pablosec utworzono 9 sierpnia 2010 utworzono 9 sierpnia 2010 Witam Was serdecznie. Zwracam się z prośbą o pomoc na dzień dobry. W Windows XP we właściwościach Ekranu / kompozycje - ustawiam na KLASYCZNY WINDOWS i kiedy uruchamiam komputer raz jeszcze to kompozycja wraca do ustawień XP. Ustawienia nie są trwałe. Proszę o odpowiedź.. Z góry dziękuje za pomoc i pozdrawiam!
naekana komentarz 9 sierpnia 2010 komentarz 9 sierpnia 2010 Czy instalowałeś jakieś programy do zmiany wyglądu systemu?
naekana komentarz 9 sierpnia 2010 komentarz 9 sierpnia 2010 Ok, wejdź w: start->uruchom->wpisz "services.msc"->kompozycje->prawoklik i z menu wybierz "właściwości", i tam wyłącz tą usługę. To sprawi, że we właściwościach ekranu zniknie kompozycja XP i pozostanie tylko styl klasyczny. Jest to jednak rozwiązanie tymczasowe, bo trzeba znaleźć przyczynę, z powodu której resetują się ustawienia kompozycji. Być może jest to infekcja. Zapoznaj się z tymi tematami: -> http://www.forumpc.pl/index.php?showtopic=104338 -> http://www.forumpc.pl/index.php?showtopic=168048 i wklej log z programu OTL. Moderator działu XP przeniesie Twój temat do "Bezpieczeństwa".
pablosec komentarz 9 sierpnia 2010 Autor komentarz 9 sierpnia 2010 [log]OTL logfile created on: 2010-08-09 13:23:58 - Run 1 OTL by OldTimer - Version 3.2.9.1 Folder = C:\Documents and Settings\pablo1\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 74,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 89,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.2 | %ProgramFiles% = C:\Program Files Drive C: | 298,08 Gb Total Space | 120,62 Gb Free Space | 40,47% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PJAB Current User Name: pablo1 Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-08-09 13:15:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pablo1\Pulpit\OTL.exe PRC - [2010-08-06 21:32:43 | 000,307,672 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-07-09 16:24:34 | 000,155,752 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS.2\system32\nvsvc32.exe PRC - [2010-06-24 09:27:12 | 000,810,144 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe PRC - [2010-06-24 09:27:06 | 002,202,704 | ---- | M] (ESET) -- C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe PRC - [2008-04-14 22:51:52 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\wscntfy.exe PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\winlogon.exe PRC - [2008-04-14 22:51:44 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\spoolsv.exe PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\smss.exe PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [RPCSS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [HTTPFILTER] PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 22:51:40 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\services.exe PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\rundll32.exe PRC - [2008-04-14 22:51:32 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\NOTEPAD.EXE PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\lsass.exe PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\explorer.exe PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ctfmon.exe PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\csrss.exe PRC - [2008-04-14 22:51:04 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\alg.exe PRC - [2008-02-13 08:31:34 | 016,857,600 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS.2\RTHDCPL.exe PRC - [2007-09-02 13:58:52 | 000,495,616 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-08-09 13:15:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pablo1\Pulpit\OTL.exe MOD - [2008-05-08 20:01:50 | 001,162,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\urlmon.dll MOD - [2008-05-08 20:01:39 | 000,266,752 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\iertutil.dll MOD - [2008-05-08 20:01:38 | 006,049,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ieframe.dll MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\winspool.drv MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ws2_32.dll MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ws2help.dll MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\userenv.dll MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\user32.dll MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\uxtheme.dll MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\wldap32.dll MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\srclient.dll MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\version.dll MOD - [2008-04-14 22:50:48 | 008,489,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\shell32.dll MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\setupapi.dll MOD - [2008-04-14 22:50:48 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\shlwapi.dll MOD - [2008-04-14 22:50:46 | 001,287,168 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ole32.dll MOD - [2008-04-14 22:50:46 | 000,584,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\rpcrt4.dll MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\oleaut32.dll MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\olepro32.dll MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\samlib.dll MOD - [2008-04-14 22:50:46 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\secur32.dll MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\psapi.dll MOD - [2008-04-14 22:50:42 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\netapi32.dll MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ntmarta.dll MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ntdsapi.dll MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\msvcrt.dll MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\mstask.dll MOD - [2008-04-14 22:50:40 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\mswsock.dll MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\MSCTF.dll MOD - [2008-04-14 22:50:36 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\kernel32.dll MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\mpr.dll MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\imm32.dll MOD - [2008-04-14 22:50:32 | 000,285,184 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\gdi32.dll MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\wbem\framedyn.dll MOD - [2008-04-14 22:50:28 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\dnsapi.dll MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\comres.dll MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\comdlg32.dll MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\clbcatq.dll MOD - [2008-04-14 22:50:00 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\advapi32.dll MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\apphelp.dll MOD - [2008-04-14 22:49:16 | 000,714,240 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\ntdll.dll MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\msscript.ocx MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS.2\system32\MSCTFIME.IME MOD - [2008-04-14 22:29:10 | 001,054,208 | R--- | M] (Microsoft Corporation) -- C:\WINDOWS.2\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll MOD - [2007-09-02 13:57:36 | 000,069,632 | ---- | M] () -- C:\Program Files\RocketDock\RocketDock.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-06-24 09:27:54 | 000,033,584 | ---- | M] (ESET) [On_Demand | Stopped] -- C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe -- (EhttpSrv) SRV - [2010-06-24 09:27:12 | 000,810,144 | ---- | M] (ESET) [Auto | Running] -- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- (ekrn) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Stopped] -- D:\NTGLM7X.sys -- (SetupNTGLM7X) DRV - File not found [Kernel | On_Demand | Stopped] -- D:\NTACCESS.sys -- (NTACCESS) DRV - File not found [Kernel | On_Demand | Stopped] -- D:\install4\MSICPL.sys -- (MSICPL) DRV - File not found [Kernel | On_Demand | Stopped] -- D:\INSTALL\GMSIPCI.SYS -- (GMSIPCI) DRV - [2010-07-10 00:38:00 | 010,604,128 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS.2\system32\drivers\nv4_mini.sys -- (nv) DRV - [2010-06-24 09:27:24 | 000,095,896 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS.2\system32\drivers\epfwtdir.sys -- (epfwtdir) DRV - [2010-06-24 09:26:24 | 000,140,752 | ---- | M] (ESET) [File_System | Auto | Running] -- C:\WINDOWS.2\system32\drivers\eamon.sys -- (eamon) DRV - [2010-04-28 08:17:46 | 000,114,984 | ---- | M] (ESET) [Kernel | System | Running] -- C:\WINDOWS.2\system32\drivers\ehdrv.sys -- (ehdrv) DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS.2\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2008-02-14 11:04:06 | 004,676,096 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS.2\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2008-01-03 16:10:16 | 000,105,856 | R--- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS.2\system32\drivers\Rtenicxp.sys -- (RTLE8023xp) DRV - [2007-11-26 05:16:50 | 000,072,704 | R--- | M] (JMicron Technology Corp.) [Kernel | Boot | Running] -- C:\WINDOWS.2\system32\DRIVERS\jraid.sys -- (JRAID) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS.2\System32\drivers\TBPanel.sys -- (TBPanel) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS.2\system32\drivers\TBPanel.sys -- (Cardex) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-854245398-57989841-1417001333-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS.2\system32\blank.htm IE - HKU\S-1-5-21-854245398-57989841-1417001333-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..extensions.enabledItems: pdfforge@mybrowserbar.com:1.1.2 FF - prefs.js..extensions.enabledItems: searchsettings@spigot.com:1.2.3 FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-08-06 21:32:52 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.0.19\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-08-06 21:32:52 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Thunderbird\Extensions\\eplgTb@eset.com: C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird [2010-08-05 14:33:51 | 000,000,000 | ---D | M] [2010-08-05 13:59:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Extensions [2010-08-05 13:59:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\3u5vbc4q.default\extensions [2010-08-09 10:52:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions [2010-08-05 14:08:20 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-08-05 14:08:19 | 000,000,000 | ---D | M] (Google Toolbar for Firefox) -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c} [2010-08-05 14:08:18 | 000,000,000 | ---D | M] (Vuze Remote Toolbar) -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\{ba14329e-9550-4989-b3f2-9732e92d17cc} [2010-08-05 14:08:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\firefox@tvunetworks.com [2010-08-05 14:08:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\SignPlugin@bph.pl [2010-08-05 14:08:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\n5d9a4gl.default\extensions\YoutubeDownloader@PeterOlayev.com [2010-08-05 14:08:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla\Firefox\Profiles\u2dnkulh.default\extensions [2010-08-09 10:52:41 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions [2010-08-06 21:32:48 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-08-06 21:32:48 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-08-06 21:32:48 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-08-06 21:32:48 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-08-06 21:32:48 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-08-06 21:32:48 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2001-10-26 17:45:16 | 000,000,742 | ---- | M]) - C:\WINDOWS.2\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O4 - HKLM..\Run: [36X Raid Configurer] C:\WINDOWS.2\System32\xRaidSetup.exe (JMicron Technology Corp.) O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS.2\Alcmtr.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [egui] C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe (ESET) O4 - HKLM..\Run: [JMB36X IDE Setup] C:\WINDOWS.2\RaidTool\xInsIDE.exe () O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS.2\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS.2\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe () O4 - HKLM..\Run: [Resume copy] C:\WINDOWS.2\copyfstq.exe () O4 - HKU\S-1-5-21-854245398-57989841-1417001333-1003..\Run: [RocketDock] C:\Program Files\RocketDock\RocketDock.exe () O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] File not found O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-854245398-57989841-1417001333-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 62.111.200.202 192.168.0.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS.2\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008-08-07 18:12:56 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-08-09 13:19:19 | 000,000,000 | ---D | C] -- C:\_OTL [2010-08-09 13:15:03 | 000,574,976 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\pablo1\Pulpit\OTL.exe [2010-08-08 11:52:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Adobe [2010-08-08 11:48:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\Adobe [2010-08-08 00:15:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\pdfforge [2010-08-07 21:17:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Pulpit\Jaworzno [2010-08-07 21:13:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\OLYMPUS [2010-08-07 21:13:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Apple Computer [2010-08-06 23:34:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\OpenOffice.org [2010-08-06 15:44:42 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\LogFiles [2010-08-06 15:41:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\NVIDIA Corporation [2010-08-06 14:12:13 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\pablo1\Recent [2010-08-06 14:02:36 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Logs [2010-08-06 13:30:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\Pyro Studios [2010-08-06 13:30:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Trymedia [2010-08-06 13:10:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\WinRAR [2010-08-06 12:37:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Winamp [2010-08-06 11:14:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\Moje wideo [2010-08-06 11:11:01 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\pss [2010-08-05 23:51:33 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\RaidTool [2010-08-05 22:58:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\Identities [2010-08-05 21:47:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\BESTplayer [2010-08-05 21:46:39 | 001,093,632 | ---- | C] (Karol Winnicki) -- C:\BESTplayer.exe [2010-08-05 19:09:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\ESET [2010-08-05 16:38:35 | 000,000,000 | ---D | C] -- C:\Program Files\StarCraft II [2010-08-05 16:38:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\StarCraft II [2010-08-05 16:38:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Blizzard Entertainment [2010-08-05 15:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\NHL09 [2010-08-05 15:23:30 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dokumenty\Moja muzyka [2010-08-05 15:22:43 | 000,000,000 | -HSD | C] -- C:\WINDOWS.2\Installer [2010-08-05 15:22:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Menu Start [2010-08-05 15:22:13 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dokumenty [2010-08-05 15:22:13 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Szablony [2010-08-05 15:22:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Ulubione [2010-08-05 15:22:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Pulpit [2010-08-05 15:22:01 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\CatRoot2 [2010-08-05 15:22:01 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\CatRoot [2010-08-05 15:21:56 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Microsoft [2010-08-05 15:21:56 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji [2010-08-05 15:17:54 | 000,000,000 | --SD | C] -- C:\WINDOWS.2\Downloaded Program Files [2010-08-05 15:17:54 | 000,000,000 | R-SD | C] -- C:\WINDOWS.2\Fonts [2010-08-05 15:17:54 | 000,000,000 | RHSD | C] -- C:\WINDOWS.2\System32\dllcache [2010-08-05 15:17:54 | 000,000,000 | R--D | C] -- C:\WINDOWS.2\Web [2010-08-05 15:17:54 | 000,000,000 | -H-D | C] -- C:\WINDOWS.2\inf [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\WinSxS [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\wins [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\WBEM [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\wbem [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\usmt [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\drivers\UMDF [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\twain_32 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Temp [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\system32 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\system [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\spool [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\ShellExt [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\Setup [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\security [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Resources [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\repair [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\ras [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Provisioning [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\pl-pl [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\pl [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\PeerNet [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\pchealth [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\oobe [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Offline Web Pages [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\npp [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Network Diagnostic [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\mui [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\mui [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\msapps [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\msagent [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Media [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\L2Schemas [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\java [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\inetsrv [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\IME [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\ime [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\icsxml [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\ias [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Help [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\export [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\drivers\etc [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\ehome [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\drivers [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Driver Cache [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\drivers\disdn [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\dhcp [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Debug [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Cursors [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Connection Wizard [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\config [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Config [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\AppPatch [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\addins [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\3com_dmi [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\3076 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\2052 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1054 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1045 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1042 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1041 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1037 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1033 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1031 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1028 [2010-08-05 15:17:54 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\1025 [2010-08-05 15:05:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Gadu-Gadu 10 [2010-08-05 15:03:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Gadu-Gadu 10 [2010-08-05 14:38:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Azureus [2010-08-05 14:38:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Azureus [2010-08-05 14:37:18 | 000,000,000 | ---D | C] -- C:\Program Files\Azureus [2010-08-05 14:33:50 | 000,000,000 | ---D | C] -- C:\Program Files\ESET [2010-08-05 14:33:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\ESET [2010-08-05 14:17:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Macromedia [2010-08-05 14:17:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Adobe [2010-08-05 14:08:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\Google [2010-08-05 14:08:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Google [2010-08-05 13:59:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\Mozilla [2010-08-05 13:59:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Mozilla [2010-08-05 13:57:06 | 000,000,000 | -HSD | C] -- C:\RECYCLER [2010-08-05 13:49:16 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\Lang [2010-08-05 13:47:10 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\ReinstallBackups [2010-08-05 13:47:07 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\WINDOWS.2\System32\CSVer.dll [2010-08-05 13:47:07 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\DRVSTORE [2010-08-05 13:46:08 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\RTCOM [2010-08-05 13:45:42 | 002,808,832 | R--- | C] (RealTek Semicoductor Corp.) -- C:\WINDOWS.2\alcwzrd.exe [2010-08-05 13:42:47 | 000,105,856 | R--- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS.2\System32\drivers\Rtenicxp.sys [2010-08-05 13:40:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Identities [2010-08-05 13:40:19 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\Moje obrazy [2010-08-05 13:40:19 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty\Moja muzyka [2010-08-05 13:40:17 | 000,000,000 | --SD | C] -- C:\Documents and Settings\pablo1\Dane aplikacji\Microsoft [2010-08-05 13:40:17 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\pablo1\Dane aplikacji [2010-08-05 13:40:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Moje dokumenty [2010-08-05 13:40:17 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Menu Start [2010-08-05 13:40:17 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\pablo1\Cookies [2010-08-05 13:40:17 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\pablo1\PrintHood [2010-08-05 13:40:17 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\pablo1\NetHood [2010-08-05 13:40:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\pablo1\Pulpit [2010-08-05 13:40:16 | 000,000,000 | --SD | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-08-05 13:40:16 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\pablo1\SendTo [2010-08-05 13:40:16 | 000,000,000 | R--D | C] -- C:\Documents and Settings\pablo1\Ulubione [2010-08-05 13:40:16 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\pablo1\Ustawienia lokalne [2010-08-05 13:40:16 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\pablo1\Szablony [2010-08-05 13:39:42 | 000,000,000 | ---D | C] -- C:\WINDOWS.1 [2010-08-05 13:38:07 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\SoftwareDistribution [2010-08-05 13:38:05 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Prefetch [2010-08-05 13:38:04 | 000,000,000 | --SD | C] -- C:\WINDOWS.2\System32\Microsoft [2010-08-05 13:36:01 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS.2\System32\dllcache\rwia330.dll [2010-08-05 13:36:01 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS.2\System32\dllcache\rwia001.dll [2010-08-05 13:36:01 | 000,029,184 | ---- | C] (RICOH Co., Ltd.) -- C:\WINDOWS.2\System32\dllcache\rw330ext.dll [2010-08-05 13:35:12 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS.2\System32\dllcache\cap7146.sys [2010-08-05 13:34:50 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\xircom [2010-08-05 13:34:36 | 000,000,000 | -H-D | C] -- C:\WINDOWS.2\$hf_mig$ [2010-08-05 13:33:21 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users.WINDOWS.2\DRM [2010-08-05 13:32:44 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\DirectX [2010-08-05 13:32:25 | 000,000,000 | --SD | C] -- C:\WINDOWS.2\Tasks [2010-08-05 13:32:20 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\srchasst [2010-08-05 13:32:20 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\Macromed [2010-08-05 13:31:55 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\Restore [2010-08-05 13:31:38 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dokumenty\Moje obrazy [2010-08-05 13:30:49 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\Registration [2010-08-05 13:29:52 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\MsDtc [2010-08-05 13:29:51 | 000,000,000 | ---D | C] -- C:\WINDOWS.2\System32\Com [2010-08-05 13:29:36 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users.WINDOWS.2\Dokumenty\Moje wideo [2010-08-05 07:50:03 | 000,000,000 | ---D | C] -- C:\Config.Msi [2010-07-29 10:54:09 | 000,000,000 | ---D | C] -- C:\Program Files\SystemRequirementsLab [2010-07-28 00:41:21 | 000,000,000 | ---D | C] -- C:\mp3 bieg [2010-07-27 10:34:09 | 000,000,000 | ---D | C] -- C:\JACK_ORL [2010-07-27 10:30:47 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite [2010-07-26 22:28:10 | 000,000,000 | ---D | C] -- C:\Program Files\Jack Orlando Demo [2010-07-26 16:23:28 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2010-07-26 16:23:04 | 000,061,440 | ---- | C] (Khronos Group) -- C:\WINDOWS.2\System32\OpenCL.dll [2010-07-26 15:51:23 | 000,000,000 | ---D | C] -- C:\Commandos, Behind Enemy Lines [2010-07-23 23:07:42 | 000,000,000 | ---D | C] -- C:\Program Files\Damian Pasternak [2010-07-22 09:59:18 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Bootvis [2010-07-22 01:28:06 | 000,000,000 | ---D | C] -- C:\Program Files\VSO [2010-07-22 01:11:33 | 000,000,000 | ---D | C] -- C:\Program Files\Defraggler [2010-07-22 00:43:03 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack [2010-07-22 00:41:48 | 000,000,000 | ---D | C] -- C:\WINDOWS.0 [2010-07-22 00:39:34 | 000,000,000 | ---D | C] -- C:\Program Files\Notepad++ [2010-07-22 00:28:03 | 000,000,000 | ---D | C] -- C:\RaidTool [2010-07-21 22:56:17 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2 [2010-07-21 12:59:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Macromedia [2010-07-21 12:50:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Dane aplikacji\Adobe [2010-07-20 23:28:02 | 000,000,000 | R--D | C] -- C:\Aktówka [2010-07-20 22:53:15 | 000,000,000 | ---D | C] -- C:\Program Files\RocketDock [2010-07-19 14:37:01 | 000,000,000 | ---D | C] -- C:\Program Files\Games [2010-07-18 22:04:09 | 000,000,000 | ---D | C] -- C:\Program Files\City Interactive [2010-07-18 14:19:22 | 000,000,000 | ---D | C] -- C:\Program Files\Machinarium [2010-07-18 14:18:00 | 000,000,000 | ---D | C] -- C:\Program Files\Elaborate Bytes [2010-07-18 11:07:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Blizzard Entertainment [2010-07-15 10:16:50 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype [2010-07-07 12:06:41 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ [2010-07-07 12:06:34 | 000,000,000 | ---D | C] -- C:\Program Files\Canon [2010-06-26 21:16:21 | 000,000,000 | ---D | C] -- C:\found.001 [2010-06-25 00:18:49 | 000,000,000 | ---D | C] -- C:\found.000 [2010-06-24 09:27:24 | 000,095,896 | ---- | C] (ESET) -- C:\WINDOWS.2\System32\drivers\epfwtdir.sys [2010-06-24 09:26:24 | 000,140,752 | ---- | C] (ESET) -- C:\WINDOWS.2\System32\drivers\eamon.sys [3 C:\WINDOWS.2\*.tmp files -> C:\WINDOWS.2\*.tmp -> ] [1 C:\WINDOWS.2\System32\*.tmp files -> C:\WINDOWS.2\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-08-09 13:15:23 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\pablo1\Pulpit\OTL.exe [2010-08-09 09:57:50 | 000,000,006 | -H-- | M] () -- C:\WINDOWS.2\tasks\SA.DAT [2010-08-09 09:57:48 | 000,002,048 | --S- | M] () -- C:\WINDOWS.2\bootstat.dat [2010-08-09 09:57:03 | 001,835,008 | -H-- | M] () -- C:\Documents and Settings\pablo1\NTUSER.DAT [2010-08-09 09:56:55 | 003,195,622 | -H-- | M] () -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-08-09 09:49:31 | 000,000,654 | -HS- | M] () -- C:\boot.ini [2010-08-09 09:49:31 | 000,000,507 | ---- | M] () -- C:\WINDOWS.2\win.ini [2010-08-09 09:49:31 | 000,000,227 | ---- | M] () -- C:\WINDOWS.2\system.ini [2010-08-08 12:46:32 | 000,009,728 | ---- | M] () -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-08-08 10:59:17 | 000,329,280 | ---- | M] () -- C:\Documents and Settings\pablo1\Pulpit\8841_7337_regulamin_poprawiony.pdf [2010-08-08 01:27:15 | 000,000,845 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS.2\Pulpit\CWK.lnk [2010-08-07 21:34:17 | 000,204,936 | ---- | M] () -- C:\Documents and Settings\pablo1\Pulpit\jaworzno0op.pdf [2010-08-07 10:10:23 | 000,117,360 | ---- | M] () -- C:\WINDOWS.2\System32\FNTCACHE.DAT [2010-08-07 01:24:46 | 000,018,032 | ---- | M] () -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-08-06 15:43:29 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\pablo1\ntuser.ini [2010-08-06 15:42:58 | 000,000,664 | ---- | M] () -- C:\WINDOWS.2\System32\d3d9caps.dat [2010-08-06 15:41:29 | 000,232,968 | ---- | M] () -- C:\WINDOWS.2\System32\nvdrsdb0.bin [2010-08-06 15:41:29 | 000,000,001 | ---- | M] () -- C:\WINDOWS.2\System32\nvdrssel.bin [2010-08-06 15:41:28 | 000,232,968 | ---- | M] () -- C:\WINDOWS.2\System32\nvdrsdb1.bin [2010-08-06 15:41:28 | 000,000,000 | ---- | M] () -- C:\WINDOWS.2\System32\nvdrswr.lk [2010-08-05 21:46:55 | 001,093,632 | ---- | M] (Karol Winnicki) -- C:\BESTplayer.exe [2010-08-05 21:45:47 | 000,001,103 | ---- | M] () -- C:\WINDOWS.2\bestplayer.ini [2010-08-05 21:45:47 | 000,000,000 | ---- | M] () -- C:\WINDOWS.2\bestplayer.bpp [2010-08-05 21:45:47 | 000,000,000 | ---- | M] () -- C:\WINDOWS.2\bestplayer.bbt [2010-08-05 15:22:47 | 000,004,452 | ---- | M] () -- C:\WINDOWS.2\System32\pid.PNF [2010-08-05 14:25:42 | 000,094,636 | ---- | M] () -- C:\WINDOWS.2\dropcpyr.dll [2010-08-05 14:25:42 | 000,073,728 | ---- | M] () -- C:\WINDOWS.2\copyfstq.exe [2010-08-05 13:59:30 | 000,000,000 | ---- | M] () -- C:\WINDOWS.2\nsreg.dat [2010-08-05 13:49:27 | 000,940,794 | ---- | M] () -- C:\WINDOWS.2\System32\LoopyMusic.wav [2010-08-05 13:49:27 | 000,146,650 | ---- | M] () -- C:\WINDOWS.2\System32\BuzzingBee.wav [2010-08-05 13:39:31 | 000,763,990 | ---- | M] () -- C:\WINDOWS.2\System32\PerfStringBackup.INI [2010-08-05 13:39:31 | 000,355,830 | ---- | M] () -- C:\WINDOWS.2\System32\perfh015.dat [2010-08-05 13:39:31 | 000,311,740 | ---- | M] () -- C:\WINDOWS.2\System32\perfh009.dat [2010-08-05 13:39:31 | 000,049,712 | ---- | M] () -- C:\WINDOWS.2\System32\perfc015.dat [2010-08-05 13:39:31 | 000,040,128 | ---- | M] () -- C:\WINDOWS.2\System32\perfc009.dat [2010-08-05 13:39:27 | 000,002,206 | ---- | M] () -- C:\WINDOWS.2\System32\wpa.dbl [2010-08-05 13:37:52 | 000,008,192 | ---- | M] () -- C:\WINDOWS.2\REGLOCS.OLD [2010-08-05 13:36:23 | 000,000,672 | ---- | M] () -- C:\WINDOWS.2\System32\$winnt$.inf [2010-08-05 13:34:22 | 000,002,596 | ---- | M] () -- C:\WINDOWS.2\System32\CONFIG.NT [2010-08-05 13:34:22 | 000,000,000 | ---- | M] () -- C:\WINDOWS.2\control.ini [2010-08-05 13:34:15 | 000,023,392 | ---- | M] () -- C:\WINDOWS.2\System32\nscompat.tlb [2010-08-05 13:34:15 | 000,016,832 | ---- | M] () -- C:\WINDOWS.2\System32\amcompat.tlb [2010-08-05 13:34:14 | 000,316,640 | ---- | M] () -- C:\WINDOWS.2\WMSysPr9.prx [2010-08-05 13:34:02 | 000,004,381 | ---- | M] () -- C:\WINDOWS.2\ODBCINST.INI [2010-08-05 13:33:12 | 000,000,488 | RH-- | M] () -- C:\WINDOWS.2\System32\WindowsLogon.manifest [2010-08-05 13:33:12 | 000,000,488 | RH-- | M] () -- C:\WINDOWS.2\System32\logonui.exe.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\System32\wuaucpl.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\WindowsShell.Manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\System32\sapi.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\System32\nwc.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\System32\ncpa.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | M] () -- C:\WINDOWS.2\System32\cdplayer.exe.manifest [2010-08-05 13:31:08 | 000,021,856 | ---- | M] () -- C:\WINDOWS.2\System32\emptyregdb.dat [2010-08-05 13:30:55 | 000,000,037 | ---- | M] () -- C:\WINDOWS.2\vbaddin.ini [2010-08-05 13:30:55 | 000,000,036 | ---- | M] () -- C:\WINDOWS.2\vb.ini [2010-07-27 12:10:37 | 000,000,003 | ---- | M] () -- C:\Tbtp.afp [2010-07-27 12:10:37 | 000,000,003 | ---- | M] () -- C:\Etao.afp [2010-07-27 12:10:37 | 000,000,003 | ---- | M] () -- C:\Btbw.afp [2010-07-27 12:10:37 | 000,000,003 | ---- | M] () -- C:\Bbvn.afp [2010-07-10 00:38:00 | 002,195,030 | ---- | M] () -- C:\WINDOWS.2\System32\nvdata.bin [2010-07-10 00:38:00 | 000,061,440 | ---- | M] (Khronos Group) -- C:\WINDOWS.2\System32\OpenCL.dll [2010-07-10 00:38:00 | 000,007,959 | ---- | M] () -- C:\WINDOWS.2\System32\nvinfo.pb [2010-06-24 09:27:24 | 000,095,896 | ---- | M] (ESET) -- C:\WINDOWS.2\System32\drivers\epfwtdir.sys [2010-06-24 09:26:24 | 000,140,752 | ---- | M] (ESET) -- C:\WINDOWS.2\System32\drivers\eamon.sys [3 C:\WINDOWS.2\*.tmp files -> C:\WINDOWS.2\*.tmp -> ] [1 C:\WINDOWS.2\System32\*.tmp files -> C:\WINDOWS.2\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-08-08 10:59:16 | 000,329,280 | ---- | C] () -- C:\Documents and Settings\pablo1\Pulpit\8841_7337_regulamin_poprawiony.pdf [2010-08-08 01:27:15 | 000,000,845 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS.2\Pulpit\CWK.lnk [2010-08-07 21:34:15 | 000,204,936 | ---- | C] () -- C:\Documents and Settings\pablo1\Pulpit\jaworzno0op.pdf [2010-08-06 15:41:29 | 000,232,968 | ---- | C] () -- C:\WINDOWS.2\System32\nvdrsdb0.bin [2010-08-06 15:41:28 | 000,232,968 | ---- | C] () -- C:\WINDOWS.2\System32\nvdrsdb1.bin [2010-08-06 15:41:28 | 000,000,001 | ---- | C] () -- C:\WINDOWS.2\System32\nvdrssel.bin [2010-08-06 15:41:28 | 000,000,000 | ---- | C] () -- C:\WINDOWS.2\System32\nvdrswr.lk [2010-08-06 15:33:25 | 000,000,664 | ---- | C] () -- C:\WINDOWS.2\System32\d3d9caps.dat [2010-08-05 21:48:32 | 000,165,376 | ---- | C] () -- C:\WINDOWS.2\System32\unrar.dll [2010-08-05 21:47:29 | 000,009,728 | ---- | C] () -- C:\Documents and Settings\pablo1\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-08-05 21:45:47 | 000,001,103 | ---- | C] () -- C:\WINDOWS.2\bestplayer.ini [2010-08-05 21:45:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS.2\bestplayer.bpp [2010-08-05 21:45:47 | 000,000,000 | ---- | C] () -- C:\WINDOWS.2\bestplayer.bbt [2010-08-05 15:22:47 | 000,004,452 | ---- | C] () -- C:\WINDOWS.2\System32\pid.PNF [2010-08-05 15:22:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28603.nls [2010-08-05 15:22:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_28603.nls [2010-08-05 15:22:36 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_857.nls [2010-08-05 15:22:36 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\c_857.nls [2010-08-05 15:22:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28599.nls [2010-08-05 15:22:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_28599.nls [2010-08-05 15:22:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10081.nls [2010-08-05 15:22:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10081.nls [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28595.nls [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\C_28595.NLS [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10017.nls [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10017.nls [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10007.nls [2010-08-05 15:22:34 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10007.nls [2010-08-05 15:22:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_869.nls [2010-08-05 15:22:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\c_869.nls [2010-08-05 15:22:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_737.nls [2010-08-05 15:22:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\c_737.nls [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_875.nls [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_875.nls [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28597.nls [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\C_28597.NLS [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10006.nls [2010-08-05 15:22:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10006.nls [2010-08-05 15:22:32 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_866.nls [2010-08-05 15:22:32 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\c_866.nls [2010-08-05 15:22:32 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_855.nls [2010-08-05 15:22:32 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\c_855.nls [2010-08-05 15:22:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28594.nls [2010-08-05 15:22:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\C_28594.NLS [2010-08-05 15:22:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20127.nls [2010-08-05 15:22:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_20127.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10082.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10082.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10029.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10029.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10010.nls [2010-08-05 15:22:27 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\c_10010.nls [2010-08-05 15:22:23 | 000,001,734 | ---- | C] () -- C:\WINDOWS.2\System32\AUTOEXEC.NT [2010-08-05 15:22:12 | 000,144,484 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\netfx.cat [2010-08-05 15:22:12 | 000,105,628 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\tabletpc.cat [2010-08-05 15:22:12 | 000,037,509 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\MW770.CAT [2010-08-05 15:22:12 | 000,034,747 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\mediactr.cat [2010-08-05 15:22:12 | 000,033,765 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\FP4.CAT [2010-08-05 15:22:12 | 000,016,825 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\IMS.CAT [2010-08-05 15:22:12 | 000,013,497 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\HPCRDP.CAT [2010-08-05 15:22:12 | 000,012,363 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\MSMSGS.CAT [2010-08-05 15:22:12 | 000,010,027 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\MSTSWEB.CAT [2010-08-05 15:22:12 | 000,008,599 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\IASNT4.CAT [2010-08-05 15:22:12 | 000,007,382 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\OEMBIOS.CAT [2010-08-05 15:22:12 | 000,007,334 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\wmerrenu.cat [2010-08-05 15:22:11 | 002,033,887 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\NT5.CAT [2010-08-05 15:22:11 | 001,246,357 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\SP3.CAT [2010-08-05 15:22:11 | 000,808,524 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\NT5IIS.CAT [2010-08-05 15:22:11 | 000,634,012 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\NT5INF.CAT [2010-08-05 15:22:11 | 000,399,670 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\MAPIMIG.CAT [2010-08-05 15:21:33 | 000,117,360 | ---- | C] () -- C:\WINDOWS.2\System32\FNTCACHE.DAT [2010-08-05 15:20:39 | 000,000,672 | ---- | C] () -- C:\WINDOWS.2\System32\$winnt$.inf [2010-08-05 14:25:42 | 000,094,636 | ---- | C] () -- C:\WINDOWS.2\dropcpyr.dll [2010-08-05 14:25:42 | 000,073,728 | ---- | C] () -- C:\WINDOWS.2\copyfstq.exe [2010-08-05 13:59:30 | 000,000,000 | ---- | C] () -- C:\WINDOWS.2\nsreg.dat [2010-08-05 13:51:31 | 000,220,312 | ---- | C] () -- C:\WINDOWS.2\System32\nvdsptha.chm [2010-08-05 13:51:31 | 000,219,669 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspchs.chm [2010-08-05 13:51:31 | 000,217,076 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspsky.chm [2010-08-05 13:51:31 | 000,214,210 | ---- | C] () -- C:\WINDOWS.2\System32\nvdsprus.chm [2010-08-05 13:51:31 | 000,213,493 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspcht.chm [2010-08-05 13:51:31 | 000,210,720 | ---- | C] () -- C:\WINDOWS.2\System32\nvdsptrk.chm [2010-08-05 13:51:31 | 000,206,105 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspslv.chm [2010-08-05 13:51:31 | 000,195,910 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspsve.chm [2010-08-05 13:51:31 | 000,189,104 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspptb.chm [2010-08-05 13:51:31 | 000,139,792 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dcht.chm [2010-08-05 13:51:31 | 000,137,045 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dtha.chm [2010-08-05 13:51:31 | 000,134,133 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dchs.chm [2010-08-05 13:51:31 | 000,133,761 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dtrk.chm [2010-08-05 13:51:31 | 000,129,499 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dsky.chm [2010-08-05 13:51:31 | 000,128,913 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dslv.chm [2010-08-05 13:51:31 | 000,128,148 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpltha.chm [2010-08-05 13:51:31 | 000,126,976 | ---- | C] () -- C:\WINDOWS.2\System32\nv3drus.chm [2010-08-05 13:51:31 | 000,126,892 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpltrk.chm [2010-08-05 13:51:31 | 000,126,105 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplsky.chm [2010-08-05 13:51:31 | 000,125,181 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplrus.chm [2010-08-05 13:51:31 | 000,124,964 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplslv.chm [2010-08-05 13:51:31 | 000,124,817 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplcht.chm [2010-08-05 13:51:31 | 000,124,229 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplchs.chm [2010-08-05 13:51:31 | 000,124,078 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplptb.chm [2010-08-05 13:51:31 | 000,122,675 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplsve.chm [2010-08-05 13:51:31 | 000,118,734 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dsve.chm [2010-08-05 13:51:31 | 000,118,410 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dptb.chm [2010-08-05 13:51:31 | 000,059,261 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobcht.chm [2010-08-05 13:51:31 | 000,059,225 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobtha.chm [2010-08-05 13:51:31 | 000,058,607 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobchs.chm [2010-08-05 13:51:31 | 000,057,545 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobsky.chm [2010-08-05 13:51:31 | 000,057,450 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobtrk.chm [2010-08-05 13:51:31 | 000,057,380 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobslv.chm [2010-08-05 13:51:31 | 000,057,339 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobrus.chm [2010-08-05 13:51:31 | 000,055,946 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobptb.chm [2010-08-05 13:51:31 | 000,055,693 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobsve.chm [2010-08-05 13:51:30 | 000,205,816 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspplk.chm [2010-08-05 13:51:30 | 000,194,380 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspptg.chm [2010-08-05 13:51:30 | 000,189,364 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspnld.chm [2010-08-05 13:51:30 | 000,189,041 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspnor.chm [2010-08-05 13:51:30 | 000,130,245 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dplk.chm [2010-08-05 13:51:30 | 000,129,550 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dptg.chm [2010-08-05 13:51:30 | 000,124,044 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplptg.chm [2010-08-05 13:51:30 | 000,124,019 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplplk.chm [2010-08-05 13:51:30 | 000,122,809 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplnld.chm [2010-08-05 13:51:30 | 000,120,026 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplnor.chm [2010-08-05 13:51:30 | 000,119,706 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dnor.chm [2010-08-05 13:51:30 | 000,118,401 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dnld.chm [2010-08-05 13:51:30 | 000,057,376 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobplk.chm [2010-08-05 13:51:30 | 000,055,845 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobptg.chm [2010-08-05 13:51:30 | 000,055,525 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobnor.chm [2010-08-05 13:51:30 | 000,055,475 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobnld.chm [2010-08-05 13:51:29 | 000,251,599 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspjpn.chm [2010-08-05 13:51:29 | 000,224,281 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspkor.chm [2010-08-05 13:51:29 | 000,203,902 | ---- | C] () -- C:\WINDOWS.2\System32\nvdsphun.chm [2010-08-05 13:51:29 | 000,201,378 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspita.chm [2010-08-05 13:51:29 | 000,144,421 | ---- | C] () -- C:\WINDOWS.2\System32\nv3djpn.chm [2010-08-05 13:51:29 | 000,132,251 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dkor.chm [2010-08-05 13:51:29 | 000,131,070 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dhun.chm [2010-08-05 13:51:29 | 000,129,704 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpljpn.chm [2010-08-05 13:51:29 | 000,125,552 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplhun.chm [2010-08-05 13:51:29 | 000,124,741 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplkor.chm [2010-08-05 13:51:29 | 000,124,148 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplita.chm [2010-08-05 13:51:29 | 000,121,053 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dita.chm [2010-08-05 13:51:29 | 000,060,357 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobjpn.chm [2010-08-05 13:51:29 | 000,059,061 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobkor.chm [2010-08-05 13:51:29 | 000,057,512 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobhun.chm [2010-08-05 13:51:29 | 000,056,175 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobita.chm [2010-08-05 13:51:28 | 000,207,116 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspheb.chm [2010-08-05 13:51:28 | 000,197,555 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspesm.chm [2010-08-05 13:51:28 | 000,195,677 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspfin.chm [2010-08-05 13:51:28 | 000,189,184 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspfra.chm [2010-08-05 13:51:28 | 000,132,088 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dheb.chm [2010-08-05 13:51:28 | 000,126,196 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplheb.chm [2010-08-05 13:51:28 | 000,124,544 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplfin.chm [2010-08-05 13:51:28 | 000,124,278 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dfin.chm [2010-08-05 13:51:28 | 000,124,138 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplesm.chm [2010-08-05 13:51:28 | 000,122,227 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplfra.chm [2010-08-05 13:51:28 | 000,119,315 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dfra.chm [2010-08-05 13:51:28 | 000,118,608 | ---- | C] () -- C:\WINDOWS.2\System32\nv3desm.chm [2010-08-05 13:51:28 | 000,058,340 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobheb.chm [2010-08-05 13:51:28 | 000,056,934 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobfin.chm [2010-08-05 13:51:28 | 000,056,087 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobfra.chm [2010-08-05 13:51:28 | 000,055,992 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobesm.chm [2010-08-05 13:51:27 | 000,220,768 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspell.chm [2010-08-05 13:51:27 | 000,197,544 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspdeu.chm [2010-08-05 13:51:27 | 000,196,421 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspesn.chm [2010-08-05 13:51:27 | 000,182,024 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspeng.chm [2010-08-05 13:51:27 | 000,131,422 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dell.chm [2010-08-05 13:51:27 | 000,126,670 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplell.chm [2010-08-05 13:51:27 | 000,124,590 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpldeu.chm [2010-08-05 13:51:27 | 000,124,084 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplesn.chm [2010-08-05 13:51:27 | 000,123,526 | ---- | C] () -- C:\WINDOWS.2\System32\nv3ddeu.chm [2010-08-05 13:51:27 | 000,121,758 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpleng.chm [2010-08-05 13:51:27 | 000,117,909 | ---- | C] () -- C:\WINDOWS.2\System32\nv3desn.chm [2010-08-05 13:51:27 | 000,117,083 | ---- | C] () -- C:\WINDOWS.2\System32\nv3deng.chm [2010-08-05 13:51:27 | 000,059,100 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobell.chm [2010-08-05 13:51:27 | 000,056,087 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobdeu.chm [2010-08-05 13:51:27 | 000,055,669 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobesn.chm [2010-08-05 13:51:27 | 000,055,103 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobeng.chm [2010-08-05 13:51:26 | 000,219,156 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspcsy.chm [2010-08-05 13:51:26 | 000,200,405 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspara.chm [2010-08-05 13:51:26 | 000,188,707 | ---- | C] () -- C:\WINDOWS.2\System32\nvdspdan.chm [2010-08-05 13:51:26 | 000,181,895 | ---- | C] () -- C:\WINDOWS.2\System32\nvdsp.chm [2010-08-05 13:51:26 | 000,128,958 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dcsy.chm [2010-08-05 13:51:26 | 000,128,544 | ---- | C] () -- C:\WINDOWS.2\System32\nv3dara.chm [2010-08-05 13:51:26 | 000,125,735 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplara.chm [2010-08-05 13:51:26 | 000,124,067 | ---- | C] () -- C:\WINDOWS.2\System32\nvcplcsy.chm [2010-08-05 13:51:26 | 000,121,529 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpl.chm [2010-08-05 13:51:26 | 000,120,933 | ---- | C] () -- C:\WINDOWS.2\System32\nvcpldan.chm [2010-08-05 13:51:26 | 000,118,926 | ---- | C] () -- C:\WINDOWS.2\System32\nv3ddan.chm [2010-08-05 13:51:26 | 000,116,384 | ---- | C] () -- C:\WINDOWS.2\System32\nv3d.chm [2010-08-05 13:51:26 | 000,057,387 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobcsy.chm [2010-08-05 13:51:26 | 000,057,328 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobara.chm [2010-08-05 13:51:26 | 000,055,622 | ---- | C] () -- C:\WINDOWS.2\System32\nvmobdan.chm [2010-08-05 13:51:26 | 000,054,988 | ---- | C] () -- C:\WINDOWS.2\System32\nvmob.chm [2010-08-05 13:49:27 | 000,940,794 | ---- | C] () -- C:\WINDOWS.2\System32\LoopyMusic.wav [2010-08-05 13:49:27 | 000,146,650 | ---- | C] () -- C:\WINDOWS.2\System32\BuzzingBee.wav [2010-08-05 13:46:40 | 000,000,553 | R--- | C] () -- C:\WINDOWS.2\USetup.iss [2010-08-05 13:46:27 | 000,049,152 | R--- | C] () -- C:\WINDOWS.2\System32\ChCfg.exe [2010-08-05 13:40:17 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\pablo1\ntuser.dat.LOG [2010-08-05 13:40:17 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\pablo1\ntuser.ini [2010-08-05 13:40:16 | 001,835,008 | -H-- | C] () -- C:\Documents and Settings\pablo1\NTUSER.DAT [2010-08-05 13:37:52 | 000,008,192 | ---- | C] () -- C:\WINDOWS.2\REGLOCS.OLD [2010-08-05 13:36:23 | 000,002,048 | --S- | C] () -- C:\WINDOWS.2\bootstat.dat [2010-08-05 13:36:19 | 000,028,288 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\xjis.nls [2010-08-05 13:35:57 | 000,083,748 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\prcp.nls [2010-08-05 13:35:57 | 000,083,748 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\prc.nls [2010-08-05 13:35:56 | 000,175,104 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\pintlcsa.dll [2010-08-05 13:35:44 | 001,158,818 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\korwbrkr.lex [2010-08-05 13:35:44 | 000,047,066 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\ksc.nls [2010-08-05 13:35:38 | 000,196,665 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\imjpinst.exe [2010-08-05 13:35:38 | 000,059,392 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\imscinst.exe [2010-08-05 13:35:37 | 000,134,339 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\imekr.lex [2010-08-05 13:35:31 | 013,463,552 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\hwxjpn.dll [2010-08-05 13:35:27 | 000,108,827 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\hanja.lex [2010-08-05 13:35:25 | 000,094,208 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\fpencode.dll [2010-08-05 13:35:14 | 000,173,568 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\chtskf.dll [2010-08-05 13:35:11 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_864.nls [2010-08-05 13:35:11 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_862.nls [2010-08-05 13:35:11 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_858.nls [2010-08-05 13:35:11 | 000,066,594 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_720.nls [2010-08-05 13:35:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_870.nls [2010-08-05 13:35:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_708.nls [2010-08-05 13:35:11 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_28596.nls [2010-08-05 13:35:10 | 000,180,770 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20932.nls [2010-08-05 13:35:10 | 000,177,698 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20949.nls [2010-08-05 13:35:10 | 000,173,602 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20936.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_21027.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_21025.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20924.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20880.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20871.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20838.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20833.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20424.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20423.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20420.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20297.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20290.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20285.nls [2010-08-05 13:35:10 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20284.nls [2010-08-05 13:35:09 | 000,189,986 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1361.nls [2010-08-05 13:35:09 | 000,187,938 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20005.nls [2010-08-05 13:35:09 | 000,186,402 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20001.nls [2010-08-05 13:35:09 | 000,185,378 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20003.nls [2010-08-05 13:35:09 | 000,180,258 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20004.nls [2010-08-05 13:35:09 | 000,180,258 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20000.nls [2010-08-05 13:35:09 | 000,173,602 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20002.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20280.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20278.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20277.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20273.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20269.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20108.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20107.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20106.nls [2010-08-05 13:35:09 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_20105.nls [2010-08-05 13:35:08 | 000,173,602 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10008.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1149.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1148.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1147.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1146.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1145.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1144.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1143.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1142.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1141.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1140.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_1047.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10021.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10005.nls [2010-08-05 13:35:08 | 000,066,082 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10004.nls [2010-08-05 13:35:07 | 000,195,618 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10002.nls [2010-08-05 13:35:07 | 000,177,698 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10003.nls [2010-08-05 13:35:07 | 000,162,850 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\c_10001.nls [2010-08-05 13:35:07 | 000,082,172 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\bopomofo.nls [2010-08-05 13:35:07 | 000,066,728 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\big5.nls [2010-08-05 13:34:22 | 000,002,596 | ---- | C] () -- C:\WINDOWS.2\System32\CONFIG.NT [2010-08-05 13:34:15 | 000,023,392 | ---- | C] () -- C:\WINDOWS.2\System32\nscompat.tlb [2010-08-05 13:34:15 | 000,016,832 | ---- | C] () -- C:\WINDOWS.2\System32\amcompat.tlb [2010-08-05 13:34:14 | 000,316,640 | ---- | C] () -- C:\WINDOWS.2\WMSysPr9.prx [2010-08-05 13:33:12 | 000,000,488 | RH-- | C] () -- C:\WINDOWS.2\System32\WindowsLogon.manifest [2010-08-05 13:33:12 | 000,000,488 | RH-- | C] () -- C:\WINDOWS.2\System32\logonui.exe.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\System32\wuaucpl.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\WindowsShell.Manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\System32\sapi.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\System32\nwc.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\System32\ncpa.cpl.manifest [2010-08-05 13:33:09 | 000,000,749 | RH-- | C] () -- C:\WINDOWS.2\System32\cdplayer.exe.manifest [2010-08-05 13:32:49 | 004,399,505 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\nls302en.lex [2010-08-05 13:32:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS.2\winnt256.bmp [2010-08-05 13:32:34 | 000,048,680 | -HS- | C] () -- C:\WINDOWS.2\winnt.bmp [2010-08-05 13:32:29 | 000,000,984 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\srframe.mmf [2010-08-05 13:31:57 | 000,380,416 | ---- | C] () -- C:\WINDOWS.2\System32\dllcache\msinfo.dll [2010-08-05 13:31:08 | 000,021,856 | ---- | C] () -- C:\WINDOWS.2\System32\emptyregdb.dat [2010-08-05 13:30:05 | 000,065,978 | ---- | C] () -- C:\WINDOWS.2\Bąbelki.bmp [2010-08-05 13:30:05 | 000,065,954 | ---- | C] () -- C:\WINDOWS.2\Pod mikroskopem.bmp [2010-08-05 13:30:05 | 000,065,832 | ---- | C] () -- C:\WINDOWS.2\Stiuk z Santa Fe.bmp [2010-08-05 13:30:05 | 000,026,680 | ---- | C] () -- C:\WINDOWS.2\Wachlarze.bmp [2010-08-05 13:30:05 | 000,026,582 | ---- | C] () -- C:\WINDOWS.2\Nefryt.bmp [2010-08-05 13:30:05 | 000,017,362 | ---- | C] () -- C:\WINDOWS.2\Rododendron.bmp [2010-08-05 13:30:05 | 000,017,336 | ---- | C] () -- C:\WINDOWS.2\Na rybkach.bmp [2010-08-05 13:30:05 | 000,017,062 | ---- | C] () -- C:\WINDOWS.2\Kawa.bmp [2010-08-05 13:30:05 | 000,016,730 | ---- | C] () -- C:\WINDOWS.2\Puch.bmp [2010-08-05 13:30:05 | 000,009,522 | ---- | C] () -- C:\WINDOWS.2\Indiański pled.bmp [2010-08-05 13:30:05 | 000,001,272 | ---- | C] () -- C:\WINDOWS.2\Niebieska koronka 16.bmp [2010-08-05 13:30:04 | 000,093,702 | ---- | C] () -- C:\WINDOWS.2\System32\subrange.uce [2010-08-05 13:30:04 | 000,060,458 | ---- | C] () -- C:\WINDOWS.2\System32\ideograf.uce [2010-08-05 13:30:04 | 000,024,006 | ---- | C] () -- C:\WINDOWS.2\System32\gb2312.uce [2010-08-05 13:30:04 | 000,022,984 | ---- | C] () -- C:\WINDOWS.2\System32\bopomofo.uce [2010-08-05 13:30:04 | 000,016,740 | ---- | C] () -- C:\WINDOWS.2\System32\shiftjis.uce [2010-08-05 13:30:04 | 000,012,876 | ---- | C] () -- C:\WINDOWS.2\System32\korean.uce [2010-08-05 13:30:04 | 000,008,484 | ---- | C] () -- C:\WINDOWS.2\System32\kanji_2.uce [2010-08-05 13:30:04 | 000,006,948 | ---- | C] () -- C:\WINDOWS.2\System32\kanji_1.uce [2010-08-05 13:30:03 | 000,001,225 | ---- | C] () -- C:\WINDOWS.2\System32\usrlogon.cmd [2010-08-05 13:30:02 | 000,003,286 | ---- | C] () -- C:\WINDOWS.2\System32\tslabels.h [2010-08-05 13:30:02 | 000,000,768 | ---- | C] () -- C:\WINDOWS.2\System32\msdtcprf.h [2010-08-05 13:29:57 | 000,063,488 | ---- | C] () -- C:\WINDOWS.2\System32\wmimgmt.msc [2010-07-27 12:08:37 | 000,000,003 | ---- | C] () -- C:\Tbtp.afp [2010-07-27 12:08:37 | 000,000,003 | ---- | C] () -- C:\Etao.afp [2010-07-27 12:08:37 | 000,000,003 | ---- | C] () -- C:\Btbw.afp [2010-07-27 12:08:37 | 000,000,003 | ---- | C] () -- C:\Bbvn.afp [2010-07-26 16:23:04 | 000,007,959 | ---- | C] () -- C:\WINDOWS.2\System32\nvinfo.pb [2010-07-26 16:23:01 | 002,195,030 | ---- | C] () -- C:\WINDOWS.2\System32\nvdata.bin [2008-06-04 11:48:20 | 000,007,237 | ---- | C] () -- C:\WINDOWS.2\cadx2.ini [color=#E56717]========== LOP Check ==========[/color] [2009-07-05 14:48:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\29AB [2009-10-05 21:27:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems [2008-09-20 11:22:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Age of Empires 3 [2008-08-16 18:17:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Azureus [2010-07-07 12:07:03 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonBJ [2010-07-13 08:18:48 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonIJEGV [2010-07-07 13:04:45 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonIJEPPEX [2010-07-07 12:11:04 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonIJMyPrinter [2010-07-13 08:18:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonIJPLM [2010-07-07 12:18:18 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\CanonIJSolutionMenu [2008-12-27 01:42:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Codemasters [2010-04-23 16:49:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts [2010-02-20 15:58:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-01-22 10:28:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GoldWave [2010-02-20 15:59:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-02-06 13:33:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe [2010-07-08 21:26:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MXSkypeRecorder [2010-02-09 12:18:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\NCH Swift Sound [2010-04-08 18:26:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2009-02-23 23:09:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PopCap Games [2010-07-21 11:19:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Sports Interactive [2009-11-27 14:37:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SRS Labs [2010-07-21 02:29:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP [2009-08-08 17:20:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2008-09-03 10:58:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems [2010-08-04 22:41:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\Alwil Software [2010-07-27 14:52:58 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\CanonBJ [2010-07-22 20:33:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\Gadu-Gadu 10 [2010-07-28 10:23:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\GoldWave [2010-07-26 00:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\TEMP [2010-08-05 14:38:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Azureus [2010-08-05 14:33:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\ESET [2010-08-05 15:03:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS.2\Dane aplikacji\Gadu-Gadu 10 [2010-08-09 01:26:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Azureus [2010-08-05 21:47:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\BESTplayer [2010-08-05 15:06:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\Gadu-Gadu 10 [2010-08-06 23:34:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\OpenOffice.org [2010-08-08 00:15:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pablo1\Dane aplikacji\pdfforge [2008-08-18 00:19:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\ACD Systems [2008-11-19 15:24:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\AltrixSoft [2010-07-27 17:35:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Azureus [2009-07-05 15:10:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\BearShare Turbo [2010-07-14 23:36:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\BESTplayer [2008-08-09 00:44:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\BitSpirit [2008-08-07 23:40:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\DAEMON Tools [2008-08-11 01:14:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\FarStone [2008-09-03 22:03:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\gnupg [2010-02-23 11:45:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\ipla [2008-10-04 21:21:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Leadertech [2010-02-09 12:18:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\NCH Swift Sound [2010-02-21 00:39:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\OpenFM [2009-01-12 13:57:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\OpenOffice.org [2010-01-09 23:51:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\pdfforge [2010-01-09 23:51:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Search Settings [2009-09-01 09:06:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Software Informer [2009-08-11 16:15:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Sports Interactive [2008-09-03 10:26:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\Ulead Systems [2010-07-27 17:35:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\pawel\Dane aplikacji\uTorrent [2010-08-05 09:33:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\Azureus [2010-07-22 00:41:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\BESTplayer [2010-07-22 01:34:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\DAEMON Tools [2010-07-22 20:44:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\Gadu-Gadu 10 [2010-07-22 00:39:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\Notepad++ [2010-07-22 21:53:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\OpenOffice.org [2010-07-24 00:36:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\pdfforge [2010-07-27 17:38:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Pawel.3DE047CF396A437\Dane aplikacji\VSO [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Files - Unicode (All) ==========[/color] [2010-02-15 15:26:27 | 000,000,000 | ---D | M](C:\Documents and Settings\pawel\Dane aplikacji\???????sAppData) -- C:\Documents and Settings\pawel\Dane aplikacji\敎潲䍄敔灭慬整sAppData [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 130 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:6387AA6C @Alternate Data Stream - 130 bytes -> C:\Documents and Settings\All Users.WINDOWS.0\Dane aplikacji\TEMP:6387AA6C @Alternate Data Stream - 113 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:1493A0EF < End of report > [/log][log]OTL Extras logfile created on: 2010-08-09 13:23:58 - Run 1 OTL by OldTimer - Version 3.2.9.1 Folder = C:\Documents and Settings\pablo1\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 1,00 Gb Available Physical Memory | 74,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 89,00% Paging File free Paging file location(s): C:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS.2 | %ProgramFiles% = C:\Program Files Drive C: | 298,08 Gb Total Space | 120,62 Gb Free Space | 40,47% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PJAB Current User Name: pablo1 Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] [HKEY_USERS\S-1-5-21-854245398-57989841-1417001333-1003\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- Reg Error: Key error. piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\Azureus\Azureus.exe" = C:\Program Files\Azureus\Azureus.exe:*:Enabled:Azureus -- (Vuze Inc.) "C:\Program Files\Gadu-Gadu 10\gg.exe" = C:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.) "C:\Program Files\StarCraft II\StarCraft II.exe" = C:\Program Files\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment) "C:\Program Files\StarCraft II\Support\SC2.exe" = C:\Program Files\StarCraft II\Support\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.) "C:\Program Files\StarCraft II\Versions\Base15405\SC2.exe" = C:\Program Files\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0791A9FF-ED33-4BC0-9D5C-8B615D65C619}" = ESET NOD32 Antivirus "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3A1B5D40-41E9-43FA-8C7B-A8667F5586EF}" = JMB36X Raid Configurer "{45FCADDB-0B29-457E-83A1-D245C62A716C}" = OLYMPUS Master 2 "{58B785A2-D2CA-40AA-AE89-FCC49326CDC4}" = OpenOffice.org 3.2 "{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8A809006-C25A-4A3A-9DAB-94659BCDB107}" = NVIDIA PhysX "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1045-7B44-A93000000001}" = Adobe Reader 9.3 - Polish "{F07B861C-72B9-40A4-8B1A-AAED4C06A7E8}" = QuickTime "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Azureus Vuze" = Azureus Vuze "CCleaner" = CCleaner "CWK" = CWK (Czasowy Wyłącznik Komputera) "EXPERTool_is1" = EXPERTool 6.4 "Gadu-Gadu 10" = Gadu-Gadu 10 "KLiteCodecPack_is1" = K-Lite Codec Pack 6.0.4 (Basic) "Mozilla Firefox (3.0.19)" = Mozilla Firefox (3.0.19) "NVIDIA Display Control Panel" = NVIDIA Display Control Panel "NVIDIA Drivers" = NVIDIA Drivers "NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager "RocketDock_is1" = RocketDock 1.3.5 "StarCraft II" = StarCraft II "Winamp" = Winamp "WinRAR archiver" = Archiwizator WinRAR [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2010-08-05 18:19:57 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd commandos.exe, wersja 0.0.0.0, moduł powodujący błąd commandos.exe, wersja 0.0.0.0, adres błędu 0x001c9f3f. Error - 2010-08-05 18:20:23 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd commandos.exe, wersja 0.0.0.0, moduł powodujący błąd commandos.exe, wersja 0.0.0.0, adres błędu 0x001c9f3f. Error - 2010-08-06 07:11:08 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd commandos.exe, wersja 0.0.0.0, moduł powodujący błąd commandos.exe, wersja 0.0.0.0, adres błędu 0x001c9f3f. Error - 2010-08-06 07:30:42 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd comandos.exe, wersja 0.0.0.0, moduł powodujący błąd comandos.exe, wersja 0.0.0.0, adres błędu 0x0024bae0. Error - 2010-08-06 07:31:24 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd comandos.exe, wersja 0.0.0.0, moduł powodujący błąd comandos.exe, wersja 0.0.0.0, adres błędu 0x0024bae0. Error - 2010-08-06 07:41:45 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd comandos.exe, wersja 0.0.0.0, moduł powodujący błąd comandos.exe, wersja 0.0.0.0, adres błędu 0x0024bae0. Error - 2010-08-06 07:50:23 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd comandos.exe, wersja 0.0.0.0, moduł powodujący błąd comandos.exe, wersja 0.0.0.0, adres błędu 0x0024bae0. Error - 2010-08-06 08:17:40 | Computer Name = PJAB | Source = Application Error | ID = 1000 Description = Aplikacja powodująca błąd comandos.exe, wersja 0.0.0.0, moduł powodujący błąd comandos.exe, wersja 0.0.0.0, adres błędu 0x0024bae0. Error - 2010-08-08 19:27:03 | Computer Name = PJAB | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca firefox.exe, wersja 1.9.0.3725, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2010-08-09 07:19:59 | Computer Name = PJAB | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca OTL.exe, wersja 3.2.9.1, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. [ System Events ] Error - 2010-08-07 04:10:43 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-07 15:02:37 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-07 15:06:46 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-07 19:15:25 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-08 03:48:02 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-08 06:01:26 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-08 06:33:48 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-08 17:14:23 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-09 03:48:24 | Computer Name = PJAB | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi Cardex z powodu następującego błędu: %%183 Error - 2010-08-09 06:00:12 | Computer Name = PJAB | Source = Dhcp | ID = 1000 Description = Komputer utracił połączenie dla swojego adresu IP 192.168.0.101 na karcie sieciowej o adresie sieciowym 00218512434E. < End of report > [/log]Proszę bardzo
Sohei komentarz 9 sierpnia 2010 komentarz 9 sierpnia 2010 [code]:Processes Explorer.exe :OTL O4 - HKLM..\Run: [Resume copy] C:\WINDOWS.2\copyfstq.exe () O4 - HKU\.DEFAULT..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-18..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-19..\RunOnce: [nltide_2] File not found O4 - HKU\S-1-5-20..\RunOnce: [nltide_2] File not found :files C:\found.000 C:\found.001 C:\WINDOWS.2\copyfstq.exe C:\Bbvn.afp C:\Btbw.afp C:\Etao.afp C:\Tbtp.afp C:\Documents and Settings\pawel\Dane aplikacji\敎潲䍄敔灭慬整sAppData :Commands [emptytemp] [start explorer] [Reboot][/code] Wklejasz to do OTL w białe okienko i klikasz run fix. Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.