 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 20:00:36 | 002,041,331 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 19:59:03 | 000,107,780 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 18:51:32 | 000,107,087 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:32 | 000,106,665 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:29 | 000,107,626 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:49:13 | 000,104,248 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:41 | 000,092,118 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:22 | 000,116,034 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:47:21 | 000,112,049 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:47:18 | 000,111,307 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:46:06 | 000,117,076 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:46:00 | 000,092,220 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:45:25 | 000,115,728 | ---- | M] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [1 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-06-20 17:57:59 | 000,724,952 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\avenger.zip [2010-06-20 16:49:50 | 000,113,933 | ---- | C] () -- D:\WINDOWS\System32\drivers\klin.dat [2010-06-20 16:49:49 | 000,097,549 | ---- | C] () -- D:\WINDOWS\System32\drivers\klick.dat [2010-06-20 15:25:18 | 000,288,544 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\19.06.2010.upload.by.Mi.Ma.rar [2010-06-19 17:40:14 | 000,129,566 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Bottle_Open_Sms.mp3 [2010-06-19 17:20:06 | 001,070,419 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\the bomb.mp3 [2010-06-19 16:56:01 | 165,141,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\filmy1.rar [2010-06-19 14:45:19 | 000,000,703 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Malwarebytes' Anti-Malware.lnk [2010-06-19 14:44:56 | 044,884,120 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\8ewwf3x7.exe [2010-06-16 23:42:42 | 000,293,376 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\tt4czx5i.exe [2010-06-16 23:36:39 | 000,824,681 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\RSIT.exe [2010-06-16 23:24:19 | 000,251,392 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hijackthis_sfx.exe [2010-06-16 16:30:18 | 047,796,832 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\setup_av_free_pol.exe [2010-06-15 20:16:22 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb0.bin [2010-06-15 20:16:20 | 000,217,180 | ---- | C] () -- D:\WINDOWS\System32\nvdrsdb1.bin [2010-06-15 20:16:20 | 000,000,001 | ---- | C] () -- D:\WINDOWS\System32\nvdrssel.bin [2010-06-15 20:16:20 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\nvdrswr.lk [2010-06-14 23:50:09 | 000,010,383 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Nowy Dokument programu Microsoft Office Word.docx [2010-06-14 23:49:35 | 000,000,000 | ---- | C] () -- D:\WINDOWS\msicpl.ini [2010-06-14 23:44:57 | 000,040,448 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\x.doc [2010-06-14 00:19:19 | 000,001,956 | ---- | C] () -- D:\WINDOWS\System32\CTHELPER.RPT [2010-06-14 00:03:31 | 000,131,072 | ---- | C] () -- D:\WINDOWS\System32\smdll.dll [2010-06-14 00:03:29 | 002,186,342 | ---- | C] () -- D:\WINDOWS\System32\nvdata.bin [2010-06-14 00:03:27 | 000,032,768 | ---- | C] () -- D:\WINDOWS\System32\Auxiliary.dll [2010-06-13 23:52:46 | 113,528,521 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\NVIDIA_185.85_XP.zip [2010-06-13 22:47:19 | 000,000,604 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Skrót do warkamu.exe.lnk [2010-06-12 21:51:41 | 000,033,280 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\EBAY TABELA.xls [2010-06-12 08:50:55 | 000,010,046 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\bez tytułu.JPG [2010-06-09 00:46:42 | 000,317,520 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Rozdzia.pdf [2010-06-09 00:45:32 | 004,525,985 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\STUDIUM OBSZARU BADAŃ OBEJMUJĄCEGO DZIELNICĘ II GRZEGÓRZKI DLA.pdf [2010-06-08 22:09:01 | 000,127,254 | ---- | C] () -- D:\WINDOWS\System32\nvapps.xml [2010-06-07 23:15:39 | 000,000,625 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\LastChaosPoland.lnk [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,029,004 | ---- | C] () -- D:\WINDOWS\System32\BMXBkpCtrlState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,017,456 | ---- | C] () -- D:\WINDOWS\System32\BMXState-{00000002-00000000-00000001-00001102-00000002-80661102}.rfx [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settingsbkup.sfm [2010-06-07 00:13:17 | 000,001,080 | ---- | C] () -- D:\WINDOWS\System32\settings.sfm [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCStateBkp-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:17 | 000,000,288 | ---- | C] () -- D:\WINDOWS\System32\DVCState-{00000002-00000000-00000001-00001102-00000002-80661102}.dat [2010-06-07 00:13:02 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.BAK [2010-06-06 23:19:33 | 000,709,641 | ---- | C] () -- D:\WINDOWS\unins000.exe [2010-06-06 23:19:33 | 000,103,472 | ---- | C] () -- D:\WINDOWS\unins000.dat [2010-06-06 20:47:22 | 000,002,528 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\$_hpcst$.hpc [2010-06-06 20:26:27 | 003,375,681 | ---- | C] () -- D:\WINDOWS\{00000002-00000000-00000001-00001102-00000002-80661102}.CDF [2010-06-06 20:19:38 | 000,000,231 | ---- | C] () -- D:\WINDOWS\AC3API.INI [2010-06-06 20:19:36 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\SFMAN.DAT [2010-06-06 20:19:32 | 000,000,338 | ---- | C] () -- D:\WINDOWS\ctrunonce.reg [2010-06-06 20:19:00 | 000,035,766 | ---- | C] () -- D:\WINDOWS\System32\Emu10kx.ini [2010-06-06 20:19:00 | 000,000,029 | ---- | C] () -- D:\WINDOWS\System32\ctzapxx.ini [2010-06-06 20:18:48 | 000,004,398 | ---- | C] () -- D:\WINDOWS\System32\SBLive.ico [2010-06-06 20:18:48 | 000,003,126 | ---- | C] () -- D:\WINDOWS\System32\Live.bmp [2010-06-06 20:18:45 | 002,259,067 | ---- | C] () -- D:\WINDOWS\System32\default.ecw [2010-06-06 20:18:45 | 000,251,970 | ---- | C] () -- D:\WINDOWS\System32\ctstatic.dat [2010-06-06 20:18:45 | 000,189,704 | ---- | C] () -- D:\WINDOWS\System32\ctdlang.dat [2010-06-06 20:18:44 | 000,142,968 | ---- | C] () -- D:\WINDOWS\System32\CTBAS2W.DAT [2010-06-06 20:18:44 | 000,115,322 | ---- | C] () -- D:\WINDOWS\System32\ctbasicw.dat [2010-06-06 20:18:44 | 000,053,674 | ---- | C] () -- D:\WINDOWS\System32\ctdaught.dat [2010-06-06 20:18:40 | 000,184,320 | ---- | C] () -- D:\WINDOWS\PSCONV.EXE [2010-06-06 20:18:40 | 000,036,864 | ---- | C] () -- D:\WINDOWS\System32\REGPLIB.EXE [2010-06-06 20:18:39 | 000,049,152 | ---- | C] () -- D:\WINDOWS\System32\KILLAPPS.EXE [2010-06-06 20:18:39 | 000,005,515 | ---- | C] () -- D:\WINDOWS\System32\ENSDEF.INI [2010-06-06 20:18:39 | 000,000,192 | ---- | C] () -- D:\WINDOWS\System32\KILL.INI [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT8.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT4.SFM [2010-06-06 20:18:39 | 000,000,059 | ---- | C] () -- D:\WINDOWS\System32\DEFAULT.SFM [2010-06-06 20:18:33 | 004,174,291 | ---- | C] () -- D:\WINDOWS\CTDVAUDY.CDF [2010-06-06 20:18:30 | 003,735,544 | ---- | C] () -- D:\WINDOWS\CTDV10K2.CDF [2010-06-06 20:18:28 | 003,375,093 | ---- | C] () -- D:\WINDOWS\CTDV10K1.CDF [2010-06-06 20:18:24 | 002,167,684 | ---- | C] () -- D:\WINDOWS\System32\CT2MGM.SF2 [2010-06-06 20:18:23 | 001,048,576 | ---- | C] () -- D:\WINDOWS\System32\CT1MGM.ROM [2010-06-06 20:17:56 | 004,174,814 | ---- | C] () -- D:\WINDOWS\System32\CT4MGM.SF2 [2010-06-06 20:17:48 | 000,000,307 | ---- | C] () -- D:\WINDOWS\SBWIN.INI [2010-06-06 20:15:55 | 000,017,350 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.hlp [2010-06-06 20:15:55 | 000,000,641 | ---- | C] () -- D:\WINDOWS\System32\CTDetect.cnt [2010-05-28 12:41:36 | 000,070,868 | ---- | C] () -- D:\WINDOWS\FontData.fdb [2010-05-27 11:45:57 | 000,084,842 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\obrot.jpg [2010-05-25 22:41:49 | 015,067,326 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\POkrywa lusterka.rar [2010-05-23 18:15:15 | 000,007,959 | ---- | C] () -- D:\WINDOWS\System32\nvinfo.pb [2010-05-23 16:38:42 | 000,000,885 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Grand Theft Auto IV.lnk [2010-05-23 16:19:38 | 000,460,360 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-05-22 20:17:58 | 000,000,613 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\Dragon Age Początek.lnk [2010-05-22 08:01:25 | 000,000,000 | ---- | C] () -- D:\WINDOWS\BsMobileModel.ini [2010-05-22 08:00:45 | 000,002,017 | ---- | C] () -- D:\WINDOWS\System32\SHORTCUT.INI [2010-05-22 08:00:29 | 000,000,228 | ---- | C] () -- D:\WINDOWS\System32\REMOTEDEVICE.INI [2010-05-22 07:54:35 | 000,004,535 | ---- | C] () -- D:\WINDOWS\System32\LOCALSERVICE.INI [2010-05-22 07:54:13 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\LOCALDEVICE.INI [2010-05-22 07:52:32 | 000,000,000 | ---- | C] () -- D:\WINDOWS\System32\BSPRINT.INI [2010-05-18 15:34:24 | 640,585,421 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Beljafel V3.rar [2010-05-02 08:37:39 | 000,266,577 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Hitfaker_v0.2b.rar [2010-05-02 08:31:55 | 006,707,908 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\hitfaker_v0.2b_1__1__www.przeklej.pl.rar [2010-05-01 20:21:36 | 000,017,404 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\logo.cdr [2010-05-01 16:43:24 | 000,001,056 | -HS- | C] () -- D:\WINDOWS\System32\KGyGaAvL.sys [2010-05-01 16:42:48 | 000,212,029 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\ccf70680924c12ef.jpg [2010-05-01 11:48:09 | 000,011,474 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\hasło.docx [2010-05-01 11:40:53 | 000,011,875 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Pulpit\surfbar.docx [2010-04-30 22:29:12 | 021,133,541 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Sam naprawiam Opel Astra F.pdf [2010-04-29 11:54:21 | 000,036,804 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz1.pdf [2010-04-29 11:54:15 | 000,088,859 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\rozrz.pdf [2010-04-28 21:55:25 | 000,028,779 | ---- | C] () -- D:\WINDOWS\System32\javaw.exe [2010-04-28 21:55:25 | 000,024,681 | ---- | C] () -- D:\WINDOWS\System32\java.exe [2010-04-24 22:54:57 | 084,280,567 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\101NIKON.rar [2010-04-21 19:57:24 | 000,107,780 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSC_0312.jpg [2010-04-21 19:57:21 | 002,041,331 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\DSCN1083.JPG [2010-04-21 18:51:08 | 000,107,087 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 011.jpg [2010-04-21 18:51:05 | 000,106,665 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 018.jpg [2010-04-21 18:51:01 | 000,107,626 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 009.jpg [2010-04-21 18:48:44 | 000,104,248 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 025.jpg [2010-04-21 18:48:18 | 000,092,118 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 043.jpg [2010-04-21 18:47:07 | 000,116,034 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 052.jpg [2010-04-21 18:46:50 | 000,112,049 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 053.jpg [2010-04-21 18:46:48 | 000,111,307 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 048.jpg [2010-04-21 18:45:58 | 000,117,076 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 050.jpg [2010-04-21 18:45:36 | 000,092,220 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 031.jpg [2010-04-21 18:44:56 | 000,115,728 | ---- | C] () -- D:\Documents and Settings\ZaJkOwSkI\Moje dokumenty\Obraz 046.jpg [2010-04-12 11:14:36 | 000,278,728 | ---- | C] () -- D:\WINDOWS\System32\drivers\atksgt.sys [2010-04-12 11:14:35 | 000,025,416 | ---- | C] () -- D:\WINDOWS\System32\drivers\lirsgt.sys [2010-04-12 10:28:08 | 000,691,696 | ---- | C] () -- D:\WINDOWS\System32\drivers\sptd.sys [2010-03-30 21:29:40 | 000,010,620 | ---- | C] () -- D:\WINDOWS\hpdj3500.ini [2008-10-22 05:29:06 | 000,173,550 | ---- | C] () -- D:\WINDOWS\System32\xlive.dll.cat [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2008-08-04 18:04:44 | 000,001,142 | ---- | C] () -- D:\WINDOWS\System32\bscs.ini [2008-08-04 17:36:50 | 000,405,589 | ---- | C] () -- D:\WINDOWS\System32\BsUI.dll [2008-08-01 15:58:50 | 000,278,647 | ---- | C] () -- D:\WINDOWS\System32\outlookAddin.dll [2008-08-01 15:58:30 | 000,053,248 | ---- | C] () -- D:\WINDOWS\System32\HtmPrintHelper.dll [2008-08-01 15:58:14 | 000,622,693 | ---- | C] () -- D:\WINDOWS\System32\BSShell.dll [2008-08-01 15:55:40 | 000,118,880 | ---- | C] () -- D:\WINDOWS\System32\BsMobileSDK.dll [2008-08-01 15:55:30 | 000,028,672 | ---- | C] () -- D:\WINDOWS\System32\BsMobileCSps.dll [2008-08-01 15:54:12 | 000,102,499 | ---- | C] () -- D:\WINDOWS\System32\Bs2Res.dll [2008-08-01 15:46:30 | 017,907,824 | ---- | C] () -- D:\WINDOWS\System32\BsLangInDepRes.dll [2008-08-01 15:46:30 | 000,065,536 | ---- | C] () -- D:\WINDOWS\System32\BsVistaCommon.dll [2007-06-28 21:13:00 | 000,286,720 | ---- | C] () -- D:\WINDOWS\System32\nvnt4cpl.dll [color=#E56717]========== LOP Check ==========[/color] [2010-05-26 06:37:30 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Airytec [2010-06-16 16:42:37 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-05-22 20:26:50 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\BioWare [2010-05-22 07:33:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Bluetooth [2010-04-12 10:27:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite [2010-04-08 19:04:03 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-05-02 20:40:07 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\KONAMI [2010-04-08 19:00:19 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Nokia [2010-04-08 19:06:01 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-06-07 22:45:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\PMB Files [2010-04-01 17:51:46 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-04-12 10:51:40 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\2K Sports [2010-05-25 23:05:53 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Airytec [2010-04-12 10:31:28 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\DAEMON Tools Lite [2010-03-25 23:54:41 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Gadu-Gadu [2010-04-08 19:09:08 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Nokia [2010-03-24 03:08:54 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\Opera [2010-05-22 07:26:11 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\PC Suite [2010-06-14 18:09:56 | 000,000,000 | ---D | M] -- D:\Documents and Settings\ZaJkOwSkI\Dane aplikacji\uTorrent [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 125 bytes -> D:\Documents and Settings\All Users\Dane aplikacji\TEMP:9D1B94FD < End of report > [/log]
Sohei komentarz 20 czerwca 2010 komentarz 20 czerwca 2010 (edytowane) Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL dodatkowo usun te katalogi D:\Documents and Settings\All Users\Dane aplikacji\PMB Files D:\Documents and Settings\ZaJkOwSkI\Ustawienia lokalne\Dane aplikacji\PMB Files Pochodza one od panda media buster
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.