ROGO851 utworzono 29 lipca 2010 utworzono 29 lipca 2010 (edytowane) Witam Dziś po odpaleniu komputera (windows 7 32bit) wyskoczył błąd, że nie mógł się odpalić program tmonitor.exe. Z tego co się zorientowałem to jest to keylogger? Windows wywala taki błąd Program tmonitor.exe przestał działać [code]Podpis problemu: Nazwa zdarzenia problemu: APPCRASH Nazwa aplikacji: tmonitor.exe Wersja aplikacji: 0.0.0.0 Sygnatura czasowa aplikacji: 4a7aaa96 Nazwa modułu z błędem: KERNELBASE.dll Wersja modułu z błędem: 6.1.7600.16385 Sygnatura czasowa modułu z błędem: 4a5bdaae Kod wyjątku: 0eedfade Przesunięcie wyjątku: 00009617 Wersja systemu operacyjnego: 6.1.7600.2.0.0.256.71 Identyfikator ustawień regionalnych: 1045 Dodatkowe informacje 1: 5c2c Dodatkowe informacje 2: 5c2cb07444db0eb5590d843fd58adb24 Dodatkowe informacje 3: ebd5 Dodatkowe informacje 4: ebd5db813dea66c78ddf04b96ed71f9a Przeczytaj w trybie online nasze zasady zachowania poufności informacji: http://go.microsoft.com/fwlink/?linkid=104288&clcid=0x0415 Jeśli zasady zachowania poufności informacji w trybie online nie są dostępne, przeczytaj nasze zasady zachowania poufności informacji w trybie offline: C:\Windows\system32\pl-PL\erofflps.txt [/code] Wkleiłem to do OTL'a: [code]:processes Explorer.exe :OTL O33 - MountPoints2\{52ac0239-90b0-11df-b884-001346138504}\Shell - "" = AutoRun O33 - MountPoints2\{52ac0239-90b0-11df-b884-001346138504}\Shell\AutoRun\command - "" = H:\Startme.exe -- File not found O33 - MountPoints2\{66353132-8d6f-11df-abfe-001a4d50cdef}\Shell - "" = AutoRun O33 - MountPoints2\{66353132-8d6f-11df-abfe-001a4d50cdef}\Shell\AutoRun\command - "" = H:\AutoRun.exe -- File not found :files C:\Windows\System32\472F8BFFE2.sys :commands [emptytemp] [reboot][/code] Otrzymałem to: [log]All processes killed ========== PROCESSES ========== No active process named Explorer.exe was found! ========== OTL ========== Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{52ac0239-90b0-11df-b884-001346138504}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52ac0239-90b0-11df-b884-001346138504}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{52ac0239-90b0-11df-b884-001346138504}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{52ac0239-90b0-11df-b884-001346138504}\ not found. File H:\Startme.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{66353132-8d6f-11df-abfe-001a4d50cdef}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66353132-8d6f-11df-abfe-001a4d50cdef}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{66353132-8d6f-11df-abfe-001a4d50cdef}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{66353132-8d6f-11df-abfe-001a4d50cdef}\ not found. File H:\AutoRun.exe not found. ========== FILES ========== File\Folder C:\Windows\System32\472F8BFFE2.sys not found. ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Public User: ROGO ->Temp folder emptied: 1852 bytes ->Temporary Internet Files folder emptied: 37294 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 10408096 bytes ->Google Chrome cache emptied: 0 bytes ->Apple Safari cache emptied: 0 bytes ->Opera cache emptied: 0 bytes ->Flash cache emptied: 456 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 0 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 10,00 mb OTL by OldTimer - Version 3.2.9.1 log created on 07292010_230845 Files\Folders moved on Reboot... Registry entries deleted on Reboot... [/log]
ROGO851 komentarz 30 lipca 2010 Autor komentarz 30 lipca 2010 (edytowane) OTL[log]OTL logfile created on: 2010-07-30 14:51:06 - Run 2 OTL by OldTimer - Version 3.2.9.1 Folder = E:\download An unknown product (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 40,00% Memory free 6,00 Gb Paging File | 4,00 Gb Available in Paging File | 64,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 117,18 Gb Total Space | 16,54 Gb Free Space | 14,12% Space Free | Partition Type: NTFS Drive D: | 37,57 Gb Total Space | 5,41 Gb Free Space | 14,41% Space Free | Partition Type: NTFS Drive E: | 465,76 Gb Total Space | 17,97 Gb Free Space | 3,86% Space Free | Partition Type: NTFS Drive F: | 115,69 Gb Total Space | 39,28 Gb Free Space | 33,96% Space Free | Partition Type: NTFS Drive G: | 97,66 Gb Total Space | 1,07 Gb Free Space | 1,09% Space Free | Partition Type: NTFS Drive H: | 97,66 Gb Total Space | 1,70 Gb Free Space | 1,74% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Drive J: | 4,35 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: ROGO-KOMPUTER Current User Name: ROGO Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 360 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-07-29 18:16:12 | 000,574,976 | ---- | M] (OldTimer Tools) -- E:\Download\OTL.exe PRC - [2010-07-25 00:16:33 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-07-25 00:16:33 | 000,014,808 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe PRC - [2010-05-07 11:09:07 | 001,238,352 | ---- | M] (Valve Corporation) -- C:\Program Files\Steam\Steam.exe PRC - [2010-05-06 07:50:14 | 000,069,632 | ---- | M] (Google) -- C:\Program Files\Google\Google Earth\plugin\geplugin.exe PRC - [2010-03-30 11:16:16 | 001,820,040 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe PRC - [2010-03-30 11:16:12 | 001,107,336 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe PRC - [2010-03-03 06:12:32 | 000,372,736 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe PRC - [2010-03-03 06:11:58 | 000,172,032 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe PRC - [2010-02-04 20:02:12 | 001,181,328 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2010-01-27 20:02:17 | 000,788,880 | ---- | M] (Lavasoft) -- C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2009-10-31 14:44:57 | 001,799,952 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2009-10-31 14:44:53 | 000,723,632 | ---- | M] (COMODO) -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2009-10-31 07:45:39 | 002,614,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2009-10-28 08:17:59 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winlogon.exe PRC - [2009-10-11 05:17:36 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jusched.exe PRC - [2009-09-21 16:04:28 | 000,092,672 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe PRC - [2009-09-07 21:04:55 | 000,075,064 | ---- | M] () -- C:\Windows\System32\PnkBstrA.exe PRC - [2009-09-02 11:00:16 | 001,719,568 | ---- | M] (Orbitdownloader.com) -- C:\Program Files\Orbitdownloader\orbitdm.exe PRC - [2009-09-01 17:00:12 | 000,075,048 | ---- | M] (cyberlink) -- C:\Program Files\CyberLink\Shared Files\brs.exe PRC - [2009-08-31 18:07:34 | 011,391,592 | ---- | M] (GG Network S.A.) -- C:\Program Files\Nowe Gadu-Gadu\gg.exe PRC - [2009-08-31 16:56:26 | 000,077,824 | ---- | M] () -- C:\Program Files\Nowe Gadu-Gadu\spellchecker_gg.exe PRC - [2009-08-28 17:43:14 | 001,486,848 | ---- | M] (VIA) -- C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe PRC - [2009-08-23 20:50:41 | 000,160,592 | ---- | M] (Siber Systems) -- C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe PRC - [2009-07-14 03:14:50 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wuauclt.exe PRC - [2009-07-14 03:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Media Player\wmpnetwk.exe PRC - [2009-07-14 03:14:47 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\WmiPrvSE.exe PRC - [2009-07-14 03:14:45 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wininit.exe PRC - [2009-07-14 03:14:44 | 000,360,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WerFault.exe PRC - [2009-07-14 03:14:43 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wbem\unsecapp.exe PRC - [2009-07-14 03:14:42 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe PRC - [2009-07-14 03:14:41 | 000,316,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spoolsv.exe PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\svchost.exe [comLaunch] PRC - [2009-07-14 03:14:39 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\smss.exe PRC - [2009-07-14 03:14:38 | 001,173,504 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Sidebar\sidebar.exe PRC - [2009-07-14 03:14:36 | 000,259,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\services.exe PRC - [2009-07-14 03:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SearchIndexer.exe PRC - [2009-07-14 03:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sppsvc.exe PRC - [2009-07-14 03:14:23 | 000,261,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsm.exe PRC - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lsass.exe PRC - [2009-07-14 03:14:19 | 000,092,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwm.exe PRC - [2009-07-14 03:14:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrss.exe PRC - [2009-07-06 14:22:04 | 000,087,336 | ---- | M] (CyberLink Corp.) -- C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe PRC - [2009-04-23 15:51:38 | 000,691,656 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe PRC - [2009-04-22 17:38:50 | 000,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe PRC - [2009-04-22 17:37:16 | 000,065,536 | ---- | M] (ATI Technologies Inc.) -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe PRC - [2009-03-12 17:36:24 | 000,086,016 | ---- | M] () -- C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe PRC - [2009-02-22 16:36:13 | 000,023,552 | ---- | M] () -- G:\PRZEBierz to ciulu\Krzys\DT\klikacze\KlikGold\Klik.exe PRC - [2008-12-12 11:17:38 | 000,238,888 | ---- | M] (Apple Inc.) -- C:\Program Files\Bonjour\mDNSResponder.exe PRC - [2008-10-24 10:37:08 | 001,949,696 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\DVBTAP.exe PRC - [2008-10-24 10:36:10 | 000,090,112 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\DTVSchdl.exe PRC - [2008-10-02 14:57:02 | 002,916,352 | ---- | M] (Leadtek Research Inc.) -- C:\Program Files\WinFast\WFDTV\WFWIZ.exe PRC - [2008-09-27 17:52:00 | 000,162,304 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe PRC - [2008-09-24 15:32:48 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe PRC - [2008-09-23 17:59:00 | 000,109,056 | ---- | M] (ArcSoft Inc.) -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe PRC - [2008-09-05 09:03:56 | 000,159,744 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razerhid.exe PRC - [2008-06-09 11:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2008-06-09 11:16:32 | 002,363,392 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe PRC - [2007-12-19 11:58:24 | 000,163,840 | ---- | M] (Razer Inc.) -- C:\Program Files\Razer\DeathAdder\razerofa.exe PRC - [2007-05-31 09:21:28 | 000,648,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\WindowsMobile\wmdc.exe PRC - [2007-05-28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe PRC - [2006-11-24 15:24:16 | 000,143,360 | ---- | M] () -- C:\Program Files\Razer\DeathAdder\razertra.exe PRC - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe PRC - [2002-09-13 12:21:38 | 000,073,728 | ---- | M] (VeNoM386 and SwENSkE) -- C:\Program Files\D-Tools\daemon.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-07-29 18:16:12 | 000,574,976 | ---- | M] (OldTimer Tools) -- E:\Download\OTL.exe MOD - [2010-02-18 09:34:01 | 012,867,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shell32.dll MOD - [2009-12-08 13:33:31 | 000,857,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\kernel32.dll MOD - [2009-12-08 13:32:02 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\apphelp.dll MOD - [2009-10-31 14:45:06 | 000,179,792 | ---- | M] (COMODO) -- C:\Windows\System32\guard32.dll MOD - [2009-07-14 03:17:51 | 001,286,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntdll.dll MOD - [2009-07-14 03:16:19 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\Wldap32.dll MOD - [2009-07-14 03:16:17 | 001,123,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vssapi.dll MOD - [2009-07-14 03:16:17 | 000,811,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\user32.dll MOD - [2009-07-14 03:16:17 | 000,627,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\usp10.dll MOD - [2009-07-14 03:16:17 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\uxtheme.dll MOD - [2009-07-14 03:16:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\vsstrace.dll MOD - [2009-07-14 03:16:17 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\version.dll MOD - [2009-07-14 03:16:15 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\spp.dll MOD - [2009-07-14 03:16:15 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sspicli.dll MOD - [2009-07-14 03:16:15 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\srclient.dll MOD - [2009-07-14 03:16:14 | 001,668,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\setupapi.dll MOD - [2009-07-14 03:16:14 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shlwapi.dll MOD - [2009-07-14 03:16:14 | 000,179,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\shdocvw.dll MOD - [2009-07-14 03:16:13 | 000,652,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\rpcrt4.dll MOD - [2009-07-14 03:16:13 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\sechost.dll MOD - [2009-07-14 03:16:13 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samlib.dll MOD - [2009-07-14 03:16:13 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\samcli.dll MOD - [2009-07-14 03:16:13 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\secur32.dll MOD - [2009-07-14 03:16:12 | 001,412,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ole32.dll MOD - [2009-07-14 03:16:12 | 000,988,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\propsys.dll MOD - [2009-07-14 03:16:12 | 000,571,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\oleaut32.dll MOD - [2009-07-14 03:16:12 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\olepro32.dll MOD - [2009-07-14 03:16:12 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\profapi.dll MOD - [2009-07-14 03:16:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\psapi.dll MOD - [2009-07-14 03:16:11 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntmarta.dll MOD - [2009-07-14 03:16:03 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\netutils.dll MOD - [2009-07-14 03:15:50 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msvcrt.dll MOD - [2009-07-14 03:15:43 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msctf.dll MOD - [2009-07-14 03:15:36 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\lpk.dll MOD - [2009-07-14 03:15:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\KernelBase.dll MOD - [2009-07-14 03:15:32 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imm32.dll MOD - [2009-07-14 03:15:22 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\gdi32.dll MOD - [2009-07-14 03:15:21 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\fltLib.dll MOD - [2009-07-14 03:15:13 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dwmapi.dll MOD - [2009-07-14 03:15:11 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\devobj.dll MOD - [2009-07-14 03:15:07 | 000,486,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\comdlg32.dll MOD - [2009-07-14 03:15:07 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cryptbase.dll MOD - [2009-07-14 03:15:03 | 000,522,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\clbcatq.dll MOD - [2009-07-14 03:15:02 | 000,145,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\cfgmgr32.dll MOD - [2009-07-14 03:14:57 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\atl.dll MOD - [2009-07-14 03:14:53 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\advapi32.dll MOD - [2009-07-14 03:14:10 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msscript.ocx MOD - [2009-07-14 03:14:08 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\winspool.drv MOD - [2009-07-14 03:03:50 | 001,680,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16385_none_421189da2b7fabfc\comctl32.dll [color=#E56717]========== Win32 Services (All) ==========[/color] SRV - [2010-07-02 01:52:28 | 000,395,048 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2010-03-30 11:16:12 | 001,107,336 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc) SRV - [2010-03-03 06:11:58 | 000,172,032 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\System32\atiesrxx.exe -- (AMD External Events Utility) SRV - [2010-02-06 16:51:03 | 000,135,664 | ---- | M] (Google Inc.) [Auto | Stopped] -- C:\Program Files\Google\Update\GoogleUpdate.exe -- (gupdate) Google Update Service (gupdate) SRV - [2010-02-04 20:02:12 | 001,181,328 | ---- | M] (Lavasoft) [Auto | Running] -- C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2009-10-31 14:44:53 | 000,723,632 | ---- | M] (COMODO) [Auto | Running] -- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2009-09-07 21:04:55 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\Windows\System32\PnkBstrA.exe -- (PnkBstrA) SRV - [2009-08-23 00:42:47 | 000,651,720 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service) SRV - [2009-08-22 23:27:21 | 000,085,096 | ---- | M] (Autodesk) [On_Demand | Stopped] -- C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe -- (Autodesk Licensing Service) SRV - [2009-08-20 20:51:55 | 000,182,768 | ---- | M] (Google) [On_Demand | Stopped] -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe -- (gusvc) SRV - [2009-07-14 03:16:21 | 001,912,832 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wuaueng.dll -- (wuauserv) SRV - [2009-07-14 03:16:21 | 000,185,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wwansvc.dll -- (WwanSvc) SRV - [2009-07-14 03:16:21 | 000,064,512 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\WUDFSvc.dll -- (wudfsvc) SRV - [2009-07-14 03:16:20 | 001,175,040 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\WsmSvc.dll -- (WinRM) Zdalne zarządzanie systemem Windows (WS-Management) SRV - [2009-07-14 03:16:20 | 000,084,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wpdbusenum.dll -- (WPDBusEnum) SRV - [2009-07-14 03:16:20 | 000,073,728 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wscsvc.dll -- (wscsvc) SRV - [2009-07-14 03:16:20 | 000,010,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wpcsvc.dll -- (WPCSvc) SRV - [2009-07-14 03:16:19 | 000,829,440 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wlansvc.dll -- (Wlansvc) SRV - [2009-07-14 03:16:19 | 000,348,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\winhttp.dll -- (WinHttpAutoProxySvc) SRV - [2009-07-14 03:16:19 | 000,168,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wbem\WMIsvc.dll -- (Winmgmt) SRV - [2009-07-14 03:16:19 | 000,084,480 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wkssvc.dll -- (LanmanWorkstation) SRV - [2009-07-14 03:16:18 | 001,086,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wevtsvc.dll -- (eventlog) SRV - [2009-07-14 03:16:18 | 000,462,336 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\wiaservc.dll -- (StiSvc) Windows Image Acquisition (WIA) SRV - [2009-07-14 03:16:18 | 000,276,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wcncsvc.dll -- (wcncsvc) SRV - [2009-07-14 03:16:18 | 000,202,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\WebClnt.dll -- (WebClient) SRV - [2009-07-14 03:16:18 | 000,147,968 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wecsvc.dll -- (Wecsvc) SRV - [2009-07-14 03:16:18 | 000,076,288 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\wdi.dll -- (WdiSystemHost) SRV - [2009-07-14 03:16:18 | 000,076,288 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\wdi.dll -- (WdiServiceHost) SRV - [2009-07-14 03:16:18 | 000,065,024 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wersvc.dll -- (WerSvc) SRV - [2009-07-14 03:16:18 | 000,061,440 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wercplsupport.dll -- (wercplsupport) SRV - [2009-07-14 03:16:18 | 000,032,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\WcsPlugInService.dll -- (WcsPlugInService) SRV - [2009-07-14 03:16:17 | 000,294,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpnpmgr.dll -- (PlugPlay) SRV - [2009-07-14 03:16:17 | 000,288,768 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\w32time.dll -- (W32Time) SRV - [2009-07-14 03:16:17 | 000,266,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\upnphost.dll -- (upnphost) SRV - [2009-07-14 03:16:17 | 000,154,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\umrdp.dll -- (UmRdpService) SRV - [2009-07-14 03:16:17 | 000,151,552 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbiosrvc.dll -- (WbioSrvc) SRV - [2009-07-14 03:16:17 | 000,119,808 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\umpo.dll -- (Power) SRV - [2009-07-14 03:16:17 | 000,029,696 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\uxsms.dll -- (UxSms) SRV - [2009-07-14 03:16:16 | 000,077,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\trkwks.dll -- (TrkWks) SRV - [2009-07-14 03:16:16 | 000,037,376 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\themeservice.dll -- (Themes) SRV - [2009-07-14 03:16:15 | 001,169,408 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\sysmain.dll -- (SysMain) SRV - [2009-07-14 03:16:15 | 000,543,232 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\termsrv.dll -- (TermService) SRV - [2009-07-14 03:16:15 | 000,313,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\swprv.dll -- (swprv) SRV - [2009-07-14 03:16:15 | 000,241,664 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\tapisrv.dll -- (TapiSrv) SRV - [2009-07-14 03:16:15 | 000,168,448 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\srvsvc.dll -- (LanmanServer) SRV - [2009-07-14 03:16:15 | 000,162,816 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\ssdpsrv.dll -- (SSDPSRV) SRV - [2009-07-14 03:16:15 | 000,090,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sstpsvc.dll -- (SstpSvc) SRV - [2009-07-14 03:16:15 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\TabSvc.dll -- (TabletInputService) SRV - [2009-07-14 03:16:15 | 000,055,808 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\tbssvc.dll -- (TBS) SRV - [2009-07-14 03:16:15 | 000,053,760 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\sppuinotify.dll -- (sppuinotify) SRV - [2009-07-14 03:16:14 | 000,328,192 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\shsvcs.dll -- (ShellHWDetection) SRV - [2009-07-14 03:16:13 | 000,743,424 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\schedsvc.dll -- (Schedule) SRV - [2009-07-14 03:16:13 | 000,376,320 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\rpcss.dll -- (RpcSs) Zdalne wywoływanie procedur (RPC) SRV - [2009-07-14 03:16:13 | 000,376,320 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\rpcss.dll -- (DcomLaunch) SRV - [2009-07-14 03:16:13 | 000,132,608 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\SCardSvr.dll -- (SCardSvr) SRV - [2009-07-14 03:16:13 | 000,125,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sdrsvc.dll -- (SDRSVC) SRV - [2009-07-14 03:16:13 | 000,112,640 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\regsvc.dll -- (RemoteRegistry) SRV - [2009-07-14 03:16:13 | 000,099,328 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\SessEnv.dll -- (SessionEnv) SRV - [2009-07-14 03:16:13 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\Sens.dll -- (SENS) SRV - [2009-07-14 03:16:13 | 000,043,520 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\RpcEpMap.dll -- (RpcEptMapper) SRV - [2009-07-14 03:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc) SRV - [2009-07-14 03:16:13 | 000,021,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\seclogon.dll -- (seclogon) SRV - [2009-07-14 03:16:12 | 001,508,864 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pla.dll -- (pla) SRV - [2009-07-14 03:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc) SRV - [2009-07-14 03:16:12 | 000,589,312 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\qmgr.dll -- (BITS) SRV - [2009-07-14 03:16:12 | 000,330,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\QAGENTRT.DLL -- (napagent) SRV - [2009-07-14 03:16:12 | 000,327,680 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\p2psvc.dll -- (p2psvc) SRV - [2009-07-14 03:16:12 | 000,285,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasmans.dll -- (RasMan) SRV - [2009-07-14 03:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpsvc.dll -- (PNRPsvc) SRV - [2009-07-14 03:16:12 | 000,269,824 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\pnrpsvc.dll -- (p2pimsvc) SRV - [2009-07-14 03:16:12 | 000,210,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\qwave.dll -- (QWAVE) SRV - [2009-07-14 03:16:12 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\provsvc.dll -- (HomeGroupProvider) SRV - [2009-07-14 03:16:12 | 000,162,816 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\profsvc.dll -- (ProfSvc) SRV - [2009-07-14 03:16:12 | 000,154,624 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\pcasvc.dll -- (PcaSvc) SRV - [2009-07-14 03:16:12 | 000,090,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\rasauto.dll -- (RasAuto) SRV - [2009-07-14 03:16:12 | 000,020,480 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\pnrpauto.dll -- (PNRPAutoReg) SRV - [2009-07-14 03:16:11 | 000,019,456 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nsisvc.dll -- (nsi) SRV - [2009-07-14 03:16:03 | 000,360,448 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netprofm.dll -- (netprofm) SRV - [2009-07-14 03:16:03 | 000,280,576 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netman.dll -- (Netman) SRV - [2009-07-14 03:16:03 | 000,242,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\nlasvc.dll -- (NlaSvc) SRV - [2009-07-14 03:15:43 | 000,308,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\msdtckrm.dll -- (KtmRm) SRV - [2009-07-14 03:15:41 | 000,680,960 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2009-07-14 03:15:41 | 000,565,760 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\MPSSVC.dll -- (MpsSvc) SRV - [2009-07-14 03:15:41 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\mprdim.dll -- (RemoteAccess) SRV - [2009-07-14 03:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\mmcss.dll -- (THREADORDER) SRV - [2009-07-14 03:15:41 | 000,049,664 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\System32\mmcss.dll -- (MMCSS) SRV - [2009-07-14 03:15:38 | 000,067,584 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\Mcx2Svc.dll -- (Mcx2Svc) SRV - [2009-07-14 03:15:36 | 000,194,560 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\ListSvc.dll -- (HomeGroupListener) SRV - [2009-07-14 03:15:36 | 000,189,952 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lltdsvc.dll -- (lltdsvc) SRV - [2009-07-14 03:15:36 | 000,018,432 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lmhsvc.dll -- (lmhosts) SRV - [2009-07-14 03:15:35 | 000,071,168 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\KMSVC.DLL -- (hkmsvc) SRV - [2009-07-14 03:15:34 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\iscsiexe.dll -- (MSiSCSI) SRV - [2009-07-14 03:15:33 | 000,497,152 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\iphlpsvc.dll -- (iphlpsvc) SRV - [2009-07-14 03:15:33 | 000,350,720 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\IPSECSVC.DLL -- (PolicyAgent) SRV - [2009-07-14 03:15:33 | 000,300,544 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\ipnathlp.dll -- (SharedAccess) Udostępnianie połączenia internetowego (ICS) SRV - [2009-07-14 03:15:33 | 000,078,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IPBusEnum.dll -- (IPBusEnum) SRV - [2009-07-14 03:15:31 | 000,667,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IKEEXT.DLL -- (IKEEXT) SRV - [2009-07-14 03:15:24 | 000,591,360 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\gpsvc.dll -- (gpsvc) SRV - [2009-07-14 03:15:24 | 000,049,152 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\hidserv.dll -- (hidserv) SRV - [2009-07-14 03:15:21 | 000,797,696 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009-07-14 03:15:20 | 000,028,160 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\FDResPub.dll -- (FDResPub) SRV - [2009-07-14 03:15:20 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\fdPHost.dll -- (fdPHost) SRV - [2009-07-14 03:15:19 | 000,271,360 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\es.dll -- (EventSystem) SRV - [2009-07-14 03:15:13 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\eapsvc.dll -- (EapHost) Protokół uwierzytelniania rozszerzonego (EAP) SRV - [2009-07-14 03:15:12 | 000,214,016 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dot3svc.dll -- (dot3svc) SRV - [2009-07-14 03:15:12 | 000,143,360 | ---- | M] (Microsoft Corporation) [Unknown | Running] -- C:\Windows\System32\dps.dll -- (DPS) SRV - [2009-07-14 03:15:12 | 000,132,608 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dnsrslvr.dll -- (Dnscache) SRV - [2009-07-14 03:15:11 | 000,253,440 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\dhcpcore.dll -- (Dhcp) SRV - [2009-07-14 03:15:10 | 000,218,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\defragsvc.dll -- (defragsvc) SRV - [2009-07-14 03:15:07 | 000,544,256 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\cscsvc.dll -- (CscService) SRV - [2009-07-14 03:15:07 | 000,135,680 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\cryptsvc.dll -- (CryptSvc) SRV - [2009-07-14 03:15:02 | 000,067,584 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\certprop.dll -- (SCPolicySvc) SRV - [2009-07-14 03:15:02 | 000,067,584 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\certprop.dll -- (CertPropSvc) SRV - [2009-07-14 03:15:00 | 000,102,400 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\browser.dll -- (Browser) SRV - [2009-07-14 03:15:00 | 000,064,512 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\bthserv.dll -- (bthserv) SRV - [2009-07-14 03:14:59 | 000,493,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\BFE.DLL -- (BFE) SRV - [2009-07-14 03:14:59 | 000,076,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\bdesvc.dll -- (BDESVC) SRV - [2009-07-14 03:14:58 | 000,088,064 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AxInstSv.dll -- (AxInstSV) Instalator formantów ActiveX (AxInstSV) SRV - [2009-07-14 03:14:57 | 000,473,088 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (Audiosrv) SRV - [2009-07-14 03:14:57 | 000,473,088 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\audiosrv.dll -- (AudioEndpointBuilder) SRV - [2009-07-14 03:14:53 | 000,149,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appmgmts.dll -- (AppMgmt) SRV - [2009-07-14 03:14:53 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\aelupsvc.dll -- (AeLookupSvc) SRV - [2009-07-14 03:14:53 | 000,046,592 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appinfo.dll -- (Appinfo) SRV - [2009-07-14 03:14:53 | 000,027,648 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\appidsvc.dll -- (AppIDSvc) SRV - [2009-07-14 03:14:47 | 001,121,280 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc) SRV - [2009-07-14 03:14:46 | 000,136,192 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbem\WmiApSrv.exe -- (wmiApSrv) SRV - [2009-07-14 03:14:44 | 001,202,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wbengine.exe -- (wbengine) SRV - [2009-07-14 03:14:43 | 001,025,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\VSSVC.exe -- (VSS) SRV - [2009-07-14 03:14:43 | 000,452,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\vds.exe -- (vds) SRV - [2009-07-14 03:14:43 | 000,035,840 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\UI0Detect.exe -- (UI0Detect) SRV - [2009-07-14 03:14:42 | 000,204,800 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\servicing\TrustedInstaller.exe -- (TrustedInstaller) SRV - [2009-07-14 03:14:41 | 000,316,416 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\spoolsv.exe -- (Spooler) SRV - [2009-07-14 03:14:39 | 000,012,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\snmptrap.exe -- (SNMPTRAP) SRV - [2009-07-14 03:14:35 | 000,428,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\SearchIndexer.exe -- (WSearch) SRV - [2009-07-14 03:14:29 | 003,179,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\sppsvc.exe -- (sppsvc) SRV - [2009-07-14 03:14:25 | 000,134,144 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\msdtc.exe -- (MSDTC) SRV - [2009-07-14 03:14:25 | 000,073,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\msiexec.exe -- (msiserver) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (VaultSvc) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lsass.exe -- (SamSs) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (ProtectedStorage) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (Netlogon) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\lsass.exe -- (KeyIso) SRV - [2009-07-14 03:14:23 | 000,022,528 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\System32\lsass.exe -- (EFS) System szyfrowania plików (EFS) SRV - [2009-07-14 03:14:22 | 000,009,216 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Locator.exe -- (RpcLocator) Lokalizator usługi zdalnego wywołania procedury (RPC) SRV - [2009-07-14 03:14:20 | 000,522,752 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FXSSVC.exe -- (Fax) SRV - [2009-07-14 03:14:19 | 000,557,056 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\ehome\ehrecvr.exe -- (ehRecvr) SRV - [2009-07-14 03:14:19 | 000,094,720 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\ehome\ehsched.exe -- (ehSched) SRV - [2009-07-14 03:14:18 | 000,007,168 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\dllhost.exe -- (COMSysApp) SRV - [2009-07-14 03:14:11 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\alg.exe -- (ALG) SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2009-06-10 23:14:51 | 000,042,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe -- (FontCache3.0.0.0) SRV - [2009-06-10 23:14:05 | 000,128,848 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe -- (NetTcpPortSharing) SRV - [2009-06-10 23:14:02 | 000,878,416 | ---- | M] (Microsoft Corporation) [Unknown | Stopped] -- C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe -- (idsvc) SRV - [2009-03-12 17:36:24 | 000,086,016 | ---- | M] () [Auto | Running] -- C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe -- (mi-raysat_3dsmax2010_32) SRV - [2008-12-12 11:17:38 | 000,238,888 | ---- | M] (Apple Inc.) [Auto | Running] -- C:\Program Files\Bonjour\mDNSResponder.exe -- (Bonjour Service) SRV - [2008-11-04 02:06:28 | 000,441,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE -- (odserv) SRV - [2008-09-24 15:32:48 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0) SRV - [2008-09-23 17:59:00 | 000,109,056 | ---- | M] (ArcSoft Inc.) [Auto | Running] -- C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon) SRV - [2008-06-09 11:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe -- (LightScribeService) SRV - [2007-05-31 09:21:24 | 000,379,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm) SRV - [2007-05-31 09:21:18 | 000,183,688 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr) SRV - [2007-05-28 18:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE) SRV - [2006-10-26 13:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE -- (ose) SRV - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-03-28 00:02:36 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt) DRV - [2010-03-28 00:02:35 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt) DRV - [2010-03-03 06:22:26 | 005,340,160 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\atikmdag.sys -- (atikmdag) DRV - [2010-03-03 06:22:26 | 005,340,160 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atipmdag.sys -- (amdkmdag) DRV - [2010-03-03 05:07:16 | 000,152,064 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\atikmpag.sys -- (amdkmdap) DRV - [2010-01-28 16:33:30 | 000,100,352 | ---- | M] (ATI Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV - [2009-12-11 09:44:02 | 000,133,720 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\ksecpkg.sys -- (KSecPkg) DRV - [2009-11-26 00:06:34 | 000,034,384 | ---- | M] (Screaming Bee LLC) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ScreamingBAudio.sys -- (SCREAMINGBDRIVER) DRV - [2009-10-31 14:45:20 | 000,074,328 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\Windows\System32\drivers\inspect.sys -- (inspect) DRV - [2009-10-31 14:45:06 | 000,029,520 | ---- | M] (COMODO) [Kernel | System | Running] -- C:\Windows\System32\drivers\cmdhlp.sys -- (cmdHlp) DRV - [2009-10-31 14:45:05 | 000,128,888 | ---- | M] (COMODO) [File_System | System | Running] -- C:\Windows\System32\drivers\cmdguard.sys -- (cmdGuard) DRV - [2009-10-21 18:30:32 | 000,433,920 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\wfeaglxt.sys -- (WFLR6654) WinFast TV2000 XP Expert (FM1216MK3) DRV - [2009-09-23 14:55:23 | 000,064,288 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2009-09-23 10:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\hamachi.sys -- (hamachi) DRV - [2009-09-02 13:50:29 | 000,721,904 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2009-09-01 16:59:44 | 000,087,536 | ---- | M] (CyberLink Corp.) [2009/10/12 23:33:34] [Kernel | Auto | Running] -- C:\Program Files\CyberLink\PowerDVD9\000.fcl -- ({B154377D-700F-42cc-9474-23858FBDF4BD}) DRV - [2009-08-17 19:17:44 | 001,077,760 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\viahduaa.sys -- (VIAHdAudAddService) DRV - [2009-07-14 03:26:21 | 000,015,952 | ---- | M] (CMD Technology, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\cmdide.sys -- (cmdide) DRV - [2009-07-14 03:26:17 | 000,297,552 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpahci.sys -- (adpahci) DRV - [2009-07-14 03:26:15 | 000,422,976 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adp94xx.sys -- (adp94xx) DRV - [2009-07-14 03:26:15 | 000,159,312 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsbs.sys -- (amdsbs) DRV - [2009-07-14 03:26:15 | 000,146,512 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\adpu320.sys -- (adpu320) DRV - [2009-07-14 03:26:15 | 000,086,608 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arcsas.sys -- (arcsas) DRV - [2009-07-14 03:26:15 | 000,079,952 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdsata.sys -- (amdsata) DRV - [2009-07-14 03:26:15 | 000,076,368 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\arc.sys -- (arc) DRV - [2009-07-14 03:26:15 | 000,023,616 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\amdxata.sys -- (amdxata) DRV - [2009-07-14 03:26:15 | 000,014,400 | ---- | M] (Acer Laboratories Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\aliide.sys -- (aliide) DRV - [2009-07-14 03:20:44 | 000,142,416 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvstor.sys -- (nvstor) DRV - [2009-07-14 03:20:44 | 000,117,312 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nvraid.sys -- (nvraid) DRV - [2009-07-14 03:20:44 | 000,044,624 | ---- | M] (IBM Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\nfrd960.sys -- (nfrd960) DRV - [2009-07-14 03:20:37 | 000,089,168 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas.sys -- (LSI_SAS) DRV - [2009-07-14 03:20:36 | 000,332,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iaStorV.sys -- (iaStorV) DRV - [2009-07-14 03:20:36 | 000,235,584 | ---- | M] (LSI Corporation, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MegaSR.sys -- (MegaSR) DRV - [2009-07-14 03:20:36 | 000,096,848 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_scsi.sys -- (LSI_SCSI) DRV - [2009-07-14 03:20:36 | 000,095,824 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_fc.sys -- (LSI_FC) DRV - [2009-07-14 03:20:36 | 000,054,864 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\lsi_sas2.sys -- (LSI_SAS2) DRV - [2009-07-14 03:20:36 | 000,041,040 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\iirsp.sys -- (iirsp) DRV - [2009-07-14 03:20:36 | 000,030,800 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\megasas.sys -- (megasas) DRV - [2009-07-14 03:20:36 | 000,013,904 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\hwpolicy.sys -- (hwpolicy) DRV - [2009-07-14 03:20:28 | 000,453,712 | ---- | M] (Emulex) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\elxstor.sys -- (elxstor) DRV - [2009-07-14 03:20:28 | 000,070,720 | ---- | M] (Adaptec, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\djsvs.sys -- (aic78xx) DRV - [2009-07-14 03:20:28 | 000,067,152 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HpSAMD.sys -- (HpSAMD) DRV - [2009-07-14 03:20:28 | 000,046,160 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\fsdepends.sys -- (FsDepends) DRV - [2009-07-14 03:19:11 | 000,141,904 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vsmraid.sys -- (vsmraid) DRV - [2009-07-14 03:19:10 | 000,175,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vmbus.sys -- (vmbus) DRV - [2009-07-14 03:19:10 | 000,159,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vhdmp.sys -- (vhdmp) DRV - [2009-07-14 03:19:10 | 000,040,896 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vmstorfl.sys -- (storflt) DRV - [2009-07-14 03:19:10 | 000,032,832 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\vdrvroot.sys -- (vdrvroot) DRV - [2009-07-14 03:19:10 | 000,028,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\storvsc.sys -- (storvsc) DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\wimmount.sys -- (WIMMount) DRV - [2009-07-14 03:19:10 | 000,016,976 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\viaide.sys -- (viaide) DRV - [2009-07-14 03:19:04 | 001,383,488 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql2300.sys -- (ql2300) DRV - [2009-07-14 03:19:04 | 000,173,648 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\rdyboost.sys -- (rdyboost) DRV - [2009-07-14 03:19:04 | 000,106,064 | ---- | M] (QLogic Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\ql40xx.sys -- (ql40xx) DRV - [2009-07-14 03:19:04 | 000,077,888 | ---- | M] (Silicon Integrated Systems) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\sisraid4.sys -- (SiSRaid4) DRV - [2009-07-14 03:19:04 | 000,043,088 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\pcw.sys -- (pcw) DRV - [2009-07-14 03:19:04 | 000,040,016 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\SiSRaid2.sys -- (SiSRaid2) DRV - [2009-07-14 03:19:04 | 000,021,072 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\stexstor.sys -- (stexstor) DRV - [2009-07-14 03:17:54 | 000,369,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\cng.sys -- (CNG) DRV - [2009-07-14 02:57:25 | 000,272,128 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\Brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2009-07-14 02:02:41 | 000,018,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\rdpbus.sys -- (rdpbus) DRV - [2009-07-14 02:01:41 | 000,007,168 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\RDPREFMP.sys -- (RDPREFMP) DRV - [2009-07-14 01:55:00 | 000,049,152 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\agilevpn.sys -- (RasAgileVpn) WAN Miniport (IKEv2) DRV - [2009-07-14 01:53:51 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\wfplwf.sys -- (WfpLwf) DRV - [2009-07-14 01:52:44 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ndiscap.sys -- (NdisCap) DRV - [2009-07-14 01:52:02 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vwifibus.sys -- (vwifibus) DRV - [2009-07-14 01:52:00 | 000,163,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\1394ohci.sys -- (1394ohci) DRV - [2009-07-14 01:51:35 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\umpass.sys -- (UmPass) DRV - [2009-07-14 01:51:11 | 000,034,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WINUSB) DRV - [2009-07-14 01:51:08 | 000,004,096 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\mshidkmdf.sys -- (mshidkmdf) DRV - [2009-07-14 01:46:55 | 000,012,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\MTConfig.sys -- (MTConfig) DRV - [2009-07-14 01:45:26 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CompositeBus.sys -- (CompositeBus) DRV - [2009-07-14 01:36:52 | 000,050,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\appid.sys -- (AppID) DRV - [2009-07-14 01:33:50 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | Unknown | Stopped] -- C:\Windows\System32\drivers\scfilter.sys -- (scfilter) DRV - [2009-07-14 01:28:47 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\vms3cap.sys -- (s3cap) DRV - [2009-07-14 01:28:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\VMBusHID.sys -- (VMBusHID) DRV - [2009-07-14 01:24:05 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\discache.sys -- (discache) DRV - [2009-07-14 01:19:21 | 000,021,504 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\HidBatt.sys -- (HidBatt) DRV - [2009-07-14 01:16:36 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\acpipmi.sys -- (AcpiPmi) DRV - [2009-07-14 01:11:04 | 000,052,736 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\amdppm.sys -- (AmdPPM) DRV - [2009-07-14 00:54:14 | 000,026,624 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2009-07-14 00:53:33 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbMdm.sys -- (BrUsbMdm) DRV - [2009-07-14 00:53:33 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrUsbSer.sys -- (BrUsbSer) DRV - [2009-07-14 00:53:32 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BrSerWdm.sys -- (BrSerWdm) DRV - [2009-07-14 00:53:28 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltLo.sys -- (BrFiltLo) DRV - [2009-07-14 00:53:28 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\BrFiltUp.sys -- (BrFiltUp) DRV - [2009-07-14 00:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\b57nd60x.sys -- (b57nd60x) DRV - [2009-07-14 00:02:48 | 003,100,160 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\evbdx.sys -- (ebdrv) DRV - [2009-07-14 00:02:48 | 000,430,080 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\DRIVERS\bxvbdx.sys -- (b06bdrv) DRV - [2009-05-22 22:52:04 | 000,167,936 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rt86win7.sys -- (RTL8167) DRV - [2009-03-27 01:16:28 | 000,012,672 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\cpuz132_x32.sys -- (cpuz132) DRV - [2008-12-26 13:56:04 | 000,017,792 | ---- | M] (Avnex) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vcsvad.sys -- (VCSVADHWSer) Avnex Virtual Audio Device (WDM) DRV - [2007-08-02 17:32:26 | 000,022,784 | ---- | M] (Razer (Asia-Pacific) Pte Ltd) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\dadder.sys -- (DAdderFltr) DRV - [2004-12-23 17:27:56 | 000,027,392 | ---- | M] (Ulead Systems, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ULCDRHlp.sys -- (ULCDRHlp) DRV - [2002-09-12 11:49:36 | 000,085,696 | ---- | M] (Generic) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\st320hg.sys -- (St320hg) [color=#E56717]========== Standard Registry (All) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 IE - HKLM\..\URLSearchHook: {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfree.dll (Conduit Ltd.) IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.google.com/toolbar/ie8/intl/pl/done.html IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\system32\blank.htm IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/ IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Corporation) IE - HKCU\..\URLSearchHook: {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfree.dll (Conduit Ltd.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://wp.pl" FF - prefs.js..extensions.enabledItems: {19503e42-ca3c-4c27-b1e2-9cdb2170ee34}:1.2.1.28 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}:6.0.14 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}:6.0.15 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}:6.0.17 FF - prefs.js..extensions.enabledItems: {972ce4c6-7e08-4474-a285-3208198ce6fd}:3.6.8 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-07-25 00:16:34 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.8\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-07-25 00:16:34 | 000,000,000 | ---D | M] [2009-08-19 15:40:53 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\mozilla\Extensions [2009-08-19 15:40:53 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROGO\AppData\Roaming\mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384} [2010-07-29 23:25:08 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\mozilla\Firefox\Profiles\k7rp7gep.default\extensions [2010-07-23 00:31:07 | 000,000,000 | ---D | M] (FlashGot) -- C:\Users\ROGO\AppData\Roaming\mozilla\Firefox\Profiles\k7rp7gep.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34} [2009-09-22 02:27:37 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ROGO\AppData\Roaming\mozilla\Firefox\Profiles\k7rp7gep.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}-trash [2010-04-10 02:04:13 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Users\ROGO\AppData\Roaming\mozilla\Firefox\Profiles\k7rp7gep.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781} [2010-07-29 23:25:08 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-07-25 00:16:34 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [2009-08-22 13:43:45 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} [2009-09-04 22:21:55 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} [2010-02-17 06:11:25 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} [2010-07-25 00:16:33 | 000,023,512 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll [2010-07-25 00:16:33 | 000,138,712 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll [2007-04-10 17:21:08 | 000,163,256 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\np-mswmp.dll [2009-07-17 10:40:12 | 000,704,512 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll [2009-10-11 05:17:27 | 000,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll [2009-02-06 12:44:28 | 001,447,296 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll [2010-07-25 00:16:33 | 000,064,984 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll [2006-10-26 20:12:16 | 000,016,192 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\NPOFF12.DLL [2009-02-27 12:13:42 | 000,103,792 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll [2010-05-14 10:56:05 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll [2010-05-14 10:56:06 | 000,159,744 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll [2008-11-18 14:42:58 | 000,155,648 | ---- | M] ( ) -- C:\Program Files\Mozilla Firefox\plugins\NPQUEST3D.DLL [2010-06-26 09:59:22 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-06-26 09:59:22 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-06-26 09:59:22 | 000,002,371 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml [2010-06-26 09:59:22 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-06-26 09:59:22 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-06-26 09:59:22 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-06-26 09:59:22 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2009-06-10 23:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O2 - BHO: (Adobe PDF Link Helper) - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.) O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.) O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfree.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll (Google Inc.) O3 - HKLM\..\Toolbar: (&RoboForm) - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll (Siber Systems Inc.) O3 - HKLM\..\Toolbar: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfree.dll (Conduit Ltd.) O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated) O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.) O4 - HKLM..\Run: [BDRegion] C:\Program Files\CyberLink\Shared Files\brs.exe (cyberlink) O4 - HKLM..\Run: [COMODO Internet Security] C:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [DAEMON Tools-1033] C:\Program Files\D-Tools\daemon.exe (VeNoM386 and SwENSkE) O4 - HKLM..\Run: [DeathAdder] C:\Program Files\Razer\DeathAdder\razerhid.exe () O4 - HKLM..\Run: [HDAudDeck] C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe (VIA) O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.) O4 - HKLM..\Run: [PDVD9LanguageShortcut] C:\Program Files\CyberLink\PowerDVD9\Language\Language.exe (CyberLink Corp.) O4 - HKLM..\Run: [QuickTime Task] C:\Program Files\QuickTime\QTTask.exe (Apple Inc.) O4 - HKLM..\Run: [RemoteControl9] C:\Program Files\CyberLink\PowerDVD9\PDVD9Serv.exe (CyberLink Corp.) O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe (Sun Microsystems, Inc.) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\Winampa.exe File not found O4 - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation) O4 - HKLM..\Run: [WinFastDTV] C:\Program Files\WinFast\WFDTV\DTVSchdl.exe (Leadtek Research Inc.) O4 - HKCU..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team) O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd) O4 - HKCU..\Run: [Google Update] C:\Users\ROGO\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) O4 - HKCU..\Run: [LightScribe Control Panel] C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe (Hewlett-Packard Company) O4 - HKCU..\Run: [Nowe Gadu-Gadu] C:\Program Files\Nowe Gadu-Gadu\gg.exe (GG Network S.A.) O4 - HKCU..\Run: [RoboForm] C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe (Siber Systems) O4 - HKCU..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) O4 - HKCU..\Run: [Steam] c:\program files\steam\steam.exe (Valve Corporation) O4 - HKCU..\Run: [WinFast Schedule] C:\Program Files\WinFast\WFDTV\WFWIZ.exe (Leadtek Research Inc.) O4 - Startup: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe () O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableInstallerDetection = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableSecureUIAPaths = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableUIADesktopToggle = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableVirtualization = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ValidateAdminCodeSignatures = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext = O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: scforceoption = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: FilterAdministratorToken = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_TEXT = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_BITMAP = 2 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_OEMTEXT = 7 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIB = 8 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_PALETTE = 9 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_UNICODETEXT = 13 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\UIPI\Clipboard\ExceptionFormats: CF_DIBV5 = 17 O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Pasek Narzędzi RoboForm - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html () O8 - Extra context menu item: Personalizuj Menu - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html () O8 - Extra context menu item: Wypełnij Pola - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html () O8 - Extra context menu item: Zapisz Pola - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html () O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation) O9 - Extra Button: Wypełnij pola - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html () O9 - Extra 'Tools' menuitem : Wypełnij Pola - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html () O9 - Extra Button: Zapisz - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html () O9 - Extra 'Tools' menuitem : Zapisz Pola - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html () O9 - Extra Button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html () O9 - Extra 'Tools' menuitem : Pasek Narzędzi RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html () O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\Windows\System32\nlaapi.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\Windows\System32\winrnr.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Windows\System32\NapiNSP.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Windows\System32\pnrpnsp.dll (Microsoft Corporation) O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000022 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000023 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000024 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000025 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000026 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000027 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000028 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000029 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000030 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000031 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000032 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000033 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000034 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000035 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000036 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000038 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000039 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000040 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000041 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000042 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000043 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000044 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000045 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000046 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000047 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000048 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000049 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000050 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000051 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000052 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000053 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000054 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000055 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000056 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000057 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000058 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000059 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000060 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000061 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000062 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000063 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000064 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000065 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O10 - Protocol_Catalog9\Catalog_Entries\000000000066 - C:\Windows\System32\mswsock.dll (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab (Java Plug-in 1.6.0_17) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.1.254.247 10.1.254.248 O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation) O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll (Microsoft Corporation) O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - c:\Program Files\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll (Microsoft Corporation) O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\MSVidCtl.dll (Microsoft Corporation) O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll (Microsoft Corporation) O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\Windows\System32\mscoree.dll (Microsoft Corporation) O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll (Google Inc.) O20 - AppInit_DLLs: (C:\Windows\system32\guard32.dll) - C:\Windows\System32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - CLSID or File not found. O29 - HKLM SecurityProviders - (credssp.dll) - C:\Windows\System32\credssp.dll (Microsoft Corporation) O30 - LSA: Authentication Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (kerberos) - C:\Windows\System32\kerberos.dll (Microsoft Corporation) O30 - LSA: Security Packages - (msv1_0) - C:\Windows\System32\msv1_0.dll (Microsoft Corporation) O30 - LSA: Security Packages - (schannel) - C:\Windows\System32\schannel.dll (Microsoft Corporation) O30 - LSA: Security Packages - (wdigest) - C:\Windows\System32\wdigest.dll (Microsoft Corporation) O30 - LSA: Security Packages - (tspkg) - C:\Windows\System32\tspkg.dll (Microsoft Corporation) O30 - LSA: Security Packages - (pku2u) - C:\Windows\System32\pku2u.dll (Microsoft Corporation) O31 - SafeBoot: AlternateShell - cmd.exe O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-06-10 23:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O32 - AutoRun File - [2009-09-16 18:34:03 | 000,050,697 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2007-04-28 12:48:24 | 000,000,000 | ---- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-04-17 18:35:07 | 000,013,430 | ---- | M] () - D:\AutoMapaSetupLog.txt -- [ NTFS ] O32 - AutoRun File - [2009-08-11 23:08:25 | 000,000,000 | ---- | M] () - F:\AUTOEXEC.BAT -- [ NTFS ] O32 - AutoRun File - [2009-03-27 21:24:35 | 000,000,000 | ---D | M] - G:\AUTOCAD 2008 -- [ NTFS ] O33 - MountPoints2\{0348fcc4-a74e-11de-86c7-0026180a5095}\Shell - "" = AutoRun O33 - MountPoints2\{0348fcc4-a74e-11de-86c7-0026180a5095}\Shell\AutoRun\command - "" = M:\sources\sperr32.exe -- File not found O33 - MountPoints2\{ef318752-97b6-11de-92e1-0026180a5095}\Shell - "" = AutoRun O33 - MountPoints2\{ef318752-97b6-11de-92e1-0026180a5095}\Shell\AutoRun\command - "" = K:\Autorun.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (lsdelete) - C:\Windows\System32\lsdelete.exe () O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 360 Days ==========[/color] [2010-07-30 02:27:21 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Malwarebytes [2010-07-30 02:27:08 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010-07-30 02:27:06 | 000,020,952 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010-07-30 02:27:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2010-07-30 02:26:57 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware [2010-07-27 16:55:52 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\StarCraft II [2010-07-27 16:55:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment [2010-07-27 16:55:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Blizzard Entertainment [2010-07-14 14:49:15 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee Security Scan [2010-07-14 14:49:15 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee [2010-07-14 14:48:57 | 000,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan [2010-07-05 18:58:28 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\Audio [2010-07-05 18:57:31 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Download Manager [2010-06-15 20:35:19 | 000,009,600 | ---- | C] (Leadtek Research Inc.) -- C:\Windows\System32\drivers\WINFOXIO.sys [2010-06-15 20:35:19 | 000,000,000 | ---D | C] -- C:\Windows\System32\WinFox [2010-06-14 21:08:07 | 000,433,920 | ---- | C] (Leadtek Research Inc.) -- C:\Windows\System32\drivers\wfeaglxt.sys [2010-06-14 20:19:02 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\InstallShield [2010-06-14 19:41:42 | 000,000,000 | ---D | C] -- C:\Program Files\ChrisTV PVR [2010-06-09 13:35:44 | 000,000,000 | ---D | C] -- C:\Program Files\Quest3D [2010-05-28 10:44:41 | 000,000,000 | ---D | C] -- C:\Windows\rescache [2010-05-23 17:39:24 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight [2010-05-15 22:30:59 | 000,000,000 | ---D | C] -- C:\Program Files\PlayReady [2010-05-14 10:55:18 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime [2010-05-14 10:54:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple [2010-05-02 17:19:32 | 000,000,000 | ---D | C] -- C:\Windows\XSxS [2010-05-02 17:19:32 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Xenocode [2010-05-02 17:19:32 | 000,000,000 | ---D | C] -- C:\Program Files\Xenocode [2010-05-02 17:19:11 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\CorelDRAW.X5.v15.0.0.486.Portable [2010-05-02 15:40:17 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\codrx5_up_by_mz_www.przeklej.pl [2010-05-02 15:26:34 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Corel [2010-05-02 15:22:28 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\Corel [2010-05-02 15:22:16 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\Visual Studio 2008 [2010-05-02 15:20:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SDKs [2010-05-02 15:20:47 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 9.0 [2010-05-02 15:17:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Corel [2010-04-12 01:07:29 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Screaming Bee [2010-04-12 01:06:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Screaming Bee [2010-04-08 03:07:38 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Real [2010-03-30 20:01:07 | 000,000,000 | ---D | C] -- C:\Program Files\LogMeIn Hamachi [2010-03-29 17:33:18 | 000,026,176 | -H-- | C] (LogMeIn, Inc.) -- C:\Windows\System32\hamachi.sys [2010-03-28 21:14:25 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI [2010-03-28 00:58:41 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\Anno 1404 [2010-03-28 00:13:01 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Ubisoft [2010-03-28 00:12:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Tages [2010-03-21 23:43:03 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Avnex [2010-03-21 23:43:02 | 000,000,000 | ---D | C] -- C:\AV_LOGS [2010-03-21 23:40:34 | 000,017,792 | ---- | C] (Avnex) -- C:\Windows\System32\drivers\vcsvad.sys [2010-03-18 17:48:44 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\Magda foty [2010-03-03 06:12:32 | 000,372,736 | ---- | C] (AMD) -- C:\Windows\System32\atieclxx.exe [2010-03-03 06:11:58 | 000,172,032 | ---- | C] (AMD) -- C:\Windows\System32\atiesrxx.exe [2010-03-03 06:10:24 | 000,159,744 | ---- | C] (AMD) -- C:\Windows\System32\atitmmxx.dll [2010-03-03 06:10:04 | 000,356,352 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\atipdlxx.dll [2010-03-03 06:09:48 | 000,274,432 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\Oemdspif.dll [2010-03-03 06:09:38 | 000,011,776 | ---- | C] (AMD) -- C:\Windows\System32\atimuixx.dll [2010-03-03 06:09:28 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\ati2edxx.dll [2010-03-03 05:23:50 | 000,050,176 | ---- | C] (AMD) -- C:\Windows\System32\coinst.dll [2010-02-28 04:55:39 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\BFBC2 [2010-02-26 15:34:34 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\Wiesia [2010-01-28 16:33:30 | 000,100,352 | ---- | C] (ATI Technologies, Inc.) -- C:\Windows\System32\drivers\AtiHdmi.sys [2010-01-06 05:33:43 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C} [2009-12-08 16:19:37 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\mIRC [2009-12-08 16:19:37 | 000,000,000 | ---D | C] -- C:\Program Files\mIRC [2009-12-06 18:49:51 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Desktop\Obsrany domek [2009-12-04 04:00:46 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0 [2009-12-03 02:16:49 | 000,000,000 | ---D | C] -- C:\ProgramData\LightScribe [2009-12-03 02:16:42 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Nero [2009-12-03 01:45:35 | 000,000,000 | ---D | C] -- C:\Program Files\Nero [2009-12-03 01:45:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero [2009-12-03 01:45:15 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Nero [2009-12-03 01:44:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LightScribe [2009-11-30 04:17:57 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\ipla [2009-11-30 04:17:57 | 000,000,000 | ---D | C] -- C:\ProgramData\ipla [2009-11-30 04:16:43 | 000,000,000 | ---D | C] -- C:\Program Files\ipla [2009-11-26 00:06:34 | 000,034,384 | ---- | C] (Screaming Bee LLC) -- C:\Windows\System32\drivers\ScreamingBAudio.sys [2009-11-25 05:31:57 | 000,000,000 | ---D | C] -- C:\Program Files\CFToolbox [2009-11-23 01:42:45 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\LogMeIn Hamachi [2009-11-23 01:32:24 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Codemasters [2009-11-23 01:28:01 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Codemasters [2009-11-03 02:57:23 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\runic games [2009-10-30 14:02:49 | 000,064,288 | ---- | C] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2009-10-30 14:02:49 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE [2009-10-30 14:02:31 | 000,093,360 | ---- | C] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2009-10-30 14:00:59 | 000,000,000 | -H-D | C] -- C:\ProgramData\{CFBD8779-FAAB-4357-84F2-1EC8619FADA6} [2009-10-30 14:00:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Lavasoft [2009-10-30 14:00:48 | 000,000,000 | ---D | C] -- C:\Program Files\Lavasoft [2009-10-30 13:08:29 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Media Player Classic [2009-10-30 13:08:05 | 000,278,528 | ---- | C] (Real Networks, Inc) -- C:\Windows\System32\pncrt.dll [2009-10-30 13:07:55 | 000,000,000 | ---D | C] -- C:\Program Files\Real Alternative [2009-10-20 01:36:52 | 000,000,000 | ---D | C] -- C:\Program Files\NAPI-PROJEKT [2009-10-13 17:53:56 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\BESTplayer [2009-10-13 17:53:54 | 003,414,528 | ---- | C] (Karol Winnicki) -- C:\Users\ROGO\Desktop\BESTplayer.exe [2009-10-13 02:50:09 | 000,000,000 | ---D | C] -- C:\Program Files\Vplayer [2009-10-12 23:54:06 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\CyberLink [2009-10-12 23:54:06 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\CyberLink [2009-10-12 23:53:32 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\CyberLink [2009-10-12 23:33:37 | 000,000,000 | ---D | C] -- C:\ProgramData\CyberLink [2009-10-12 23:33:25 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CyberLink [2009-10-12 23:32:32 | 000,000,000 | ---D | C] -- C:\Program Files\CyberLink [2009-10-12 23:31:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Temp [2009-10-12 23:12:27 | 000,000,000 | ---D | C] -- C:\ProgramData\AVS4YOU [2009-10-12 23:12:07 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AVSMedia [2009-10-12 23:11:55 | 000,638,976 | ---- | C] (DivXNetworks, Inc.) -- C:\Windows\System32\divx.dll [2009-10-12 23:11:55 | 000,261,632 | ---- | C] (MainConcept) -- C:\Windows\System32\mcdvd_32.dll [2009-10-12 23:11:55 | 000,221,215 | ---- | C] (DivXNetworks, Inc.) -- C:\Windows\System32\divxdec.ax [2009-10-12 23:11:55 | 000,082,944 | ---- | C] (Voxware, Inc.) -- C:\Windows\System32\vct3216.acm [2009-10-12 23:11:55 | 000,081,920 | ---- | C] (fccHandler) -- C:\Windows\System32\AC3ACM.acm [2009-10-12 23:11:55 | 000,038,912 | ---- | C] (NCT Company) -- C:\Windows\System32\alf2cd.acm [2009-10-12 23:11:55 | 000,013,239 | ---- | C] (SHARP Corporation) -- C:\Windows\System32\Scg726.acm [2009-10-12 23:11:54 | 000,000,000 | ---D | C] -- C:\Program Files\AVS4YOU [2009-10-01 16:43:48 | 000,000,000 | ---D | C] -- C:\Program Files\sXe Injected [2009-10-01 16:26:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Steam [2009-10-01 16:26:40 | 000,000,000 | ---D | C] -- C:\Program Files\Steam [2009-09-27 20:21:48 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Microsoft Games [2009-09-23 10:41:58 | 000,026,176 | -H-- | C] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys [2009-09-22 13:37:19 | 000,000,000 | ---D | C] -- C:\Program Files\free-downloads.net [2009-09-22 13:37:19 | 000,000,000 | ---D | C] -- C:\Program Files\Conduit [2009-09-21 16:04:53 | 000,000,000 | ---D | C] -- C:\Program Files\Alcohol Soft [2009-09-21 01:08:36 | 000,000,000 | ---D | C] -- C:\Program Files\BitComet [2009-09-16 15:02:45 | 000,000,000 | ---D | C] -- C:\Windows\WindowsMobile [2009-09-16 01:51:12 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\NFS SHIFT [2009-09-16 01:34:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\AGEIA [2009-09-16 01:34:05 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies [2009-09-09 01:59:23 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works [2009-09-09 01:59:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio [2009-09-09 01:59:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER [2009-09-09 01:58:59 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH [2009-09-09 01:58:59 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET [2009-09-09 01:57:32 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Microsoft Help [2009-09-09 01:57:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office [2009-09-09 01:57:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help [2009-09-09 01:56:59 | 000,000,000 | RH-D | C] -- C:\MSOCache [2009-09-07 23:34:16 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\cache [2009-09-05 23:36:17 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\PunkBuster [2009-09-04 21:55:34 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\My Games [2009-09-04 21:43:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Media Center Programs [2009-09-04 21:22:45 | 000,000,000 | -HSD | C] -- C:\Windows\ftpcache [2009-09-04 17:22:39 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\GrabPro [2009-09-04 17:22:39 | 000,000,000 | ---D | C] -- C:\downloads [2009-09-04 17:22:37 | 000,000,000 | ---D | C] -- C:\Program Files\Orbitdownloader [2009-09-04 17:22:24 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Orbit [2009-09-03 15:10:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts [2009-09-03 15:09:56 | 000,000,000 | RH-D | C] -- C:\Users\ROGO\AppData\Roaming\SecuROM [2009-09-03 14:56:24 | 000,000,000 | ---D | C] -- C:\Windows\System32\appmgmt [2009-09-03 14:49:48 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Red Alert 3 Uprising [2009-09-02 14:33:06 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\Red Alert 3 [2009-09-02 14:27:09 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Hamachi [2009-09-02 14:13:45 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Red Alert 3 [2009-09-02 13:53:38 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2009-09-02 13:53:28 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Toolbar [2009-09-02 13:53:25 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2009-09-02 13:49:50 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\DAEMON Tools Lite [2009-08-27 21:47:50 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Adobe [2009-08-27 21:46:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2009-08-27 21:46:48 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe [2009-08-27 18:20:44 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Apple Computer [2009-08-27 18:20:44 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Apple Computer [2009-08-27 18:20:28 | 000,000,000 | ---D | C] -- C:\Program Files\Safari [2009-08-27 18:20:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer [2009-08-27 18:20:00 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour [2009-08-27 18:19:57 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Apple [2009-08-27 18:19:55 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update [2009-08-27 18:19:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple [2009-08-25 21:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\Hewlett-Packard [2009-08-25 15:29:23 | 000,000,000 | --SD | C] -- C:\Program Files\HLSW [2009-08-25 15:29:23 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\HLSW [2009-08-24 17:21:16 | 000,027,392 | ---- | C] (Ulead Systems, Inc.) -- C:\Windows\System32\drivers\ULCDRHlp.sys [2009-08-24 00:39:49 | 000,000,000 | ---D | C] -- C:\Program Files\totalcmd [2009-08-24 00:39:49 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\GHISLER [2009-08-23 20:52:57 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Fenrir & Co [2009-08-23 20:52:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Fenrir & Co [2009-08-23 20:51:44 | 000,000,000 | ---D | C] -- C:\ProgramData\RoboForm [2009-08-23 20:51:03 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\My RoboForm Data [2009-08-23 20:50:42 | 000,000,000 | ---D | C] -- C:\Program Files\Siber Systems [2009-08-23 20:50:12 | 000,000,000 | ---D | C] -- C:\Program Files\Fenrir & Co [2009-08-23 01:20:53 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe Photoshop CS4 Extended PL - Portable [2009-08-23 00:47:38 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\3dsMax [2009-08-23 00:45:31 | 000,000,000 | ---D | C] -- C:\ProgramData\FLEXnet [2009-08-23 00:42:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Macrovision Shared [2009-08-23 00:41:09 | 000,000,000 | ---D | C] -- C:\Program Files\Autodesk [2009-08-23 00:01:19 | 000,000,000 | ---D | C] -- C:\Program Files\Winamp [2009-08-22 23:25:41 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe [2009-08-22 23:23:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Autodesk Shared [2009-08-22 23:23:50 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Autodesk [2009-08-22 23:23:50 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Autodesk [2009-08-22 23:23:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Autodesk [2009-08-22 23:23:50 | 000,000,000 | ---D | C] -- C:\Program Files\AutoCAD 2008 [2009-08-22 23:20:38 | 000,000,000 | ---D | C] -- C:\Program Files\D-Tools [2009-08-22 13:49:29 | 000,000,000 | ---D | C] -- C:\Windows\Sun [2009-08-22 13:43:05 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2009-08-21 00:40:05 | 000,000,000 | ---D | C] -- C:\Windows\Minidump [2009-08-20 23:54:03 | 000,262,144 | ---- | C] (Creative Labs) -- C:\Windows\System32\wrap_oal.dll [2009-08-20 23:54:03 | 000,086,016 | ---- | C] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll [2009-08-20 23:52:06 | 000,000,000 | ---D | C] -- C:\Windows\System32\Futuremark [2009-08-20 23:51:23 | 000,000,000 | ---D | C] -- C:\Program Files\Futuremark [2009-08-20 23:51:10 | 000,012,672 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\drivers\cpuz132_x32.sys [2009-08-20 23:50:37 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID [2009-08-20 20:51:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Google [2009-08-20 20:51:28 | 000,000,000 | ---D | C] -- C:\Program Files\Google [2009-08-20 20:39:49 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Opera [2009-08-20 20:39:49 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Opera [2009-08-20 20:39:38 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2009-08-20 20:35:27 | 000,000,000 | ---D | C] -- C:\Users\ROGO\Documents\Downloads [2009-08-20 20:35:14 | 000,031,104 | ---- | C] (Cypress Semiconductor) -- C:\Windows\System32\drivers\CYUSB.sys [2009-08-20 20:35:12 | 000,022,784 | ---- | C] (Razer (Asia-Pacific) Pte Ltd) -- C:\Windows\System32\drivers\dadder.sys [2009-08-20 20:35:11 | 000,073,728 | ---- | C] (Razer Inc.) -- C:\Windows\System32\DeathAdder.cpl [2009-08-20 20:35:11 | 000,000,000 | ---D | C] -- C:\Program Files\Razer [2009-08-20 20:34:04 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Google [2009-08-20 18:37:20 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\ArcSoft [2009-08-20 17:34:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Comodo [2009-08-20 17:34:36 | 000,000,000 | ---D | C] -- C:\Program Files\COMODO [2009-08-20 12:29:43 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\BSplayer Pro [2009-08-20 12:29:43 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\BSplayer [2009-08-20 12:29:42 | 000,000,000 | ---D | C] -- C:\Program Files\Webteh [2009-08-20 12:16:16 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\ATI [2009-08-20 12:16:16 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\ATI [2009-08-20 12:15:31 | 000,000,000 | ---D | C] -- C:\Program Files\ATI [2009-08-20 12:10:17 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies [2009-08-20 12:09:58 | 000,000,000 | ---D | C] -- C:\ATI [2009-08-20 11:05:33 | 000,167,936 | ---- | C] (Realtek ) -- C:\Windows\System32\drivers\Rt86win7.sys [2009-08-20 11:05:33 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2009-08-20 11:04:57 | 000,211,456 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\Dts2APO.dll [2009-08-20 11:04:50 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\WinRAR [2009-08-20 11:03:33 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2009-08-20 10:08:51 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\BuildAGadget Content [2009-08-20 01:46:22 | 000,000,000 | ---D | C] -- C:\Program Files\SkaWit [2009-08-20 01:43:46 | 000,000,000 | ---D | C] -- C:\Program Files\Damian Pasternak [2009-08-20 01:22:35 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2009-08-19 18:44:24 | 000,000,000 | ---D | C] -- C:\WinFast WorkArea [2009-08-19 18:37:06 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Programs [2009-08-19 18:36:33 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\ArcSoft [2009-08-19 18:36:00 | 000,000,000 | -H-D | C] -- C:\ProgramData\ArcSoft [2009-08-19 18:35:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ArcSoft [2009-08-19 18:35:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Ulead Systems [2009-08-19 18:35:23 | 000,000,000 | ---D | C] -- C:\Program Files\WinFast [2009-08-19 18:30:22 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\ElevatedDiagnostics [2009-08-19 18:28:21 | 000,000,000 | ---D | C] -- C:\Windows\System32\WinFast [2009-08-19 17:34:37 | 000,000,000 | ---D | C] -- C:\Program Files\Lavalys [2009-08-19 16:00:07 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information [2009-08-19 15:57:52 | 000,181,248 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\ViaMicArrayAPO.dll [2009-08-19 15:57:52 | 000,076,288 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQPropPageExt.dll [2009-08-19 15:57:52 | 000,071,680 | ---- | C] (QSound Labs, Inc.) -- C:\Windows\System32\nQAPO.dll [2009-08-19 15:57:52 | 000,068,608 | ---- | C] (VIA Technologies,Inc.) -- C:\Windows\System32\ViaMicArrayPropPageExt.dll [2009-08-19 15:57:25 | 000,000,000 | ---D | C] -- C:\Program Files\VIA [2009-08-19 15:57:12 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield [2009-08-19 15:50:58 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Mumble [2009-08-19 15:49:35 | 000,000,000 | ---D | C] -- C:\Program Files\Mumble [2009-08-19 15:46:14 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Macromedia [2009-08-19 15:46:14 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Adobe [2009-08-19 15:45:04 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Nowe Gadu-Gadu [2009-08-19 15:45:03 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2009-08-19 15:45:02 | 000,000,000 | ---D | C] -- C:\Program Files\Nowe Gadu-Gadu [2009-08-19 15:44:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed [2009-08-19 15:40:52 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Mozilla [2009-08-19 15:40:52 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Mozilla [2009-08-19 15:40:48 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox [2009-08-19 15:31:20 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Searches [2009-08-19 15:31:11 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Identities [2009-08-19 15:31:10 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Contacts [2009-08-19 15:31:05 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\VirtualStore [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Ustawienia lokalne [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\AppData\Local\Temporary Internet Files [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Szablony [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\SendTo [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Recent [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\PrintHood [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\NetHood [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Documents\Moje wideo [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Documents\Moje obrazy [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Moje dokumenty [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Documents\Moja muzyka [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Menu Start [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\AppData\Local\Historia [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Dane aplikacji [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\AppData\Local\Dane aplikacji [2009-08-19 15:31:04 | 000,000,000 | -HSD | C] -- C:\Users\ROGO\Cookies [2009-08-19 15:31:03 | 000,000,000 | --SD | C] -- C:\Users\ROGO\AppData\Roaming\Microsoft [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Videos [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Saved Games [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Pictures [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Music [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Links [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Favorites [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Downloads [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Documents [2009-08-19 15:31:03 | 000,000,000 | R--D | C] -- C:\Users\ROGO\Desktop [2009-08-19 15:31:03 | 000,000,000 | -H-D | C] -- C:\Users\ROGO\AppData [2009-08-19 15:31:03 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Temp [2009-08-19 15:31:03 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Local\Microsoft [2009-08-19 15:31:03 | 000,000,000 | ---D | C] -- C:\Users\ROGO\AppData\Roaming\Media Center Programs [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Ulubione [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Szablony [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\Recovery [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Pulpit [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje wideo [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moje obrazy [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Moja muzyka [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Menu Start [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumenty [2009-08-19 15:30:51 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dane aplikacji [2009-08-19 15:26:18 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2009-08-19 15:23:46 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2009-08-18 14:37:55 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2 C:\Windows\Fonts\*.tmp files -> C:\Windows\Fonts\*.tmp -> ] [color=#E56717]========== Files - Modified Within 360 Days ==========[/color] [2010-07-30 14:51:50 | 003,407,872 | -HS- | M] () -- C:\Users\ROGO\NTUSER.DAT [2010-07-30 14:44:39 | 001,474,832 | ---- | M] () -- C:\Windows\System32\drivers\sfi.dat [2010-07-30 14:11:00 | 000,001,032 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2010-07-30 14:04:00 | 000,001,054 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-958680227-2307438085-1476499037-1001UA.job [2010-07-30 13:57:36 | 000,001,851 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Orbit.lnk [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 4).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 3).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 2).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\tasks\Ad-Aware Update (Daily 1).job [2010-07-30 13:54:58 | 000,001,028 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2010-07-30 13:54:53 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2010-07-30 13:54:49 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2010-07-30 13:54:47 | 2415,222,784 | -HS- | M] () -- C:\hiberfil.sys [2010-07-30 04:23:14 | 000,014,928 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2010-07-30 04:23:13 | 000,014,928 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2010-07-30 04:22:47 | 001,717,085 | -H-- | M] () -- C:\Users\ROGO\AppData\Local\IconCache.db [2010-07-30 04:22:34 | 000,000,002 | ---- | M] () -- C:\Windows\System32\Dvbpws.dll [2010-07-30 04:22:32 | 000,000,226 | ---- | M] () -- C:\Windows\AWS.ini [2010-07-30 02:27:12 | 000,000,987 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-30 02:04:02 | 000,001,002 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-958680227-2307438085-1476499037-1001Core.job [2010-07-29 21:38:23 | 001,523,412 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2010-07-29 21:38:23 | 000,687,590 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2010-07-29 21:38:23 | 000,606,992 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2010-07-29 21:38:23 | 000,131,176 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2010-07-29 21:38:23 | 000,103,370 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2010-07-29 15:47:52 | 000,000,095 | ---- | M] () -- C:\Windows\winamp.ini [2010-07-28 08:04:43 | 000,002,405 | ---- | M] () -- C:\Users\ROGO\Desktop\Google Chrome.lnk [2010-07-27 17:04:31 | 000,000,718 | ---- | M] () -- C:\Users\Public\Desktop\StarCraft II.lnk [2010-07-25 16:16:11 | 000,000,644 | ---- | M] () -- C:\Users\Public\Desktop\Talisman Online.lnk [2010-07-20 00:35:18 | 000,000,834 | ---- | M] () -- C:\Users\ROGO\Desktop\Left 4 Dead Standalone.lnk [2010-07-14 14:49:00 | 000,001,884 | ---- | M] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk [2010-07-14 14:46:03 | 000,001,893 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2010-07-05 19:00:02 | 000,001,096 | ---- | M] () -- C:\Users\Public\Desktop\HD VDeck.lnk [2010-07-05 18:58:39 | 000,001,769 | ---- | M] () -- C:\Windows\Language_trs.ini [2010-07-05 18:58:04 | 046,975,663 | ---- | M] () -- C:\Users\ROGO\Desktop\VIA_Audio_Audio_V6017400_XpVistaWin7.zip [2010-06-28 22:51:10 | 000,117,582 | ---- | M] () -- C:\Users\ROGO\Desktop\umki.jpg [2010-06-27 20:31:47 | 000,500,079 | ---- | M] () -- C:\Users\ROGO\Desktop\Bogacze.jpg [2010-06-27 15:02:52 | 000,000,811 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2010-06-14 20:51:31 | 000,001,926 | ---- | M] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk [2010-06-14 20:23:26 | 000,123,984 | ---- | M] () -- C:\Users\ROGO\AppData\Local\GDIPFONTCACHEV1.DAT [2010-06-14 20:22:24 | 000,434,416 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT [2010-06-14 20:15:15 | 000,000,147 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\default.rss [2010-06-06 19:53:26 | 000,496,489 | ---- | M] () -- C:\Users\ROGO\Desktop\Kasa.jpg [2010-06-06 19:38:49 | 000,240,630 | ---- | M] () -- C:\Users\ROGO\Desktop\olbaid.jpg [2010-06-05 15:12:41 | 000,000,917 | ---- | M] () -- C:\Users\ROGO\Desktop\HLSW.lnk [2010-06-01 19:10:16 | 000,074,796 | ---- | M] () -- C:\Users\ROGO\Desktop\dziwna baszta.jpg [2010-05-30 19:55:05 | 000,339,821 | ---- | M] () -- C:\Users\ROGO\Desktop\rogo.jpg [2010-05-08 13:08:21 | 000,002,178 | ---- | M] () -- C:\Users\Public\Desktop\Google Earth.lnk [2010-04-29 15:39:38 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbamswissarmy.sys [2010-04-29 15:39:26 | 000,020,952 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\System32\drivers\mbam.sys [2010-04-27 11:46:00 | 000,000,955 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk [2010-04-16 15:59:21 | 000,141,578 | ---- | M] () -- C:\Users\ROGO\Desktop\co to.jpg [2010-04-10 02:03:33 | 000,215,128 | ---- | M] () -- C:\Windows\System32\PnkBstrB.xtr [2010-04-09 23:53:12 | 000,139,128 | ---- | M] () -- C:\Windows\System32\drivers\PnkBstrK.sys [2010-04-07 21:20:11 | 000,142,559 | ---- | M] () -- C:\Users\ROGO\Desktop\co to.dib [2010-03-31 22:42:29 | 000,138,056 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\PnkBstrK.sys [2010-03-31 22:42:16 | 002,434,856 | ---- | M] () -- C:\Windows\System32\pbsvc_bc2.exe [2010-03-28 21:10:52 | 000,002,038 | ---- | M] () -- C:\Users\Public\Desktop\Play The Lord of the Rings Online™ - FREE for 10 Days!.lnk [2010-03-28 00:02:36 | 000,281,760 | ---- | M] () -- C:\Windows\System32\drivers\atksgt.sys [2010-03-28 00:02:35 | 000,025,888 | ---- | M] () -- C:\Windows\System32\drivers\lirsgt.sys [2010-03-14 04:59:29 | 003,414,528 | ---- | M] (Karol Winnicki) -- C:\Users\ROGO\Desktop\BESTplayer.exe [2010-03-03 06:16:42 | 000,033,616 | ---- | M] () -- C:\Windows\System32\atiapfxx.blb [2010-03-03 06:12:32 | 000,372,736 | ---- | M] (AMD) -- C:\Windows\System32\atieclxx.exe [2010-03-03 06:11:58 | 000,172,032 | ---- | M] (AMD) -- C:\Windows\System32\atiesrxx.exe [2010-03-03 06:10:24 | 000,159,744 | ---- | M] (AMD) -- C:\Windows\System32\atitmmxx.dll [2010-03-03 06:10:04 | 000,356,352 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\System32\atipdlxx.dll [2010-03-03 06:09:48 | 000,274,432 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\System32\Oemdspif.dll [2010-03-03 06:09:38 | 000,011,776 | ---- | M] (AMD) -- C:\Windows\System32\atimuixx.dll [2010-03-03 06:09:28 | 000,043,520 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\System32\ati2edxx.dll [2010-03-03 05:24:00 | 000,511,072 | ---- | M] () -- C:\Windows\System32\atiumdva.cap [2010-03-03 05:23:50 | 000,050,176 | ---- | M] (AMD) -- C:\Windows\System32\coinst.dll [2010-03-02 22:57:10 | 000,020,692 | ---- | M] () -- C:\Windows\atiogl.xml [2010-02-28 23:39:31 | 000,001,121 | ---- | M] () -- C:\Users\ROGO\Desktop\BFBC2Game — skrót.lnk [2010-02-26 01:42:02 | 000,001,905 | ---- | M] () -- C:\Users\ROGO\Desktop\Counter-Strike.lnk [2010-02-25 21:55:46 | 000,201,875 | ---- | M] () -- C:\Windows\System32\atiicdxx.dat [2010-02-23 18:15:02 | 000,001,105 | ---- | M] () -- C:\Windows\System32\atipblag.dat [2010-02-03 15:56:56 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) -- C:\Windows\System32\hamachi.sys [2010-02-01 22:47:15 | 000,144,843 | ---- | M] () -- C:\Users\ROGO\Desktop\Smoke lamus.jpg [2010-01-29 23:41:50 | 000,000,676 | ---- | M] () -- C:\Users\ROGO\Desktop\left4dead — 1.0.1.4.lnk [2010-01-28 16:33:30 | 000,100,352 | ---- | M] (ATI Technologies, Inc.) -- C:\Windows\System32\drivers\AtiHdmi.sys [2010-01-27 20:02:30 | 000,015,880 | ---- | M] () -- C:\Windows\System32\lsdelete.exe [2010-01-14 00:05:33 | 000,000,688 | ---- | M] () -- C:\Users\ROGO\Desktop\Left 4 Dead 2 — skrót.lnk [2010-01-04 03:56:18 | 000,000,115 | ---- | M] () -- C:\Users\ROGO\Desktop\MatchUp!.url [2010-01-03 02:53:27 | 000,000,688 | ---- | M] () -- C:\Users\Public\Desktop\Left 4 Dead 2.lnk [2009-12-14 11:36:22 | 000,000,945 | ---- | M] () -- C:\Users\Public\Desktop\Mumble.lnk [2009-12-08 16:19:38 | 000,000,917 | ---- | M] () -- C:\Users\Public\Desktop\mIRC.lnk [2009-12-07 21:32:16 | 000,366,495 | ---- | M] () -- C:\Users\ROGO\Desktop\czysty fort nowy.png [2009-12-03 02:37:28 | 000,000,069 | ---- | M] () -- C:\Windows\NeroDigital.ini [2009-12-03 01:57:18 | 000,004,767 | ---- | M] () -- C:\Windows\Irremote.ini [2009-12-03 01:50:59 | 000,002,728 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk [2009-12-03 01:44:39 | 000,002,015 | ---- | M] () -- C:\Users\Public\Desktop\LightScribe.lnk [2009-11-29 00:37:57 | 000,262,078 | ---- | M] () -- C:\Users\ROGO\Desktop\Czysty fort.png [2009-11-26 00:06:34 | 000,034,384 | ---- | M] (Screaming Bee LLC) -- C:\Windows\System32\drivers\ScreamingBAudio.sys [2009-11-25 05:31:57 | 000,000,985 | ---- | M] () -- C:\Users\ROGO\Desktop\CF Toolbox.lnk [2009-11-23 02:27:39 | 000,000,603 | ---- | M] () -- C:\Users\Public\Desktop\Colin McRae Rally 2 [ Tylko sieć ].lnk [2009-11-23 02:27:39 | 000,000,569 | ---- | M] () -- C:\Users\Public\Desktop\Colin McRae Rally 2.lnk [2009-11-17 05:39:45 | 000,007,605 | ---- | M] () -- C:\Users\ROGO\AppData\Local\resmon.resmoncfg [2009-11-12 00:31:20 | 000,000,682 | ---- | M] () -- C:\Users\ROGO\Desktop\iw4sp — skrót.lnk [2009-11-12 00:22:02 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS [2009-11-12 00:22:02 | 000,000,000 | RHS- | M] () -- C:\IO.SYS [2009-10-30 14:02:26 | 000,093,360 | ---- | M] (Sunbelt Software) -- C:\Windows\System32\drivers\SBREDrv.sys [2009-10-30 14:00:58 | 000,001,108 | ---- | M] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2009-10-27 23:13:09 | 000,000,040 | ---- | M] () -- C:\ProgramData\ra3.ini [2009-10-21 18:30:32 | 000,433,920 | ---- | M] (Leadtek Research Inc.) -- C:\Windows\System32\drivers\wfeaglxt.sys [2009-10-20 01:36:52 | 000,000,955 | ---- | M] () -- C:\Users\ROGO\Desktop\Napi-projekt.lnk [2009-10-13 02:51:53 | 000,000,940 | ---- | M] () -- C:\Windows\VPlayer.INI [2009-10-13 02:51:53 | 000,000,101 | ---- | M] () -- C:\Windows\VplayerINI.vpl [2009-10-13 02:50:10 | 000,003,085 | ---- | M] () -- C:\Users\ROGO\Desktop\Vplayer.lnk [2009-10-12 23:33:32 | 000,002,062 | ---- | M] () -- C:\Users\Public\Desktop\CyberLink PowerDVD 9.lnk [2009-10-12 23:17:56 | 000,000,047 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\AVSMediaPlayer.m3u [2009-10-10 17:23:46 | 000,000,657 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2009-10-09 20:00:00 | 000,278,528 | ---- | M] (Real Networks, Inc) -- C:\Windows\System32\pncrt.dll [2009-10-08 01:33:15 | 000,216,030 | ---- | M] () -- C:\Users\ROGO\Desktop\Bez tytułu.png [2009-10-01 16:43:50 | 000,001,021 | ---- | M] () -- C:\Users\ROGO\Desktop\sXe Injected.lnk [2009-09-27 23:07:27 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2009-09-23 14:55:23 | 000,064,288 | ---- | M] (Lavasoft AB) -- C:\Windows\System32\drivers\Lbd.sys [2009-09-23 10:41:58 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) -- C:\Windows\System32\drivers\hamachi.sys [2009-09-22 13:37:16 | 000,001,146 | ---- | M] () -- C:\Users\Public\Desktop\Alcohol 120%.lnk [2009-09-21 16:04:28 | 000,092,672 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe [2009-09-20 17:43:49 | 010,751,256 | ---- | M] () -- C:\Users\ROGO\Documents\Aktywator.exe [2009-09-20 17:34:47 | 000,000,000 | ---- | M] () -- C:\Windows\System32\Aktywator.exe [2009-09-16 15:04:21 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdRapi2_01_00_00.Wdf [2009-09-05 22:21:40 | 000,000,657 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2009-09-05 22:19:28 | 000,000,298 | ---- | M] () -- C:\Windows\game.ini [2009-09-05 12:27:12 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2009-09-03 15:06:45 | 000,001,550 | ---- | M] () -- C:\Users\Public\Desktop\Command & Conquer™ Red Alert™ 3.lnk [2009-09-02 13:53:26 | 000,001,904 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk [2009-09-02 13:50:29 | 000,721,904 | ---- | M] () -- C:\Windows\System32\drivers\sptd.sys [2009-08-27 21:46:53 | 000,001,992 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2009-08-27 18:21:02 | 000,132,928 | -H-- | M] () -- C:\Windows\System32\mlfcache.dat [2009-08-27 18:20:37 | 000,002,479 | ---- | M] () -- C:\Users\Public\Desktop\Safari.lnk [2009-08-24 00:39:50 | 000,000,999 | ---- | M] () -- C:\Users\ROGO\Desktop\Total Commander.lnk [2009-08-23 20:50:31 | 000,001,131 | ---- | M] () -- C:\Users\ROGO\Desktop\Sleipnir.lnk [2009-08-23 18:41:06 | 000,139,715 | ---- | M] () -- C:\Users\ROGO\Documents\plwestscript.js [2009-08-23 18:40:43 | 000,000,000 | ---- | M] () -- C:\Windows\System32\plwestscript.js [2009-08-23 01:21:29 | 000,001,823 | ---- | M] () -- C:\Users\ROGO\Desktop\PhotoshopPortable.lnk [2009-08-23 00:42:42 | 000,001,982 | ---- | M] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2010 32-bit.lnk [2009-08-23 00:01:50 | 000,001,755 | ---- | M] () -- C:\Users\ROGO\Desktop\WINAMP.LNK [2009-08-22 23:26:20 | 000,001,909 | ---- | M] () -- C:\Users\Public\Desktop\AutoCAD 2008.lnk [2009-08-22 23:20:38 | 000,000,852 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools.lnk [2009-08-22 17:26:50 | 000,000,000 | -H-- | M] () -- C:\Users\ROGO\Documents\Default.rdp [2009-08-21 00:36:02 | 000,002,006 | ---- | M] () -- C:\Users\Public\Desktop\3DMark06.lnk [2009-08-21 00:17:34 | 000,262,144 | ---- | M] (Creative Labs) -- C:\Windows\System32\wrap_oal.dll [2009-08-21 00:17:34 | 000,086,016 | ---- | M] (Portions (C) Creative Labs Inc. and NVIDIA Corp.) -- C:\Windows\System32\OpenAL32.dll [2009-08-20 23:51:10 | 000,001,091 | ---- | M] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk [2009-08-20 21:58:50 | 000,001,121 | ---- | M] () -- C:\Users\Public\Desktop\COMODO Internet Security.lnk [2009-08-20 01:46:22 | 000,000,984 | ---- | M] () -- C:\Users\ROGO\Desktop\Automatyczny Wyłącznik Systemu.lnk [2009-08-19 17:34:38 | 000,001,100 | ---- | M] () -- C:\Users\ROGO\Desktop\EVEREST Ultimate Edition.lnk [2009-08-19 16:27:36 | 000,000,000 | ---- | M] () -- C:\Windows\nsreg.dat [2009-08-19 16:00:13 | 000,524,288 | -HS- | M] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2009-08-19 16:00:13 | 000,524,288 | -HS- | M] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2009-08-19 16:00:13 | 000,065,536 | -HS- | M] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2009-08-19 15:45:20 | 000,000,979 | ---- | M] () -- C:\Users\Public\Desktop\Nowe Gadu-Gadu.lnk [2009-08-19 15:31:04 | 000,000,020 | -HS- | M] () -- C:\Users\ROGO\ntuser.ini [2009-08-19 15:26:43 | 000,065,593 | ---- | M] () -- C:\Windows\System32\license.rtf [2009-08-19 15:25:39 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-07-30 02:27:12 | 000,000,987 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2010-07-29 23:03:26 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Weekly).job [2010-07-29 23:03:26 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 4).job [2010-07-29 23:03:26 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 3).job [2010-07-29 23:03:26 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 2).job [2010-07-29 23:03:26 | 000,000,370 | ---- | C] () -- C:\Windows\tasks\Ad-Aware Update (Daily 1).job [2010-07-27 16:55:52 | 000,000,718 | ---- | C] () -- C:\Users\Public\Desktop\StarCraft II.lnk [2010-07-25 16:16:11 | 000,000,644 | ---- | C] () -- C:\Users\Public\Desktop\Talisman Online.lnk [2010-07-14 14:49:00 | 000,001,884 | ---- | C] () -- C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk [2010-07-05 18:57:42 | 046,975,663 | ---- | C] () -- C:\Users\ROGO\Desktop\VIA_Audio_Audio_V6017400_XpVistaWin7.zip [2010-07-03 01:49:56 | 000,000,834 | ---- | C] () -- C:\Users\ROGO\Desktop\Left 4 Dead Standalone.lnk [2010-06-28 22:51:10 | 000,117,582 | ---- | C] () -- C:\Users\ROGO\Desktop\umki.jpg [2010-06-27 20:31:47 | 000,500,079 | ---- | C] () -- C:\Users\ROGO\Desktop\Bogacze.jpg [2010-06-14 20:51:31 | 000,001,926 | ---- | C] () -- C:\Users\Public\Desktop\WinFast PVR2.lnk [2010-06-14 20:15:15 | 000,000,147 | ---- | C] () -- C:\Users\ROGO\AppData\Roaming\default.rss [2010-06-14 19:41:59 | 000,000,022 | ---- | C] () -- C:\Windows\System32\comctl29q.ocx [2010-06-14 19:38:17 | 000,000,022 | ---- | C] () -- C:\Windows\System32\dciman13.sys [2010-06-06 19:53:26 | 000,496,489 | ---- | C] () -- C:\Users\ROGO\Desktop\Kasa.jpg [2010-06-01 19:10:15 | 000,074,796 | ---- | C] () -- C:\Users\ROGO\Desktop\dziwna baszta.jpg [2010-05-30 19:55:05 | 000,339,821 | ---- | C] () -- C:\Users\ROGO\Desktop\rogo.jpg [2010-05-30 19:53:24 | 000,240,630 | ---- | C] () -- C:\Users\ROGO\Desktop\olbaid.jpg [2010-05-08 13:08:21 | 000,002,178 | ---- | C] () -- C:\Users\Public\Desktop\Google Earth.lnk [2010-04-16 15:59:21 | 000,141,578 | ---- | C] () -- C:\Users\ROGO\Desktop\co to.jpg [2010-04-07 21:20:10 | 000,142,559 | ---- | C] () -- C:\Users\ROGO\Desktop\co to.dib [2010-03-28 21:10:52 | 000,002,038 | ---- | C] () -- C:\Users\Public\Desktop\Play The Lord of the Rings Online™ - FREE for 10 Days!.lnk [2010-03-28 00:02:36 | 000,281,760 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys [2010-03-28 00:02:35 | 000,025,888 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys [2010-03-03 06:16:42 | 000,033,616 | ---- | C] () -- C:\Windows\System32\atiapfxx.blb [2010-03-03 05:24:00 | 000,511,072 | ---- | C] () -- C:\Windows\System32\atiumdva.cap [2010-03-02 22:57:10 | 000,020,692 | ---- | C] () -- C:\Windows\atiogl.xml [2010-02-28 23:39:31 | 000,001,121 | ---- | C] () -- C:\Users\ROGO\Desktop\BFBC2Game — skrót.lnk [2010-02-28 04:16:21 | 002,434,856 | ---- | C] () -- C:\Windows\System32\pbsvc_bc2.exe [2010-02-26 01:42:02 | 000,001,905 | ---- | C] () -- C:\Users\ROGO\Desktop\Counter-Strike.lnk [2010-02-25 21:55:46 | 000,201,875 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat [2010-02-23 18:15:02 | 000,001,105 | ---- | C] () -- C:\Windows\System32\atipblag.dat [2010-02-06 16:51:19 | 000,001,032 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2010-02-06 16:51:18 | 000,001,028 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2010-02-01 22:47:14 | 000,144,843 | ---- | C] () -- C:\Users\ROGO\Desktop\Smoke lamus.jpg [2010-01-24 23:51:26 | 000,000,811 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2010-01-14 00:05:13 | 000,000,688 | ---- | C] () -- C:\Users\ROGO\Desktop\Left 4 Dead 2 — skrót.lnk [2010-01-04 03:56:18 | 000,000,115 | ---- | C] () -- C:\Users\ROGO\Desktop\MatchUp!.url [2010-01-03 02:51:11 | 000,000,688 | ---- | C] () -- C:\Users\Public\Desktop\Left 4 Dead 2.lnk [2009-12-14 11:36:22 | 000,000,945 | ---- | C] () -- C:\Users\Public\Desktop\Mumble.lnk [2009-12-08 16:19:38 | 000,000,917 | ---- | C] () -- C:\Users\Public\Desktop\mIRC.lnk [2009-12-07 21:32:16 | 000,366,495 | ---- | C] () -- C:\Users\ROGO\Desktop\czysty fort nowy.png [2009-12-03 02:21:12 | 000,000,069 | ---- | C] () -- C:\Windows\NeroDigital.ini [2009-12-03 01:57:18 | 000,004,767 | ---- | C] () -- C:\Windows\Irremote.ini [2009-12-03 01:50:59 | 000,002,728 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart.lnk [2009-12-03 01:44:39 | 000,002,015 | ---- | C] () -- C:\Users\Public\Desktop\LightScribe.lnk [2009-11-29 00:37:52 | 000,262,078 | ---- | C] () -- C:\Users\ROGO\Desktop\Czysty fort.png [2009-11-25 05:31:57 | 000,000,985 | ---- | C] () -- C:\Users\ROGO\Desktop\CF Toolbox.lnk [2009-11-23 02:27:39 | 000,000,603 | ---- | C] () -- C:\Users\Public\Desktop\Colin McRae Rally 2 [ Tylko sieć ].lnk [2009-11-23 02:27:39 | 000,000,569 | ---- | C] () -- C:\Users\Public\Desktop\Colin McRae Rally 2.lnk [2009-11-12 00:31:20 | 000,000,682 | ---- | C] () -- C:\Users\ROGO\Desktop\iw4sp — skrót.lnk [2009-11-12 00:22:02 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS [2009-11-12 00:22:02 | 000,000,000 | RHS- | C] () -- C:\IO.SYS [2009-10-30 16:50:28 | 000,015,880 | ---- | C] () -- C:\Windows\System32\lsdelete.exe [2009-10-30 14:00:58 | 000,001,108 | ---- | C] () -- C:\Users\Public\Desktop\Ad-Aware.lnk [2009-10-20 01:36:52 | 000,000,955 | ---- | C] () -- C:\Users\ROGO\Desktop\Napi-projekt.lnk [2009-10-13 02:51:53 | 000,000,101 | ---- | C] () -- C:\Windows\VplayerINI.vpl [2009-10-13 02:51:36 | 000,000,940 | ---- | C] () -- C:\Windows\VPlayer.INI [2009-10-13 02:50:10 | 000,003,085 | ---- | C] () -- C:\Users\ROGO\Desktop\Vplayer.lnk [2009-10-12 23:33:32 | 000,002,062 | ---- | C] () -- C:\Users\Public\Desktop\CyberLink PowerDVD 9.lnk [2009-10-12 23:17:56 | 000,000,047 | ---- | C] () -- C:\Users\ROGO\AppData\Roaming\AVSMediaPlayer.m3u [2009-10-12 23:11:55 | 000,524,288 | ---- | C] () -- C:\Windows\System32\xvidcore.dll [2009-10-12 23:11:55 | 000,139,264 | ---- | C] () -- C:\Windows\System32\xvidvfw.dll [2009-10-12 23:11:55 | 000,053,248 | ---- | C] () -- C:\Windows\System32\xvid.ax [2009-10-12 23:11:54 | 000,156,910 | ---- | C] () -- C:\Windows\WMSysPr8.prx [2009-10-08 01:33:15 | 000,216,030 | ---- | C] () -- C:\Users\ROGO\Desktop\Bez tytułu.png [2009-10-07 13:18:31 | 000,001,851 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Orbit.lnk [2009-10-01 16:43:50 | 000,001,021 | ---- | C] () -- C:\Users\ROGO\Desktop\sXe Injected.lnk [2009-10-01 16:26:41 | 000,000,955 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk [2009-09-27 23:07:27 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2009-09-22 13:37:16 | 000,001,146 | ---- | C] () -- C:\Users\Public\Desktop\Alcohol 120%.lnk [2009-09-21 16:04:28 | 000,092,672 | ---- | C] () -- C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe [2009-09-20 17:34:50 | 010,751,256 | ---- | C] () -- C:\Users\ROGO\Documents\Aktywator.exe [2009-09-20 17:34:47 | 000,000,000 | ---- | C] () -- C:\Windows\System32\Aktywator.exe [2009-09-16 15:04:21 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdRapi2_01_00_00.Wdf [2009-09-07 21:11:09 | 000,215,128 | ---- | C] () -- C:\Windows\System32\PnkBstrB.xtr [2009-09-05 22:21:40 | 000,000,657 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Wielu graczy.lnk [2009-09-05 22:21:40 | 000,000,657 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Jeden gracz.lnk [2009-09-05 22:21:19 | 000,139,128 | ---- | C] () -- C:\Windows\System32\drivers\PnkBstrK.sys [2009-09-05 22:21:19 | 000,138,056 | ---- | C] () -- C:\Users\ROGO\AppData\Roaming\PnkBstrK.sys [2009-09-05 22:20:12 | 000,215,128 | ---- | C] () -- C:\Windows\System32\PnkBstrB.exe [2009-09-05 22:19:59 | 000,075,064 | ---- | C] () -- C:\Windows\System32\PnkBstrA.exe [2009-09-05 22:19:28 | 000,000,298 | ---- | C] () -- C:\Windows\game.ini [2009-09-05 12:27:12 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf [2009-09-03 15:06:45 | 000,001,550 | ---- | C] () -- C:\Users\Public\Desktop\Command & Conquer™ Red Alert™ 3.lnk [2009-09-02 19:44:18 | 000,000,040 | ---- | C] () -- C:\ProgramData\ra3.ini [2009-09-02 13:53:26 | 000,001,904 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk [2009-09-02 13:50:29 | 000,721,904 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2009-08-27 21:46:53 | 000,001,992 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader 9.lnk [2009-08-27 18:21:02 | 000,132,928 | -H-- | C] () -- C:\Windows\System32\mlfcache.dat [2009-08-27 18:20:37 | 000,002,479 | ---- | C] () -- C:\Users\Public\Desktop\Safari.lnk [2009-08-25 20:47:19 | 000,128,380 | ---- | C] () -- C:\Windows\System32\hp1020.img [2009-08-25 20:29:39 | 000,007,605 | ---- | C] () -- C:\Users\ROGO\AppData\Local\resmon.resmoncfg [2009-08-25 15:29:27 | 000,000,917 | ---- | C] () -- C:\Users\ROGO\Desktop\HLSW.lnk [2009-08-24 00:39:50 | 000,000,999 | ---- | C] () -- C:\Users\ROGO\Desktop\Total Commander.lnk [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\UC.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\RAR.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\PKZIP.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\PKUNZIP.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\NOCLOSE.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\LHA.PIF [2009-08-24 00:39:49 | 000,000,545 | ---- | C] () -- C:\Windows\ARJ.PIF [2009-08-23 20:50:31 | 000,001,131 | ---- | C] () -- C:\Users\ROGO\Desktop\Sleipnir.lnk [2009-08-23 18:40:49 | 000,139,715 | ---- | C] () -- C:\Users\ROGO\Documents\plwestscript.js [2009-08-23 18:40:43 | 000,000,000 | ---- | C] () -- C:\Windows\System32\plwestscript.js [2009-08-23 01:21:29 | 000,001,823 | ---- | C] () -- C:\Users\ROGO\Desktop\PhotoshopPortable.lnk [2009-08-23 00:42:42 | 000,001,982 | ---- | C] () -- C:\Users\Public\Desktop\Autodesk 3ds Max 2010 32-bit.lnk [2009-08-23 00:01:50 | 000,001,755 | ---- | C] () -- C:\Users\ROGO\Desktop\WINAMP.LNK [2009-08-23 00:01:28 | 000,000,095 | ---- | C] () -- C:\Windows\winamp.ini [2009-08-22 23:26:20 | 000,001,909 | ---- | C] () -- C:\Users\Public\Desktop\AutoCAD 2008.lnk [2009-08-22 17:26:50 | 000,000,000 | -H-- | C] () -- C:\Users\ROGO\Documents\Default.rdp [2009-08-20 23:54:18 | 000,002,006 | ---- | C] () -- C:\Users\Public\Desktop\3DMark06.lnk [2009-08-20 23:52:06 | 000,006,173 | ---- | C] () -- C:\Windows\System32\drivers\Entech.vxd [2009-08-20 23:52:06 | 000,003,972 | ---- | C] () -- C:\Windows\System32\drivers\PciBus.sys [2009-08-20 23:51:10 | 000,001,091 | ---- | C] () -- C:\Users\Public\Desktop\CPUID HWMonitor.lnk [2009-08-20 22:00:13 | 001,474,832 | ---- | C] () -- C:\Windows\System32\drivers\sfi.dat [2009-08-20 21:58:50 | 000,001,121 | ---- | C] () -- C:\Users\Public\Desktop\COMODO Internet Security.lnk [2009-08-20 20:34:49 | 000,002,405 | ---- | C] () -- C:\Users\ROGO\Desktop\Google Chrome.lnk [2009-08-20 20:34:05 | 000,001,054 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-958680227-2307438085-1476499037-1001UA.job [2009-08-20 20:34:04 | 000,001,002 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-958680227-2307438085-1476499037-1001Core.job [2009-08-20 11:06:13 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini [2009-08-20 11:05:33 | 000,073,728 | ---- | C] () -- C:\Windows\System32\RtNicProp32.dll [2009-08-20 03:24:19 | 000,000,226 | ---- | C] () -- C:\Windows\AWS.ini [2009-08-20 01:46:22 | 000,000,984 | ---- | C] () -- C:\Users\ROGO\Desktop\Automatyczny Wyłącznik Systemu.lnk [2009-08-19 19:42:50 | 000,000,002 | ---- | C] () -- C:\Windows\System32\Dvbpws.dll [2009-08-19 17:34:38 | 000,001,100 | ---- | C] () -- C:\Users\ROGO\Desktop\EVEREST Ultimate Edition.lnk [2009-08-19 16:31:32 | 000,000,676 | ---- | C] () -- C:\Users\ROGO\Desktop\left4dead — 1.0.1.4.lnk [2009-08-19 16:27:36 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat [2009-08-19 15:57:59 | 000,001,096 | ---- | C] () -- C:\Users\Public\Desktop\HD VDeck.lnk [2009-08-19 15:45:20 | 000,000,979 | ---- | C] () -- C:\Users\Public\Desktop\Nowe Gadu-Gadu.lnk [2009-08-19 15:40:50 | 000,001,893 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2009-08-19 15:31:04 | 000,524,288 | -HS- | C] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000002.regtrans-ms [2009-08-19 15:31:04 | 000,524,288 | -HS- | C] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TMContainer00000000000000000001.regtrans-ms [2009-08-19 15:31:04 | 000,262,144 | -HS- | C] () -- C:\Users\ROGO\ntuser.dat.LOG1 [2009-08-19 15:31:04 | 000,065,536 | -HS- | C] () -- C:\Users\ROGO\NTUSER.DAT{6cced2f1-6e01-11de-8bed-001e0bcd1824}.TM.blf [2009-08-19 15:31:04 | 000,000,020 | -HS- | C] () -- C:\Users\ROGO\ntuser.ini [2009-08-19 15:31:04 | 000,000,000 | -HS- | C] () -- C:\Users\ROGO\ntuser.dat.LOG2 [2009-08-19 15:31:03 | 003,407,872 | -HS- | C] () -- C:\Users\ROGO\NTUSER.DAT [2009-08-19 15:25:39 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2009-08-19 15:23:30 | 2415,222,784 | -HS- | C] () -- C:\hiberfil.sys [2009-07-14 01:51:43 | 000,073,728 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll [2009-07-14 01:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll [2009-06-19 20:06:22 | 000,197,912 | ---- | C] () -- C:\Windows\System32\physxcudart_20.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelTraditionalChinese.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSwedish.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSpanish.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelSimplifiedChinese.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelPortugese.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelKorean.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelJapanese.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelGerman.dll [2009-06-19 20:06:22 | 000,058,648 | ---- | C] () -- C:\Windows\System32\AgCPanelFrench.dll [2007-12-28 09:22:02 | 000,010,296 | ---- | C] () -- C:\Windows\System32\drivers\ASUSHWIO.SYS [2000-10-03 16:28:22 | 000,160,256 | ---- | C] () -- C:\Windows\System32\midas11.dll [color=#E56717]========== LOP Check ==========[/color] [2009-09-02 17:29:27 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Autodesk [2010-03-21 23:43:03 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Avnex [2010-06-27 04:48:37 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\BESTplayer [2009-08-20 12:35:42 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\BSplayer [2009-08-20 12:29:43 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\BSplayer Pro [2009-09-02 13:55:37 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\DAEMON Tools Lite [2009-08-23 20:52:57 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Fenrir & Co [2009-08-24 00:41:34 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\GHISLER [2009-09-04 17:22:39 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\GrabPro [2010-07-30 02:23:25 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\HLSW [2010-05-14 07:03:14 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\ipla [2010-07-29 23:52:31 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Mumble [2009-08-19 16:00:10 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Nowe Gadu-Gadu [2009-08-20 20:39:49 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Opera [2010-07-30 13:57:36 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Orbit [2009-09-02 14:22:23 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Red Alert 3 [2009-09-03 14:50:34 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Red Alert 3 Uprising [2009-11-03 02:57:23 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\runic games [2010-04-12 01:07:29 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Screaming Bee [2010-03-28 00:13:01 | 000,000,000 | ---D | M] -- C:\Users\ROGO\AppData\Roaming\Ubisoft [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 1).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 2).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 3).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Daily 4).job [2010-07-30 13:55:23 | 000,000,370 | ---- | M] () -- C:\Windows\Tasks\Ad-Aware Update (Weekly).job [2010-07-13 10:04:45 | 000,032,608 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [color=#E56717]========== Purity Check ==========[/color] < End of report > [/log] Extras [log]OTL Extras logfile created on: 2010-07-30 14:51:06 - Run 2 OTL by OldTimer - Version 3.2.9.1 Folder = E:\download An unknown product (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 40,00% Memory free 6,00 Gb Paging File | 4,00 Gb Available in Paging File | 64,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 117,18 Gb Total Space | 16,54 Gb Free Space | 14,12% Space Free | Partition Type: NTFS Drive D: | 37,57 Gb Total Space | 5,41 Gb Free Space | 14,41% Space Free | Partition Type: NTFS Drive E: | 465,76 Gb Total Space | 17,97 Gb Free Space | 3,86% Space Free | Partition Type: NTFS Drive F: | 115,69 Gb Total Space | 39,28 Gb Free Space | 33,96% Space Free | Partition Type: NTFS Drive G: | 97,66 Gb Total Space | 1,07 Gb Free Space | 1,09% Space Free | Partition Type: NTFS Drive H: | 97,66 Gb Total Space | 1,70 Gb Free Space | 1,74% Space Free | Partition Type: NTFS I: Drive not present or media not loaded Drive J: | 4,35 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: ROGO-KOMPUTER Current User Name: ROGO Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 360 Days Output = Standard [color=#E56717]========== Extra Registry (All) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation) .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation) .html [@ = htmlfile] -- Reg Error: Key error. File not found .inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .url [@ = InternetShortcut] -- C:\Windows\System32\ieframe.DLL (Microsoft Corporation) .js [@ = JSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation) .txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) .scr [@ = AutoCADScriptFile] -- C:\Windows\System32\notepad.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\Windows\System32\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- Reg Error: Key error. https [open] -- Reg Error: Key error. inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation) regfile [open] -- regedit.exe "%1" (Microsoft Corporation) regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "C:\Program Files\Winamp\Winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "C:\Program Files\Winamp\Winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "C:\Program Files\Winamp\Winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Orbitdownloader\orbitdm.exe" = C:\Program Files\Orbitdownloader\orbitdm.exe:*:Enabled:Orbit -- (Orbitdownloader.com) "C:\Program Files\Orbitdownloader\orbitnet.exe" = C:\Program Files\Orbitdownloader\orbitnet.exe:*:Enabled:Orbit -- File not found [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 "{01144BEA-886C-067C-5879-4773516F9A8F}" = Catalyst Control Center Graphics Previews Vista "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{0711500B-9912-4D60-9A49-C577B4503D42}" = Nero Recode Help "{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour "{07FF7593-9DEA-40B5-9F87-F557E65BBF60}" = Nero Recode "{09CF6AF5-9206-4FD7-9B08-BA6819FB47E3}" = Anno 1404 "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1 "{0FC27548-D4DB-8039-456B-D9E743FEF86F}" = CCC Help English "{1122AAC4-AAAA-43BF-B2D4-3C8C12378952}" = Nero InfoTool "{11A84FCA-C3C7-4AFD-A797-111DB8569DBC}" = Nero BurningROM "{12345674-DE9A-677A-CCEE-666356D89777}" = Nero BurnRights "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{19B72AA9-985A-11D4-9C8A-00D0B75D1498}" = Colin McRae Rally 2 "{1B040683-C390-4711-ABC7-DA8D85E470E7}" = NeroBurningROM "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{20D4A895-748C-4D88-871C-FDB1695B0169}" = Platform "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 17 "{28996689-E20A-E63B-2BDA-B662AB807C87}" = ATI Catalyst Install Manager "{28BE306E-5DA6-4F9C-BDB0-DBA3C8C6FFFD}" = QuickTime "{28FB7853-A6ED-4F67-8635-9F0E863FC0AD}" = WinFast Codec-TS SDK "{296D8550-CB06-48E4-9A8B-E5034FB64715}" = Command & Conquer™ Red Alert™ 3 "{299C0434-4F4E-341F-A916-4E07AEB35E79}" = Microsoft Visual Studio Tools for Applications 2.0 Runtime "{2D3455A8-3B15-41A8-99F8-0D4215746463}" = Nero StartSmart "{3097B151-1F61-4211-A4CC-D70127B226AE}" = SoundTrax "{317AC0C7-FEBF-0409-87A3-4FC70D0ED900}" = Autodesk 3ds Max 2010 32-bit "{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2 "{3D347E6D-5A03-4342-B5BA-6A771885F379}" = Autodesk Backburner 2008.1 "{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}" = ANNO 1404 "{3E18D88A-5067-324B-382C-9166D4388ED0}" = ccc-core-static "{3F30CC51-0788-487B-AA83-7214A239C0C0}" = Nero Disc Copy Gadget Help "{418EC9DD-25EE-4C3F-8827-B7AA9B26405B}" = WinFast Multimedia Driver Installation "{4D42353B-533F-4306-AD0B-7FEF292ADE04}" = Nero CoverDesigner Help "{4E8C27C2-D727-4C00-A90E-C3F6376EEE70}" = Nero ControlCenter "{548F99E0-14CC-4D53-A7D6-4A62A5F2C748}" = Nero PhotoSnap "{553255F3-78FD-40F1-A6F8-6882140265FE}" = Apple Application Support "{56BE5CC9-95E6-4128-ABEA-968414CA9C80}" = DolbyFiles "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{5783F2D7-6001-0409-0002-0060B0CE6BBA}" = AutoCAD 2008 - English "{57D62939-0E6C-45FA-B3AB-DBB31DC21456}" = DAEMON Tools "{5A62A775-A29A-4CE1-BBC2-4A9CD0B211EF}" = Nero Live Help "{5AE12194-3EAA-40DF-B2BF-FE1D6B78BBF4}" = Nero Vision "{5B07D8FE-CC01-23CE-3961-751687074E54}" = Catalyst Control Center Graphics Previews Common "{5C2E8A0F-80E2-4C68-8CC0-D8D16E7196BF}" = Nero RescueAgent Help "{5C42EAB8-54F9-423A-948C-1CBEF25F8DB4}" = Nero PhotoSnap Help "{5C9BB0B3-E830-4814-BBA4-D93535E1C7B9}" = Nero Live "{5DB65884-C963-4454-AABA-4CA3089281FA}" = NVIDIA PhysX "{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6F817DD0-D103-196F-5D63-365DC87B43EE}" = Catalyst Control Center HydraVision Full "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{75321954-2589-11DC-DDCC-E98356D81493}" = Nero DriveSpeed "{753973C4-B961-43BF-B2D4-3C8C92F7216E}" = Nero DriveSpeed "{78523651-D8B1-11DC-CCEE-741589645873}" = Nero DiscSpeed "{7F3AD00A-1819-4B15-BB7D-08B3586336D7}" = 3DMark06 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8136 8168 8169 Ethernet Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "{8ACC73AA-6511-7C55-B1A9-8E5D1DEAFAA3}" = The Lord of the Rings FREE Trial "{8C654BD0-1949-43DE-84F2-EC2A1ABB0CB4}" = Nero ShowTime "{8D7133DE-27D2-47E5-B248-4180278D32AA}" = Catalyst Control Center - Branding "{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007 "{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007 "{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007 "{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007 "{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007 "{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007 "{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{A0516415-ED61-419A-981D-93596DA74165}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007 "{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{E9EA2604-8AC9-47D2-8F4B-6BF60787A357}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) "{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007 "{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007 "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581) "{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007 "{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007 "{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{D45F91DE-F0FC-4D5F-9A0C-FDE5B251AAC6}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007 "{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007 "{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{79EB535E-76E4-4356-8146-A24EE55AB69D}" = Microsoft Office 2007 Service Pack 2 (SP2) "{904CCF62-818D-4675-BC76-D37EB399F917}" = Centrum obsługi urządzeń z systemem Windows Mobile "{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "{943CC0C0-2253-4FE0-9493-DD386F7857FD}" = Nero Express "{948FFAAE-C57F-447B-9B07-3721E950BFDC}" = Nero ShowTime "{961D53EA-40DC-4156-AD74-25684CE05F81}" = Nero Installer "{9903001D-2728-9D9B-3D8B-F593A502A972}" = Catalyst Control Center InstallProxy "{9A0E0340-C3D7-42D1-96D4-64179FD456AE}" = WinFast De-interlace SDK "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A875B56-A35C-46BA-A3AA-DF8D03EE9F2F}" = Nero ControlCenter "{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}" = Advertising Center "{A05BE20E-6510-44BC-95ED-6E6D730407D3}" = Vplayer "{A73BEC3C-40A0-480E-87EF-EFCD33629088}" = NeroExpress "{A8399F58-234A-48C6-BA55-30C15738BF3C}" = Nero CoverDesigner "{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9 "{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}" = Microsoft Visual Studio Tools for Applications 2.0 - ENU "{AAA12554-2589-11DC-92EF-E98356D81493}" = Nero InfoTool "{AABBCC54-D8B1-11DC-92EF-E98356D81493}" = Nero DiscSpeed "{AC76BA86-7AD7-1033-7B44-A91000000001}" = Adobe Reader 9.1 "{AF9848E2-5F19-4E49-9E6E-044FBDC28404}" = WinFast TT-SB SDK "{B2C12C8D-65DC-40BD-B309-5ADB0C6C8D8F}" = Nero WaveEditor "{B535DA73-AAD1-51E8-9232-9358D2A20E9B}" = Catalyst Control Center Graphics Full Existing "{B96C2601-52F5-4D5D-816A-63469EA311EF}" = "Nero SoundTrax Help "{BCD82AB5-670D-4242-90FA-1F97103C16CD}" = Movie Templates - Starter Kit "{C441297F-C9F2-4177-9D5F-1B10F0358E32}" = Opera 10.54 "{C91BC5DF-C6BD-388B-FEB8-2721B9D5C97B}" = Catalyst Control Center Core Implementation "{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2 "{C99C89A3-119A-45E6-B26E-DD5643CAA0C5}" = Menu Templates - Starter Kit "{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86 "{CD1826A5-CFCC-4C6E-9F9D-E181876162EA}" = Nero Rescue Agent "{D575E1CA-56BB-2944-744E-E7CD1EDB9C82}" = Catalyst Control Center Graphics Full New "{D6AAE701-6EA9-FAA1-AB38-227AA94531A1}" = Catalyst Control Center Graphics Light "{D7C206B6-1A63-4389-A8B1-8F607D0BFF1F}" = Nero StartSmart Help "{D8508208-4591-2964-3DDB-16A4BE871230}" = ccc-utility "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{E4A8DD87-A746-4443-BF25-CAF99CED6767}" = Nero Disc Copy Gadget "{E56D39F8-2A9F-44B4-B068-A72E45A073E6}" = Safari "{E7044E25-3038-4A76-9064-344AC038043E}" = Centrum obsługi urządzeń z systemem Windows Mobile — aktualizacja sterowników "{E86156E5-9859-440D-8876-26CED1349802}" = Nero WaveEditor Help "{e9c41c98-a575-4a27-a85d-82e779b96d3f}" = Nero 9 "{EA9FFE54-D8B1-11DC-92EF-E98356D81493}" = Nero BurnRights "{EB1B8449-CD8F-485B-ADB6-02FBCFE180D3}" = Razer DeathAdder(TM) Mouse "{F53F6769-AC46-49E3-ABE3-2C8AFD39D0DD}" = Nero Vision "{F7B0939E-58DF-11DF-B3A6-005056806466}" = Google Earth "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Ad-Aware" = Ad-Aware "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "All ATI Software" = ATI - Software Uninstall Utility "AutoCAD 2008 - English" = AutoCAD 2008 - English "Autodesk FBX Plugin 2009.4 - 3ds Max 2010" = Autodesk FBX Plugin 2009.4 - 3ds Max 2010 "Automatyczny Wyłącznik Systemu_is1" = Automatyczny Wyłącznik Systemu 2.0 "BSPlayerf" = BS.Player FREE "COMODO Internet Security" = COMODO Internet Security "CPUID HWMonitor_is1" = CPUID HWMonitor 1.14 "DAEMON Tools Toolbar" = DAEMON Tools Toolbar "ENTERPRISE" = Microsoft Office Enterprise 2007 "EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v5.02 "free-downloads.net Toolbar" = free-downloads.net Toolbar "HLSW_is1" = HLSW v1.3.3.7b "InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}" = VIA Platforma Menedżera urządzeń "InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch "InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}" = Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch "InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}" = CyberLink PowerDVD 9 "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "L4DSP" = Left 4 Dead Standalone Patch "Left 4 Dead 2" = Left 4 Dead 2 "LogMeIn Hamachi" = LogMeIn Hamachi "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "MaXDila 2000" = MaXDila 2000 "McAfee Security Scan" = McAfee Security Scan Plus "mIRC" = mIRC "Mozilla Firefox (3.6.8)" = Mozilla Firefox (3.6.8) "Mumble" = Mumble and Murmur "NAPIPROJEKT_is1" = NAPIPROJEKT 1.0.6.2 "Nowe Gadu-Gadu" = Nowe Gadu-Gadu "PunkBusterSvc" = PunkBuster Services "Quest3D Web Viewers 4.2_is1" = Quest3D Web Viewers 4.2 "RealAlt_is1" = Real Alternative 2.0.1 "Runic Games Torchlight" = Torchlight "StarCraft II" = StarCraft II "Steam App 10" = Counter-Strike "sXe Injected" = sXe Injected "Talisman Online_is1" = Talisman Online Ver.1652 "TheMostCustomizableBrowser_is1" = Sleipnir Version 2.8.3 "Totalcmd" = Total Commander (Remove or Repair) "Winamp" = Winamp (remove only) "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "AI RoboForm" = AI RoboForm "Google Chrome" = Google Chrome [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-07-11 15:51:18 | Computer Name = ROGO-Komputer | Source = Microsoft-Windows-CAPI2 | ID = 4107 Description = Nie można wyodrębnić listy głównej innych firm z pliku cab automatycznej aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>, wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji bieżącego zegara systemowego lub sygnatury czasowej. . Error - 2010-07-14 21:01:34 | Computer Name = ROGO-Komputer | Source = Windows Search Service | ID = 3007 Description = Error - 2010-07-23 23:04:26 | Computer Name = ROGO-Komputer | Source = Google Update | ID = 20 Description = Error - 2010-07-23 23:11:26 | Computer Name = ROGO-Komputer | Source = Google Update | ID = 20 Description = Error - 2010-07-29 04:22:20 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0xe0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2ef72928c1de Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: 67b2acb7-9aea-11df-b72c-9d3ebad5c2c1 Error - 2010-07-29 12:08:51 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0xda8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2f3852514f95 Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: 938a701c-9b2b-11df-946e-b340dff913cc Error - 2010-07-29 12:39:33 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0xef8 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2f3c9c7cdad4 Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: dd370eef-9b2f-11df-9b0c-fb40376bbacb Error - 2010-07-29 17:04:00 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0x94 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2f618dec5d0a Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: ceffce6a-9b54-11df-b966-b31740cfffcd Error - 2010-07-29 17:10:46 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0xf94 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2f627f8f8ca7 Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: c105a388-9b55-11df-a1c1-c85ef5cc41c8 Error - 2010-07-30 07:57:37 | Computer Name = ROGO-Komputer | Source = Application Error | ID = 1000 Description = Nazwa aplikacji powodującej błąd: tmonitor.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x4a7aaa96 Nazwa modułu powodującego błąd: KERNELBASE.dll, wersja: 6.1.7600.16385, sygnatura czasowa: 0x4a5bdaae Kod wyjątku: 0x0eedfade Przesunięcie błędu: 0x00009617 Identyfikator procesu powodującego błąd: 0xab0 Godzina uruchomienia aplikacji powodującej błąd: 0x01cb2fde6686cf99 Ścieżka aplikacji powodującej błąd: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe Ścieżka modułu powodującego błąd: C:\Windows\system32\KERNELBASE.dll Identyfikator raportu: a5640a9c-9bd1-11df-a55f-9317eb4ce3cc [ System Events ] Error - 2010-01-26 18:15:17 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7023 Description = Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = PNRPSvc | ID = 102 Description = Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = PNRPSvc | ID = 102 Description = Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7023 Description = Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7023 Description = Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 Error - 2010-01-26 22:25:58 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error - 2010-01-27 00:00:46 | Computer Name = ROGO-Komputer | Source = PNRPSvc | ID = 102 Description = Error - 2010-01-27 00:00:46 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7001 Description = Usługa Grupowanie sieci równorzędnej zależy od usługi Protokół rozpoznawania nazw równorzędnych, której nie można uruchomić z powodu następującego błędu: %%-2140993535 Error - 2010-01-27 00:00:46 | Computer Name = ROGO-Komputer | Source = Service Control Manager | ID = 7023 Description = Usługa Protokół rozpoznawania nazw równorzędnych zakończyła działanie; wystąpił następujący błąd: %%-2140993535 < End of report > [/log]
Sohei komentarz 30 lipca 2010 komentarz 30 lipca 2010 do OTL i run fix [code]:Processes Explorer.exe :OTL PRC - [2009-09-21 16:04:28 | 000,092,672 | ---- | M] () -- C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe O4 - Startup: C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe () O33 - MountPoints2\{0348fcc4-a74e-11de-86c7-0026180a5095}\Shell - "" = AutoRun O33 - MountPoints2\{0348fcc4-a74e-11de-86c7-0026180a5095}\Shell\AutoRun\command - "" = M:\sources\sperr32.exe -- File not found O33 - MountPoints2\{ef318752-97b6-11de-92e1-0026180a5095}\Shell - "" = AutoRun O33 - MountPoints2\{ef318752-97b6-11de-92e1-0026180a5095}\Shell\AutoRun\command - "" = K:\Autorun.exe -- File not found :files C:\Users\ROGO\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tmonitor.exe :Commands [emptytemp] [start explorer] [Reboot][/code] Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.