w0t2 utworzono 18 sierpnia 2010 utworzono 18 sierpnia 2010 (edytowane) Witam wszystkich . Mam problem ;/ Od pewnego czasu nie umiałem włączyć Menadżera zdań , a więc szukałem odpowiedzi i znalazłem aby w REGEDIT zmienić wartości na 0 , ale po zmianie i zamknięciu wszystko samo wskakuje na 1 i nadal nie umiem korzystać z menadżera zdań . Pomoże ktoś co zrobić aby po zapisaniu tam 0 nie zmieniała się wartość na 1? . z góry dziękuję i pozdrawiam . [color="#ff0000"] //przenoszę do Bezpieczeństwa //dan[/color]
nitro07 komentarz 18 sierpnia 2010 komentarz 18 sierpnia 2010 Co to znaczy, że nie umiesz włączyć menadżera zadań ? Co się konkretnie dzieje ?
w0t2 komentarz 19 sierpnia 2010 Autor komentarz 19 sierpnia 2010 Kiedy Klikam Ctrl + Alt + delte wyskakuje komunikat , że Menadżer zadań został wyłączony przez administratora . A więc poczytałem trochę o tym , że w REGEDIT należy zmienić wartość na 0 a więc tak jak zrobię , to menadżer zdań działa , ale nie minie 5 sec. i wartośc w REGEDIT znów wskakuje na 1 . Więc o to mi chodzi co zrobić aby warość pozostała 0 .
Gość komentarz 19 sierpnia 2010 komentarz 19 sierpnia 2010 Uruchom system w trybie awaryjnym, pobierz ten plik [url]http://www.sendspace.pl/file/c66ebc66eabb5a4765fbe2e[/url]. Zatwierdź i wykonaj restart. Śmierdzi mi coś tutaj wirusem, więc zamieść logi w Bezpieczeństwie.
w0t2 komentarz 20 sierpnia 2010 Autor komentarz 20 sierpnia 2010 Hmm sory , że troche Cię zyirytuję , ale czy mógłbyś opisać pokolei te czynności , bo jakoś jestem laikiem w sprawach komputerowych .
Gość komentarz 20 sierpnia 2010 komentarz 20 sierpnia 2010 Przy starcie systemu wciskasz F8, wybierasz Tryb awaryjny. Po uruchomieniu systemu w trybie awaryjnym 2 razy na plik do którego podałem link. W momencie gdy pojawi monit wybierasz "Tak" po czym uruchamiasz ponownie komputer, a już nie w trybie awaryjnym. Sprawdź czy zadziałało. Tworzenie loga z OTL oraz RSIT [url="http://www.forumpc.pl/index.php?showtopic=104338"]http://www.forumpc.pl/index.php?showtopic=104338[/url]
w0t2 komentarz 20 sierpnia 2010 Autor komentarz 20 sierpnia 2010 Po tym jak wgrałem tego Fixa nic się nie stało nadal to samo ; / . Tutaj Log ( z otl.txt ) [log]OTL logfile created on: 2010-08-20 17:13:47 - Run 1 OTL by OldTimer - Version 3.2.10.0 Folder = D:\Documents and Settings\paweł\Pulpit Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.2180) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free 4,00 Gb Paging File | 3,00 Gb Available in Paging File | 91,00% Paging File free Paging file location(s): D:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files Drive C: | 9,77 Gb Total Space | 1,16 Gb Free Space | 11,92% Space Free | Partition Type: NTFS Drive D: | 64,75 Gb Total Space | 53,10 Gb Free Space | 82,01% Space Free | Partition Type: NTFS E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: PAWE-15FCC979B1 Current User Name: paweł Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: On Skip Microsoft Files: On File Age = 60 Days Output = Standard [color=#E56717]========== Processes (All) ==========[/color] PRC - [2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe PRC - [2010-07-30 12:04:57 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Java\jre6\bin\jqs.exe PRC - [2010-07-12 18:33:54 | 001,592,672 | ---- | M] (Nullsoft, Inc.) -- D:\wunamp\Winamp\winamp.exe PRC - [2010-07-12 18:32:48 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- D:\wunamp\Winamp\winampa.exe PRC - [2010-05-14 11:44:46 | 000,248,552 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Common Files\Java\Java Update\jusched.exe PRC - [2010-04-30 11:22:34 | 019,523,616 | ---- | M] (Realtek Semiconductor Corp.) -- D:\WINDOWS\RTHDCPL.EXE PRC - [2010-04-22 18:38:46 | 000,913,776 | ---- | M] (Opera Software) -- D:\Program Files\Opera\opera.exe PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wuauclt.exe PRC - [2009-06-10 08:28:50 | 000,168,004 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe PRC - [2009-05-12 15:43:36 | 002,181,672 | ---- | M] (Gainward Co.) -- D:\Program Files\EXPERTool\TBPANEL.exe PRC - [2009-02-09 12:10:45 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe PRC - [2006-03-02 14:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe PRC - [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe PRC - [2006-03-02 14:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe PRC - [2006-03-02 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe PRC - [2006-03-02 14:00:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rundll32.exe PRC - [2006-03-02 14:00:00 | 000,032,256 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wpabaln.exe PRC - [2006-03-02 14:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2006-03-02 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe PRC - [2006-03-02 14:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe PRC - [2005-01-28 13:44:28 | 000,038,912 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wdfmgr.exe [color=#E56717]========== Modules (All) ==========[/color] MOD - [2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe MOD - [2010-04-16 17:37:04 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll MOD - [2009-06-25 10:48:08 | 000,056,320 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll MOD - [2009-04-15 17:18:19 | 000,584,192 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll MOD - [2009-03-21 16:21:24 | 001,014,784 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 12:22:08 | 000,686,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll MOD - [2009-02-09 12:22:06 | 000,722,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll MOD - [2008-10-23 15:01:37 | 000,283,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll MOD - [2008-07-03 15:16:27 | 008,483,328 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll MOD - [2006-03-02 14:00:00 | 001,281,024 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll MOD - [2006-03-02 14:00:00 | 001,050,624 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll MOD - [2006-03-02 14:00:00 | 000,996,352 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll MOD - [2006-03-02 14:00:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll MOD - [2006-03-02 14:00:00 | 000,729,088 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\userenv.dll MOD - [2006-03-02 14:00:00 | 000,578,560 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll MOD - [2006-03-02 14:00:00 | 000,553,472 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll MOD - [2006-03-02 14:00:00 | 000,501,248 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll MOD - [2006-03-02 14:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll MOD - [2006-03-02 14:00:00 | 000,294,400 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll MOD - [2006-03-02 14:00:00 | 000,279,552 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll MOD - [2006-03-02 14:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll MOD - [2006-03-02 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll MOD - [2006-03-02 14:00:00 | 000,172,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wldap32.dll MOD - [2006-03-02 14:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv MOD - [2006-03-02 14:00:00 | 000,119,808 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntmarta.dll MOD - [2006-03-02 14:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx MOD - [2006-03-02 14:00:00 | 000,083,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll MOD - [2006-03-02 14:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll MOD - [2006-03-02 14:00:00 | 000,064,000 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\samlib.dll MOD - [2006-03-02 14:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll MOD - [2006-03-02 14:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [Disabled | Stopped] -- D:\WINDOWS\System32\hidserv.dll -- (HidServ) SRV - File not found [On_Demand | Stopped] -- D:\WINDOWS\System32\appmgmts.dll -- (AppMgmt) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - File not found [Kernel | On_Demand | Running] -- D:\WINDOWS\System32\drivers\jprfun.sys -- (abp470n5) DRV - [2010-04-30 10:56:24 | 006,032,928 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2010-04-08 20:30:10 | 000,168,040 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- D:\WINDOWS\system32\DRIVERS\nvgts.sys -- (nvgts) DRV - [2010-03-04 12:02:10 | 000,013,824 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus) DRV - [2010-03-04 12:02:08 | 000,070,912 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD) DRV - [2009-11-18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt) DRV - [2009-11-18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt) DRV - [2009-07-03 05:11:18 | 008,087,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv) DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- D:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel) DRV - [2006-03-02 14:00:00 | 000,012,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS) DRV - [2005-01-07 17:07:18 | 000,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Hdaudbus.sys -- (HDAudBus) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/ IE - HKU\S-1-5-21-776561741-2139871995-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION) O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION) O3 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION) O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation) O4 - HKLM..\Run: [nwiz] D:\WINDOWS\System32\nwiz.exe () O4 - HKLM..\Run: [WinampAgent] D:\wunamp\Winamp\winampa.exe (Nullsoft, Inc.) O4 - HKU\S-1-5-21-776561741-2139871995-839522115-1004..\Run: [GAINWARD] D:\Program Files\EXPERTool\TBPanel.exe (Gainward Co.) O4 - HKU\S-1-5-21-776561741-2139871995-839522115-1004..\Run: [Steam] D:\Program Files\Steam\Steam.exe (Valve Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1 O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1 O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2009-10-14 17:27:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AUToPLaY\commanD - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\exploRe\COmmanD - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\oPen\cOmmaNd - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AUtopLAY\COMManD - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\expLore\COmMand - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\oPen\commaND - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoplaY\coMmand - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\exPlore\ComMand - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\opeN\cOmmaNd - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AUtOplAy\coMmand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\ExplOre\COMMand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\oPen\COmmand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoplaY\commANd - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoRun\command - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\exploRE\cOMmand - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\oPen\coMManD - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AUTopLAy\comMand - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AutoRun\command - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\expLoRE\cOMmanD - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\oPEn\commAnd - "" = F:\tsvptp.pif -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2010-08-20 17:10:25 | 000,575,488 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe [2010-08-20 16:11:39 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\Recent [2010-08-20 16:10:59 | 000,000,000 | ---D | C] -- D:\Program Files\CCleaner [2010-08-20 16:10:34 | 000,000,000 | ---D | C] -- D:\ccleaner [2010-08-20 16:06:39 | 000,000,000 | ---D | C] -- D:\Program Files\Alwil Software [2010-08-20 16:06:39 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-08-13 09:02:08 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Pulpit\ets [2010-08-11 20:57:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\UDL [2010-08-11 20:56:45 | 000,000,000 | ---D | C] -- D:\Program Files\ABBYY FineReader 6.0 Sprint [2010-08-11 20:52:12 | 000,000,000 | ---D | C] -- D:\Program Files\epson [2010-08-11 17:00:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\USB Vibration [2010-08-11 17:00:08 | 000,000,000 | ---D | C] -- D:\Program Files\USB Vibration [2010-08-09 21:14:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\German Truck Simulator [2010-08-09 20:42:54 | 000,000,000 | ---D | C] -- D:\Program Files\German Truck Simulator [2010-08-08 10:10:20 | 000,000,000 | ---D | C] -- D:\Program Files\Steam [2010-08-07 18:36:34 | 000,000,000 | ---D | C] -- D:\Program Files\Counter-Strike [2010-08-06 19:00:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Identities [2010-08-06 13:19:08 | 000,000,000 | ---D | C] -- D:\a13dd659cdf510fd4211 [2010-08-05 18:02:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader [2010-08-05 18:02:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\VDownloader [2010-08-05 18:01:14 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\pl-PL [2010-08-05 17:59:17 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer [2010-08-05 17:59:12 | 000,000,000 | ---D | C] -- D:\Program Files\MSBuild [2010-08-05 17:59:11 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-US [2010-08-05 17:59:02 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies [2010-08-05 17:58:30 | 000,000,000 | ---D | C] -- D:\f67aea37d808c381703dadfc4b662b [2010-08-05 17:57:45 | 000,000,000 | R-SD | C] -- D:\WINDOWS\assembly [2010-08-05 17:57:25 | 000,000,000 | ---D | C] -- D:\WINDOWS\Microsoft.NET [2010-08-05 17:56:48 | 000,000,000 | ---D | C] -- D:\Program Files\MSXML 6.0 [2010-08-05 17:41:21 | 000,000,000 | ---D | C] -- D:\Program Files\VDownloader [2010-08-03 14:10:27 | 000,221,184 | ---- | C] (Copyright to Jeremy) -- D:\Documents and Settings\paweł\Pulpit\AutoTalker X Pro 17.exe [2010-08-01 12:13:11 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\cache [2010-08-01 12:11:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10 [2010-07-31 23:10:38 | 000,000,000 | ---D | C] -- D:\WINDOWS\ServicePackFiles [2010-07-31 20:37:00 | 000,000,000 | ---D | C] -- D:\Program Files\Euro Truck Simulator [2010-07-31 18:09:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Lang [2010-07-31 18:08:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\RTCOM [2010-07-31 18:07:23 | 000,358,944 | ---- | C] (Realtek Semiconductor Crop.) -- D:\WINDOWS\vncutil.exe [2010-07-31 18:07:15 | 000,129,568 | ---- | C] (Realtek Semiconductor) -- D:\WINDOWS\RtkAudioService.exe [2010-07-31 18:06:58 | 001,691,480 | ---- | C] (Creative) -- D:\WINDOWS\System32\drivers\Ambfilt.sys [2010-07-31 18:06:56 | 002,815,520 | ---- | C] (RealTek Semicoductor Corp.) -- D:\WINDOWS\ALCWZRD.EXE [2010-07-31 18:06:56 | 000,000,000 | ---D | C] -- D:\Program Files\Realtek [2010-07-31 18:06:48 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\InstallShield [2010-07-31 18:01:14 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ReinstallBackups [2010-07-31 18:00:59 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation [2010-07-31 14:23:53 | 000,000,000 | ---D | C] -- D:\Program Files\Lavalys [2010-07-31 11:08:43 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Adobe [2010-07-31 09:14:24 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-07-31 09:14:01 | 000,000,000 | ---D | C] -- D:\Program Files\Gadu-Gadu 10 [2010-07-31 09:05:47 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot_bak [2010-07-30 22:37:23 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\PreInstall [2010-07-30 12:20:03 | 000,000,000 | ---D | C] -- D:\WINDOWS\Sun [2010-07-30 12:05:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Sun [2010-07-30 12:05:16 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java [2010-07-30 12:04:54 | 000,000,000 | ---D | C] -- D:\Program Files\Java [2010-07-30 12:02:34 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Sun [2010-07-30 11:46:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Macromedia [2010-07-30 11:46:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Adobe [2010-07-30 11:42:28 | 000,000,000 | ---D | C] -- D:\WINDOWS\RegisteredPackages [2010-07-30 11:41:23 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Winamp [2010-07-30 11:40:35 | 000,000,000 | ---D | C] -- D:\wunamp [2010-07-30 11:33:27 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\SoftwareDistribution [2010-07-30 11:32:18 | 000,000,000 | ---D | C] -- D:\Program Files\SAGEM [2010-07-28 14:07:32 | 000,000,000 | ---D | C] -- D:\Winamp [2010-07-27 17:05:22 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies [2010-07-27 17:05:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA [2010-07-27 17:05:11 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard [2010-07-27 17:04:06 | 000,000,000 | -H-D | C] -- D:\WINDOWS\$MSI31Uninstall_KB893803v2$ [2010-07-27 17:02:20 | 000,000,000 | ---D | C] -- D:\WINDOWS\Logs [2010-07-27 17:02:17 | 000,000,000 | ---D | C] -- D:\Program Files\EXPERTool [2010-07-27 11:26:39 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\WinRAR [2010-07-27 11:26:17 | 000,000,000 | ---D | C] -- D:\Program Files\WinRAR [2010-07-27 11:21:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Opera [2010-07-27 11:21:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Opera [2010-07-27 11:21:36 | 000,000,000 | ---D | C] -- D:\Program Files\Opera [2010-07-26 20:07:58 | 000,000,000 | -HSD | C] -- D:\WINDOWS\Installer [2010-07-26 20:07:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\ODBC [2010-07-26 20:07:53 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\SpeechEngines [2010-07-26 20:07:52 | 000,000,000 | R--D | C] -- D:\Program Files [2010-07-26 20:07:52 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Microsoft Shared [2010-07-26 20:07:52 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files [2010-07-26 20:07:26 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Menu Start [2010-07-26 20:07:26 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty [2010-07-26 20:07:26 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\All Users\Szablony [2010-07-26 20:07:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Ulubione [2010-07-26 20:07:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Pulpit [2010-07-26 20:07:13 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot2 [2010-07-26 20:07:13 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot [2010-07-26 20:07:07 | 000,000,000 | --SD | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft [2010-07-26 20:07:07 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\All Users\Dane aplikacji [2010-07-26 20:06:40 | 000,000,000 | -HSD | C] -- D:\System Volume Information [2010-07-26 20:06:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings [2010-07-26 20:01:37 | 000,000,000 | R-SD | C] -- D:\WINDOWS\Fonts [2010-07-26 20:01:37 | 000,000,000 | RHSD | C] -- D:\WINDOWS\System32\dllcache [2010-07-26 20:01:37 | 000,000,000 | R--D | C] -- D:\WINDOWS\Web [2010-07-26 20:01:37 | 000,000,000 | -H-D | C] -- D:\WINDOWS\inf [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\WinSxS [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wins [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wbem [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\usmt [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\twain_32 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Temp [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\system32 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\system [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\spool [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ShellExt [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Setup [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\security [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Resources [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\repair [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ras [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Provisioning [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\PeerNet [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\pchealth [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\oobe [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\npp [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\mui [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\mui [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\msapps [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\msagent [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Media [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\java [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\inetsrv [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\IME [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\ime [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\icsxml [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ias [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Help [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\export [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\etc [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Driver Cache [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\disdn [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\dhcp [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Debug [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Cursors [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Connection Wizard [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\config [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Config [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\AppPatch [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\addins [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3com_dmi [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3076 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\2052 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1054 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1045 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1042 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1041 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1037 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1033 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1031 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1028 [2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1025 [2010-07-26 19:04:30 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\UserData [2010-07-26 19:03:41 | 000,000,000 | ---D | C] -- D:\Avast Antywirus [2010-07-26 19:00:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\InstallShield [2010-07-26 18:45:13 | 000,000,000 | -HSD | C] -- D:\RECYCLER [2010-07-26 18:38:16 | 000,000,000 | -H-D | C] -- D:\Program Files\InstallShield Installation Information [2010-07-26 18:33:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Identities [2010-07-26 18:33:28 | 000,000,000 | -H-D | C] -- D:\Program Files\Uninstall Information [2010-07-26 18:33:25 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\Moje obrazy [2010-07-26 18:33:25 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\Moja muzyka [2010-07-26 18:33:21 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Microsoft [2010-07-26 18:33:21 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\Cookies [2010-07-26 18:33:21 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\SendTo [2010-07-26 18:33:21 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\Dane aplikacji [2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Ulubione [2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty [2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Menu Start [2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne [2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\Szablony [2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\PrintHood [2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\NetHood [2010-07-26 18:33:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Pulpit [2010-07-26 18:33:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-26 18:32:25 | 000,000,000 | ---D | C] -- D:\WINDOWS\SoftwareDistribution [2010-07-26 18:32:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\Prefetch [2010-07-26 18:32:14 | 000,000,000 | --SD | C] -- D:\WINDOWS\System32\Microsoft [2010-07-26 18:32:13 | 000,000,000 | --SD | C] -- D:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2010-07-26 18:32:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-26 18:19:00 | 000,000,000 | ---D | C] -- D:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2010-07-26 18:18:59 | 000,000,000 | --SD | C] -- D:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2010-07-26 18:17:20 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia330.dll [2010-07-26 18:17:20 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia001.dll [2010-07-26 18:17:20 | 000,026,624 | ---- | C] (RICOH Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rw330ext.dll [2010-07-26 18:16:23 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- D:\WINDOWS\System32\dllcache\cap7146.sys [2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xircom [2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\Program Files\xerox [2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\Program Files\microsoft frontpage [2010-07-26 18:15:59 | 000,000,000 | -H-D | C] -- D:\WINDOWS\$hf_mig$ [2010-07-26 18:15:03 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\All Users\DRM [2010-07-26 18:14:56 | 000,000,000 | --SD | C] -- D:\WINDOWS\Downloaded Program Files [2010-07-26 18:14:56 | 000,000,000 | R--D | C] -- D:\WINDOWS\Offline Web Pages [2010-07-26 18:14:48 | 000,000,000 | -H-D | C] -- D:\Program Files\WindowsUpdate [2010-07-26 18:14:45 | 000,000,000 | ---D | C] -- D:\Program Files\Usługi online [2010-07-26 18:14:30 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\DirectX [2010-07-26 18:13:54 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Services [2010-07-26 18:13:51 | 000,000,000 | --SD | C] -- D:\WINDOWS\Tasks [2010-07-26 18:13:50 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\MSSoap [2010-07-26 18:13:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\srchasst [2010-07-26 18:13:43 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Macromed [2010-07-26 18:13:31 | 000,000,000 | ---D | C] -- D:\Program Files\Movie Maker [2010-07-26 18:13:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Restore [2010-07-26 18:13:16 | 000,000,000 | ---D | C] -- D:\Program Files\NetMeeting [2010-07-26 18:13:11 | 000,000,000 | ---D | C] -- D:\Program Files\Outlook Express [2010-07-26 18:13:03 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\System [2010-07-26 18:13:02 | 000,000,000 | ---D | C] -- D:\Program Files\Internet Explorer [2010-07-26 18:13:01 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty\Moje obrazy [2010-07-26 18:12:51 | 000,000,000 | ---D | C] -- D:\Program Files\ComPlus Applications [2010-07-26 18:12:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\Registration [2010-07-26 18:12:22 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty\Moja muzyka [2010-07-26 18:12:22 | 000,000,000 | ---D | C] -- D:\Program Files\Windows Media Player [2010-07-26 18:12:17 | 000,000,000 | ---D | C] -- D:\Program Files\Messenger [2010-07-26 18:12:13 | 000,000,000 | ---D | C] -- D:\Program Files\MSN Gaming Zone [2010-07-26 18:11:46 | 000,283,136 | ---- | C] (Cinematronics) -- D:\WINDOWS\System32\dllcache\pinball.exe [2010-07-26 18:11:44 | 000,000,000 | ---D | C] -- D:\Program Files\Windows NT [2010-07-26 18:11:40 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\MsDtc [2010-07-26 18:11:38 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Com [4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2010-08-20 17:12:00 | 000,000,118 | ---- | M] () -- D:\WINDOWS\System32\MRT.INI [2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe [2010-08-20 17:07:42 | 000,235,289 | ---- | M] () -- D:\WINDOWS\System32\NvApps.xml [2010-08-20 17:07:37 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT [2010-08-20 17:07:35 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat [2010-08-20 17:03:14 | 000,000,480 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\fix.reg [2010-08-20 16:11:00 | 000,000,682 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\CCleaner.lnk [2010-08-20 16:10:33 | 001,835,008 | -H-- | M] () -- D:\Documents and Settings\paweł\NTUSER.DAT [2010-08-20 15:36:38 | 000,001,709 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\admini.doc [2010-08-20 07:38:57 | 000,006,132 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl [2010-08-19 22:26:01 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\paweł\ntuser.ini [2010-08-19 22:25:54 | 003,195,358 | -H-- | M] () -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-08-18 16:25:51 | 000,000,046 | ---- | M] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences.dat [2010-08-18 15:58:51 | 000,000,099 | ---- | M] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences2.dat [2010-08-18 13:09:26 | 000,001,821 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\przxyda sie.doc [2010-08-18 12:44:01 | 000,000,409 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\for.inf [2010-08-11 21:00:01 | 000,001,907 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\EPSON File Manager.lnk [2010-08-11 20:55:58 | 000,001,803 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\ESDX5000_CX4900 Przewodnik użytkownika.lnk [2010-08-11 20:52:13 | 000,000,665 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\EPSON Scan.lnk [2010-08-11 20:51:58 | 000,000,026 | ---- | M] () -- D:\WINDOWS\CDE DX5000.ini [2010-08-11 14:32:52 | 003,194,460 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\dupa.JPG [2010-08-09 20:43:28 | 000,001,006 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\German Truck Simulator.lnk [2010-08-08 12:51:46 | 000,001,627 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Counter-Strike.lnk [2010-08-08 12:51:46 | 000,001,572 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Half-Life.lnk [2010-08-06 22:07:49 | 001,042,454 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI [2010-08-06 22:07:49 | 000,490,284 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat [2010-08-06 22:07:49 | 000,432,356 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat [2010-08-06 22:07:49 | 000,083,660 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat [2010-08-06 22:07:49 | 000,067,312 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat [2010-08-06 21:58:36 | 000,001,355 | ---- | M] () -- D:\WINDOWS\imsins.BAK [2010-08-06 20:54:03 | 002,359,350 | ---- | M] () -- D:\Documents and Settings\paweł\Moje dokumenty\dsdsadfasfsaf.bmp [2010-08-05 20:15:58 | 000,096,664 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-08-05 18:02:16 | 000,012,328 | ---- | M] () -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-08-05 17:41:22 | 000,001,538 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\VDownloader.lnk [2010-07-31 18:09:49 | 000,940,794 | ---- | M] () -- D:\WINDOWS\System32\LoopyMusic.wav [2010-07-31 18:09:49 | 000,146,650 | ---- | M] () -- D:\WINDOWS\System32\BuzzingBee.wav [2010-07-31 14:23:54 | 000,000,787 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\EVEREST Ultimate Edition.lnk [2010-07-30 12:20:16 | 000,000,000 | ---- | M] () -- D:\Documents and Settings\paweł\jagex__preferences3.dat [2010-07-30 12:18:06 | 043,870,568 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\e-l-o.exe [2010-07-30 11:42:49 | 000,000,587 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-07-30 11:42:43 | 000,316,640 | ---- | M] () -- D:\WINDOWS\WMSysPr9.prx [2010-07-30 11:32:19 | 000,001,763 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Konfiguracja.lnk [2010-07-30 11:32:19 | 000,000,163 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\neostrada tp.url [2010-07-28 12:57:16 | 000,221,184 | ---- | M] (Copyright to Jeremy) -- D:\Documents and Settings\paweł\Pulpit\AutoTalker X Pro 17.exe [2010-07-27 19:46:48 | 000,000,572 | ---- | M] () -- D:\Documents and Settings\paweł\Moje dokumenty\spider.sav [2010-07-27 17:02:18 | 000,000,628 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\EXPERTool.lnk [2010-07-27 16:58:28 | 000,000,664 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat [2010-07-27 11:21:40 | 000,000,592 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-07-27 10:20:18 | 003,035,825 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\livebox_USB_366819556.zip [2010-07-27 08:24:30 | 000,000,267 | ---- | M] () -- D:\WINDOWS\system.ini [2010-07-26 18:33:58 | 000,000,104 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Mój komputer.lnk [2010-07-26 18:19:02 | 000,008,192 | ---- | M] () -- D:\WINDOWS\REGLOCS.OLD [2010-07-26 18:17:44 | 000,000,560 | ---- | M] () -- D:\WINDOWS\System32\$winnt$.inf [2010-07-26 18:15:47 | 000,002,596 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT [2010-07-26 18:15:47 | 000,000,000 | ---- | M] () -- D:\WINDOWS\control.ini [2010-07-26 18:15:46 | 000,000,477 | ---- | M] () -- D:\WINDOWS\win.ini [2010-07-26 18:15:44 | 000,023,392 | ---- | M] () -- D:\WINDOWS\System32\nscompat.tlb [2010-07-26 18:15:44 | 000,016,832 | ---- | M] () -- D:\WINDOWS\System32\amcompat.tlb [2010-07-26 18:15:34 | 000,004,293 | ---- | M] () -- D:\WINDOWS\ODBCINST.INI [2010-07-26 18:14:56 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\WindowsLogon.manifest [2010-07-26 18:14:56 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\logonui.exe.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\WindowsShell.Manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\sapi.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\nwc.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-26 18:13:00 | 000,021,856 | ---- | M] () -- D:\WINDOWS\System32\emptyregdb.dat [2010-07-26 18:12:49 | 000,000,037 | ---- | M] () -- D:\WINDOWS\vbaddin.ini [2010-07-26 18:12:49 | 000,000,036 | ---- | M] () -- D:\WINDOWS\vb.ini [4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ] [1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-08-20 17:11:59 | 000,000,118 | ---- | C] () -- D:\WINDOWS\System32\MRT.INI [2010-08-20 17:03:14 | 000,000,480 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\fix.reg [2010-08-20 16:11:00 | 000,000,682 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\CCleaner.lnk [2010-08-18 12:40:46 | 000,001,821 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\przxyda sie.doc [2010-08-18 12:38:37 | 000,000,409 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\for.inf [2010-08-11 21:04:23 | 003,194,460 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\dupa.JPG [2010-08-11 21:00:01 | 000,001,907 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\EPSON File Manager.lnk [2010-08-11 20:56:11 | 000,111,932 | ---- | C] () -- D:\WINDOWS\System32\EPPICPrinterDB.dat [2010-08-11 20:56:11 | 000,031,053 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern131.dat [2010-08-11 20:56:11 | 000,027,417 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern121.dat [2010-08-11 20:56:11 | 000,026,154 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern1.dat [2010-08-11 20:56:11 | 000,024,903 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern3.dat [2010-08-11 20:56:11 | 000,021,390 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern5.dat [2010-08-11 20:56:11 | 000,020,148 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern2.dat [2010-08-11 20:56:11 | 000,013,732 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_EN.cfg [2010-08-11 20:56:11 | 000,011,811 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern4.dat [2010-08-11 20:56:11 | 000,006,442 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_IT.cfg [2010-08-11 20:56:11 | 000,006,347 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_PT.cfg [2010-08-11 20:56:11 | 000,006,347 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_BP.cfg [2010-08-11 20:56:11 | 000,006,335 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_GE.cfg [2010-08-11 20:56:11 | 000,006,195 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_FR.cfg [2010-08-11 20:56:11 | 000,006,195 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_CF.cfg [2010-08-11 20:56:11 | 000,006,122 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_DU.cfg [2010-08-11 20:56:11 | 000,006,103 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_ES.cfg [2010-08-11 20:56:11 | 000,005,817 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_KO.cfg [2010-08-11 20:56:11 | 000,005,436 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_SC.cfg [2010-08-11 20:56:11 | 000,004,943 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern6.dat [2010-08-11 20:56:11 | 000,002,889 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_RU.cfg [2010-08-11 20:56:11 | 000,002,426 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_TC.cfg [2010-08-11 20:56:11 | 000,001,146 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_DU.dat [2010-08-11 20:56:11 | 000,001,139 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_PT.dat [2010-08-11 20:56:11 | 000,001,139 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_BP.dat [2010-08-11 20:56:11 | 000,001,136 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_ES.dat [2010-08-11 20:56:11 | 000,001,129 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_FR.dat [2010-08-11 20:56:11 | 000,001,129 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_CF.dat [2010-08-11 20:56:11 | 000,001,120 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_IT.dat [2010-08-11 20:56:11 | 000,001,107 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_GE.dat [2010-08-11 20:56:11 | 000,001,104 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_EN.dat [2010-08-11 20:56:11 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\PICSDK.ini [2010-08-11 20:55:58 | 000,001,803 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\ESDX5000_CX4900 Przewodnik użytkownika.lnk [2010-08-11 20:52:13 | 000,000,665 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\EPSON Scan.lnk [2010-08-11 20:51:58 | 000,000,026 | ---- | C] () -- D:\WINDOWS\CDE DX5000.ini [2010-08-10 21:45:25 | 000,062,304 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-08-09 20:43:28 | 000,001,006 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\German Truck Simulator.lnk [2010-08-08 12:51:46 | 000,001,627 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Counter-Strike.lnk [2010-08-07 20:07:04 | 000,001,572 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Half-Life.lnk [2010-08-06 20:53:31 | 002,359,350 | ---- | C] () -- D:\Documents and Settings\paweł\Moje dokumenty\dsdsadfasfsaf.bmp [2010-08-05 21:17:34 | 000,001,709 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\admini.doc [2010-08-05 17:41:22 | 000,001,538 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\VDownloader.lnk [2010-07-31 18:09:49 | 000,940,794 | ---- | C] () -- D:\WINDOWS\System32\LoopyMusic.wav [2010-07-31 18:09:49 | 000,146,650 | ---- | C] () -- D:\WINDOWS\System32\BuzzingBee.wav [2010-07-31 18:01:02 | 000,010,084 | ---- | C] () -- D:\WINDOWS\System32\drivers\nvphy.bin [2010-07-31 14:23:54 | 000,000,787 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\EVEREST Ultimate Edition.lnk [2010-07-30 12:20:16 | 000,000,099 | ---- | C] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences2.dat [2010-07-30 12:20:16 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\paweł\jagex__preferences3.dat [2010-07-30 12:20:08 | 000,000,046 | ---- | C] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences.dat [2010-07-30 12:05:58 | 043,870,568 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\e-l-o.exe [2010-07-30 11:42:49 | 000,000,587 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Winamp.lnk [2010-07-30 11:32:19 | 000,001,763 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Konfiguracja.lnk [2010-07-30 11:32:19 | 000,000,163 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\neostrada tp.url [2010-07-27 17:03:46 | 000,019,495 | ---- | C] () -- D:\WINDOWS\System32\nvdisp.nvu [2010-07-27 17:02:18 | 000,000,628 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\EXPERTool.lnk [2010-07-27 14:42:18 | 000,000,664 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat [2010-07-27 11:26:08 | 001,386,941 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\wrar380pl.exe [2010-07-27 11:21:40 | 000,000,592 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk [2010-07-27 11:19:02 | 003,035,825 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\livebox_USB_366819556.zip [2010-07-26 20:54:53 | 000,000,572 | ---- | C] () -- D:\Documents and Settings\paweł\Moje dokumenty\spider.sav [2010-07-26 20:08:00 | 000,001,355 | ---- | C] () -- D:\WINDOWS\imsins.BAK [2010-07-26 20:07:55 | 001,685,606 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.spd [2010-07-26 20:07:55 | 000,000,888 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.sdf [2010-07-26 20:07:54 | 000,605,050 | ---- | C] () -- D:\WINDOWS\System32\dllcache\r1033tts.lxa [2010-07-26 20:07:53 | 000,643,717 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ltts1033.lxa [2010-07-26 20:07:51 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28603.nls [2010-07-26 20:07:51 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28603.nls [2010-07-26 20:07:49 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_857.nls [2010-07-26 20:07:49 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_857.nls [2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28599.nls [2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28599.nls [2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10081.nls [2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10081.nls [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28595.nls [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28595.NLS [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10017.nls [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10017.nls [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10007.nls [2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10007.nls [2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_869.nls [2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_869.nls [2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_737.nls [2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_737.nls [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_875.nls [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_875.nls [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28597.nls [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28597.NLS [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10006.nls [2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10006.nls [2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_866.nls [2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_866.nls [2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_855.nls [2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_855.nls [2010-07-26 20:07:42 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28594.nls [2010-07-26 20:07:42 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28594.NLS [2010-07-26 20:07:41 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20127.nls [2010-07-26 20:07:41 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_20127.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10082.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10082.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10029.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10029.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10010.nls [2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10010.nls [2010-07-26 20:07:34 | 000,001,734 | ---- | C] () -- D:\WINDOWS\System32\AUTOEXEC.NT [2010-07-26 20:07:24 | 001,896,400 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5.CAT [2010-07-26 20:07:24 | 001,014,483 | ---- | C] () -- D:\WINDOWS\System32\dllcache\SP2.CAT [2010-07-26 20:07:24 | 000,808,524 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5IIS.CAT [2010-07-26 20:07:24 | 000,525,346 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5INF.CAT [2010-07-26 20:07:24 | 000,399,670 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MAPIMIG.CAT [2010-07-26 20:07:24 | 000,168,806 | ---- | C] () -- D:\WINDOWS\System32\dllcache\startoc.cat [2010-07-26 20:07:24 | 000,037,509 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MW770.CAT [2010-07-26 20:07:24 | 000,030,983 | ---- | C] () -- D:\WINDOWS\System32\dllcache\FP4.CAT [2010-07-26 20:07:24 | 000,014,043 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IMS.CAT [2010-07-26 20:07:24 | 000,013,497 | ---- | C] () -- D:\WINDOWS\System32\dllcache\HPCRDP.CAT [2010-07-26 20:07:24 | 000,009,581 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSMSGS.CAT [2010-07-26 20:07:24 | 000,008,599 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IASNT4.CAT [2010-07-26 20:07:24 | 000,007,407 | ---- | C] () -- D:\WINDOWS\System32\dllcache\OEMBIOS.CAT [2010-07-26 20:07:24 | 000,007,334 | ---- | C] () -- D:\WINDOWS\System32\dllcache\wmerrenu.cat [2010-07-26 20:07:24 | 000,007,245 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSTSWEB.CAT [2010-07-26 20:06:39 | 000,096,664 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT [2010-07-26 20:05:50 | 000,000,560 | ---- | C] () -- D:\WINDOWS\System32\$winnt$.inf [2010-07-26 18:33:58 | 000,000,104 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Mój komputer.lnk [2010-07-26 18:33:22 | 000,024,576 | -H-- | C] () -- D:\Documents and Settings\paweł\ntuser.dat.LOG [2010-07-26 18:33:22 | 000,000,188 | -HS- | C] () -- D:\Documents and Settings\paweł\ntuser.ini [2010-07-26 18:33:21 | 001,835,008 | -H-- | C] () -- D:\Documents and Settings\paweł\NTUSER.DAT [2010-07-26 18:19:02 | 000,008,192 | ---- | C] () -- D:\WINDOWS\REGLOCS.OLD [2010-07-26 18:17:42 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat [2010-07-26 18:17:38 | 000,028,288 | ---- | C] () -- D:\WINDOWS\System32\dllcache\xjis.nls [2010-07-26 18:17:17 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prcp.nls [2010-07-26 18:17:17 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prc.nls [2010-07-26 18:17:16 | 000,175,104 | ---- | C] () -- D:\WINDOWS\System32\dllcache\pintlcsa.dll [2010-07-26 18:17:05 | 000,047,066 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ksc.nls [2010-07-26 18:17:04 | 001,158,818 | ---- | C] () -- D:\WINDOWS\System32\dllcache\korwbrkr.lex [2010-07-26 18:16:59 | 000,196,665 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imjpinst.exe [2010-07-26 18:16:59 | 000,059,392 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imscinst.exe [2010-07-26 18:16:56 | 000,134,339 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imekr.lex [2010-07-26 18:16:44 | 013,463,552 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hwxjpn.dll [2010-07-26 18:16:37 | 000,108,827 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hanja.lex [2010-07-26 18:16:35 | 000,094,208 | ---- | C] () -- D:\WINDOWS\System32\dllcache\fpencode.dll [2010-07-26 18:16:26 | 000,173,568 | ---- | C] () -- D:\WINDOWS\System32\dllcache\chtskf.dll [2010-07-26 18:16:22 | 000,180,770 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20932.nls [2010-07-26 18:16:22 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20949.nls [2010-07-26 18:16:22 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20936.nls [2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_864.nls [2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_862.nls [2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_858.nls [2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_720.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_870.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_708.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28596.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21027.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21025.nls [2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20924.nls [2010-07-26 18:16:21 | 000,187,938 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20005.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20880.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20871.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20838.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20833.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20424.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20423.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20420.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20297.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20290.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20285.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20284.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20280.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20278.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20277.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20273.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20269.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20108.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20107.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20106.nls [2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20105.nls [2010-07-26 18:16:20 | 000,189,986 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1361.nls [2010-07-26 18:16:20 | 000,186,402 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20001.nls [2010-07-26 18:16:20 | 000,185,378 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20003.nls [2010-07-26 18:16:20 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20004.nls [2010-07-26 18:16:20 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20000.nls [2010-07-26 18:16:20 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20002.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1149.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1148.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1147.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1146.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1145.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1144.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1143.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1142.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1141.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1140.nls [2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1047.nls [2010-07-26 18:16:19 | 000,195,618 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10002.nls [2010-07-26 18:16:19 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10003.nls [2010-07-26 18:16:19 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10008.nls [2010-07-26 18:16:19 | 000,162,850 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10001.nls [2010-07-26 18:16:19 | 000,082,172 | ---- | C] () -- D:\WINDOWS\System32\dllcache\bopomofo.nls [2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10021.nls [2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10005.nls [2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10004.nls [2010-07-26 18:16:18 | 000,066,728 | ---- | C] () -- D:\WINDOWS\System32\dllcache\big5.nls [2010-07-26 18:15:47 | 000,002,596 | ---- | C] () -- D:\WINDOWS\System32\CONFIG.NT [2010-07-26 18:15:44 | 000,023,392 | ---- | C] () -- D:\WINDOWS\System32\nscompat.tlb [2010-07-26 18:15:44 | 000,016,832 | ---- | C] () -- D:\WINDOWS\System32\amcompat.tlb [2010-07-26 18:15:43 | 000,316,640 | ---- | C] () -- D:\WINDOWS\WMSysPr9.prx [2010-07-26 18:14:56 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\WindowsLogon.manifest [2010-07-26 18:14:56 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\logonui.exe.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\WindowsShell.Manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\sapi.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\nwc.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\ncpa.cpl.manifest [2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\cdplayer.exe.manifest [2010-07-26 18:14:36 | 004,399,505 | ---- | C] () -- D:\WINDOWS\System32\dllcache\nls302en.lex [2010-07-26 18:14:03 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt256.bmp [2010-07-26 18:14:03 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt.bmp [2010-07-26 18:13:56 | 000,000,984 | ---- | C] () -- D:\WINDOWS\System32\dllcache\srframe.mmf [2010-07-26 18:13:40 | 000,004,639 | ---- | C] () -- D:\WINDOWS\System32\dllcache\mplayer2.exe [2010-07-26 18:13:24 | 000,379,904 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msinfo.dll [2010-07-26 18:13:00 | 000,021,856 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat [2010-07-26 18:11:59 | 000,065,954 | ---- | C] () -- D:\WINDOWS\Pod mikroskopem.bmp [2010-07-26 18:11:59 | 000,065,832 | ---- | C] () -- D:\WINDOWS\Stiuk z Santa Fe.bmp [2010-07-26 18:11:59 | 000,026,680 | ---- | C] () -- D:\WINDOWS\Wachlarze.bmp [2010-07-26 18:11:59 | 000,017,362 | ---- | C] () -- D:\WINDOWS\Rododendron.bmp [2010-07-26 18:11:59 | 000,009,522 | ---- | C] () -- D:\WINDOWS\Indiański pled.bmp [2010-07-26 18:11:58 | 000,093,702 | ---- | C] () -- D:\WINDOWS\System32\subrange.uce [2010-07-26 18:11:58 | 000,065,978 | ---- | C] () -- D:\WINDOWS\Bąbelki.bmp [2010-07-26 18:11:58 | 000,026,582 | ---- | C] () -- D:\WINDOWS\Nefryt.bmp [2010-07-26 18:11:58 | 000,017,336 | ---- | C] () -- D:\WINDOWS\Na rybkach.bmp [2010-07-26 18:11:58 | 000,017,062 | ---- | C] () -- D:\WINDOWS\Kawa.bmp [2010-07-26 18:11:58 | 000,016,730 | ---- | C] () -- D:\WINDOWS\Puch.bmp [2010-07-26 18:11:58 | 000,001,272 | ---- | C] () -- D:\WINDOWS\Niebieska koronka 16.bmp [2010-07-26 18:11:57 | 000,060,458 | ---- | C] () -- D:\WINDOWS\System32\ideograf.uce [2010-07-26 18:11:57 | 000,024,006 | ---- | C] () -- D:\WINDOWS\System32\gb2312.uce [2010-07-26 18:11:57 | 000,022,984 | ---- | C] () -- D:\WINDOWS\System32\bopomofo.uce [2010-07-26 18:11:57 | 000,016,740 | ---- | C] () -- D:\WINDOWS\System32\shiftjis.uce [2010-07-26 18:11:57 | 000,012,876 | ---- | C] () -- D:\WINDOWS\System32\korean.uce [2010-07-26 18:11:57 | 000,008,484 | ---- | C] () -- D:\WINDOWS\System32\kanji_2.uce [2010-07-26 18:11:57 | 000,006,948 | ---- | C] () -- D:\WINDOWS\System32\kanji_1.uce [2010-07-26 18:11:55 | 000,001,225 | ---- | C] () -- D:\WINDOWS\System32\usrlogon.cmd [2010-07-26 18:11:54 | 000,003,286 | ---- | C] () -- D:\WINDOWS\System32\tslabels.h [2010-07-26 18:11:53 | 000,000,768 | ---- | C] () -- D:\WINDOWS\System32\msdtcprf.h [2010-07-26 18:11:47 | 000,063,488 | ---- | C] () -- D:\WINDOWS\System32\wmimgmt.msc [2009-07-03 05:11:18 | 000,007,274 | ---- | C] () -- D:\WINDOWS\cadx2.ini [2009-06-10 08:29:34 | 001,724,416 | ---- | C] () -- D:\WINDOWS\System32\nvwdmcpl.dll [2009-06-10 08:29:34 | 001,101,824 | ---- | C] () -- D:\WINDOWS\System32\nvwimg.dll [2009-06-10 08:29:34 | 000,466,944 | ---- | C] () -- D:\WINDOWS\System32\nvshell.dll [2009-06-10 08:29:32 | 001,507,328 | ---- | C] () -- D:\WINDOWS\System32\nview.dll [2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll [2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll [2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll [2006-03-02 14:00:00 | 000,027,440 | ---- | C] () -- D:\WINDOWS\System32\drivers\secdrv.sys [color=#E56717]========== LOP Check ==========[/color] [2010-08-20 16:06:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-07-31 09:14:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-08-11 20:58:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\UDL [2010-08-07 18:46:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10 [2010-07-27 11:21:45 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\Opera [2010-08-05 18:02:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader [color=#E56717]========== Purity Check ==========[/color] < End of report >[/log]Tutaj z programu RIST Z programu RIST notatnik o nazwie LOG [log]Logfile of random's system information tool 1.08 (written by random/random) Run by paweł at 2010-08-20 17:18:09 Microsoft Windows XP Home Edition Dodatek Service Pack 2 System drive D: has 54 GB (82%) free of 66 GB Total RAM: 2047 MB (77% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 17:18:15, on 2010-08-20 Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Boot mode: Normal Running processes: D:\WINDOWS\System32\smss.exe D:\WINDOWS\system32\winlogon.exe D:\WINDOWS\system32\services.exe D:\WINDOWS\system32\lsass.exe D:\WINDOWS\system32\nvsvc32.exe D:\WINDOWS\system32\svchost.exe D:\WINDOWS\System32\svchost.exe D:\WINDOWS\system32\spoolsv.exe D:\Program Files\Java\jre6\bin\jqs.exe D:\WINDOWS\system32\svchost.exe D:\WINDOWS\system32\wuauclt.exe D:\WINDOWS\Explorer.EXE D:\WINDOWS\system32\RUNDLL32.EXE D:\wunamp\Winamp\winampa.exe D:\Program Files\Common Files\Java\Java Update\jusched.exe D:\WINDOWS\RTHDCPL.EXE D:\WINDOWS\system32\ctfmon.exe D:\Program Files\EXPERTool\TBPanel.exe D:\WINDOWS\System32\svchost.exe D:\Program Files\Opera\opera.exe D:\WINDOWS\system32\wuauclt.exe D:\WINDOWS\system32\wpabaln.exe D:\wunamp\Winamp\winamp.exe D:\Documents and Settings\paweł\Pulpit\RSIT.exe D:\Program Files\trend micro\paweł.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WinampAgent] D:\wunamp\Winamp\winampa.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [MRT] "D:\WINDOWS\system32\MRT.exe" /R O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [GAINWARD] D:\Program Files\EXPERTool\TBPanel.exe /A O4 - HKCU\..\Run: [Steam] "D:\Program Files\Steam\Steam.exe" -silent O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1 O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe -- End of file - 3751 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-07-30 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-07-30 79648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}] EpsonToolBandKicker Class - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "nwiz"=nwiz.exe /install [] "NvMediaCenter"=D:\WINDOWS\system32\NvMcTray.dll [2009-06-10 86016] "NvCplDaemon"=D:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464] "WinampAgent"=D:\wunamp\Winamp\winampa.exe [2010-07-12 74752] "SunJavaUpdateSched"=D:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552] "RTHDCPL"=D:\WINDOWS\RTHDCPL.EXE [2010-04-30 19523616] "MRT"=D:\WINDOWS\system32\MRT.exe [2010-08-03 35962312] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2006-03-02 15360] "GAINWARD"=D:\Program Files\EXPERTool\TBPanel.exe [2009-05-12 2181672] "Steam"=D:\Program Files\Steam\Steam.exe [2010-08-20 1320272] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System] "DisableTaskMgr"=1 "DisableRegistryTools"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 "EnableLUA"=0 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "F:\nsiyj.exe"="F:\nsiyj.exe:*:Enabled:ipsec" "D:\WINDOWS\Explorer.EXE"="D:\WINDOWS\Explorer.EXE:*:Enabled:ipsec" "D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\Opera.exe:*:Enabled:ipsec" "D:\Counter Strike NS\cstrike.exe"="D:\Counter Strike NS\cstrike.exe:*:Enabled:ipsec" "D:\WINDOWS\system32\ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec" "D:\WINDOWS\system32\wpabaln.exe"="D:\WINDOWS\system32\wpabaln.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ovvnl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ovvnl.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxxkmm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxxkmm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjbero.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjbero.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fmhff.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fmhff.exe:*:Enabled:ipsec" "D:\WINDOWS\system32\RUNDLL32.EXE"="D:\WINDOWS\system32\RUNDLL32.EXE:*:Enabled:ipsec" "D:\WINDOWS\system32\nwiz.exe"="D:\WINDOWS\system32\nwiz.exe:*:Enabled:ipsec" "D:\WINDOWS\system32\userinit.exe"="D:\WINDOWS\system32\userinit.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winugoa.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winugoa.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\jpir.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\jpir.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winydbt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winydbt.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxphj.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxphj.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\eyrcr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\eyrcr.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winimdqll.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winimdqll.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winqrhq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winqrhq.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winpqbg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winpqbg.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winvqlow.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winvqlow.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qvlst.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qvlst.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winaqmd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winaqmd.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qdeeum.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qdeeum.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wife.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wife.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ojgny.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ojgny.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfgekmv.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfgekmv.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmgqo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmgqo.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjffuv.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjffuv.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfehil.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfehil.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\tikp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\tikp.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bqqlvk.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bqqlvk.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrjrs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrjrs.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hwjahu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hwjahu.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wincnlm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wincnlm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qqjiee.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qqjiee.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vxnfe.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vxnfe.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\uhtiq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\uhtiq.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfuusi.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfuusi.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kuorb.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kuorb.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsvnf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsvnf.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwbbd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwbbd.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\rwynp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\rwynp.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbqcsys.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbqcsys.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfoytkr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfoytkr.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\miqjc.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\miqjc.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kecfoy.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kecfoy.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windpkyvb.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windpkyvb.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winikcs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winikcs.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrsflt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrsflt.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjtwomg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjtwomg.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winslieba.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winslieba.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mucrpx.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mucrpx.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\astix.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\astix.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winhvgm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winhvgm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\cfij.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\cfij.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kslp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kslp.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\courm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\courm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wyas.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wyas.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\armnlq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\armnlq.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winajgt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winajgt.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winecdsa.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winecdsa.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\odim.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\odim.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\halmde.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\halmde.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxkbijo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxkbijo.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bxdjjf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bxdjjf.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winonsuwr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winonsuwr.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfunf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfunf.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winoqhg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winoqhg.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vuaqd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vuaqd.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winlfjmu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winlfjmu.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ajhkdr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ajhkdr.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrquc.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrquc.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\insl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\insl.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\konshl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\konshl.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mepxvq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mepxvq.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbkfuo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbkfuo.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dwun.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dwun.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hnbyn.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hnbyn.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wintserat.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wintserat.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windxqsw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windxqsw.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fooad.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fooad.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbims.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbims.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winufpu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winufpu.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwdetpp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwdetpp.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmcyr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmcyr.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winobxf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winobxf.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbgok.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbgok.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winyilny.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winyilny.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winuwfsxw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winuwfsxw.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\leeauf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\leeauf.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winndyhl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winndyhl.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hfgdfs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hfgdfs.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wingfnm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wingfnm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsaddm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsaddm.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dslkpt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dslkpt.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmprw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmprw.exe:*:Enabled:ipsec" "D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kofac.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kofac.exe:*:Enabled:ipsec" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" ======List of files/folders created in the last 1 months====== 2010-08-20 17:18:09 ----D---- D:\rsit 2010-08-20 17:18:09 ----D---- D:\Program Files\trend micro 2010-08-20 17:11:59 ----A---- D:\WINDOWS\system32\MRT.INI 2010-08-20 17:09:10 ----A---- D:\WINDOWS\system32\MRT.exe 2010-08-20 16:10:59 ----D---- D:\Program Files\CCleaner 2010-08-20 16:10:34 ----D---- D:\ccleaner 2010-08-20 16:06:39 ----D---- D:\Program Files\Alwil Software 2010-08-20 16:06:39 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software 2010-08-11 20:57:32 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\UDL 2010-08-11 20:56:45 ----D---- D:\Program Files\ABBYY FineReader 6.0 Sprint 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK2.dll 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK.ini 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK.dll 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICEntry.dll 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\EpPicPrt.dll 2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\EPPicMgr.dll 2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_FLBBVE.DLL 2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_FD4BBVE.DLL 2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_DCINST.DLL 2010-08-11 20:54:53 ----A---- D:\WINDOWS\system32\drivers\usbprint.sys 2010-08-11 20:54:48 ----A---- D:\WINDOWS\system32\drivers\usbscan.sys 2010-08-11 20:52:20 ----A---- D:\WINDOWS\EPSTPLOG.TXT 2010-08-11 20:52:20 ----A---- D:\WINDOWS\EPSMTL32.TXT 2010-08-11 20:52:12 ----D---- D:\Program Files\epson 2010-08-11 20:52:10 ----A---- D:\WINDOWS\system32\escwiad.dll 2010-08-11 20:51:58 ----A---- D:\WINDOWS\CDE DX5000.ini 2010-08-11 20:51:26 ----A---- D:\WINDOWS\epsswt_log.txt 2010-08-11 17:00:22 ----D---- D:\WINDOWS\USB Vibration 2010-08-11 17:00:08 ----D---- D:\Program Files\USB Vibration 2010-08-09 20:42:54 ----D---- D:\Program Files\German Truck Simulator 2010-08-08 10:10:20 ----D---- D:\Program Files\Steam 2010-08-07 18:36:34 ----D---- D:\Program Files\Counter-Strike 2010-08-06 22:04:54 ----HDC---- D:\WINDOWS\$NtUninstallKB961118$ 2010-08-06 21:58:30 ----HDC---- D:\WINDOWS\$NtUninstallKB925720$ 2010-08-06 13:19:08 ----D---- D:\a13dd659cdf510fd4211 2010-08-05 18:02:16 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader 2010-08-05 18:01:30 ----N---- D:\WINDOWS\system32\spmsg2.dll 2010-08-05 18:01:27 ----HDC---- D:\WINDOWS\$NtUninstallXPSEPSCLP$ 2010-08-05 18:01:14 ----D---- D:\WINDOWS\system32\pl-PL 2010-08-05 17:59:17 ----D---- D:\WINDOWS\system32\XPSViewer 2010-08-05 17:59:12 ----D---- D:\Program Files\MSBuild 2010-08-05 17:59:11 ----D---- D:\WINDOWS\system32\en-US 2010-08-05 17:59:02 ----D---- D:\Program Files\Reference Assemblies 2010-08-05 17:58:31 ----N---- D:\WINDOWS\system32\prntvpt.dll 2010-08-05 17:58:30 ----N---- D:\WINDOWS\system32\xpssvcs.dll 2010-08-05 17:58:30 ----N---- D:\WINDOWS\system32\xpsshhdr.dll 2010-08-05 17:58:30 ----D---- D:\f67aea37d808c381703dadfc4b662b 2010-08-05 17:57:45 ----RSD---- D:\WINDOWS\assembly 2010-08-05 17:57:25 ----D---- D:\WINDOWS\Microsoft.NET 2010-08-05 17:56:52 ----HDC---- D:\WINDOWS\$NtUninstallWIC$ 2010-08-05 17:56:48 ----D---- D:\Program Files\MSXML 6.0 2010-08-05 17:41:21 ----D---- D:\Program Files\VDownloader 2010-08-01 21:21:13 ----HDC---- D:\WINDOWS\$NtUninstallKB935448$ 2010-08-01 21:21:08 ----HDC---- D:\WINDOWS\$NtUninstallKB970430$ 2010-08-01 21:21:03 ----HDC---- D:\WINDOWS\$NtUninstallKB971737$ 2010-08-01 12:11:56 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10 2010-07-31 23:14:31 ----HDC---- D:\WINDOWS\$NtUninstallKB980218$ 2010-07-31 23:14:28 ----HDC---- D:\WINDOWS\$NtUninstallKB951376-v2$ 2010-07-31 23:14:25 ----HDC---- D:\WINDOWS\$NtUninstallKB952954$ 2010-07-31 23:14:21 ----HDC---- D:\WINDOWS\$NtUninstallKB959426$ 2010-07-31 23:14:17 ----HDC---- D:\WINDOWS\$NtUninstallKB946648$ 2010-07-31 23:14:13 ----HDC---- D:\WINDOWS\$NtUninstallKB956803$ 2010-07-31 23:14:09 ----HDC---- D:\WINDOWS\$NtUninstallKB960859$ 2010-07-31 23:14:02 ----HDC---- D:\WINDOWS\$NtUninstallKB979683$ 2010-07-31 23:13:59 ----HDC---- D:\WINDOWS\$NtUninstallKB958869$ 2010-07-31 23:13:56 ----HDC---- D:\WINDOWS\$NtUninstallKB954155_WM9$ 2010-07-31 23:13:53 ----HDC---- D:\WINDOWS\$NtUninstallKB980195$ 2010-07-31 23:13:50 ----HDC---- D:\WINDOWS\$NtUninstallKB980232$ 2010-07-31 23:13:46 ----HDC---- D:\WINDOWS\$NtUninstallKB981350$ 2010-07-31 23:13:41 ----HDC---- D:\WINDOWS\$NtUninstallKB955759$ 2010-07-31 23:13:37 ----HDC---- D:\WINDOWS\$NtUninstallKB969059$ 2010-07-31 23:13:33 ----HDC---- D:\WINDOWS\$NtUninstallKB2229593$ 2010-07-31 23:13:29 ----HDC---- D:\WINDOWS\$NtUninstallKB950974$ 2010-07-31 23:13:25 ----HDC---- D:\WINDOWS\$NtUninstallKB978037$ 2010-07-31 23:13:20 ----HDC---- D:\WINDOWS\$NtUninstallKB975713$ 2010-07-31 23:13:17 ----HDC---- D:\WINDOWS\$NtUninstallKB971657$ 2010-07-31 23:13:13 ----HDC---- D:\WINDOWS\$NtUninstallKB960225$ 2010-07-31 23:13:09 ----HDC---- D:\WINDOWS\$NtUninstallKB972270$ 2010-07-31 23:13:06 ----HDC---- D:\WINDOWS\$NtUninstallKB974112$ 2010-07-31 23:12:53 ----HDC---- D:\WINDOWS\$NtUninstallKB956572$ 2010-07-31 23:12:48 ----HDC---- D:\WINDOWS\$NtUninstallKB956844$ 2010-07-31 23:12:43 ----HDC---- D:\WINDOWS\$NtUninstallKB975561$ 2010-07-31 23:12:39 ----HDC---- D:\WINDOWS\$NtUninstallKB952069_WM9$ 2010-07-31 23:12:36 ----HDC---- D:\WINDOWS\$NtUninstallKB973869$ 2010-07-31 23:12:32 ----HDC---- D:\WINDOWS\$NtUninstallKB975025$ 2010-07-31 23:12:29 ----HDC---- D:\WINDOWS\$NtUninstallKB973540_WM9L$ 2010-07-31 23:12:23 ----HDC---- D:\WINDOWS\$NtUninstallKB952004$ 2010-07-31 23:12:19 ----HDC---- D:\WINDOWS\$NtUninstallKB974571$ 2010-07-31 23:12:15 ----HDC---- D:\WINDOWS\$NtUninstallKB973507$ 2010-07-31 23:12:12 ----HDC---- D:\WINDOWS\$NtUninstallKB941569$ 2010-07-31 23:12:00 ----HDC---- D:\WINDOWS\$NtUninstallKB977816$ 2010-07-31 23:11:56 ----HDC---- D:\WINDOWS\$NtUninstallKB973687$ 2010-07-31 23:11:52 ----HDC---- D:\WINDOWS\$NtUninstallKB950762$ 2010-07-31 23:11:49 ----HDC---- D:\WINDOWS\$NtUninstallKB981793$ 2010-07-31 23:11:46 ----HDC---- D:\WINDOWS\$NtUninstallKB978601$ 2010-07-31 23:11:41 ----HDC---- D:\WINDOWS\$NtUninstallKB979559$ 2010-07-31 23:11:38 ----HDC---- D:\WINDOWS\$NtUninstallKB952287$ 2010-07-31 23:11:33 ----HDC---- D:\WINDOWS\$NtUninstallKB973904$ 2010-07-31 23:11:26 ----HDC---- D:\WINDOWS\$NtUninstallKB967715$ 2010-07-31 23:11:22 ----HDC---- D:\WINDOWS\$NtUninstallKB950760$ 2010-07-31 23:11:15 ----HDC---- D:\WINDOWS\$NtUninstallKB977914$ 2010-07-31 23:11:06 ----HDC---- D:\WINDOWS\$NtUninstallKB951748$ 2010-07-31 23:11:02 ----HDC---- D:\WINDOWS\$NtUninstallKB971961$ 2010-07-31 23:10:58 ----HDC---- D:\WINDOWS\$NtUninstallKB978542$ 2010-07-31 23:10:53 ----HDC---- D:\WINDOWS\$NtUninstallKB970238$ 2010-07-31 23:10:49 ----HDC---- D:\WINDOWS\$NtUninstallKB979309$ 2010-07-31 23:10:46 ----HDC---- D:\WINDOWS\$NtUninstallKB979482$ 2010-07-31 23:10:42 ----HDC---- D:\WINDOWS\$NtUninstallKB978706$ 2010-07-31 23:10:38 ----D---- D:\WINDOWS\ServicePackFiles 2010-07-31 23:10:35 ----HDC---- D:\WINDOWS\$NtUninstallKB958470$ 2010-07-31 23:10:31 ----HDC---- D:\WINDOWS\$NtUninstallKB960803$ 2010-07-31 23:10:28 ----HDC---- D:\WINDOWS\$NtUninstallKB973815$ 2010-07-31 23:10:24 ----HDC---- D:\WINDOWS\$NtUninstallKB975562$ 2010-07-31 23:10:20 ----HDC---- D:\WINDOWS\$NtUninstallKB958644$ 2010-07-31 23:10:18 ----A---- D:\WINDOWS\system32\wmpns.dll 2010-07-31 23:10:15 ----HDC---- D:\WINDOWS\$NtUninstallKB979402_WM9L$ 2010-07-31 23:10:11 ----HDC---- D:\WINDOWS\$NtUninstallKB956802$ 2010-07-31 23:09:57 ----HDC---- D:\WINDOWS\$NtUninstallKB982381$ 2010-07-31 23:09:50 ----HDC---- D:\WINDOWS\$NtUninstallKB944338-v2$ 2010-07-31 23:09:45 ----HDC---- D:\WINDOWS\$NtUninstallKB923561$ 2010-07-31 23:09:41 ----HDC---- D:\WINDOWS\$NtUninstallKB975467$ 2010-07-31 23:09:34 ----N---- D:\WINDOWS\system32\spmsg.dll 2010-07-31 23:09:33 ----HDC---- D:\WINDOWS\$NtUninstallKB968389$ 2010-07-31 20:37:00 ----D---- D:\Program Files\Euro Truck Simulator 2010-07-31 18:09:48 ----D---- D:\WINDOWS\system32\Lang 2010-07-31 18:08:26 ----A---- D:\WINDOWS\system32\drivers\splitter.sys 2010-07-31 18:08:25 ----A---- D:\WINDOWS\system32\drivers\wdmaud.sys 2010-07-31 18:08:24 ----A---- D:\WINDOWS\system32\drivers\DMusic.sys 2010-07-31 18:08:21 ----A---- D:\WINDOWS\system32\drivers\swmidi.sys 2010-07-31 18:08:19 ----A---- D:\WINDOWS\system32\drivers\aec.sys 2010-07-31 18:08:18 ----A---- D:\WINDOWS\system32\drivers\kmixer.sys 2010-07-31 18:08:17 ----A---- D:\WINDOWS\system32\drivers\drmkaud.sys 2010-07-31 18:08:16 ----A---- D:\WINDOWS\system32\drivers\sysaudio.sys 2010-07-31 18:08:15 ----A---- D:\WINDOWS\system32\drivers\MSKSSRV.sys 2010-07-31 18:08:14 ----A---- D:\WINDOWS\system32\drivers\MSPQM.sys 2010-07-31 18:08:12 ----A---- D:\WINDOWS\system32\drivers\MSPCLOCK.sys 2010-07-31 18:08:07 ----D---- D:\WINDOWS\system32\RTCOM 2010-07-31 18:08:02 ----A---- D:\WINDOWS\system32\ksuser.dll 2010-07-31 18:08:02 ----A---- D:\WINDOWS\system32\drivers\drmk.sys 2010-07-31 18:07:34 ----HDC---- D:\WINDOWS\$NtUninstallKB888111WXPSP2$ 2010-07-31 18:07:23 ----A---- D:\WINDOWS\vncutil.exe 2010-07-31 18:07:23 ----A---- D:\WINDOWS\SOUNDMAN.EXE 2010-07-31 18:07:22 ----A---- D:\WINDOWS\SkyTel.exe 2010-07-31 18:07:20 ----A---- D:\WINDOWS\RtlUpd.exe 2010-07-31 18:07:18 ----A---- D:\WINDOWS\RTLCPL.EXE 2010-07-31 18:07:17 ----A---- D:\WINDOWS\system32\drivers\RtkHDAud.sys 2010-07-31 18:07:16 ----A---- D:\WINDOWS\system32\RtkCoInstXP.dll 2010-07-31 18:07:15 ----A---- D:\WINDOWS\RtkAudioService.exe 2010-07-31 18:07:07 ----A---- D:\WINDOWS\RTHDCPL.EXE 2010-07-31 18:07:06 ----A---- D:\WINDOWS\system32\drivers\Monfilt.sys 2010-07-31 18:07:06 ----A---- D:\WINDOWS\MicCal.exe 2010-07-31 18:06:58 ----A---- D:\WINDOWS\system32\drivers\Ambfilt.sys 2010-07-31 18:06:56 ----D---- D:\Program Files\Realtek 2010-07-31 18:06:56 ----A---- D:\WINDOWS\ALCWZRD.EXE 2010-07-31 18:06:56 ----A---- D:\WINDOWS\ALCMTR.EXE 2010-07-31 18:06:50 ----A---- D:\WINDOWS\RtlExUpd.dll 2010-07-31 18:06:48 ----D---- D:\Program Files\Common Files\InstallShield 2010-07-31 18:04:08 ----HDC---- D:\WINDOWS\$NtUninstallKB835221WXP$ 2010-07-31 18:01:14 ----D---- D:\WINDOWS\system32\ReinstallBackups 2010-07-31 18:01:02 ----A---- D:\WINDOWS\system32\cohelper.dll 2010-07-31 18:00:59 ----D---- D:\Program Files\NVIDIA Corporation 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoZht.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoZhc.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoSv.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoRu.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoPtb.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoNo.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoNl.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoKo.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoJa.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoIt.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoFr.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoFi.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEsm.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEs.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoENU.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEng.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoDe.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoDa.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvraiins.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvraidco.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NVCOSMB.DLL 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvconrm.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\fdco1ins.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\fdco1.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvnrm.sys 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvnetbus.sys 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvgts.sys 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\NVENETFD.sys 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\bdco1ins.dll 2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\bdco1.dll 2010-07-31 14:23:53 ----D---- D:\Program Files\Lavalys 2010-07-31 11:08:43 ----D---- D:\WINDOWS\system32\Adobe 2010-07-31 09:14:24 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 2010-07-31 09:14:01 ----D---- D:\Program Files\Gadu-Gadu 10 2010-07-31 09:05:47 ----D---- D:\WINDOWS\system32\CatRoot_bak 2010-07-31 08:55:31 ----N---- D:\WINDOWS\system32\drivers\bthport.sys 2010-07-31 08:48:08 ----N---- D:\WINDOWS\system32\tzchange.exe 2010-07-31 08:47:38 ----N---- D:\WINDOWS\system32\browserchoice.exe 2010-07-30 22:37:38 ----HDC---- D:\WINDOWS\$NtUninstallKB971468$ 2010-07-30 22:37:35 ----HDC---- D:\WINDOWS\$NtUninstallKB974318$ 2010-07-30 22:37:31 ----HDC---- D:\WINDOWS\$NtUninstallKB978338$ 2010-07-30 22:37:28 ----HDC---- D:\WINDOWS\$NtUninstallKB961501$ 2010-07-30 22:37:25 ----HDC---- D:\WINDOWS\$NtUninstallKB975560$ 2010-07-30 22:37:23 ----D---- D:\WINDOWS\system32\PreInstall 2010-07-30 22:37:22 ----A---- D:\WINDOWS\system32\spupdsvc.exe 2010-07-30 22:37:21 ----HDC---- D:\WINDOWS\$NtUninstallKB898461$ 2010-07-30 22:37:18 ----HDC---- D:\WINDOWS\$NtUninstallKB974392$ 2010-07-30 22:37:15 ----HDC---- D:\WINDOWS\$NtUninstallKB978695_WM9$ 2010-07-30 22:37:10 ----HDC---- D:\WINDOWS\$NtUninstallKB955069$ 2010-07-30 12:20:03 ----D---- D:\WINDOWS\Sun 2010-07-30 12:05:16 ----D---- D:\Program Files\Common Files\Java 2010-07-30 12:05:16 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Sun 2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\javaws.exe 2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\javaw.exe 2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\java.exe 2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\deployJava1.dll 2010-07-30 12:04:54 ----D---- D:\Program Files\Java 2010-07-30 12:02:34 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Sun 2010-07-30 11:46:21 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Macromedia 2010-07-30 11:46:21 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Adobe 2010-07-30 11:42:28 ----D---- D:\WINDOWS\RegisteredPackages 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\vxblock.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxwave.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxsfs.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxmas.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxinsa64.exe 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxhpinst.exe 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxdrv.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxcpya64.exe 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxafs.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\px.dll 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\PxHelp20.sys 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\cdralw2k.sys 2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\cdr4_xp.sys 2010-07-30 11:41:23 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Winamp 2010-07-30 11:40:35 ----D---- D:\wunamp 2010-07-30 11:33:27 ----D---- D:\WINDOWS\system32\SoftwareDistribution 2010-07-30 11:32:18 ----D---- D:\Program Files\SAGEM 2010-07-28 14:09:37 ----A---- D:\WINDOWS\system32\drivers\hidusb.sys 2010-07-28 14:07:32 ----D---- D:\Winamp 2010-07-27 17:05:22 ----D---- D:\WINDOWS\system32\AGEIA 2010-07-27 17:05:22 ----D---- D:\Program Files\AGEIA Technologies 2010-07-27 17:05:11 ----D---- D:\Program Files\Common Files\Wise Installation Wizard 2010-07-27 17:04:06 ----HDC---- D:\WINDOWS\$MSI31Uninstall_KB893803v2$ 2010-07-27 17:03:46 ----A---- D:\WINDOWS\system32\nvudisp.exe 2010-07-27 17:03:17 ----A---- D:\WINDOWS\system32\NVUNINST.EXE 2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\D3DX9_41.dll 2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\d3dx10_41.dll 2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\D3DCompiler_41.dll 2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\XAudio2_4.dll 2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\XAPOFX1_3.dll 2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\xactengine3_4.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\XAudio2_3.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\XAPOFX1_2.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\X3DAudio1_6.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\D3DX9_40.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\d3dx10_40.dll 2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\D3DCompiler_40.dll 2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\XAudio2_2.dll 2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\XAPOFX1_1.dll 2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\xactengine3_3.dll 2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\X3DAudio1_5.dll 2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\xactengine3_2.dll 2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\D3DX9_39.dll 2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\d3dx10_39.dll 2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\D3DCompiler_39.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\XAudio2_1.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\XAPOFX1_0.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\xactengine3_1.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\X3DAudio1_4.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\D3DX9_38.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\d3dx10_38.dll 2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\D3DCompiler_38.dll 2010-07-27 17:03:03 ----A---- D:\WINDOWS\system32\XAudio2_0.dll 2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\xactengine3_0.dll 2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\X3DAudio1_3.dll 2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\D3DX9_37.dll 2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\d3dx10_37.dll 2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\D3DCompiler_37.dll 2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\xactengine2_10.dll 2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\d3dx9_36.dll 2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\d3dx10_36.dll 2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\D3DCompiler_36.dll 2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\xactengine2_9.dll 2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\d3dx9_35.dll 2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\d3dx10_35.dll 2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\D3DCompiler_35.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\xinput1_3.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\xactengine2_8.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\X3DAudio1_2.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\d3dx9_34.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\d3dx10_34.dll 2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\D3DCompiler_34.dll 2010-07-27 17:02:58 ----A---- D:\WINDOWS\system32\xactengine2_7.dll 2010-07-27 17:02:57 ----A---- D:\WINDOWS\system32\d3dx10_33.dll 2010-07-27 17:02:56 ----A---- D:\WINDOWS\system32\D3DCompiler_33.dll 2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\xactengine2_6.dll 2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\xactengine2_5.dll 2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\d3dx9_33.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xinput1_2.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_4.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_3.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_2.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\x3daudio1_1.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\d3dx9_32.dll 2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\d3dx9_31.dll 2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\xinput1_1.dll 2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\xactengine2_1.dll 2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\d3dx9_30.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\xinput9_1_0.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\xactengine2_0.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\x3daudio1_0.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_29.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_28.dll 2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_27.dll 2010-07-27 17:02:51 ----A---- D:\WINDOWS\system32\d3dx9_26.dll 2010-07-27 17:02:51 ----A---- D:\WINDOWS\system32\d3dx9_25.dll 2010-07-27 17:02:50 ----A---- D:\WINDOWS\system32\d3dx9_24.dll 2010-07-27 17:02:20 ----D---- D:\WINDOWS\Logs 2010-07-27 17:02:18 ----A---- D:\WINDOWS\system32\drivers\TBPanel.sys 2010-07-27 17:02:17 ----D---- D:\Program Files\EXPERTool 2010-07-27 11:26:39 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\WinRAR 2010-07-27 11:26:17 ----D---- D:\Program Files\WinRAR 2010-07-27 11:21:45 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Opera 2010-07-27 11:21:36 ----D---- D:\Program Files\Opera 2010-07-27 11:15:20 ----A---- D:\WINDOWS\system32\drivers\usbccgp.sys 2010-07-26 20:10:32 ----A---- D:\WINDOWS\system32\h323log.txt 2010-07-26 20:09:35 ----A---- D:\WINDOWS\system32\drivers\audstub.sys 2010-07-26 20:09:15 ----A---- D:\WINDOWS\system32\drivers\redbook.sys 2010-07-26 20:08:43 ----A---- D:\WINDOWS\system32\usbui.dll 2010-07-26 20:08:00 ----A---- D:\WINDOWS\imsins.BAK 2010-07-26 20:07:58 ----SHD---- D:\WINDOWS\Installer 2010-07-26 20:07:58 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI 2010-07-26 20:07:57 ----D---- D:\Program Files\Common Files\ODBC 2010-07-26 20:07:57 ----A---- D:\WINDOWS\ODBCINST.INI 2010-07-26 20:07:53 ----D---- D:\Program Files\Common Files\SpeechEngines 2010-07-26 20:07:52 ----RD---- D:\Program Files 2010-07-26 20:07:52 ----D---- D:\Program Files\Common Files\Microsoft Shared 2010-07-26 20:07:52 ----D---- D:\Program Files\Common Files 2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdtuq.dll 2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdtuf.dll 2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdazel.dll 2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbduzb.dll 2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdtat.dll 2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdmon.dll 2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdkyr.dll 2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdaze.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdycc.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdur.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdru1.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdru.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdkaz.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdbu.dll 2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdblr.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhept.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhela3.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhela2.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe319.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe220.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe.dll 2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdgkl.dll 2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlv1.dll 2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlv.dll 2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlt1.dll 2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlt.dll 2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdest.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdsl1.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdsl.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdro.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdhu1.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdhu.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz2.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz1.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz.dll 2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcr.dll 2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\kbdycl.dll 2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\KBDAL.DLL 2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\irclass.dll 2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\spxcoins.dll 2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\EqnClass.Dll 2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\dgsetup.dll 2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\dgrpsetu.dll 2010-07-26 20:07:35 ----A---- D:\WINDOWS\TASKMAN.EXE 2010-07-26 20:07:34 ----N---- D:\WINDOWS\system32\CONFIG.TMP 2010-07-26 20:07:34 ----A---- D:\WINDOWS\system32\drivers\irenum.sys 2010-07-26 20:07:34 ----A---- D:\WINDOWS\system32\batt.dll 2010-07-26 20:07:33 ----A---- D:\WINDOWS\system32\storprop.dll 2010-07-26 20:07:33 ----A---- D:\WINDOWS\NOTEPAD.EXE 2010-07-26 20:07:26 ----ASH---- D:\Documents and Settings\All Users\Dane aplikacji\desktop.ini 2010-07-26 20:07:24 ----RA---- D:\WINDOWS\SET21.tmp 2010-07-26 20:07:22 ----RA---- D:\WINDOWS\SET8.tmp 2010-07-26 20:07:19 ----RA---- D:\WINDOWS\SET4.tmp 2010-07-26 20:07:18 ----RA---- D:\WINDOWS\SET3.tmp 2010-07-26 20:07:13 ----D---- D:\WINDOWS\system32\CatRoot2 2010-07-26 20:07:13 ----D---- D:\WINDOWS\system32\CatRoot 2010-07-26 20:07:07 ----SD---- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft 2010-07-26 20:06:43 ----A---- D:\WINDOWS\setuplog.txt 2010-07-26 20:06:40 ----SHD---- D:\System Volume Information 2010-07-26 20:06:40 ----D---- D:\Documents and Settings 2010-07-26 20:01:37 ----RSHDC---- D:\WINDOWS\system32\dllcache 2010-07-26 20:01:37 ----RSD---- D:\WINDOWS\Fonts 2010-07-26 20:01:37 ----RD---- D:\WINDOWS\Web 2010-07-26 20:01:37 ----HD---- D:\WINDOWS\inf 2010-07-26 20:01:37 ----D---- D:\WINDOWS\WinSxS 2010-07-26 20:01:37 ----D---- D:\WINDOWS\twain_32 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Temp 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\wins 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\wbem 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\usmt 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\spool 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ShellExt 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\Setup 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ras 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\oobe 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\npp 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\mui 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\inetsrv 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\IME 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\icsxml 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ias 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\export 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers\etc 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers\disdn 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\dhcp 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\config 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\3com_dmi 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\3076 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\2052 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1054 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1045 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1042 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1041 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1037 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1033 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1031 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1028 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1025 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32 2010-07-26 20:01:37 ----D---- D:\WINDOWS\system 2010-07-26 20:01:37 ----D---- D:\WINDOWS\security 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Resources 2010-07-26 20:01:37 ----D---- D:\WINDOWS\repair 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Provisioning 2010-07-26 20:01:37 ----D---- D:\WINDOWS\PeerNet 2010-07-26 20:01:37 ----D---- D:\WINDOWS\pchealth 2010-07-26 20:01:37 ----D---- D:\WINDOWS\mui 2010-07-26 20:01:37 ----D---- D:\WINDOWS\msapps 2010-07-26 20:01:37 ----D---- D:\WINDOWS\msagent 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Media 2010-07-26 20:01:37 ----D---- D:\WINDOWS\java 2010-07-26 20:01:37 ----D---- D:\WINDOWS\ime 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Help 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Driver Cache 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Debug 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Cursors 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Connection Wizard 2010-07-26 20:01:37 ----D---- D:\WINDOWS\Config 2010-07-26 20:01:37 ----D---- D:\WINDOWS\AppPatch 2010-07-26 20:01:37 ----D---- D:\WINDOWS\addins 2010-07-26 20:01:37 ----D---- D:\WINDOWS 2010-07-26 20:01:37 ----ASH---- D:\pagefile.sys 2010-07-26 19:03:41 ----D---- D:\Avast Antywirus 2010-07-26 19:03:27 ----A---- D:\WINDOWS\system32\drivers\USBSTOR.SYS 2010-07-26 19:00:10 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\InstallShield 2010-07-26 18:45:13 ----SHD---- D:\RECYCLER 2010-07-26 18:38:16 ----HD---- D:\Program Files\InstallShield Installation Information 2010-07-26 18:33:29 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Identities 2010-07-26 18:33:28 ----HD---- D:\Program Files\Uninstall Information 2010-07-26 18:33:22 ----ASH---- D:\Documents and Settings\paweł\Dane aplikacji\desktop.ini 2010-07-26 18:33:21 ----SD---- D:\Documents and Settings\paweł\Dane aplikacji\Microsoft 2010-07-26 18:32:25 ----D---- D:\WINDOWS\SoftwareDistribution 2010-07-26 18:32:22 ----D---- D:\WINDOWS\Prefetch 2010-07-26 18:32:14 ----SD---- D:\WINDOWS\system32\Microsoft 2010-07-26 18:32:14 ----A---- D:\WINDOWS\SchedLgU.Txt 2010-07-26 18:16:04 ----D---- D:\WINDOWS\system32\xircom 2010-07-26 18:16:04 ----D---- D:\Program Files\xerox 2010-07-26 18:16:04 ----D---- D:\Program Files\microsoft frontpage 2010-07-26 18:15:59 ----HD---- D:\WINDOWS\$hf_mig$ 2010-07-26 18:15:47 ----A---- D:\WINDOWS\control.ini 2010-07-26 18:15:38 ----A---- D:\WINDOWS\OEWABLog.txt 2010-07-26 18:15:34 ----A---- D:\WINDOWS\system32\mapi32.dll 2010-07-26 18:14:56 ----SD---- D:\WINDOWS\Downloaded Program Files 2010-07-26 18:14:56 ----RD---- D:\WINDOWS\Offline Web Pages 2010-07-26 18:14:56 ----RAH---- D:\WINDOWS\system32\logonui.exe.manifest 2010-07-26 18:14:52 ----RAH---- D:\WINDOWS\system32\cdplayer.exe.manifest 2010-07-26 18:14:48 ----HD---- D:\Program Files\WindowsUpdate 2010-07-26 18:14:45 ----D---- D:\Program Files\Usługi online 2010-07-26 18:14:30 ----D---- D:\WINDOWS\system32\DirectX 2010-07-26 18:14:07 ----A---- D:\WINDOWS\system32\atrace.dll 2010-07-26 18:14:03 ----A---- D:\WINDOWS\system32\desktop.ini 2010-07-26 18:14:03 ----A---- D:\WINDOWS\desktop.ini 2010-07-26 18:13:56 ----A---- D:\WINDOWS\system32\nmevtmsg.dll 2010-07-26 18:13:54 ----D---- D:\Program Files\Common Files\Services 2010-07-26 18:13:54 ----A---- D:\WINDOWS\system32\acctres.dll 2010-07-26 18:13:51 ----SD---- D:\WINDOWS\Tasks 2010-07-26 18:13:51 ----A---- D:\WINDOWS\system32\icfgnt5.dll 2010-07-26 18:13:50 ----D---- D:\Program Files\Common Files\MSSoap 2010-07-26 18:13:44 ----D---- D:\WINDOWS\srchasst 2010-07-26 18:13:43 ----D---- D:\WINDOWS\system32\Macromed 2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuweb.dll 2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wucltui.dll 2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuauserv.dll 2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuaueng1.dll 2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wups.dll 2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuaueng.dll 2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuauclt1.exe 2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuauclt.exe 2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuapi.dll 2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\qmgrprxy.dll 2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\qmgr.dll 2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\bitsprx3.dll 2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\bitsprx2.dll 2010-07-26 18:13:31 ----D---- D:\Program Files\Movie Maker 2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrslv.dll 2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrdm.dll 2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrcdlg.dll 2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\racpldlg.dll 2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\fltMc.exe 2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\fltlib.dll 2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\drivers\fltMgr.sys 2010-07-26 18:13:21 ----D---- D:\WINDOWS\system32\Restore 2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srsvc.dll 2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srrstr.dll 2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srclient.dll 2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\drivers\sr.sys 2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\mnmdd.dll 2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\isrdbg32.dll 2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\ils.dll 2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\nmmkcert.dll 2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\msconf.dll 2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\mnmsrvc.exe 2010-07-26 18:13:16 ----D---- D:\Program Files\NetMeeting 2010-07-26 18:13:16 ----A---- D:\WINDOWS\system32\msoert2.dll 2010-07-26 18:13:15 ----A---- D:\WINDOWS\system32\msoeacct.dll 2010-07-26 18:13:14 ----A---- D:\WINDOWS\system32\inetres.dll 2010-07-26 18:13:14 ----A---- D:\WINDOWS\system32\inetcomm.dll 2010-07-26 18:13:11 ----D---- D:\Program Files\Outlook Express 2010-07-26 18:13:11 ----A---- D:\WINDOWS\system32\schedsvc.dll 2010-07-26 18:13:11 ----A---- D:\WINDOWS\system32\mstinit.exe 2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\mstask.dll 2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\isign32.dll 2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\inetcfg.dll 2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\icwphbk.dll 2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\icwdial.dll 2010-07-26 18:13:03 ----D---- D:\Program Files\Common Files\System 2010-07-26 18:13:02 ----D---- D:\Program Files\Internet Explorer 2010-07-26 18:12:51 ----D---- D:\Program Files\ComPlus Applications 2010-07-26 18:12:49 ----A---- D:\WINDOWS\vbaddin.ini 2010-07-26 18:12:49 ----A---- D:\WINDOWS\vb.ini 2010-07-26 18:12:44 ----D---- D:\WINDOWS\Registration 2010-07-26 18:12:22 ----D---- D:\Program Files\Windows Media Player 2010-07-26 18:12:17 ----D---- D:\Program Files\Messenger 2010-07-26 18:12:13 ----D---- D:\Program Files\MSN Gaming Zone 2010-07-26 18:12:13 ----A---- D:\WINDOWS\system32\write.exe 2010-07-26 18:12:05 ----A---- D:\WINDOWS\system32\sndvol32.exe 2010-07-26 18:12:05 ----A---- D:\WINDOWS\system32\hticons.dll 2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\winchat.exe 2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avwav.dll 2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avtapi.dll 2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avmeter.dll 2010-07-26 18:11:57 ----A---- D:\WINDOWS\system32\getuname.dll 2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\winmine.exe 2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\sol.exe 2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\charmap.exe 2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\calc.exe 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\usrlogon.cmd 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\tsshutdn.exe 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\tskill.exe 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\reset.exe 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\mshearts.exe 2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\freecell.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tslabels.ini 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tsdiscon.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tscon.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\shadow.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\rwinsta.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\regini.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\rdpcfgex.dll 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\qwinsta.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\qappsrv.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\msg.exe 2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\logoff.exe 2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\msdtcprf.ini 2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\dcomcnfg.exe 2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\cdmodem.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\stclient.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxlegih.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxex.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxdm.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comsnap.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comrepl.dll 2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comaddin.dll 2010-07-26 18:11:47 ----A---- D:\WINDOWS\system32\wmimgmt.msc 2010-07-26 18:11:46 ----A---- D:\WINDOWS\system32\accwiz.exe 2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\sndrec32.exe 2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\mplay32.exe 2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\hypertrm.dll 2010-07-26 18:11:44 ----D---- D:\Program Files\Windows NT 2010-07-26 18:11:44 ----A---- D:\WINDOWS\system32\mspaint.exe 2010-07-26 18:11:44 ----A---- D:\WINDOWS\system32\clipbrd.exe 2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\tscfgwmi.dll 2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\spider.exe 2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\tdtcp.sys 2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\tdpipe.sys 2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\rdpwd.sys 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\sessmgr.exe 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\remotepg.dll 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\rdshost.exe 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\rdsaddin.exe 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\mstscax.dll 2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\mstsc.exe 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\tscupgrd.exe 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\termsrv.dll 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpwsx.dll 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpsnd.dll 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpclip.exe 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdchost.dll 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\qprocess.exe 2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\icaapi.dll 2010-07-26 18:11:40 ----D---- D:\WINDOWS\system32\MsDtc 2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\mtxoci.dll 2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\msdtcuiu.dll 2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\msdtcprx.dll 2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\cfgbkend.dll 2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\xolehlp.dll 2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtctm.dll 2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtclog.dll 2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtc.exe 2010-07-26 18:11:38 ----D---- D:\WINDOWS\system32\Com 2010-07-26 18:11:38 ----A---- D:\WINDOWS\system32\colbact.dll 2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\clbcatex.dll 2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrvut.dll 2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrvps.dll 2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrv.dll 2010-07-26 18:11:36 ----A---- D:\WINDOWS\system32\comsvcs.dll 2010-07-26 18:11:35 ----A---- D:\WINDOWS\system32\comuid.dll 2010-07-26 18:11:35 ----A---- D:\WINDOWS\system32\clbcatq.dll 2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\servdeps.dll 2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\mmfutil.dll 2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\licwmi.dll 2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\cmprops.dll 2010-07-26 18:11:26 ----A---- D:\WINDOWS\system32\drivers\termdd.sys 2010-07-26 18:11:26 ----A---- D:\WINDOWS\system32\drivers\rdpdr.sys ======List of files/folders modified in the last 1 months====== 2010-07-27 08:24:30 ----A---- D:\WINDOWS\system.ini 2010-07-26 18:15:46 ----A---- D:\WINDOWS\win.ini 2010-07-26 18:15:26 ----ASH---- D:\WINDOWS\fonts\desktop.ini ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 nvgts;nvgts; D:\WINDOWS\system32\DRIVERS\nvgts.sys [2010-04-08 168040] R0 PxHelp20;PxHelp20; D:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944] R2 TBPanel;TBPanel; D:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256] R3 abp470n5;abp470n5; \??\D:\WINDOWS\system32\drivers\jprfun.sys [] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; D:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752] R3 HidUsb;Sterownik Microsoft klasy HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600] R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-04-30 6032928] R3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-03 8087712] R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; D:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2010-03-04 70912] R3 nvnetbus;NVIDIA Network Bus Enumerator; D:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2010-03-04 13824] R3 USB_RNDIS;ADSL2+ Modem USB RNDIS Adapter; D:\WINDOWS\system32\DRIVERS\usb8023.sys [2006-03-02 12672] S3 Ambfilt;Ambfilt; D:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480] S3 Monfilt;Monfilt; D:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800] S3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616] S3 usbprint;Klasa PRINTER USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856] S3 usbscan;Sterownik skanera USB; D:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104] S3 USBSTOR;Sterownik magazynu masowego USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2010-07-30 153376] R2 nvsvc;NVIDIA Display Driver Service; D:\WINDOWS\system32\nvsvc32.exe [2009-06-10 168004] R2 UMWdf;Windows User Mode Driver Framework; D:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912] S3 aspnet_state;Usuga stanu ASP.NET; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF-----------------[/log] Tutaj też z programu RIST z notatnika INFO [log]info.txt logfile of random's system information tool 1.08 2010-08-20 17:18:15 ======Uninstall list====== -->MsiExec /X{B83FC356-B7C0-441F-8A4D-D71E088E7974} -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 D:\WINDOWS\INF\PCHealth.inf ABBYY FineReader 6.0 Sprint-->MsiExec.exe /I{ACF60000-22B9-4CE9-98D6-2CCF359BAC07} Adobe Flash Player 10 ActiveX-->D:\WINDOWS\system32\Macromed\Flash\FlashUtil10h_ActiveX.exe -maintain activex Adobe Flash Player 10 Plugin-->D:\WINDOWS\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -maintain plugin Adobe Shockwave Player 11.5-->"D:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe" Aktualizacja dla systemu Windows XP (KB898461)-->"D:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB925720)-->"D:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB955759)-->"D:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB967715)-->"D:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB968389)-->"D:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB971737)-->"D:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB973687)-->"D:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB973815)-->"D:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB952069)-->"D:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB954155)-->"D:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"D:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB978695)-->"D:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"D:\WINDOWS\$NtUninstallKB979402_WM9L$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2229593)-->"D:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB923561)-->"D:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB944338-v2)-->"D:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB946648)-->"D:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760)-->"D:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762)-->"D:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950974)-->"D:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2)-->"D:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748)-->"D:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB952004)-->"D:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB952954)-->"D:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB955069)-->"D:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956572)-->"D:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956802)-->"D:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956803)-->"D:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956844)-->"D:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB958470)-->"D:\WINDOWS\$NtUninstallKB958470$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB958644)-->"D:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB958869)-->"D:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB959426)-->"D:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960225)-->"D:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960803)-->"D:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960859)-->"D:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB961501)-->"D:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB969059)-->"D:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB970238)-->"D:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB970430)-->"D:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971468)-->"D:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971657)-->"D:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971961)-->"D:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB972270)-->"D:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973507)-->"D:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973869)-->"D:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973904)-->"D:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974112)-->"D:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974318)-->"D:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974392)-->"D:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974571)-->"D:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975025)-->"D:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975467)-->"D:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975560)-->"D:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975561)-->"D:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975562)-->"D:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975713)-->"D:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB977816)-->"D:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB977914)-->"D:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978037)-->"D:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978338)-->"D:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978542)-->"D:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978601)-->"D:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978706)-->"D:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979309)-->"D:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979482)-->"D:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979559)-->"D:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979683)-->"D:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980195)-->"D:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980218)-->"D:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980232)-->"D:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981350)-->"D:\WINDOWS\$NtUninstallKB981350$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982381)-->"D:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla Windows XP (KB941569)-->"D:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe" Archiwizator WinRAR-->D:\Program Files\WinRAR\uninstall.exe CCleaner-->"D:\Program Files\CCleaner\uninst.exe" EPSON Scan-->D:\Program Files\epson\escndv\setup\setup.exe /r EPSON Web-To-Page-->RunDll32 D:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "D:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x9 -anything ESDX5000_CX4900 Przewodnik użytkownika-->D:\Program Files\EPSON\TPMANUAL\ESDX5000_CX4900\USE_G\DOCUNINS.EXE EVEREST Ultimate Edition v5.50-->"D:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe" EXPERTool 7.5-->"D:\Program Files\EXPERTool\unins000.exe" Gadu-Gadu 10-->D:\Program Files\Gadu-Gadu 10\Uninstall.exe German Truck Simulator 1.02-->D:\Program Files\German Truck Simulator\uninst.exe High Definition Audio Driver Package - KB835221-->D:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe High Definition Audio Driver Package - KB888111-->"D:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT="" Java(TM) 6 Update 21-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216021FF} Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK-->MsiExec.exe /I{2AFF2951-86B1-3C53-B34D-B440F11E7D0A} Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK-->MsiExec.exe /I{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9} Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} Microsoft .NET Framework 3.5 Language Pack SP1 - plk-->MsiExec.exe /I{9EFDFBA8-9174-3C61-8645-28376C5CA994} Microsoft .NET Framework 3.5 SP1-->D:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c} MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA} NVIDIA Drivers-->D:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe UninstallGUI NVIDIA PhysX-->MsiExec.exe /X{B83FC356-B7C0-441F-8A4D-D71E088E7974} Opera 10.52-->MsiExec.exe /X{B8041710-E0B8-4C98-AA19-0C357AF87E53} Oprogramowanie drukarki EPSON-->D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK-->d:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - plk\setup.exe PIF DESIGNER-->RunDll32 D:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "D:\Program Files\InstallShield Installation Information\{B90450DF-E781-46FD-B1F1-0C86DA40E443}\SETUP.EXE" -l0x9 anything Poprawka dla systemu Windows XP (KB935448)-->"D:\WINDOWS\$NtUninstallKB935448$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB952287)-->"D:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB961118)-->"D:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB981793)-->"D:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe" Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3} Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT="" Winamp-->"D:\wunamp\Winamp\UninstWA.exe" Windows Imaging Component-->"D:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe" Windows Installer 3.1 (KB893803)-->"D:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe" XML Paper Specification Shared Components Language Pack 1.0-->"D:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe" ======System event log====== Computer Name: PAWE-15FCC979B1 Event Code: 7035 Message: Do usługi Zgodność szybkiego przełączania użytkowników został pomyślnie wysłany kod sterowania uruchom. Record Number: 348 Source Name: Service Control Manager Time Written: 20100730105539.000000+120 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM Computer Name: PAWE-15FCC979B1 Event Code: 7036 Message: Usługa Usługi terminalowe weszła w stan uruchomienia. Record Number: 347 Source Name: Service Control Manager Time Written: 20100730105539.000000+120 Event Type: informacje User: Computer Name: PAWE-15FCC979B1 Event Code: 6005 Message: Uruchomiono usługę Dziennik zdarzeń. Record Number: 346 Source Name: EventLog Time Written: 20100730105537.000000+120 Event Type: informacje User: Computer Name: PAWE-15FCC979B1 Event Code: 6009 Message: Microsoft (R) Windows (R) 5.01. 2600 Dodatek Service Pack 2 Multiprocessor Free. Record Number: 345 Source Name: EventLog Time Written: 20100730105537.000000+120 Event Type: informacje User: Computer Name: PAWE-15FCC979B1 Event Code: 6006 Message: Zatrzymano usługę Dziennik zdarzeń. Record Number: 344 Source Name: EventLog Time Written: 20100728201832.000000+120 Event Type: informacje User: =====Application event log===== Computer Name: PAWE-15FCC979B1 Event Code: 1017 Message: Rozpocznij rejestracj ASP.NET (wersja 2.0.50727.0) (flaga wewntrzna: 0x00000406) Record Number: 330 Source Name: ASP.NET 2.0.50727.0 Time Written: 20100806220050.000000+120 Event Type: informacje User: Computer Name: PAWE-15FCC979B1 Event Code: 1025 Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\netfxperf.dll jest używany przez następujący proces: Nazwa: jqs, identyfikator 1904. Record Number: 329 Source Name: MsiInstaller Time Written: 20100806220014.000000+120 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM Computer Name: PAWE-15FCC979B1 Event Code: 1025 Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\mscoree.dll jest używany przez następujący proces: Nazwa: msiexec, identyfikator 508. Record Number: 328 Source Name: MsiInstaller Time Written: 20100806220014.000000+120 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM Computer Name: PAWE-15FCC979B1 Event Code: 1025 Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\mscoree.dll jest używany przez następujący proces: Nazwa: jqs, identyfikator 1904. Record Number: 327 Source Name: MsiInstaller Time Written: 20100806220014.000000+120 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM Computer Name: PAWE-15FCC979B1 Event Code: 11728 Message: Produkt: Microsoft .NET Framework 3.5 SP1 -- Konfiguracja zakończyła się pomyślnie. Record Number: 326 Source Name: MsiInstaller Time Written: 20100806215848.000000+120 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem "windir"=%SystemRoot% "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=16 "PROCESSOR_IDENTIFIER"=x86 Family 16 Model 6 Stepping 2, AuthenticAMD "PROCESSOR_REVISION"=0602 "NUMBER_OF_PROCESSORS"=2 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP -----------------EOF-----------------[/log]
Tomek01 komentarz 20 sierpnia 2010 komentarz 20 sierpnia 2010 Bo niestety mamy tutaj Sality. Świadczy o nim ten sterownik: DRV - File not found [Kernel | On_Demand | Running] -- D:\WINDOWS\System32\drivers\jprfun.sys -- (abp470n5) Infekuje on wszystkie pliki exe. [b]Do ponownego postawienia systemu może być potrzebna płytka z systemem.[/b] Pobierz i nagraj na płytkę na [b]niezainfekowanym[/b] komputerze [url=http://www.freedrweb.pl/livecd.php][b]DR Web LiveCD[/b][/url]. Włóż płytkę do zainfekowanego komputera, zakładając, że wcześniej ustawiłeś w BIOS-ie na startowanie kompa z CD/DVD, więc po restarcie powinien się uruchomić się skaner. Wykonujesz pełny skan, leczysz co się da, reszta do usunięcia. Skanujesz tyle razy, aż skaner nic nie znajdzie. Jeśli po usuwaniu system się nie uruchomi, wkładasz do komputera płytkę z systemem i wykonujesz [url=http://www.searchengines.pl/index.php?showtopic=24500&view=findpost&p=109540]instalację nakładkową Windows[/url]. Po ewentualnej instalacji nakładkowej [b]wyłącz i włącz Przywracanie systemu[/b] na wszystkich dyskach. Instrukcja [url=http://support.microsoft.com/kb/310405/pl][b]XP[/b][/url] lub [url=http://windowshelp.microsoft.com/Windows/pl-PL/Help/517d3b8e-3379-46c1-b479-05b30d6fb3f01045.mspx][b]Vista[/b][/url]. Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url]. Jeśli skaner nic nie znajdzie, dla pewności podaj log z [url=http://forum.dobreprogramy.pl/post1170959.html#p1170959][b]Combofix[/b][/url] i wyłącz ponownie przywracanie systemu włączone przez Combofixa.
Sohei komentarz 21 sierpnia 2010 komentarz 21 sierpnia 2010 [code]:Processes Explorer.exe :OTL O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AUToPLaY\commanD - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\exploRe\COmmanD - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\oPen\cOmmaNd - "" = F:\luqanu.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AUtopLAY\COMManD - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\expLore\COmMand - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\oPen\commaND - "" = H:\guqsv.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoplaY\coMmand - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\exPlore\ComMand - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\opeN\cOmmaNd - "" = F:\ohptc.exe -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AUtOplAy\coMmand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\ExplOre\COMMand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\oPen\COmmand - "" = G:\iqdrc.pif -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoplaY\commANd - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoRun\command - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\exploRE\cOMmand - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\oPen\coMManD - "" = F:\nsiyj.exe -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AUTopLAy\comMand - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AutoRun\command - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\expLoRE\cOMmanD - "" = F:\tsvptp.pif -- File not found O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\oPEn\commAnd - "" = F:\tsvptp.pif -- File not found [2010-08-06 13:19:08 | 000,000,000 | ---D | C] -- D:\a13dd659cdf510fd4211 [2010-08-05 17:58:30 | 000,000,000 | ---D | C] -- D:\f67aea37d808c381703dadfc4b662b :files :Commands [emptytemp] [start explorer] [Reboot][/code] Wklejasz to do OTL w białe okienko i klikasz run fix. Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url] Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url] Co znajda usun po czym daj logi z usuwania + nowy log OTL
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.