x-kom hosting

Wpis rejstru / menadżer zadań

w0t2
utworzono
utworzono (edytowane)

Witam wszystkich . Mam problem ;/ Od pewnego czasu nie umiałem włączyć Menadżera zdań , a więc szukałem odpowiedzi i znalazłem aby w REGEDIT zmienić wartości na 0 , ale po zmianie i zamknięciu wszystko samo wskakuje na 1 i nadal nie umiem korzystać z menadżera zdań . Pomoże ktoś co zrobić aby po zapisaniu tam 0 nie zmieniała się wartość na 1? . z góry dziękuję i pozdrawiam .
[color="#ff0000"]
//przenoszę do Bezpieczeństwa
//dan[/color]

nitro07
komentarz
komentarz

Co to znaczy, że nie umiesz włączyć menadżera zadań ? Co się konkretnie dzieje ?

w0t2
komentarz
komentarz

Kiedy Klikam Ctrl + Alt + delte wyskakuje komunikat , że Menadżer zadań został wyłączony przez administratora . A więc poczytałem trochę o tym , że w REGEDIT należy zmienić wartość na 0 a więc tak jak zrobię , to menadżer zdań działa , ale nie minie 5 sec. i wartośc w REGEDIT znów wskakuje na 1 . Więc o to mi chodzi co zrobić aby warość pozostała 0 .

Gość
komentarz
komentarz

Uruchom system w trybie awaryjnym, pobierz ten plik [url]http://www.sendspace.pl/file/c66ebc66eabb5a4765fbe2e[/url]. Zatwierdź i wykonaj restart. Śmierdzi mi coś tutaj wirusem, więc zamieść logi w Bezpieczeństwie.

w0t2
komentarz
komentarz

Hmm sory , że troche Cię zyirytuję , ale czy mógłbyś opisać pokolei te czynności , bo jakoś jestem laikiem w sprawach komputerowych .

Gość
komentarz
komentarz

Przy starcie systemu wciskasz F8, wybierasz Tryb awaryjny. Po uruchomieniu systemu w trybie awaryjnym 2 razy na plik do którego podałem link. W momencie gdy pojawi monit wybierasz "Tak" po czym uruchamiasz ponownie komputer, a już nie w trybie awaryjnym. Sprawdź czy zadziałało.

Tworzenie loga z OTL oraz RSIT [url="http://www.forumpc.pl/index.php?showtopic=104338"]http://www.forumpc.pl/index.php?showtopic=104338[/url]

w0t2
komentarz
komentarz

Po tym jak wgrałem tego Fixa nic się nie stało nadal to samo ; / .


Tutaj Log ( z otl.txt )


[log]OTL logfile created on: 2010-08-20 17:13:47 - Run 1
OTL by OldTimer - Version 3.2.10.0 Folder = D:\Documents and Settings\paweł\Pulpit
Windows XP Home Edition Dodatek Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.2180)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

2,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 77,00% Memory free
4,00 Gb Paging File | 3,00 Gb Available in Paging File | 91,00% Paging File free
Paging file location(s): D:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = D: | %SystemRoot% = D:\WINDOWS | %ProgramFiles% = D:\Program Files
Drive C: | 9,77 Gb Total Space | 1,16 Gb Free Space | 11,92% Space Free | Partition Type: NTFS
Drive D: | 64,75 Gb Total Space | 53,10 Gb Free Space | 82,01% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: PAWE-15FCC979B1
Current User Name: paweł
Logged in as Administrator.

Current Boot Mode: Normal
Scan Mode: All users
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 60 Days
Output = Standard

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe
PRC - [2010-07-30 12:04:57 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2010-07-12 18:33:54 | 001,592,672 | ---- | M] (Nullsoft, Inc.) -- D:\wunamp\Winamp\winamp.exe
PRC - [2010-07-12 18:32:48 | 000,074,752 | ---- | M] (Nullsoft, Inc.) -- D:\wunamp\Winamp\winampa.exe
PRC - [2010-05-14 11:44:46 | 000,248,552 | ---- | M] (Sun Microsystems, Inc.) -- D:\Program Files\Common Files\Java\Java Update\jusched.exe
PRC - [2010-04-30 11:22:34 | 019,523,616 | ---- | M] (Realtek Semiconductor Corp.) -- D:\WINDOWS\RTHDCPL.EXE
PRC - [2010-04-22 18:38:46 | 000,913,776 | ---- | M] (Opera Software) -- D:\Program Files\Opera\opera.exe
PRC - [2009-08-06 19:24:06 | 000,053,472 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wuauclt.exe
PRC - [2009-06-10 08:28:50 | 000,168,004 | ---- | M] (NVIDIA Corporation) -- D:\WINDOWS\system32\nvsvc32.exe
PRC - [2009-05-12 15:43:36 | 002,181,672 | ---- | M] (Gainward Co.) -- D:\Program Files\EXPERTool\TBPANEL.exe
PRC - [2009-02-09 12:10:45 | 000,111,104 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\services.exe
PRC - [2006-03-02 14:00:00 | 001,033,728 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\explorer.exe
PRC - [2006-03-02 14:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winlogon.exe
PRC - [2006-03-02 14:00:00 | 000,057,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\spoolsv.exe
PRC - [2006-03-02 14:00:00 | 000,050,688 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\smss.exe
PRC - [2006-03-02 14:00:00 | 000,033,280 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rundll32.exe
PRC - [2006-03-02 14:00:00 | 000,032,256 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wpabaln.exe
PRC - [2006-03-02 14:00:00 | 000,015,360 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ctfmon.exe
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [HTTPFILTER]
PRC - [2006-03-02 14:00:00 | 000,014,336 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2006-03-02 14:00:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\lsass.exe
PRC - [2006-03-02 14:00:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\csrss.exe
PRC - [2005-01-28 13:44:28 | 000,038,912 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wdfmgr.exe


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe
MOD - [2010-04-16 17:37:04 | 000,474,112 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shlwapi.dll
MOD - [2009-06-25 10:48:08 | 000,056,320 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\secur32.dll
MOD - [2009-04-15 17:18:19 | 000,584,192 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\rpcrt4.dll
MOD - [2009-03-21 16:21:24 | 001,014,784 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 12:22:08 | 000,686,080 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 12:22:06 | 000,722,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 15:01:37 | 000,283,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\gdi32.dll
MOD - [2008-07-03 15:16:27 | 008,483,328 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\shell32.dll
MOD - [2006-03-02 14:00:00 | 001,281,024 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ole32.dll
MOD - [2006-03-02 14:00:00 | 001,050,624 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll
MOD - [2006-03-02 14:00:00 | 000,996,352 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\setupapi.dll
MOD - [2006-03-02 14:00:00 | 000,822,272 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comres.dll
MOD - [2006-03-02 14:00:00 | 000,729,088 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\userenv.dll
MOD - [2006-03-02 14:00:00 | 000,578,560 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\user32.dll
MOD - [2006-03-02 14:00:00 | 000,553,472 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\oleaut32.dll
MOD - [2006-03-02 14:00:00 | 000,501,248 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\clbcatq.dll
MOD - [2006-03-02 14:00:00 | 000,343,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msvcrt.dll
MOD - [2006-03-02 14:00:00 | 000,294,400 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\MSCTF.dll
MOD - [2006-03-02 14:00:00 | 000,279,552 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\comdlg32.dll
MOD - [2006-03-02 14:00:00 | 000,219,648 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\uxtheme.dll
MOD - [2006-03-02 14:00:00 | 000,185,856 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2006-03-02 14:00:00 | 000,172,544 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\wldap32.dll
MOD - [2006-03-02 14:00:00 | 000,146,432 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\winspool.drv
MOD - [2006-03-02 14:00:00 | 000,119,808 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\ntmarta.dll
MOD - [2006-03-02 14:00:00 | 000,102,400 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\msscript.ocx
MOD - [2006-03-02 14:00:00 | 000,083,456 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\olepro32.dll
MOD - [2006-03-02 14:00:00 | 000,067,584 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\srclient.dll
MOD - [2006-03-02 14:00:00 | 000,064,000 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\samlib.dll
MOD - [2006-03-02 14:00:00 | 000,023,040 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\psapi.dll
MOD - [2006-03-02 14:00:00 | 000,018,944 | ---- | M] (Microsoft Corporation) -- D:\WINDOWS\system32\version.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- D:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- D:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Running] -- D:\WINDOWS\System32\drivers\jprfun.sys -- (abp470n5)
DRV - [2010-04-30 10:56:24 | 006,032,928 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2010-04-08 20:30:10 | 000,168,040 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- D:\WINDOWS\system32\DRIVERS\nvgts.sys -- (nvgts)
DRV - [2010-03-04 12:02:10 | 000,013,824 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2010-03-04 12:02:08 | 000,070,912 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2009-11-18 01:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
DRV - [2009-11-18 01:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- D:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
DRV - [2009-07-03 05:11:18 | 008,087,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2007-03-16 10:11:38 | 000,012,256 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Auto | Running] -- D:\WINDOWS\System32\drivers\TBPanel.sys -- (TBPanel)
DRV - [2006-03-02 14:00:00 | 000,012,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\usb8023.sys -- (USB_RNDIS)
DRV - [2005-01-07 17:07:18 | 000,138,752 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- D:\WINDOWS\system32\drivers\Hdaudbus.sys -- (HDAudBus)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm






IE - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/
IE - HKU\S-1-5-21-776561741-2139871995-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - D:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (EpsonToolBandKicker Class) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKLM\..\Toolbar: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O3 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\..\Toolbar\WebBrowser: (EPSON Web-To-Page) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\epson\EPSON Web-To-Page\EPSON Web-To-Page.dll (SEIKO EPSON CORPORATION)
O4 - HKLM..\Run: [NvCplDaemon] D:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] D:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] D:\WINDOWS\System32\nwiz.exe ()
O4 - HKLM..\Run: [WinampAgent] D:\wunamp\Winamp\winampa.exe (Nullsoft, Inc.)
O4 - HKU\S-1-5-21-776561741-2139871995-839522115-1004..\Run: [GAINWARD] D:\Program Files\EXPERTool\TBPanel.exe (Gainward Co.)
O4 - HKU\S-1-5-21-776561741-2139871995-839522115-1004..\Run: [Steam] D:\Program Files\Steam\Steam.exe (Valve Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableTaskMgr = 1
O7 - HKU\S-1-5-21-776561741-2139871995-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableRegistryTools = 1
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - D:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009-10-14 17:27:42 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AUToPLaY\commanD - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\exploRe\COmmanD - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\oPen\cOmmaNd - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AUtopLAY\COMManD - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\expLore\COmMand - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\oPen\commaND - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoplaY\coMmand - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\exPlore\ComMand - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\opeN\cOmmaNd - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AUtOplAy\coMmand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\ExplOre\COMMand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\oPen\COmmand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoplaY\commANd - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoRun\command - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\exploRE\cOMmand - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\oPen\coMManD - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AUTopLAy\comMand - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AutoRun\command - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\expLoRE\cOMmanD - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\oPEn\commAnd - "" = F:\tsvptp.pif -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2010-08-20 17:10:25 | 000,575,488 | ---- | C] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe
[2010-08-20 16:11:39 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\Recent
[2010-08-20 16:10:59 | 000,000,000 | ---D | C] -- D:\Program Files\CCleaner
[2010-08-20 16:10:34 | 000,000,000 | ---D | C] -- D:\ccleaner
[2010-08-20 16:06:39 | 000,000,000 | ---D | C] -- D:\Program Files\Alwil Software
[2010-08-20 16:06:39 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
[2010-08-13 09:02:08 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Pulpit\ets
[2010-08-11 20:57:32 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\UDL
[2010-08-11 20:56:45 | 000,000,000 | ---D | C] -- D:\Program Files\ABBYY FineReader 6.0 Sprint
[2010-08-11 20:52:12 | 000,000,000 | ---D | C] -- D:\Program Files\epson
[2010-08-11 17:00:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\USB Vibration
[2010-08-11 17:00:08 | 000,000,000 | ---D | C] -- D:\Program Files\USB Vibration
[2010-08-09 21:14:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\German Truck Simulator
[2010-08-09 20:42:54 | 000,000,000 | ---D | C] -- D:\Program Files\German Truck Simulator
[2010-08-08 10:10:20 | 000,000,000 | ---D | C] -- D:\Program Files\Steam
[2010-08-07 18:36:34 | 000,000,000 | ---D | C] -- D:\Program Files\Counter-Strike
[2010-08-06 19:00:43 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Identities
[2010-08-06 13:19:08 | 000,000,000 | ---D | C] -- D:\a13dd659cdf510fd4211
[2010-08-05 18:02:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader
[2010-08-05 18:02:09 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\VDownloader
[2010-08-05 18:01:14 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\pl-PL
[2010-08-05 17:59:17 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\XPSViewer
[2010-08-05 17:59:12 | 000,000,000 | ---D | C] -- D:\Program Files\MSBuild
[2010-08-05 17:59:11 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\en-US
[2010-08-05 17:59:02 | 000,000,000 | ---D | C] -- D:\Program Files\Reference Assemblies
[2010-08-05 17:58:30 | 000,000,000 | ---D | C] -- D:\f67aea37d808c381703dadfc4b662b
[2010-08-05 17:57:45 | 000,000,000 | R-SD | C] -- D:\WINDOWS\assembly
[2010-08-05 17:57:25 | 000,000,000 | ---D | C] -- D:\WINDOWS\Microsoft.NET
[2010-08-05 17:56:48 | 000,000,000 | ---D | C] -- D:\Program Files\MSXML 6.0
[2010-08-05 17:41:21 | 000,000,000 | ---D | C] -- D:\Program Files\VDownloader
[2010-08-03 14:10:27 | 000,221,184 | ---- | C] (Copyright to Jeremy) -- D:\Documents and Settings\paweł\Pulpit\AutoTalker X Pro 17.exe
[2010-08-01 12:13:11 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\cache
[2010-08-01 12:11:56 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10
[2010-07-31 23:10:38 | 000,000,000 | ---D | C] -- D:\WINDOWS\ServicePackFiles
[2010-07-31 20:37:00 | 000,000,000 | ---D | C] -- D:\Program Files\Euro Truck Simulator
[2010-07-31 18:09:48 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Lang
[2010-07-31 18:08:07 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\RTCOM
[2010-07-31 18:07:23 | 000,358,944 | ---- | C] (Realtek Semiconductor Crop.) -- D:\WINDOWS\vncutil.exe
[2010-07-31 18:07:15 | 000,129,568 | ---- | C] (Realtek Semiconductor) -- D:\WINDOWS\RtkAudioService.exe
[2010-07-31 18:06:58 | 001,691,480 | ---- | C] (Creative) -- D:\WINDOWS\System32\drivers\Ambfilt.sys
[2010-07-31 18:06:56 | 002,815,520 | ---- | C] (RealTek Semicoductor Corp.) -- D:\WINDOWS\ALCWZRD.EXE
[2010-07-31 18:06:56 | 000,000,000 | ---D | C] -- D:\Program Files\Realtek
[2010-07-31 18:06:48 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\InstallShield
[2010-07-31 18:01:14 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ReinstallBackups
[2010-07-31 18:00:59 | 000,000,000 | ---D | C] -- D:\Program Files\NVIDIA Corporation
[2010-07-31 14:23:53 | 000,000,000 | ---D | C] -- D:\Program Files\Lavalys
[2010-07-31 11:08:43 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Adobe
[2010-07-31 09:14:24 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-07-31 09:14:01 | 000,000,000 | ---D | C] -- D:\Program Files\Gadu-Gadu 10
[2010-07-31 09:05:47 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot_bak
[2010-07-30 22:37:23 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\PreInstall
[2010-07-30 12:20:03 | 000,000,000 | ---D | C] -- D:\WINDOWS\Sun
[2010-07-30 12:05:16 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Sun
[2010-07-30 12:05:16 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Java
[2010-07-30 12:04:54 | 000,000,000 | ---D | C] -- D:\Program Files\Java
[2010-07-30 12:02:34 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Sun
[2010-07-30 11:46:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Macromedia
[2010-07-30 11:46:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Adobe
[2010-07-30 11:42:28 | 000,000,000 | ---D | C] -- D:\WINDOWS\RegisteredPackages
[2010-07-30 11:41:23 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Winamp
[2010-07-30 11:40:35 | 000,000,000 | ---D | C] -- D:\wunamp
[2010-07-30 11:33:27 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\SoftwareDistribution
[2010-07-30 11:32:18 | 000,000,000 | ---D | C] -- D:\Program Files\SAGEM
[2010-07-28 14:07:32 | 000,000,000 | ---D | C] -- D:\Winamp
[2010-07-27 17:05:22 | 000,000,000 | ---D | C] -- D:\Program Files\AGEIA Technologies
[2010-07-27 17:05:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\AGEIA
[2010-07-27 17:05:11 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Wise Installation Wizard
[2010-07-27 17:04:06 | 000,000,000 | -H-D | C] -- D:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010-07-27 17:02:20 | 000,000,000 | ---D | C] -- D:\WINDOWS\Logs
[2010-07-27 17:02:17 | 000,000,000 | ---D | C] -- D:\Program Files\EXPERTool
[2010-07-27 11:26:39 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\WinRAR
[2010-07-27 11:26:17 | 000,000,000 | ---D | C] -- D:\Program Files\WinRAR
[2010-07-27 11:21:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Opera
[2010-07-27 11:21:45 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Opera
[2010-07-27 11:21:36 | 000,000,000 | ---D | C] -- D:\Program Files\Opera
[2010-07-26 20:07:58 | 000,000,000 | -HSD | C] -- D:\WINDOWS\Installer
[2010-07-26 20:07:57 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\ODBC
[2010-07-26 20:07:53 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\SpeechEngines
[2010-07-26 20:07:52 | 000,000,000 | R--D | C] -- D:\Program Files
[2010-07-26 20:07:52 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Microsoft Shared
[2010-07-26 20:07:52 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files
[2010-07-26 20:07:26 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Menu Start
[2010-07-26 20:07:26 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty
[2010-07-26 20:07:26 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\All Users\Szablony
[2010-07-26 20:07:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Ulubione
[2010-07-26 20:07:26 | 000,000,000 | ---D | C] -- D:\Documents and Settings\All Users\Pulpit
[2010-07-26 20:07:13 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot2
[2010-07-26 20:07:13 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\CatRoot
[2010-07-26 20:07:07 | 000,000,000 | --SD | C] -- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft
[2010-07-26 20:07:07 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\All Users\Dane aplikacji
[2010-07-26 20:06:40 | 000,000,000 | -HSD | C] -- D:\System Volume Information
[2010-07-26 20:06:40 | 000,000,000 | ---D | C] -- D:\Documents and Settings
[2010-07-26 20:01:37 | 000,000,000 | R-SD | C] -- D:\WINDOWS\Fonts
[2010-07-26 20:01:37 | 000,000,000 | RHSD | C] -- D:\WINDOWS\System32\dllcache
[2010-07-26 20:01:37 | 000,000,000 | R--D | C] -- D:\WINDOWS\Web
[2010-07-26 20:01:37 | 000,000,000 | -H-D | C] -- D:\WINDOWS\inf
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\WinSxS
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wins
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\wbem
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\usmt
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\twain_32
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Temp
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\system32
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\system
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\spool
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ShellExt
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Setup
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\security
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Resources
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\repair
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ras
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Provisioning
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\PeerNet
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\pchealth
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\oobe
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\npp
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\mui
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\mui
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\msapps
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\msagent
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Media
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\java
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\inetsrv
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\IME
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\ime
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\icsxml
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\ias
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Help
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\export
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\etc
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Driver Cache
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\drivers\disdn
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\dhcp
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Debug
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Cursors
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Connection Wizard
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\config
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\Config
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\AppPatch
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\addins
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3com_dmi
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\3076
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\2052
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1054
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1045
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1042
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1041
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1037
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1033
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1031
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1028
[2010-07-26 20:01:37 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\1025
[2010-07-26 19:04:30 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\UserData
[2010-07-26 19:03:41 | 000,000,000 | ---D | C] -- D:\Avast Antywirus
[2010-07-26 19:00:10 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\InstallShield
[2010-07-26 18:45:13 | 000,000,000 | -HSD | C] -- D:\RECYCLER
[2010-07-26 18:38:16 | 000,000,000 | -H-D | C] -- D:\Program Files\InstallShield Installation Information
[2010-07-26 18:33:29 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Identities
[2010-07-26 18:33:28 | 000,000,000 | -H-D | C] -- D:\Program Files\Uninstall Information
[2010-07-26 18:33:25 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\Moje obrazy
[2010-07-26 18:33:25 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty\Moja muzyka
[2010-07-26 18:33:21 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\Dane aplikacji\Microsoft
[2010-07-26 18:33:21 | 000,000,000 | --SD | C] -- D:\Documents and Settings\paweł\Cookies
[2010-07-26 18:33:21 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\SendTo
[2010-07-26 18:33:21 | 000,000,000 | RH-D | C] -- D:\Documents and Settings\paweł\Dane aplikacji
[2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Ulubione
[2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Moje dokumenty
[2010-07-26 18:33:21 | 000,000,000 | R--D | C] -- D:\Documents and Settings\paweł\Menu Start
[2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne
[2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\Szablony
[2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\PrintHood
[2010-07-26 18:33:21 | 000,000,000 | -H-D | C] -- D:\Documents and Settings\paweł\NetHood
[2010-07-26 18:33:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Pulpit
[2010-07-26 18:33:21 | 000,000,000 | ---D | C] -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-26 18:32:25 | 000,000,000 | ---D | C] -- D:\WINDOWS\SoftwareDistribution
[2010-07-26 18:32:22 | 000,000,000 | ---D | C] -- D:\WINDOWS\Prefetch
[2010-07-26 18:32:14 | 000,000,000 | --SD | C] -- D:\WINDOWS\System32\Microsoft
[2010-07-26 18:32:13 | 000,000,000 | --SD | C] -- D:\Documents and Settings\LocalService\Dane aplikacji\Microsoft
[2010-07-26 18:32:13 | 000,000,000 | ---D | C] -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-26 18:19:00 | 000,000,000 | ---D | C] -- D:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft
[2010-07-26 18:18:59 | 000,000,000 | --SD | C] -- D:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft
[2010-07-26 18:17:20 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia330.dll
[2010-07-26 18:17:20 | 000,080,384 | ---- | C] (Ricoh Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rwia001.dll
[2010-07-26 18:17:20 | 000,026,624 | ---- | C] (RICOH Co., Ltd.) -- D:\WINDOWS\System32\dllcache\rw330ext.dll
[2010-07-26 18:16:23 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- D:\WINDOWS\System32\dllcache\cap7146.sys
[2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\xircom
[2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\Program Files\xerox
[2010-07-26 18:16:04 | 000,000,000 | ---D | C] -- D:\Program Files\microsoft frontpage
[2010-07-26 18:15:59 | 000,000,000 | -H-D | C] -- D:\WINDOWS\$hf_mig$
[2010-07-26 18:15:03 | 000,000,000 | -HSD | C] -- D:\Documents and Settings\All Users\DRM
[2010-07-26 18:14:56 | 000,000,000 | --SD | C] -- D:\WINDOWS\Downloaded Program Files
[2010-07-26 18:14:56 | 000,000,000 | R--D | C] -- D:\WINDOWS\Offline Web Pages
[2010-07-26 18:14:48 | 000,000,000 | -H-D | C] -- D:\Program Files\WindowsUpdate
[2010-07-26 18:14:45 | 000,000,000 | ---D | C] -- D:\Program Files\Usługi online
[2010-07-26 18:14:30 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\DirectX
[2010-07-26 18:13:54 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\Services
[2010-07-26 18:13:51 | 000,000,000 | --SD | C] -- D:\WINDOWS\Tasks
[2010-07-26 18:13:50 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\MSSoap
[2010-07-26 18:13:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\srchasst
[2010-07-26 18:13:43 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Macromed
[2010-07-26 18:13:31 | 000,000,000 | ---D | C] -- D:\Program Files\Movie Maker
[2010-07-26 18:13:21 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Restore
[2010-07-26 18:13:16 | 000,000,000 | ---D | C] -- D:\Program Files\NetMeeting
[2010-07-26 18:13:11 | 000,000,000 | ---D | C] -- D:\Program Files\Outlook Express
[2010-07-26 18:13:03 | 000,000,000 | ---D | C] -- D:\Program Files\Common Files\System
[2010-07-26 18:13:02 | 000,000,000 | ---D | C] -- D:\Program Files\Internet Explorer
[2010-07-26 18:13:01 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty\Moje obrazy
[2010-07-26 18:12:51 | 000,000,000 | ---D | C] -- D:\Program Files\ComPlus Applications
[2010-07-26 18:12:44 | 000,000,000 | ---D | C] -- D:\WINDOWS\Registration
[2010-07-26 18:12:22 | 000,000,000 | R--D | C] -- D:\Documents and Settings\All Users\Dokumenty\Moja muzyka
[2010-07-26 18:12:22 | 000,000,000 | ---D | C] -- D:\Program Files\Windows Media Player
[2010-07-26 18:12:17 | 000,000,000 | ---D | C] -- D:\Program Files\Messenger
[2010-07-26 18:12:13 | 000,000,000 | ---D | C] -- D:\Program Files\MSN Gaming Zone
[2010-07-26 18:11:46 | 000,283,136 | ---- | C] (Cinematronics) -- D:\WINDOWS\System32\dllcache\pinball.exe
[2010-07-26 18:11:44 | 000,000,000 | ---D | C] -- D:\Program Files\Windows NT
[2010-07-26 18:11:40 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\MsDtc
[2010-07-26 18:11:38 | 000,000,000 | ---D | C] -- D:\WINDOWS\System32\Com
[4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2010-08-20 17:12:00 | 000,000,118 | ---- | M] () -- D:\WINDOWS\System32\MRT.INI
[2010-08-20 17:11:41 | 000,575,488 | ---- | M] (OldTimer Tools) -- D:\Documents and Settings\paweł\Pulpit\OTL.exe
[2010-08-20 17:07:42 | 000,235,289 | ---- | M] () -- D:\WINDOWS\System32\NvApps.xml
[2010-08-20 17:07:37 | 000,000,006 | -H-- | M] () -- D:\WINDOWS\tasks\SA.DAT
[2010-08-20 17:07:35 | 000,002,048 | --S- | M] () -- D:\WINDOWS\bootstat.dat
[2010-08-20 17:03:14 | 000,000,480 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\fix.reg
[2010-08-20 16:11:00 | 000,000,682 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\CCleaner.lnk
[2010-08-20 16:10:33 | 001,835,008 | -H-- | M] () -- D:\Documents and Settings\paweł\NTUSER.DAT
[2010-08-20 15:36:38 | 000,001,709 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\admini.doc
[2010-08-20 07:38:57 | 000,006,132 | ---- | M] () -- D:\WINDOWS\System32\wpa.dbl
[2010-08-19 22:26:01 | 000,000,188 | -HS- | M] () -- D:\Documents and Settings\paweł\ntuser.ini
[2010-08-19 22:25:54 | 003,195,358 | -H-- | M] () -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-08-18 16:25:51 | 000,000,046 | ---- | M] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences.dat
[2010-08-18 15:58:51 | 000,000,099 | ---- | M] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences2.dat
[2010-08-18 13:09:26 | 000,001,821 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\przxyda sie.doc
[2010-08-18 12:44:01 | 000,000,409 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\for.inf
[2010-08-11 21:00:01 | 000,001,907 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\EPSON File Manager.lnk
[2010-08-11 20:55:58 | 000,001,803 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\ESDX5000_CX4900 Przewodnik użytkownika.lnk
[2010-08-11 20:52:13 | 000,000,665 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\EPSON Scan.lnk
[2010-08-11 20:51:58 | 000,000,026 | ---- | M] () -- D:\WINDOWS\CDE DX5000.ini
[2010-08-11 14:32:52 | 003,194,460 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\dupa.JPG
[2010-08-09 20:43:28 | 000,001,006 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\German Truck Simulator.lnk
[2010-08-08 12:51:46 | 000,001,627 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Counter-Strike.lnk
[2010-08-08 12:51:46 | 000,001,572 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Half-Life.lnk
[2010-08-06 22:07:49 | 001,042,454 | ---- | M] () -- D:\WINDOWS\System32\PerfStringBackup.INI
[2010-08-06 22:07:49 | 000,490,284 | ---- | M] () -- D:\WINDOWS\System32\perfh015.dat
[2010-08-06 22:07:49 | 000,432,356 | ---- | M] () -- D:\WINDOWS\System32\perfh009.dat
[2010-08-06 22:07:49 | 000,083,660 | ---- | M] () -- D:\WINDOWS\System32\perfc015.dat
[2010-08-06 22:07:49 | 000,067,312 | ---- | M] () -- D:\WINDOWS\System32\perfc009.dat
[2010-08-06 21:58:36 | 000,001,355 | ---- | M] () -- D:\WINDOWS\imsins.BAK
[2010-08-06 20:54:03 | 002,359,350 | ---- | M] () -- D:\Documents and Settings\paweł\Moje dokumenty\dsdsadfasfsaf.bmp
[2010-08-05 20:15:58 | 000,096,664 | ---- | M] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2010-08-05 18:02:16 | 000,012,328 | ---- | M] () -- D:\Documents and Settings\paweł\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-08-05 17:41:22 | 000,001,538 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\VDownloader.lnk
[2010-07-31 18:09:49 | 000,940,794 | ---- | M] () -- D:\WINDOWS\System32\LoopyMusic.wav
[2010-07-31 18:09:49 | 000,146,650 | ---- | M] () -- D:\WINDOWS\System32\BuzzingBee.wav
[2010-07-31 14:23:54 | 000,000,787 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\EVEREST Ultimate Edition.lnk
[2010-07-30 12:20:16 | 000,000,000 | ---- | M] () -- D:\Documents and Settings\paweł\jagex__preferences3.dat
[2010-07-30 12:18:06 | 043,870,568 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\e-l-o.exe
[2010-07-30 11:42:49 | 000,000,587 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-07-30 11:42:43 | 000,316,640 | ---- | M] () -- D:\WINDOWS\WMSysPr9.prx
[2010-07-30 11:32:19 | 000,001,763 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Konfiguracja.lnk
[2010-07-30 11:32:19 | 000,000,163 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\neostrada tp.url
[2010-07-28 12:57:16 | 000,221,184 | ---- | M] (Copyright to Jeremy) -- D:\Documents and Settings\paweł\Pulpit\AutoTalker X Pro 17.exe
[2010-07-27 19:46:48 | 000,000,572 | ---- | M] () -- D:\Documents and Settings\paweł\Moje dokumenty\spider.sav
[2010-07-27 17:02:18 | 000,000,628 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\EXPERTool.lnk
[2010-07-27 16:58:28 | 000,000,664 | ---- | M] () -- D:\WINDOWS\System32\d3d9caps.dat
[2010-07-27 11:21:40 | 000,000,592 | ---- | M] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk
[2010-07-27 10:20:18 | 003,035,825 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\livebox_USB_366819556.zip
[2010-07-27 08:24:30 | 000,000,267 | ---- | M] () -- D:\WINDOWS\system.ini
[2010-07-26 18:33:58 | 000,000,104 | ---- | M] () -- D:\Documents and Settings\paweł\Pulpit\Mój komputer.lnk
[2010-07-26 18:19:02 | 000,008,192 | ---- | M] () -- D:\WINDOWS\REGLOCS.OLD
[2010-07-26 18:17:44 | 000,000,560 | ---- | M] () -- D:\WINDOWS\System32\$winnt$.inf
[2010-07-26 18:15:47 | 000,002,596 | ---- | M] () -- D:\WINDOWS\System32\CONFIG.NT
[2010-07-26 18:15:47 | 000,000,000 | ---- | M] () -- D:\WINDOWS\control.ini
[2010-07-26 18:15:46 | 000,000,477 | ---- | M] () -- D:\WINDOWS\win.ini
[2010-07-26 18:15:44 | 000,023,392 | ---- | M] () -- D:\WINDOWS\System32\nscompat.tlb
[2010-07-26 18:15:44 | 000,016,832 | ---- | M] () -- D:\WINDOWS\System32\amcompat.tlb
[2010-07-26 18:15:34 | 000,004,293 | ---- | M] () -- D:\WINDOWS\ODBCINST.INI
[2010-07-26 18:14:56 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-26 18:14:56 | 000,000,488 | RH-- | M] () -- D:\WINDOWS\System32\logonui.exe.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\WindowsShell.Manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | M] () -- D:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-26 18:13:00 | 000,021,856 | ---- | M] () -- D:\WINDOWS\System32\emptyregdb.dat
[2010-07-26 18:12:49 | 000,000,037 | ---- | M] () -- D:\WINDOWS\vbaddin.ini
[2010-07-26 18:12:49 | 000,000,036 | ---- | M] () -- D:\WINDOWS\vb.ini
[4 D:\WINDOWS\*.tmp files -> D:\WINDOWS\*.tmp -> ]
[1 D:\WINDOWS\System32\*.tmp files -> D:\WINDOWS\System32\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2010-08-20 17:11:59 | 000,000,118 | ---- | C] () -- D:\WINDOWS\System32\MRT.INI
[2010-08-20 17:03:14 | 000,000,480 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\fix.reg
[2010-08-20 16:11:00 | 000,000,682 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\CCleaner.lnk
[2010-08-18 12:40:46 | 000,001,821 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\przxyda sie.doc
[2010-08-18 12:38:37 | 000,000,409 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\for.inf
[2010-08-11 21:04:23 | 003,194,460 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\dupa.JPG
[2010-08-11 21:00:01 | 000,001,907 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\EPSON File Manager.lnk
[2010-08-11 20:56:11 | 000,111,932 | ---- | C] () -- D:\WINDOWS\System32\EPPICPrinterDB.dat
[2010-08-11 20:56:11 | 000,031,053 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern131.dat
[2010-08-11 20:56:11 | 000,027,417 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern121.dat
[2010-08-11 20:56:11 | 000,026,154 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern1.dat
[2010-08-11 20:56:11 | 000,024,903 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern3.dat
[2010-08-11 20:56:11 | 000,021,390 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern5.dat
[2010-08-11 20:56:11 | 000,020,148 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern2.dat
[2010-08-11 20:56:11 | 000,013,732 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_EN.cfg
[2010-08-11 20:56:11 | 000,011,811 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern4.dat
[2010-08-11 20:56:11 | 000,006,442 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_IT.cfg
[2010-08-11 20:56:11 | 000,006,347 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_PT.cfg
[2010-08-11 20:56:11 | 000,006,347 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_BP.cfg
[2010-08-11 20:56:11 | 000,006,335 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_GE.cfg
[2010-08-11 20:56:11 | 000,006,195 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_FR.cfg
[2010-08-11 20:56:11 | 000,006,195 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_CF.cfg
[2010-08-11 20:56:11 | 000,006,122 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_DU.cfg
[2010-08-11 20:56:11 | 000,006,103 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_ES.cfg
[2010-08-11 20:56:11 | 000,005,817 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_KO.cfg
[2010-08-11 20:56:11 | 000,005,436 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_SC.cfg
[2010-08-11 20:56:11 | 000,004,943 | ---- | C] () -- D:\WINDOWS\System32\EPPICPattern6.dat
[2010-08-11 20:56:11 | 000,002,889 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_RU.cfg
[2010-08-11 20:56:11 | 000,002,426 | ---- | C] () -- D:\WINDOWS\System32\EPPICLocal_TC.cfg
[2010-08-11 20:56:11 | 000,001,146 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_DU.dat
[2010-08-11 20:56:11 | 000,001,139 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_PT.dat
[2010-08-11 20:56:11 | 000,001,139 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_BP.dat
[2010-08-11 20:56:11 | 000,001,136 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_ES.dat
[2010-08-11 20:56:11 | 000,001,129 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_FR.dat
[2010-08-11 20:56:11 | 000,001,129 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_CF.dat
[2010-08-11 20:56:11 | 000,001,120 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_IT.dat
[2010-08-11 20:56:11 | 000,001,107 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_GE.dat
[2010-08-11 20:56:11 | 000,001,104 | ---- | C] () -- D:\WINDOWS\System32\EPPICPresetData_EN.dat
[2010-08-11 20:56:11 | 000,000,097 | ---- | C] () -- D:\WINDOWS\System32\PICSDK.ini
[2010-08-11 20:55:58 | 000,001,803 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\ESDX5000_CX4900 Przewodnik użytkownika.lnk
[2010-08-11 20:52:13 | 000,000,665 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\EPSON Scan.lnk
[2010-08-11 20:51:58 | 000,000,026 | ---- | C] () -- D:\WINDOWS\CDE DX5000.ini
[2010-08-10 21:45:25 | 000,062,304 | ---- | C] () -- D:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-08-09 20:43:28 | 000,001,006 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\German Truck Simulator.lnk
[2010-08-08 12:51:46 | 000,001,627 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Counter-Strike.lnk
[2010-08-07 20:07:04 | 000,001,572 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Half-Life.lnk
[2010-08-06 20:53:31 | 002,359,350 | ---- | C] () -- D:\Documents and Settings\paweł\Moje dokumenty\dsdsadfasfsaf.bmp
[2010-08-05 21:17:34 | 000,001,709 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\admini.doc
[2010-08-05 17:41:22 | 000,001,538 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\VDownloader.lnk
[2010-07-31 18:09:49 | 000,940,794 | ---- | C] () -- D:\WINDOWS\System32\LoopyMusic.wav
[2010-07-31 18:09:49 | 000,146,650 | ---- | C] () -- D:\WINDOWS\System32\BuzzingBee.wav
[2010-07-31 18:01:02 | 000,010,084 | ---- | C] () -- D:\WINDOWS\System32\drivers\nvphy.bin
[2010-07-31 14:23:54 | 000,000,787 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\EVEREST Ultimate Edition.lnk
[2010-07-30 12:20:16 | 000,000,099 | ---- | C] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences2.dat
[2010-07-30 12:20:16 | 000,000,000 | ---- | C] () -- D:\Documents and Settings\paweł\jagex__preferences3.dat
[2010-07-30 12:20:08 | 000,000,046 | ---- | C] () -- D:\Documents and Settings\paweł\jagex_runescape_preferences.dat
[2010-07-30 12:05:58 | 043,870,568 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\e-l-o.exe
[2010-07-30 11:42:49 | 000,000,587 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Winamp.lnk
[2010-07-30 11:32:19 | 000,001,763 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Konfiguracja.lnk
[2010-07-30 11:32:19 | 000,000,163 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\neostrada tp.url
[2010-07-27 17:03:46 | 000,019,495 | ---- | C] () -- D:\WINDOWS\System32\nvdisp.nvu
[2010-07-27 17:02:18 | 000,000,628 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\EXPERTool.lnk
[2010-07-27 14:42:18 | 000,000,664 | ---- | C] () -- D:\WINDOWS\System32\d3d9caps.dat
[2010-07-27 11:26:08 | 001,386,941 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\wrar380pl.exe
[2010-07-27 11:21:40 | 000,000,592 | ---- | C] () -- D:\Documents and Settings\All Users\Pulpit\Opera.lnk
[2010-07-27 11:19:02 | 003,035,825 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\livebox_USB_366819556.zip
[2010-07-26 20:54:53 | 000,000,572 | ---- | C] () -- D:\Documents and Settings\paweł\Moje dokumenty\spider.sav
[2010-07-26 20:08:00 | 000,001,355 | ---- | C] () -- D:\WINDOWS\imsins.BAK
[2010-07-26 20:07:55 | 001,685,606 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.spd
[2010-07-26 20:07:55 | 000,000,888 | ---- | C] () -- D:\WINDOWS\System32\dllcache\sam.sdf
[2010-07-26 20:07:54 | 000,605,050 | ---- | C] () -- D:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010-07-26 20:07:53 | 000,643,717 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010-07-26 20:07:51 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28603.nls
[2010-07-26 20:07:51 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28603.nls
[2010-07-26 20:07:49 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_857.nls
[2010-07-26 20:07:49 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_857.nls
[2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28599.nls
[2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_28599.nls
[2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10081.nls
[2010-07-26 20:07:49 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10081.nls
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28595.nls
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28595.NLS
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10017.nls
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10017.nls
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10007.nls
[2010-07-26 20:07:46 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10007.nls
[2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_869.nls
[2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_869.nls
[2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_737.nls
[2010-07-26 20:07:44 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_737.nls
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_875.nls
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_875.nls
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28597.nls
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28597.NLS
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10006.nls
[2010-07-26 20:07:44 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10006.nls
[2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_866.nls
[2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_866.nls
[2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_855.nls
[2010-07-26 20:07:42 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\c_855.nls
[2010-07-26 20:07:42 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28594.nls
[2010-07-26 20:07:42 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\C_28594.NLS
[2010-07-26 20:07:41 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20127.nls
[2010-07-26 20:07:41 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_20127.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10082.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10082.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10029.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10029.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10010.nls
[2010-07-26 20:07:38 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\c_10010.nls
[2010-07-26 20:07:34 | 000,001,734 | ---- | C] () -- D:\WINDOWS\System32\AUTOEXEC.NT
[2010-07-26 20:07:24 | 001,896,400 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5.CAT
[2010-07-26 20:07:24 | 001,014,483 | ---- | C] () -- D:\WINDOWS\System32\dllcache\SP2.CAT
[2010-07-26 20:07:24 | 000,808,524 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010-07-26 20:07:24 | 000,525,346 | ---- | C] () -- D:\WINDOWS\System32\dllcache\NT5INF.CAT
[2010-07-26 20:07:24 | 000,399,670 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010-07-26 20:07:24 | 000,168,806 | ---- | C] () -- D:\WINDOWS\System32\dllcache\startoc.cat
[2010-07-26 20:07:24 | 000,037,509 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MW770.CAT
[2010-07-26 20:07:24 | 000,030,983 | ---- | C] () -- D:\WINDOWS\System32\dllcache\FP4.CAT
[2010-07-26 20:07:24 | 000,014,043 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IMS.CAT
[2010-07-26 20:07:24 | 000,013,497 | ---- | C] () -- D:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010-07-26 20:07:24 | 000,009,581 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2010-07-26 20:07:24 | 000,008,599 | ---- | C] () -- D:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010-07-26 20:07:24 | 000,007,407 | ---- | C] () -- D:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010-07-26 20:07:24 | 000,007,334 | ---- | C] () -- D:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010-07-26 20:07:24 | 000,007,245 | ---- | C] () -- D:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2010-07-26 20:06:39 | 000,096,664 | ---- | C] () -- D:\WINDOWS\System32\FNTCACHE.DAT
[2010-07-26 20:05:50 | 000,000,560 | ---- | C] () -- D:\WINDOWS\System32\$winnt$.inf
[2010-07-26 18:33:58 | 000,000,104 | ---- | C] () -- D:\Documents and Settings\paweł\Pulpit\Mój komputer.lnk
[2010-07-26 18:33:22 | 000,024,576 | -H-- | C] () -- D:\Documents and Settings\paweł\ntuser.dat.LOG
[2010-07-26 18:33:22 | 000,000,188 | -HS- | C] () -- D:\Documents and Settings\paweł\ntuser.ini
[2010-07-26 18:33:21 | 001,835,008 | -H-- | C] () -- D:\Documents and Settings\paweł\NTUSER.DAT
[2010-07-26 18:19:02 | 000,008,192 | ---- | C] () -- D:\WINDOWS\REGLOCS.OLD
[2010-07-26 18:17:42 | 000,002,048 | --S- | C] () -- D:\WINDOWS\bootstat.dat
[2010-07-26 18:17:38 | 000,028,288 | ---- | C] () -- D:\WINDOWS\System32\dllcache\xjis.nls
[2010-07-26 18:17:17 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prcp.nls
[2010-07-26 18:17:17 | 000,083,748 | ---- | C] () -- D:\WINDOWS\System32\dllcache\prc.nls
[2010-07-26 18:17:16 | 000,175,104 | ---- | C] () -- D:\WINDOWS\System32\dllcache\pintlcsa.dll
[2010-07-26 18:17:05 | 000,047,066 | ---- | C] () -- D:\WINDOWS\System32\dllcache\ksc.nls
[2010-07-26 18:17:04 | 001,158,818 | ---- | C] () -- D:\WINDOWS\System32\dllcache\korwbrkr.lex
[2010-07-26 18:16:59 | 000,196,665 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imjpinst.exe
[2010-07-26 18:16:59 | 000,059,392 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imscinst.exe
[2010-07-26 18:16:56 | 000,134,339 | ---- | C] () -- D:\WINDOWS\System32\dllcache\imekr.lex
[2010-07-26 18:16:44 | 013,463,552 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hwxjpn.dll
[2010-07-26 18:16:37 | 000,108,827 | ---- | C] () -- D:\WINDOWS\System32\dllcache\hanja.lex
[2010-07-26 18:16:35 | 000,094,208 | ---- | C] () -- D:\WINDOWS\System32\dllcache\fpencode.dll
[2010-07-26 18:16:26 | 000,173,568 | ---- | C] () -- D:\WINDOWS\System32\dllcache\chtskf.dll
[2010-07-26 18:16:22 | 000,180,770 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20932.nls
[2010-07-26 18:16:22 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20949.nls
[2010-07-26 18:16:22 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20936.nls
[2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_864.nls
[2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_862.nls
[2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_858.nls
[2010-07-26 18:16:22 | 000,066,594 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_720.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_870.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_708.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_28596.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21027.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_21025.nls
[2010-07-26 18:16:22 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20924.nls
[2010-07-26 18:16:21 | 000,187,938 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20005.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20880.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20871.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20838.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20833.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20424.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20423.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20420.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20297.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20290.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20285.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20284.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20280.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20278.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20277.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20273.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20269.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20108.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20107.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20106.nls
[2010-07-26 18:16:21 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20105.nls
[2010-07-26 18:16:20 | 000,189,986 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1361.nls
[2010-07-26 18:16:20 | 000,186,402 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20001.nls
[2010-07-26 18:16:20 | 000,185,378 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20003.nls
[2010-07-26 18:16:20 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20004.nls
[2010-07-26 18:16:20 | 000,180,258 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20000.nls
[2010-07-26 18:16:20 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_20002.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1149.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1148.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1147.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1146.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1145.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1144.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1143.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1142.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1141.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1140.nls
[2010-07-26 18:16:20 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_1047.nls
[2010-07-26 18:16:19 | 000,195,618 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10002.nls
[2010-07-26 18:16:19 | 000,177,698 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10003.nls
[2010-07-26 18:16:19 | 000,173,602 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10008.nls
[2010-07-26 18:16:19 | 000,162,850 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10001.nls
[2010-07-26 18:16:19 | 000,082,172 | ---- | C] () -- D:\WINDOWS\System32\dllcache\bopomofo.nls
[2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10021.nls
[2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10005.nls
[2010-07-26 18:16:19 | 000,066,082 | ---- | C] () -- D:\WINDOWS\System32\dllcache\c_10004.nls
[2010-07-26 18:16:18 | 000,066,728 | ---- | C] () -- D:\WINDOWS\System32\dllcache\big5.nls
[2010-07-26 18:15:47 | 000,002,596 | ---- | C] () -- D:\WINDOWS\System32\CONFIG.NT
[2010-07-26 18:15:44 | 000,023,392 | ---- | C] () -- D:\WINDOWS\System32\nscompat.tlb
[2010-07-26 18:15:44 | 000,016,832 | ---- | C] () -- D:\WINDOWS\System32\amcompat.tlb
[2010-07-26 18:15:43 | 000,316,640 | ---- | C] () -- D:\WINDOWS\WMSysPr9.prx
[2010-07-26 18:14:56 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\WindowsLogon.manifest
[2010-07-26 18:14:56 | 000,000,488 | RH-- | C] () -- D:\WINDOWS\System32\logonui.exe.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\wuaucpl.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\WindowsShell.Manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\sapi.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\nwc.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\ncpa.cpl.manifest
[2010-07-26 18:14:52 | 000,000,749 | RH-- | C] () -- D:\WINDOWS\System32\cdplayer.exe.manifest
[2010-07-26 18:14:36 | 004,399,505 | ---- | C] () -- D:\WINDOWS\System32\dllcache\nls302en.lex
[2010-07-26 18:14:03 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt256.bmp
[2010-07-26 18:14:03 | 000,048,680 | -HS- | C] () -- D:\WINDOWS\winnt.bmp
[2010-07-26 18:13:56 | 000,000,984 | ---- | C] () -- D:\WINDOWS\System32\dllcache\srframe.mmf
[2010-07-26 18:13:40 | 000,004,639 | ---- | C] () -- D:\WINDOWS\System32\dllcache\mplayer2.exe
[2010-07-26 18:13:24 | 000,379,904 | ---- | C] () -- D:\WINDOWS\System32\dllcache\msinfo.dll
[2010-07-26 18:13:00 | 000,021,856 | ---- | C] () -- D:\WINDOWS\System32\emptyregdb.dat
[2010-07-26 18:11:59 | 000,065,954 | ---- | C] () -- D:\WINDOWS\Pod mikroskopem.bmp
[2010-07-26 18:11:59 | 000,065,832 | ---- | C] () -- D:\WINDOWS\Stiuk z Santa Fe.bmp
[2010-07-26 18:11:59 | 000,026,680 | ---- | C] () -- D:\WINDOWS\Wachlarze.bmp
[2010-07-26 18:11:59 | 000,017,362 | ---- | C] () -- D:\WINDOWS\Rododendron.bmp
[2010-07-26 18:11:59 | 000,009,522 | ---- | C] () -- D:\WINDOWS\Indiański pled.bmp
[2010-07-26 18:11:58 | 000,093,702 | ---- | C] () -- D:\WINDOWS\System32\subrange.uce
[2010-07-26 18:11:58 | 000,065,978 | ---- | C] () -- D:\WINDOWS\Bąbelki.bmp
[2010-07-26 18:11:58 | 000,026,582 | ---- | C] () -- D:\WINDOWS\Nefryt.bmp
[2010-07-26 18:11:58 | 000,017,336 | ---- | C] () -- D:\WINDOWS\Na rybkach.bmp
[2010-07-26 18:11:58 | 000,017,062 | ---- | C] () -- D:\WINDOWS\Kawa.bmp
[2010-07-26 18:11:58 | 000,016,730 | ---- | C] () -- D:\WINDOWS\Puch.bmp
[2010-07-26 18:11:58 | 000,001,272 | ---- | C] () -- D:\WINDOWS\Niebieska koronka 16.bmp
[2010-07-26 18:11:57 | 000,060,458 | ---- | C] () -- D:\WINDOWS\System32\ideograf.uce
[2010-07-26 18:11:57 | 000,024,006 | ---- | C] () -- D:\WINDOWS\System32\gb2312.uce
[2010-07-26 18:11:57 | 000,022,984 | ---- | C] () -- D:\WINDOWS\System32\bopomofo.uce
[2010-07-26 18:11:57 | 000,016,740 | ---- | C] () -- D:\WINDOWS\System32\shiftjis.uce
[2010-07-26 18:11:57 | 000,012,876 | ---- | C] () -- D:\WINDOWS\System32\korean.uce
[2010-07-26 18:11:57 | 000,008,484 | ---- | C] () -- D:\WINDOWS\System32\kanji_2.uce
[2010-07-26 18:11:57 | 000,006,948 | ---- | C] () -- D:\WINDOWS\System32\kanji_1.uce
[2010-07-26 18:11:55 | 000,001,225 | ---- | C] () -- D:\WINDOWS\System32\usrlogon.cmd
[2010-07-26 18:11:54 | 000,003,286 | ---- | C] () -- D:\WINDOWS\System32\tslabels.h
[2010-07-26 18:11:53 | 000,000,768 | ---- | C] () -- D:\WINDOWS\System32\msdtcprf.h
[2010-07-26 18:11:47 | 000,063,488 | ---- | C] () -- D:\WINDOWS\System32\wmimgmt.msc
[2009-07-03 05:11:18 | 000,007,274 | ---- | C] () -- D:\WINDOWS\cadx2.ini
[2009-06-10 08:29:34 | 001,724,416 | ---- | C] () -- D:\WINDOWS\System32\nvwdmcpl.dll
[2009-06-10 08:29:34 | 001,101,824 | ---- | C] () -- D:\WINDOWS\System32\nvwimg.dll
[2009-06-10 08:29:34 | 000,466,944 | ---- | C] () -- D:\WINDOWS\System32\nvshell.dll
[2009-06-10 08:29:32 | 001,507,328 | ---- | C] () -- D:\WINDOWS\System32\nview.dll
[2008-10-07 09:13:30 | 000,197,912 | ---- | C] () -- D:\WINDOWS\System32\physxcudart_20.dll
[2008-10-07 09:13:22 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelTraditionalChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSwedish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSpanish.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelSimplifiedChinese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelPortugese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelKorean.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelJapanese.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelGerman.dll
[2008-10-07 09:13:20 | 000,058,648 | ---- | C] () -- D:\WINDOWS\System32\AgCPanelFrench.dll
[2006-03-02 14:00:00 | 000,027,440 | ---- | C] () -- D:\WINDOWS\System32\drivers\secdrv.sys

[color=#E56717]========== LOP Check ==========[/color]

[2010-08-20 16:06:39 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
[2010-07-31 09:14:25 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-08-11 20:58:33 | 000,000,000 | ---D | M] -- D:\Documents and Settings\All Users\Dane aplikacji\UDL
[2010-08-07 18:46:05 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10
[2010-07-27 11:21:45 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\Opera
[2010-08-05 18:02:16 | 000,000,000 | ---D | M] -- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader

[color=#E56717]========== Purity Check ==========[/color]


< End of report >[/log]

Tutaj z programu RIST

Z programu RIST notatnik o nazwie LOG

[log]Logfile of random's system information tool 1.08 (written by random/random)
Run by paweł at 2010-08-20 17:18:09
Microsoft Windows XP Home Edition Dodatek Service Pack 2
System drive D: has 54 GB (82%) free of 66 GB
Total RAM: 2047 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:18:15, on 2010-08-20
Platform: Windows XP Dodatek SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\nvsvc32.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Java\jre6\bin\jqs.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\RUNDLL32.EXE
D:\wunamp\Winamp\winampa.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\WINDOWS\RTHDCPL.EXE
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\EXPERTool\TBPanel.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Opera\opera.exe
D:\WINDOWS\system32\wuauclt.exe
D:\WINDOWS\system32\wpabaln.exe
D:\wunamp\Winamp\winamp.exe
D:\Documents and Settings\paweł\Pulpit\RSIT.exe
D:\Program Files\trend micro\paweł.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [WinampAgent] D:\wunamp\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [MRT] "D:\WINDOWS\system32\MRT.exe" /R
O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [GAINWARD] D:\Program Files\EXPERTool\TBPanel.exe /A
O4 - HKCU\..\Run: [Steam] "D:\Program Files\Steam\Steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - D:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe

--
End of file - 3751 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - D:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-07-30 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - D:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-07-30 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - D:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"nwiz"=nwiz.exe /install []
"NvMediaCenter"=D:\WINDOWS\system32\NvMcTray.dll [2009-06-10 86016]
"NvCplDaemon"=D:\WINDOWS\system32\NvCpl.dll [2009-06-10 13758464]
"WinampAgent"=D:\wunamp\Winamp\winampa.exe [2010-07-12 74752]
"SunJavaUpdateSched"=D:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"RTHDCPL"=D:\WINDOWS\RTHDCPL.EXE [2010-04-30 19523616]
"MRT"=D:\WINDOWS\system32\MRT.exe [2010-08-03 35962312]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=D:\WINDOWS\system32\ctfmon.exe [2006-03-02 15360]
"GAINWARD"=D:\Program Files\EXPERTool\TBPanel.exe [2009-05-12 2181672]
"Steam"=D:\Program Files\Steam\Steam.exe [2010-08-20 1320272]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=1
"DisableRegistryTools"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableLUA"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"F:\nsiyj.exe"="F:\nsiyj.exe:*:Enabled:ipsec"
"D:\WINDOWS\Explorer.EXE"="D:\WINDOWS\Explorer.EXE:*:Enabled:ipsec"
"D:\Program Files\Opera\opera.exe"="D:\Program Files\Opera\Opera.exe:*:Enabled:ipsec"
"D:\Counter Strike NS\cstrike.exe"="D:\Counter Strike NS\cstrike.exe:*:Enabled:ipsec"
"D:\WINDOWS\system32\ctfmon.exe"="D:\WINDOWS\system32\ctfmon.exe:*:Enabled:ipsec"
"D:\WINDOWS\system32\wpabaln.exe"="D:\WINDOWS\system32\wpabaln.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ovvnl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ovvnl.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxxkmm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxxkmm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjbero.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjbero.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fmhff.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fmhff.exe:*:Enabled:ipsec"
"D:\WINDOWS\system32\RUNDLL32.EXE"="D:\WINDOWS\system32\RUNDLL32.EXE:*:Enabled:ipsec"
"D:\WINDOWS\system32\nwiz.exe"="D:\WINDOWS\system32\nwiz.exe:*:Enabled:ipsec"
"D:\WINDOWS\system32\userinit.exe"="D:\WINDOWS\system32\userinit.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winugoa.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winugoa.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\jpir.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\jpir.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winydbt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winydbt.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxphj.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxphj.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\eyrcr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\eyrcr.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winimdqll.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winimdqll.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winqrhq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winqrhq.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winpqbg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winpqbg.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winvqlow.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winvqlow.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qvlst.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qvlst.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winaqmd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winaqmd.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qdeeum.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qdeeum.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wife.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wife.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ojgny.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ojgny.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfgekmv.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfgekmv.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmgqo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmgqo.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjffuv.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjffuv.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfehil.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfehil.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\tikp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\tikp.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bqqlvk.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bqqlvk.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrjrs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrjrs.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hwjahu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hwjahu.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wincnlm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wincnlm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qqjiee.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\qqjiee.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vxnfe.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vxnfe.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\uhtiq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\uhtiq.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfuusi.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfuusi.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kuorb.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kuorb.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsvnf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsvnf.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwbbd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwbbd.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\rwynp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\rwynp.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbqcsys.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbqcsys.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfoytkr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfoytkr.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\miqjc.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\miqjc.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kecfoy.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kecfoy.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windpkyvb.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windpkyvb.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winikcs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winikcs.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrsflt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrsflt.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjtwomg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winjtwomg.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winslieba.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winslieba.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mucrpx.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mucrpx.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\astix.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\astix.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winhvgm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winhvgm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\cfij.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\cfij.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kslp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kslp.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\courm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\courm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wyas.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wyas.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\armnlq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\armnlq.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winajgt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winajgt.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winecdsa.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winecdsa.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\odim.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\odim.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\halmde.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\halmde.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxkbijo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winxkbijo.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bxdjjf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\bxdjjf.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winonsuwr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winonsuwr.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfunf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winfunf.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winoqhg.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winoqhg.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vuaqd.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\vuaqd.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winlfjmu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winlfjmu.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ajhkdr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\ajhkdr.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrquc.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winrquc.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\insl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\insl.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\konshl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\konshl.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mepxvq.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\mepxvq.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbkfuo.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbkfuo.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dwun.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dwun.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hnbyn.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hnbyn.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wintserat.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wintserat.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windxqsw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\windxqsw.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fooad.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\fooad.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbims.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbims.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winufpu.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winufpu.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwdetpp.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winwdetpp.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmcyr.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmcyr.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winobxf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winobxf.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbgok.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winbgok.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winyilny.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winyilny.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winuwfsxw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winuwfsxw.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\leeauf.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\leeauf.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winndyhl.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winndyhl.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hfgdfs.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\hfgdfs.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wingfnm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\wingfnm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsaddm.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winsaddm.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dslkpt.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\dslkpt.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmprw.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\winmprw.exe:*:Enabled:ipsec"
"D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kofac.exe"="D:\DOCUME~1\PAWE~1\USTAWI~1\Temp\kofac.exe:*:Enabled:ipsec"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

======List of files/folders created in the last 1 months======

2010-08-20 17:18:09 ----D---- D:\rsit
2010-08-20 17:18:09 ----D---- D:\Program Files\trend micro
2010-08-20 17:11:59 ----A---- D:\WINDOWS\system32\MRT.INI
2010-08-20 17:09:10 ----A---- D:\WINDOWS\system32\MRT.exe
2010-08-20 16:10:59 ----D---- D:\Program Files\CCleaner
2010-08-20 16:10:34 ----D---- D:\ccleaner
2010-08-20 16:06:39 ----D---- D:\Program Files\Alwil Software
2010-08-20 16:06:39 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Alwil Software
2010-08-11 20:57:32 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\UDL
2010-08-11 20:56:45 ----D---- D:\Program Files\ABBYY FineReader 6.0 Sprint
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK2.dll
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK.ini
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICSDK.dll
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\PICEntry.dll
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\EpPicPrt.dll
2010-08-11 20:56:11 ----A---- D:\WINDOWS\system32\EPPicMgr.dll
2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_FLBBVE.DLL
2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_FD4BBVE.DLL
2010-08-11 20:55:02 ----A---- D:\WINDOWS\system32\E_DCINST.DLL
2010-08-11 20:54:53 ----A---- D:\WINDOWS\system32\drivers\usbprint.sys
2010-08-11 20:54:48 ----A---- D:\WINDOWS\system32\drivers\usbscan.sys
2010-08-11 20:52:20 ----A---- D:\WINDOWS\EPSTPLOG.TXT
2010-08-11 20:52:20 ----A---- D:\WINDOWS\EPSMTL32.TXT
2010-08-11 20:52:12 ----D---- D:\Program Files\epson
2010-08-11 20:52:10 ----A---- D:\WINDOWS\system32\escwiad.dll
2010-08-11 20:51:58 ----A---- D:\WINDOWS\CDE DX5000.ini
2010-08-11 20:51:26 ----A---- D:\WINDOWS\epsswt_log.txt
2010-08-11 17:00:22 ----D---- D:\WINDOWS\USB Vibration
2010-08-11 17:00:08 ----D---- D:\Program Files\USB Vibration
2010-08-09 20:42:54 ----D---- D:\Program Files\German Truck Simulator
2010-08-08 10:10:20 ----D---- D:\Program Files\Steam
2010-08-07 18:36:34 ----D---- D:\Program Files\Counter-Strike
2010-08-06 22:04:54 ----HDC---- D:\WINDOWS\$NtUninstallKB961118$
2010-08-06 21:58:30 ----HDC---- D:\WINDOWS\$NtUninstallKB925720$
2010-08-06 13:19:08 ----D---- D:\a13dd659cdf510fd4211
2010-08-05 18:02:16 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\VDownloader
2010-08-05 18:01:30 ----N---- D:\WINDOWS\system32\spmsg2.dll
2010-08-05 18:01:27 ----HDC---- D:\WINDOWS\$NtUninstallXPSEPSCLP$
2010-08-05 18:01:14 ----D---- D:\WINDOWS\system32\pl-PL
2010-08-05 17:59:17 ----D---- D:\WINDOWS\system32\XPSViewer
2010-08-05 17:59:12 ----D---- D:\Program Files\MSBuild
2010-08-05 17:59:11 ----D---- D:\WINDOWS\system32\en-US
2010-08-05 17:59:02 ----D---- D:\Program Files\Reference Assemblies
2010-08-05 17:58:31 ----N---- D:\WINDOWS\system32\prntvpt.dll
2010-08-05 17:58:30 ----N---- D:\WINDOWS\system32\xpssvcs.dll
2010-08-05 17:58:30 ----N---- D:\WINDOWS\system32\xpsshhdr.dll
2010-08-05 17:58:30 ----D---- D:\f67aea37d808c381703dadfc4b662b
2010-08-05 17:57:45 ----RSD---- D:\WINDOWS\assembly
2010-08-05 17:57:25 ----D---- D:\WINDOWS\Microsoft.NET
2010-08-05 17:56:52 ----HDC---- D:\WINDOWS\$NtUninstallWIC$
2010-08-05 17:56:48 ----D---- D:\Program Files\MSXML 6.0
2010-08-05 17:41:21 ----D---- D:\Program Files\VDownloader
2010-08-01 21:21:13 ----HDC---- D:\WINDOWS\$NtUninstallKB935448$
2010-08-01 21:21:08 ----HDC---- D:\WINDOWS\$NtUninstallKB970430$
2010-08-01 21:21:03 ----HDC---- D:\WINDOWS\$NtUninstallKB971737$
2010-08-01 12:11:56 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Gadu-Gadu 10
2010-07-31 23:14:31 ----HDC---- D:\WINDOWS\$NtUninstallKB980218$
2010-07-31 23:14:28 ----HDC---- D:\WINDOWS\$NtUninstallKB951376-v2$
2010-07-31 23:14:25 ----HDC---- D:\WINDOWS\$NtUninstallKB952954$
2010-07-31 23:14:21 ----HDC---- D:\WINDOWS\$NtUninstallKB959426$
2010-07-31 23:14:17 ----HDC---- D:\WINDOWS\$NtUninstallKB946648$
2010-07-31 23:14:13 ----HDC---- D:\WINDOWS\$NtUninstallKB956803$
2010-07-31 23:14:09 ----HDC---- D:\WINDOWS\$NtUninstallKB960859$
2010-07-31 23:14:02 ----HDC---- D:\WINDOWS\$NtUninstallKB979683$
2010-07-31 23:13:59 ----HDC---- D:\WINDOWS\$NtUninstallKB958869$
2010-07-31 23:13:56 ----HDC---- D:\WINDOWS\$NtUninstallKB954155_WM9$
2010-07-31 23:13:53 ----HDC---- D:\WINDOWS\$NtUninstallKB980195$
2010-07-31 23:13:50 ----HDC---- D:\WINDOWS\$NtUninstallKB980232$
2010-07-31 23:13:46 ----HDC---- D:\WINDOWS\$NtUninstallKB981350$
2010-07-31 23:13:41 ----HDC---- D:\WINDOWS\$NtUninstallKB955759$
2010-07-31 23:13:37 ----HDC---- D:\WINDOWS\$NtUninstallKB969059$
2010-07-31 23:13:33 ----HDC---- D:\WINDOWS\$NtUninstallKB2229593$
2010-07-31 23:13:29 ----HDC---- D:\WINDOWS\$NtUninstallKB950974$
2010-07-31 23:13:25 ----HDC---- D:\WINDOWS\$NtUninstallKB978037$
2010-07-31 23:13:20 ----HDC---- D:\WINDOWS\$NtUninstallKB975713$
2010-07-31 23:13:17 ----HDC---- D:\WINDOWS\$NtUninstallKB971657$
2010-07-31 23:13:13 ----HDC---- D:\WINDOWS\$NtUninstallKB960225$
2010-07-31 23:13:09 ----HDC---- D:\WINDOWS\$NtUninstallKB972270$
2010-07-31 23:13:06 ----HDC---- D:\WINDOWS\$NtUninstallKB974112$
2010-07-31 23:12:53 ----HDC---- D:\WINDOWS\$NtUninstallKB956572$
2010-07-31 23:12:48 ----HDC---- D:\WINDOWS\$NtUninstallKB956844$
2010-07-31 23:12:43 ----HDC---- D:\WINDOWS\$NtUninstallKB975561$
2010-07-31 23:12:39 ----HDC---- D:\WINDOWS\$NtUninstallKB952069_WM9$
2010-07-31 23:12:36 ----HDC---- D:\WINDOWS\$NtUninstallKB973869$
2010-07-31 23:12:32 ----HDC---- D:\WINDOWS\$NtUninstallKB975025$
2010-07-31 23:12:29 ----HDC---- D:\WINDOWS\$NtUninstallKB973540_WM9L$
2010-07-31 23:12:23 ----HDC---- D:\WINDOWS\$NtUninstallKB952004$
2010-07-31 23:12:19 ----HDC---- D:\WINDOWS\$NtUninstallKB974571$
2010-07-31 23:12:15 ----HDC---- D:\WINDOWS\$NtUninstallKB973507$
2010-07-31 23:12:12 ----HDC---- D:\WINDOWS\$NtUninstallKB941569$
2010-07-31 23:12:00 ----HDC---- D:\WINDOWS\$NtUninstallKB977816$
2010-07-31 23:11:56 ----HDC---- D:\WINDOWS\$NtUninstallKB973687$
2010-07-31 23:11:52 ----HDC---- D:\WINDOWS\$NtUninstallKB950762$
2010-07-31 23:11:49 ----HDC---- D:\WINDOWS\$NtUninstallKB981793$
2010-07-31 23:11:46 ----HDC---- D:\WINDOWS\$NtUninstallKB978601$
2010-07-31 23:11:41 ----HDC---- D:\WINDOWS\$NtUninstallKB979559$
2010-07-31 23:11:38 ----HDC---- D:\WINDOWS\$NtUninstallKB952287$
2010-07-31 23:11:33 ----HDC---- D:\WINDOWS\$NtUninstallKB973904$
2010-07-31 23:11:26 ----HDC---- D:\WINDOWS\$NtUninstallKB967715$
2010-07-31 23:11:22 ----HDC---- D:\WINDOWS\$NtUninstallKB950760$
2010-07-31 23:11:15 ----HDC---- D:\WINDOWS\$NtUninstallKB977914$
2010-07-31 23:11:06 ----HDC---- D:\WINDOWS\$NtUninstallKB951748$
2010-07-31 23:11:02 ----HDC---- D:\WINDOWS\$NtUninstallKB971961$
2010-07-31 23:10:58 ----HDC---- D:\WINDOWS\$NtUninstallKB978542$
2010-07-31 23:10:53 ----HDC---- D:\WINDOWS\$NtUninstallKB970238$
2010-07-31 23:10:49 ----HDC---- D:\WINDOWS\$NtUninstallKB979309$
2010-07-31 23:10:46 ----HDC---- D:\WINDOWS\$NtUninstallKB979482$
2010-07-31 23:10:42 ----HDC---- D:\WINDOWS\$NtUninstallKB978706$
2010-07-31 23:10:38 ----D---- D:\WINDOWS\ServicePackFiles
2010-07-31 23:10:35 ----HDC---- D:\WINDOWS\$NtUninstallKB958470$
2010-07-31 23:10:31 ----HDC---- D:\WINDOWS\$NtUninstallKB960803$
2010-07-31 23:10:28 ----HDC---- D:\WINDOWS\$NtUninstallKB973815$
2010-07-31 23:10:24 ----HDC---- D:\WINDOWS\$NtUninstallKB975562$
2010-07-31 23:10:20 ----HDC---- D:\WINDOWS\$NtUninstallKB958644$
2010-07-31 23:10:18 ----A---- D:\WINDOWS\system32\wmpns.dll
2010-07-31 23:10:15 ----HDC---- D:\WINDOWS\$NtUninstallKB979402_WM9L$
2010-07-31 23:10:11 ----HDC---- D:\WINDOWS\$NtUninstallKB956802$
2010-07-31 23:09:57 ----HDC---- D:\WINDOWS\$NtUninstallKB982381$
2010-07-31 23:09:50 ----HDC---- D:\WINDOWS\$NtUninstallKB944338-v2$
2010-07-31 23:09:45 ----HDC---- D:\WINDOWS\$NtUninstallKB923561$
2010-07-31 23:09:41 ----HDC---- D:\WINDOWS\$NtUninstallKB975467$
2010-07-31 23:09:34 ----N---- D:\WINDOWS\system32\spmsg.dll
2010-07-31 23:09:33 ----HDC---- D:\WINDOWS\$NtUninstallKB968389$
2010-07-31 20:37:00 ----D---- D:\Program Files\Euro Truck Simulator
2010-07-31 18:09:48 ----D---- D:\WINDOWS\system32\Lang
2010-07-31 18:08:26 ----A---- D:\WINDOWS\system32\drivers\splitter.sys
2010-07-31 18:08:25 ----A---- D:\WINDOWS\system32\drivers\wdmaud.sys
2010-07-31 18:08:24 ----A---- D:\WINDOWS\system32\drivers\DMusic.sys
2010-07-31 18:08:21 ----A---- D:\WINDOWS\system32\drivers\swmidi.sys
2010-07-31 18:08:19 ----A---- D:\WINDOWS\system32\drivers\aec.sys
2010-07-31 18:08:18 ----A---- D:\WINDOWS\system32\drivers\kmixer.sys
2010-07-31 18:08:17 ----A---- D:\WINDOWS\system32\drivers\drmkaud.sys
2010-07-31 18:08:16 ----A---- D:\WINDOWS\system32\drivers\sysaudio.sys
2010-07-31 18:08:15 ----A---- D:\WINDOWS\system32\drivers\MSKSSRV.sys
2010-07-31 18:08:14 ----A---- D:\WINDOWS\system32\drivers\MSPQM.sys
2010-07-31 18:08:12 ----A---- D:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010-07-31 18:08:07 ----D---- D:\WINDOWS\system32\RTCOM
2010-07-31 18:08:02 ----A---- D:\WINDOWS\system32\ksuser.dll
2010-07-31 18:08:02 ----A---- D:\WINDOWS\system32\drivers\drmk.sys
2010-07-31 18:07:34 ----HDC---- D:\WINDOWS\$NtUninstallKB888111WXPSP2$
2010-07-31 18:07:23 ----A---- D:\WINDOWS\vncutil.exe
2010-07-31 18:07:23 ----A---- D:\WINDOWS\SOUNDMAN.EXE
2010-07-31 18:07:22 ----A---- D:\WINDOWS\SkyTel.exe
2010-07-31 18:07:20 ----A---- D:\WINDOWS\RtlUpd.exe
2010-07-31 18:07:18 ----A---- D:\WINDOWS\RTLCPL.EXE
2010-07-31 18:07:17 ----A---- D:\WINDOWS\system32\drivers\RtkHDAud.sys
2010-07-31 18:07:16 ----A---- D:\WINDOWS\system32\RtkCoInstXP.dll
2010-07-31 18:07:15 ----A---- D:\WINDOWS\RtkAudioService.exe
2010-07-31 18:07:07 ----A---- D:\WINDOWS\RTHDCPL.EXE
2010-07-31 18:07:06 ----A---- D:\WINDOWS\system32\drivers\Monfilt.sys
2010-07-31 18:07:06 ----A---- D:\WINDOWS\MicCal.exe
2010-07-31 18:06:58 ----A---- D:\WINDOWS\system32\drivers\Ambfilt.sys
2010-07-31 18:06:56 ----D---- D:\Program Files\Realtek
2010-07-31 18:06:56 ----A---- D:\WINDOWS\ALCWZRD.EXE
2010-07-31 18:06:56 ----A---- D:\WINDOWS\ALCMTR.EXE
2010-07-31 18:06:50 ----A---- D:\WINDOWS\RtlExUpd.dll
2010-07-31 18:06:48 ----D---- D:\Program Files\Common Files\InstallShield
2010-07-31 18:04:08 ----HDC---- D:\WINDOWS\$NtUninstallKB835221WXP$
2010-07-31 18:01:14 ----D---- D:\WINDOWS\system32\ReinstallBackups
2010-07-31 18:01:02 ----A---- D:\WINDOWS\system32\cohelper.dll
2010-07-31 18:00:59 ----D---- D:\Program Files\NVIDIA Corporation
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoZht.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoZhc.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoSv.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoRu.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoPtb.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoNo.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoNl.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoKo.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoJa.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoIt.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoFr.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoFi.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEsm.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEs.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoENU.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoEng.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoDe.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NvRCoDa.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvraiins.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvraidco.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\NVCOSMB.DLL
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\nvconrm.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\fdco1ins.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\fdco1.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvnrm.sys
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvnetbus.sys
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\nvgts.sys
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\drivers\NVENETFD.sys
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\bdco1ins.dll
2010-07-31 18:00:36 ----A---- D:\WINDOWS\system32\bdco1.dll
2010-07-31 14:23:53 ----D---- D:\Program Files\Lavalys
2010-07-31 11:08:43 ----D---- D:\WINDOWS\system32\Adobe
2010-07-31 09:14:24 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
2010-07-31 09:14:01 ----D---- D:\Program Files\Gadu-Gadu 10
2010-07-31 09:05:47 ----D---- D:\WINDOWS\system32\CatRoot_bak
2010-07-31 08:55:31 ----N---- D:\WINDOWS\system32\drivers\bthport.sys
2010-07-31 08:48:08 ----N---- D:\WINDOWS\system32\tzchange.exe
2010-07-31 08:47:38 ----N---- D:\WINDOWS\system32\browserchoice.exe
2010-07-30 22:37:38 ----HDC---- D:\WINDOWS\$NtUninstallKB971468$
2010-07-30 22:37:35 ----HDC---- D:\WINDOWS\$NtUninstallKB974318$
2010-07-30 22:37:31 ----HDC---- D:\WINDOWS\$NtUninstallKB978338$
2010-07-30 22:37:28 ----HDC---- D:\WINDOWS\$NtUninstallKB961501$
2010-07-30 22:37:25 ----HDC---- D:\WINDOWS\$NtUninstallKB975560$
2010-07-30 22:37:23 ----D---- D:\WINDOWS\system32\PreInstall
2010-07-30 22:37:22 ----A---- D:\WINDOWS\system32\spupdsvc.exe
2010-07-30 22:37:21 ----HDC---- D:\WINDOWS\$NtUninstallKB898461$
2010-07-30 22:37:18 ----HDC---- D:\WINDOWS\$NtUninstallKB974392$
2010-07-30 22:37:15 ----HDC---- D:\WINDOWS\$NtUninstallKB978695_WM9$
2010-07-30 22:37:10 ----HDC---- D:\WINDOWS\$NtUninstallKB955069$
2010-07-30 12:20:03 ----D---- D:\WINDOWS\Sun
2010-07-30 12:05:16 ----D---- D:\Program Files\Common Files\Java
2010-07-30 12:05:16 ----D---- D:\Documents and Settings\All Users\Dane aplikacji\Sun
2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\javaws.exe
2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\javaw.exe
2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\java.exe
2010-07-30 12:05:06 ----A---- D:\WINDOWS\system32\deployJava1.dll
2010-07-30 12:04:54 ----D---- D:\Program Files\Java
2010-07-30 12:02:34 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Sun
2010-07-30 11:46:21 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Macromedia
2010-07-30 11:46:21 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Adobe
2010-07-30 11:42:28 ----D---- D:\WINDOWS\RegisteredPackages
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\vxblock.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxwave.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxsfs.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxmas.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxinsa64.exe
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxhpinst.exe
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxdrv.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxcpya64.exe
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\pxafs.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\px.dll
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\PxHelp20.sys
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\cdralw2k.sys
2010-07-30 11:41:25 ----N---- D:\WINDOWS\system32\drivers\cdr4_xp.sys
2010-07-30 11:41:23 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Winamp
2010-07-30 11:40:35 ----D---- D:\wunamp
2010-07-30 11:33:27 ----D---- D:\WINDOWS\system32\SoftwareDistribution
2010-07-30 11:32:18 ----D---- D:\Program Files\SAGEM
2010-07-28 14:09:37 ----A---- D:\WINDOWS\system32\drivers\hidusb.sys
2010-07-28 14:07:32 ----D---- D:\Winamp
2010-07-27 17:05:22 ----D---- D:\WINDOWS\system32\AGEIA
2010-07-27 17:05:22 ----D---- D:\Program Files\AGEIA Technologies
2010-07-27 17:05:11 ----D---- D:\Program Files\Common Files\Wise Installation Wizard
2010-07-27 17:04:06 ----HDC---- D:\WINDOWS\$MSI31Uninstall_KB893803v2$
2010-07-27 17:03:46 ----A---- D:\WINDOWS\system32\nvudisp.exe
2010-07-27 17:03:17 ----A---- D:\WINDOWS\system32\NVUNINST.EXE
2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\D3DX9_41.dll
2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\d3dx10_41.dll
2010-07-27 17:03:09 ----A---- D:\WINDOWS\system32\D3DCompiler_41.dll
2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\XAudio2_4.dll
2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\XAPOFX1_3.dll
2010-07-27 17:03:08 ----A---- D:\WINDOWS\system32\xactengine3_4.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\XAudio2_3.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\XAPOFX1_2.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\X3DAudio1_6.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\D3DX9_40.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\d3dx10_40.dll
2010-07-27 17:03:07 ----A---- D:\WINDOWS\system32\D3DCompiler_40.dll
2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\XAudio2_2.dll
2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\XAPOFX1_1.dll
2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\xactengine3_3.dll
2010-07-27 17:03:06 ----A---- D:\WINDOWS\system32\X3DAudio1_5.dll
2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\xactengine3_2.dll
2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\D3DX9_39.dll
2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\d3dx10_39.dll
2010-07-27 17:03:05 ----A---- D:\WINDOWS\system32\D3DCompiler_39.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\XAudio2_1.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\XAPOFX1_0.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\xactengine3_1.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\X3DAudio1_4.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\D3DX9_38.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\d3dx10_38.dll
2010-07-27 17:03:04 ----A---- D:\WINDOWS\system32\D3DCompiler_38.dll
2010-07-27 17:03:03 ----A---- D:\WINDOWS\system32\XAudio2_0.dll
2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\xactengine3_0.dll
2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\X3DAudio1_3.dll
2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\D3DX9_37.dll
2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\d3dx10_37.dll
2010-07-27 17:03:02 ----A---- D:\WINDOWS\system32\D3DCompiler_37.dll
2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\xactengine2_10.dll
2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\d3dx9_36.dll
2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\d3dx10_36.dll
2010-07-27 17:03:01 ----A---- D:\WINDOWS\system32\D3DCompiler_36.dll
2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\xactengine2_9.dll
2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\d3dx9_35.dll
2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\d3dx10_35.dll
2010-07-27 17:03:00 ----A---- D:\WINDOWS\system32\D3DCompiler_35.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\xinput1_3.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\xactengine2_8.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\X3DAudio1_2.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\d3dx9_34.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\d3dx10_34.dll
2010-07-27 17:02:59 ----A---- D:\WINDOWS\system32\D3DCompiler_34.dll
2010-07-27 17:02:58 ----A---- D:\WINDOWS\system32\xactengine2_7.dll
2010-07-27 17:02:57 ----A---- D:\WINDOWS\system32\d3dx10_33.dll
2010-07-27 17:02:56 ----A---- D:\WINDOWS\system32\D3DCompiler_33.dll
2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\xactengine2_6.dll
2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\xactengine2_5.dll
2010-07-27 17:02:55 ----A---- D:\WINDOWS\system32\d3dx9_33.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xinput1_2.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_4.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_3.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\xactengine2_2.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\x3daudio1_1.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\d3dx9_32.dll
2010-07-27 17:02:54 ----A---- D:\WINDOWS\system32\d3dx9_31.dll
2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\xinput1_1.dll
2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\xactengine2_1.dll
2010-07-27 17:02:53 ----A---- D:\WINDOWS\system32\d3dx9_30.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\xinput9_1_0.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\xactengine2_0.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\x3daudio1_0.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_29.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_28.dll
2010-07-27 17:02:52 ----A---- D:\WINDOWS\system32\d3dx9_27.dll
2010-07-27 17:02:51 ----A---- D:\WINDOWS\system32\d3dx9_26.dll
2010-07-27 17:02:51 ----A---- D:\WINDOWS\system32\d3dx9_25.dll
2010-07-27 17:02:50 ----A---- D:\WINDOWS\system32\d3dx9_24.dll
2010-07-27 17:02:20 ----D---- D:\WINDOWS\Logs
2010-07-27 17:02:18 ----A---- D:\WINDOWS\system32\drivers\TBPanel.sys
2010-07-27 17:02:17 ----D---- D:\Program Files\EXPERTool
2010-07-27 11:26:39 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\WinRAR
2010-07-27 11:26:17 ----D---- D:\Program Files\WinRAR
2010-07-27 11:21:45 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Opera
2010-07-27 11:21:36 ----D---- D:\Program Files\Opera
2010-07-27 11:15:20 ----A---- D:\WINDOWS\system32\drivers\usbccgp.sys
2010-07-26 20:10:32 ----A---- D:\WINDOWS\system32\h323log.txt
2010-07-26 20:09:35 ----A---- D:\WINDOWS\system32\drivers\audstub.sys
2010-07-26 20:09:15 ----A---- D:\WINDOWS\system32\drivers\redbook.sys
2010-07-26 20:08:43 ----A---- D:\WINDOWS\system32\usbui.dll
2010-07-26 20:08:00 ----A---- D:\WINDOWS\imsins.BAK
2010-07-26 20:07:58 ----SHD---- D:\WINDOWS\Installer
2010-07-26 20:07:58 ----A---- D:\WINDOWS\system32\PerfStringBackup.INI
2010-07-26 20:07:57 ----D---- D:\Program Files\Common Files\ODBC
2010-07-26 20:07:57 ----A---- D:\WINDOWS\ODBCINST.INI
2010-07-26 20:07:53 ----D---- D:\Program Files\Common Files\SpeechEngines
2010-07-26 20:07:52 ----RD---- D:\Program Files
2010-07-26 20:07:52 ----D---- D:\Program Files\Common Files\Microsoft Shared
2010-07-26 20:07:52 ----D---- D:\Program Files\Common Files
2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdtuq.dll
2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdtuf.dll
2010-07-26 20:07:49 ----RA---- D:\WINDOWS\system32\kbdazel.dll
2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbduzb.dll
2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdtat.dll
2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdmon.dll
2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdkyr.dll
2010-07-26 20:07:47 ----RA---- D:\WINDOWS\system32\kbdaze.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdycc.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdur.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdru1.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdru.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdkaz.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdbu.dll
2010-07-26 20:07:46 ----RA---- D:\WINDOWS\system32\kbdblr.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhept.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhela3.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhela2.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe319.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe220.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdhe.dll
2010-07-26 20:07:44 ----RA---- D:\WINDOWS\system32\kbdgkl.dll
2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlv1.dll
2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlv.dll
2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlt1.dll
2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdlt.dll
2010-07-26 20:07:42 ----RA---- D:\WINDOWS\system32\kbdest.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdsl1.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdsl.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdro.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdhu1.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdhu.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz2.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz1.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcz.dll
2010-07-26 20:07:39 ----A---- D:\WINDOWS\system32\kbdcr.dll
2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\kbdycl.dll
2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\KBDAL.DLL
2010-07-26 20:07:38 ----A---- D:\WINDOWS\system32\irclass.dll
2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\spxcoins.dll
2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\EqnClass.Dll
2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\dgsetup.dll
2010-07-26 20:07:37 ----A---- D:\WINDOWS\system32\dgrpsetu.dll
2010-07-26 20:07:35 ----A---- D:\WINDOWS\TASKMAN.EXE
2010-07-26 20:07:34 ----N---- D:\WINDOWS\system32\CONFIG.TMP
2010-07-26 20:07:34 ----A---- D:\WINDOWS\system32\drivers\irenum.sys
2010-07-26 20:07:34 ----A---- D:\WINDOWS\system32\batt.dll
2010-07-26 20:07:33 ----A---- D:\WINDOWS\system32\storprop.dll
2010-07-26 20:07:33 ----A---- D:\WINDOWS\NOTEPAD.EXE
2010-07-26 20:07:26 ----ASH---- D:\Documents and Settings\All Users\Dane aplikacji\desktop.ini
2010-07-26 20:07:24 ----RA---- D:\WINDOWS\SET21.tmp
2010-07-26 20:07:22 ----RA---- D:\WINDOWS\SET8.tmp
2010-07-26 20:07:19 ----RA---- D:\WINDOWS\SET4.tmp
2010-07-26 20:07:18 ----RA---- D:\WINDOWS\SET3.tmp
2010-07-26 20:07:13 ----D---- D:\WINDOWS\system32\CatRoot2
2010-07-26 20:07:13 ----D---- D:\WINDOWS\system32\CatRoot
2010-07-26 20:07:07 ----SD---- D:\Documents and Settings\All Users\Dane aplikacji\Microsoft
2010-07-26 20:06:43 ----A---- D:\WINDOWS\setuplog.txt
2010-07-26 20:06:40 ----SHD---- D:\System Volume Information
2010-07-26 20:06:40 ----D---- D:\Documents and Settings
2010-07-26 20:01:37 ----RSHDC---- D:\WINDOWS\system32\dllcache
2010-07-26 20:01:37 ----RSD---- D:\WINDOWS\Fonts
2010-07-26 20:01:37 ----RD---- D:\WINDOWS\Web
2010-07-26 20:01:37 ----HD---- D:\WINDOWS\inf
2010-07-26 20:01:37 ----D---- D:\WINDOWS\WinSxS
2010-07-26 20:01:37 ----D---- D:\WINDOWS\twain_32
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Temp
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\wins
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\wbem
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\usmt
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\spool
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ShellExt
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\Setup
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ras
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\oobe
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\npp
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\mui
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\inetsrv
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\IME
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\icsxml
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\ias
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\export
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers\etc
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers\disdn
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\drivers
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\dhcp
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\config
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\3com_dmi
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\3076
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\2052
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1054
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1045
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1042
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1041
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1037
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1033
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1031
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1028
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32\1025
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system32
2010-07-26 20:01:37 ----D---- D:\WINDOWS\system
2010-07-26 20:01:37 ----D---- D:\WINDOWS\security
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Resources
2010-07-26 20:01:37 ----D---- D:\WINDOWS\repair
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Provisioning
2010-07-26 20:01:37 ----D---- D:\WINDOWS\PeerNet
2010-07-26 20:01:37 ----D---- D:\WINDOWS\pchealth
2010-07-26 20:01:37 ----D---- D:\WINDOWS\mui
2010-07-26 20:01:37 ----D---- D:\WINDOWS\msapps
2010-07-26 20:01:37 ----D---- D:\WINDOWS\msagent
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Media
2010-07-26 20:01:37 ----D---- D:\WINDOWS\java
2010-07-26 20:01:37 ----D---- D:\WINDOWS\ime
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Help
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Driver Cache
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Debug
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Cursors
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Connection Wizard
2010-07-26 20:01:37 ----D---- D:\WINDOWS\Config
2010-07-26 20:01:37 ----D---- D:\WINDOWS\AppPatch
2010-07-26 20:01:37 ----D---- D:\WINDOWS\addins
2010-07-26 20:01:37 ----D---- D:\WINDOWS
2010-07-26 20:01:37 ----ASH---- D:\pagefile.sys
2010-07-26 19:03:41 ----D---- D:\Avast Antywirus
2010-07-26 19:03:27 ----A---- D:\WINDOWS\system32\drivers\USBSTOR.SYS
2010-07-26 19:00:10 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\InstallShield
2010-07-26 18:45:13 ----SHD---- D:\RECYCLER
2010-07-26 18:38:16 ----HD---- D:\Program Files\InstallShield Installation Information
2010-07-26 18:33:29 ----D---- D:\Documents and Settings\paweł\Dane aplikacji\Identities
2010-07-26 18:33:28 ----HD---- D:\Program Files\Uninstall Information
2010-07-26 18:33:22 ----ASH---- D:\Documents and Settings\paweł\Dane aplikacji\desktop.ini
2010-07-26 18:33:21 ----SD---- D:\Documents and Settings\paweł\Dane aplikacji\Microsoft
2010-07-26 18:32:25 ----D---- D:\WINDOWS\SoftwareDistribution
2010-07-26 18:32:22 ----D---- D:\WINDOWS\Prefetch
2010-07-26 18:32:14 ----SD---- D:\WINDOWS\system32\Microsoft
2010-07-26 18:32:14 ----A---- D:\WINDOWS\SchedLgU.Txt
2010-07-26 18:16:04 ----D---- D:\WINDOWS\system32\xircom
2010-07-26 18:16:04 ----D---- D:\Program Files\xerox
2010-07-26 18:16:04 ----D---- D:\Program Files\microsoft frontpage
2010-07-26 18:15:59 ----HD---- D:\WINDOWS\$hf_mig$
2010-07-26 18:15:47 ----A---- D:\WINDOWS\control.ini
2010-07-26 18:15:38 ----A---- D:\WINDOWS\OEWABLog.txt
2010-07-26 18:15:34 ----A---- D:\WINDOWS\system32\mapi32.dll
2010-07-26 18:14:56 ----SD---- D:\WINDOWS\Downloaded Program Files
2010-07-26 18:14:56 ----RD---- D:\WINDOWS\Offline Web Pages
2010-07-26 18:14:56 ----RAH---- D:\WINDOWS\system32\logonui.exe.manifest
2010-07-26 18:14:52 ----RAH---- D:\WINDOWS\system32\cdplayer.exe.manifest
2010-07-26 18:14:48 ----HD---- D:\Program Files\WindowsUpdate
2010-07-26 18:14:45 ----D---- D:\Program Files\Usługi online
2010-07-26 18:14:30 ----D---- D:\WINDOWS\system32\DirectX
2010-07-26 18:14:07 ----A---- D:\WINDOWS\system32\atrace.dll
2010-07-26 18:14:03 ----A---- D:\WINDOWS\system32\desktop.ini
2010-07-26 18:14:03 ----A---- D:\WINDOWS\desktop.ini
2010-07-26 18:13:56 ----A---- D:\WINDOWS\system32\nmevtmsg.dll
2010-07-26 18:13:54 ----D---- D:\Program Files\Common Files\Services
2010-07-26 18:13:54 ----A---- D:\WINDOWS\system32\acctres.dll
2010-07-26 18:13:51 ----SD---- D:\WINDOWS\Tasks
2010-07-26 18:13:51 ----A---- D:\WINDOWS\system32\icfgnt5.dll
2010-07-26 18:13:50 ----D---- D:\Program Files\Common Files\MSSoap
2010-07-26 18:13:44 ----D---- D:\WINDOWS\srchasst
2010-07-26 18:13:43 ----D---- D:\WINDOWS\system32\Macromed
2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuweb.dll
2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wucltui.dll
2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuauserv.dll
2010-07-26 18:13:39 ----A---- D:\WINDOWS\system32\wuaueng1.dll
2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wups.dll
2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuaueng.dll
2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuauclt1.exe
2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuauclt.exe
2010-07-26 18:13:38 ----A---- D:\WINDOWS\system32\wuapi.dll
2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\qmgrprxy.dll
2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\qmgr.dll
2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\bitsprx3.dll
2010-07-26 18:13:37 ----A---- D:\WINDOWS\system32\bitsprx2.dll
2010-07-26 18:13:31 ----D---- D:\Program Files\Movie Maker
2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrslv.dll
2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrdm.dll
2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\safrcdlg.dll
2010-07-26 18:13:27 ----A---- D:\WINDOWS\system32\racpldlg.dll
2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\fltMc.exe
2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\fltlib.dll
2010-07-26 18:13:22 ----A---- D:\WINDOWS\system32\drivers\fltMgr.sys
2010-07-26 18:13:21 ----D---- D:\WINDOWS\system32\Restore
2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srsvc.dll
2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srrstr.dll
2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\srclient.dll
2010-07-26 18:13:21 ----A---- D:\WINDOWS\system32\drivers\sr.sys
2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\mnmdd.dll
2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\isrdbg32.dll
2010-07-26 18:13:20 ----A---- D:\WINDOWS\system32\ils.dll
2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\nmmkcert.dll
2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\msconf.dll
2010-07-26 18:13:19 ----A---- D:\WINDOWS\system32\mnmsrvc.exe
2010-07-26 18:13:16 ----D---- D:\Program Files\NetMeeting
2010-07-26 18:13:16 ----A---- D:\WINDOWS\system32\msoert2.dll
2010-07-26 18:13:15 ----A---- D:\WINDOWS\system32\msoeacct.dll
2010-07-26 18:13:14 ----A---- D:\WINDOWS\system32\inetres.dll
2010-07-26 18:13:14 ----A---- D:\WINDOWS\system32\inetcomm.dll
2010-07-26 18:13:11 ----D---- D:\Program Files\Outlook Express
2010-07-26 18:13:11 ----A---- D:\WINDOWS\system32\schedsvc.dll
2010-07-26 18:13:11 ----A---- D:\WINDOWS\system32\mstinit.exe
2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\mstask.dll
2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\isign32.dll
2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\inetcfg.dll
2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\icwphbk.dll
2010-07-26 18:13:10 ----A---- D:\WINDOWS\system32\icwdial.dll
2010-07-26 18:13:03 ----D---- D:\Program Files\Common Files\System
2010-07-26 18:13:02 ----D---- D:\Program Files\Internet Explorer
2010-07-26 18:12:51 ----D---- D:\Program Files\ComPlus Applications
2010-07-26 18:12:49 ----A---- D:\WINDOWS\vbaddin.ini
2010-07-26 18:12:49 ----A---- D:\WINDOWS\vb.ini
2010-07-26 18:12:44 ----D---- D:\WINDOWS\Registration
2010-07-26 18:12:22 ----D---- D:\Program Files\Windows Media Player
2010-07-26 18:12:17 ----D---- D:\Program Files\Messenger
2010-07-26 18:12:13 ----D---- D:\Program Files\MSN Gaming Zone
2010-07-26 18:12:13 ----A---- D:\WINDOWS\system32\write.exe
2010-07-26 18:12:05 ----A---- D:\WINDOWS\system32\sndvol32.exe
2010-07-26 18:12:05 ----A---- D:\WINDOWS\system32\hticons.dll
2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\winchat.exe
2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avwav.dll
2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avtapi.dll
2010-07-26 18:12:04 ----A---- D:\WINDOWS\system32\avmeter.dll
2010-07-26 18:11:57 ----A---- D:\WINDOWS\system32\getuname.dll
2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\winmine.exe
2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\sol.exe
2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\charmap.exe
2010-07-26 18:11:56 ----A---- D:\WINDOWS\system32\calc.exe
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\usrlogon.cmd
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\tsshutdn.exe
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\tskill.exe
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\reset.exe
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\mshearts.exe
2010-07-26 18:11:55 ----A---- D:\WINDOWS\system32\freecell.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tslabels.ini
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tsdiscon.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\tscon.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\shadow.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\rwinsta.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\regini.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\rdpcfgex.dll
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\qwinsta.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\qappsrv.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\msg.exe
2010-07-26 18:11:54 ----A---- D:\WINDOWS\system32\logoff.exe
2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\msdtcprf.ini
2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\dcomcnfg.exe
2010-07-26 18:11:53 ----A---- D:\WINDOWS\system32\cdmodem.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\stclient.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxlegih.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxex.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\mtxdm.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comsnap.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comrepl.dll
2010-07-26 18:11:52 ----A---- D:\WINDOWS\system32\comaddin.dll
2010-07-26 18:11:47 ----A---- D:\WINDOWS\system32\wmimgmt.msc
2010-07-26 18:11:46 ----A---- D:\WINDOWS\system32\accwiz.exe
2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\sndrec32.exe
2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\mplay32.exe
2010-07-26 18:11:45 ----A---- D:\WINDOWS\system32\hypertrm.dll
2010-07-26 18:11:44 ----D---- D:\Program Files\Windows NT
2010-07-26 18:11:44 ----A---- D:\WINDOWS\system32\mspaint.exe
2010-07-26 18:11:44 ----A---- D:\WINDOWS\system32\clipbrd.exe
2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\tscfgwmi.dll
2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\spider.exe
2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\tdtcp.sys
2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\tdpipe.sys
2010-07-26 18:11:43 ----A---- D:\WINDOWS\system32\drivers\rdpwd.sys
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\sessmgr.exe
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\remotepg.dll
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\rdshost.exe
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\rdsaddin.exe
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\mstscax.dll
2010-07-26 18:11:42 ----A---- D:\WINDOWS\system32\mstsc.exe
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\tscupgrd.exe
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\termsrv.dll
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpwsx.dll
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpsnd.dll
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdpclip.exe
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\rdchost.dll
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\qprocess.exe
2010-07-26 18:11:41 ----A---- D:\WINDOWS\system32\icaapi.dll
2010-07-26 18:11:40 ----D---- D:\WINDOWS\system32\MsDtc
2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\mtxoci.dll
2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\msdtcuiu.dll
2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\msdtcprx.dll
2010-07-26 18:11:40 ----A---- D:\WINDOWS\system32\cfgbkend.dll
2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\xolehlp.dll
2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtctm.dll
2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtclog.dll
2010-07-26 18:11:39 ----A---- D:\WINDOWS\system32\msdtc.exe
2010-07-26 18:11:38 ----D---- D:\WINDOWS\system32\Com
2010-07-26 18:11:38 ----A---- D:\WINDOWS\system32\colbact.dll
2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\clbcatex.dll
2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrvut.dll
2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrvps.dll
2010-07-26 18:11:37 ----A---- D:\WINDOWS\system32\catsrv.dll
2010-07-26 18:11:36 ----A---- D:\WINDOWS\system32\comsvcs.dll
2010-07-26 18:11:35 ----A---- D:\WINDOWS\system32\comuid.dll
2010-07-26 18:11:35 ----A---- D:\WINDOWS\system32\clbcatq.dll
2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\servdeps.dll
2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\mmfutil.dll
2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\licwmi.dll
2010-07-26 18:11:28 ----A---- D:\WINDOWS\system32\cmprops.dll
2010-07-26 18:11:26 ----A---- D:\WINDOWS\system32\drivers\termdd.sys
2010-07-26 18:11:26 ----A---- D:\WINDOWS\system32\drivers\rdpdr.sys

======List of files/folders modified in the last 1 months======

2010-07-27 08:24:30 ----A---- D:\WINDOWS\system.ini
2010-07-26 18:15:46 ----A---- D:\WINDOWS\win.ini
2010-07-26 18:15:26 ----ASH---- D:\WINDOWS\fonts\desktop.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 nvgts;nvgts; D:\WINDOWS\system32\DRIVERS\nvgts.sys [2010-04-08 168040]
R0 PxHelp20;PxHelp20; D:\WINDOWS\System32\Drivers\PxHelp20.sys [2009-04-28 44944]
R2 TBPanel;TBPanel; D:\WINDOWS\system32\drivers\TBPanel.sys [2007-03-16 12256]
R3 abp470n5;abp470n5; \??\D:\WINDOWS\system32\drivers\jprfun.sys []
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; D:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-07 138752]
R3 HidUsb;Sterownik Microsoft klasy HID; D:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); D:\WINDOWS\system32\drivers\RtkHDAud.sys [2010-04-30 6032928]
R3 nv;nv; D:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2009-07-03 8087712]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; D:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2010-03-04 70912]
R3 nvnetbus;NVIDIA Network Bus Enumerator; D:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2010-03-04 13824]
R3 USB_RNDIS;ADSL2+ Modem USB RNDIS Adapter; D:\WINDOWS\system32\DRIVERS\usb8023.sys [2006-03-02 12672]
S3 Ambfilt;Ambfilt; D:\WINDOWS\system32\drivers\Ambfilt.sys [2009-11-18 1691480]
S3 Monfilt;Monfilt; D:\WINDOWS\system32\drivers\Monfilt.sys [2009-11-18 1395800]
S3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Klasa PRINTER USB Microsoft; D:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;Sterownik skanera USB; D:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;Sterownik magazynu masowego USB; D:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 JavaQuickStarterService;Java Quick Starter; D:\Program Files\Java\jre6\bin\jqs.exe [2010-07-30 153376]
R2 nvsvc;NVIDIA Display Driver Service; D:\WINDOWS\system32\nvsvc32.exe [2009-06-10 168004]
R2 UMWdf;Windows User Mode Driver Framework; D:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
S3 aspnet_state;Usuga stanu ASP.NET; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; D:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; D:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; D:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------[/log]



Tutaj też z programu RIST z notatnika INFO

[log]info.txt logfile of random's system information tool 1.08 2010-08-20 17:18:15

======Uninstall list======

-->MsiExec /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 D:\WINDOWS\INF\PCHealth.inf
ABBYY FineReader 6.0 Sprint-->MsiExec.exe /I{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
Adobe Flash Player 10 ActiveX-->D:\WINDOWS\system32\Macromed\Flash\FlashUtil10h_ActiveX.exe -maintain activex
Adobe Flash Player 10 Plugin-->D:\WINDOWS\system32\Macromed\Flash\FlashUtil10h_Plugin.exe -maintain plugin
Adobe Shockwave Player 11.5-->"D:\WINDOWS\system32\Adobe\Shockwave 11\uninstaller.exe"
Aktualizacja dla systemu Windows XP (KB898461)-->"D:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB925720)-->"D:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB955759)-->"D:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB967715)-->"D:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB968389)-->"D:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB971737)-->"D:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB973687)-->"D:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB973815)-->"D:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB952069)-->"D:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB954155)-->"D:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"D:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB978695)-->"D:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"D:\WINDOWS\$NtUninstallKB979402_WM9L$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2229593)-->"D:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB923561)-->"D:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB944338-v2)-->"D:\WINDOWS\$NtUninstallKB944338-v2$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB946648)-->"D:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760)-->"D:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762)-->"D:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950974)-->"D:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2)-->"D:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748)-->"D:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB952004)-->"D:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB952954)-->"D:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB955069)-->"D:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956572)-->"D:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956802)-->"D:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956803)-->"D:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956844)-->"D:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB958470)-->"D:\WINDOWS\$NtUninstallKB958470$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB958644)-->"D:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB958869)-->"D:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB959426)-->"D:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960225)-->"D:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960803)-->"D:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960859)-->"D:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB961501)-->"D:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB969059)-->"D:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB970238)-->"D:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB970430)-->"D:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971468)-->"D:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971657)-->"D:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971961)-->"D:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB972270)-->"D:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973507)-->"D:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973869)-->"D:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973904)-->"D:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974112)-->"D:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974318)-->"D:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974392)-->"D:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974571)-->"D:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975025)-->"D:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975467)-->"D:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975560)-->"D:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975561)-->"D:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975562)-->"D:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975713)-->"D:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB977816)-->"D:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB977914)-->"D:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978037)-->"D:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978338)-->"D:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978542)-->"D:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978601)-->"D:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978706)-->"D:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979309)-->"D:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979482)-->"D:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979559)-->"D:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979683)-->"D:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980195)-->"D:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980218)-->"D:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980232)-->"D:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981350)-->"D:\WINDOWS\$NtUninstallKB981350$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982381)-->"D:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla Windows XP (KB941569)-->"D:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Archiwizator WinRAR-->D:\Program Files\WinRAR\uninstall.exe
CCleaner-->"D:\Program Files\CCleaner\uninst.exe"
EPSON Scan-->D:\Program Files\epson\escndv\setup\setup.exe /r
EPSON Web-To-Page-->RunDll32 D:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "D:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x9 -anything
ESDX5000_CX4900 Przewodnik użytkownika-->D:\Program Files\EPSON\TPMANUAL\ESDX5000_CX4900\USE_G\DOCUNINS.EXE
EVEREST Ultimate Edition v5.50-->"D:\Program Files\Lavalys\EVEREST Ultimate Edition\unins000.exe"
EXPERTool 7.5-->"D:\Program Files\EXPERTool\unins000.exe"
Gadu-Gadu 10-->D:\Program Files\Gadu-Gadu 10\Uninstall.exe
German Truck Simulator 1.02-->D:\Program Files\German Truck Simulator\uninst.exe
High Definition Audio Driver Package - KB835221-->D:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
High Definition Audio Driver Package - KB888111-->"D:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Java(TM) 6 Update 21-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216021FF}
Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK-->MsiExec.exe /I{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK-->MsiExec.exe /I{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack SP1 - plk-->MsiExec.exe /I{9EFDFBA8-9174-3C61-8645-28376C5CA994}
Microsoft .NET Framework 3.5 SP1-->D:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
MSXML 6 Service Pack 2 (KB973686)-->MsiExec.exe /I{56EA8BC0-3751-4B93-BC9D-6651CC36E5AA}
NVIDIA Drivers-->D:\Program Files\NVIDIA Corporation\Uninstall\nvuninst.exe UninstallGUI
NVIDIA PhysX-->MsiExec.exe /X{B83FC356-B7C0-441F-8A4D-D71E088E7974}
Opera 10.52-->MsiExec.exe /X{B8041710-E0B8-4C98-AA19-0C357AF87E53}
Oprogramowanie drukarki EPSON-->D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK-->d:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack SP1 - plk\setup.exe
PIF DESIGNER-->RunDll32 D:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "D:\Program Files\InstallShield Installation Information\{B90450DF-E781-46FD-B1F1-0C86DA40E443}\SETUP.EXE" -l0x9 anything
Poprawka dla systemu Windows XP (KB935448)-->"D:\WINDOWS\$NtUninstallKB935448$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB952287)-->"D:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB961118)-->"D:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB981793)-->"D:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
Steam-->MsiExec.exe /X{048298C9-A4D3-490B-9FF9-AB023A9238F3}
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->D:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Winamp-->"D:\wunamp\Winamp\UninstWA.exe"
Windows Imaging Component-->"D:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"D:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
XML Paper Specification Shared Components Language Pack 1.0-->"D:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"

======System event log======

Computer Name: PAWE-15FCC979B1
Event Code: 7035
Message: Do usługi Zgodność szybkiego przełączania użytkowników został pomyślnie wysłany kod sterowania uruchom.

Record Number: 348
Source Name: Service Control Manager
Time Written: 20100730105539.000000+120
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

Computer Name: PAWE-15FCC979B1
Event Code: 7036
Message: Usługa Usługi terminalowe weszła w stan uruchomienia.

Record Number: 347
Source Name: Service Control Manager
Time Written: 20100730105539.000000+120
Event Type: informacje
User:

Computer Name: PAWE-15FCC979B1
Event Code: 6005
Message: Uruchomiono usługę Dziennik zdarzeń.

Record Number: 346
Source Name: EventLog
Time Written: 20100730105537.000000+120
Event Type: informacje
User:

Computer Name: PAWE-15FCC979B1
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Dodatek Service Pack 2 Multiprocessor Free.

Record Number: 345
Source Name: EventLog
Time Written: 20100730105537.000000+120
Event Type: informacje
User:

Computer Name: PAWE-15FCC979B1
Event Code: 6006
Message: Zatrzymano usługę Dziennik zdarzeń.

Record Number: 344
Source Name: EventLog
Time Written: 20100728201832.000000+120
Event Type: informacje
User:

=====Application event log=====

Computer Name: PAWE-15FCC979B1
Event Code: 1017
Message: Rozpocznij rejestracj ASP.NET (wersja 2.0.50727.0) (flaga wewntrzna: 0x00000406)

Record Number: 330
Source Name: ASP.NET 2.0.50727.0
Time Written: 20100806220050.000000+120
Event Type: informacje
User:

Computer Name: PAWE-15FCC979B1
Event Code: 1025
Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\netfxperf.dll jest używany przez następujący proces: Nazwa: jqs, identyfikator 1904.

Record Number: 329
Source Name: MsiInstaller
Time Written: 20100806220014.000000+120
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

Computer Name: PAWE-15FCC979B1
Event Code: 1025
Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\mscoree.dll jest używany przez następujący proces: Nazwa: msiexec, identyfikator 508.

Record Number: 328
Source Name: MsiInstaller
Time Written: 20100806220014.000000+120
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

Computer Name: PAWE-15FCC979B1
Event Code: 1025
Message: Produkt: Microsoft .NET Framework 2.0 Service Pack 2. Plik d:\WINDOWS\system32\mscoree.dll jest używany przez następujący proces: Nazwa: jqs, identyfikator 1904.

Record Number: 327
Source Name: MsiInstaller
Time Written: 20100806220014.000000+120
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

Computer Name: PAWE-15FCC979B1
Event Code: 11728
Message: Produkt: Microsoft .NET Framework 3.5 SP1 -- Konfiguracja zakończyła się pomyślnie.

Record Number: 326
Source Name: MsiInstaller
Time Written: 20100806215848.000000+120
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=16
"PROCESSOR_IDENTIFIER"=x86 Family 16 Model 6 Stepping 2, AuthenticAMD
"PROCESSOR_REVISION"=0602
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------[/log]

Tomek01
komentarz
komentarz

Bo niestety mamy tutaj Sality.
Świadczy o nim ten sterownik: DRV - File not found [Kernel | On_Demand | Running] -- D:\WINDOWS\System32\drivers\jprfun.sys -- (abp470n5)

Infekuje on wszystkie pliki exe.

[b]Do ponownego postawienia systemu może być potrzebna płytka z systemem.[/b]
Pobierz i nagraj na płytkę na [b]niezainfekowanym[/b] komputerze [url=http://www.freedrweb.pl/livecd.php][b]DR Web LiveCD[/b][/url].
Włóż płytkę do zainfekowanego komputera, zakładając, że wcześniej ustawiłeś w BIOS-ie na startowanie kompa z CD/DVD, więc po restarcie powinien się uruchomić się skaner.
Wykonujesz pełny skan, leczysz co się da, reszta do usunięcia.
Skanujesz tyle razy, aż skaner nic nie znajdzie.
Jeśli po usuwaniu system się nie uruchomi, wkładasz do komputera płytkę z systemem i wykonujesz [url=http://www.searchengines.pl/index.php?showtopic=24500&view=findpost&p=109540]instalację nakładkową Windows[/url].
Po ewentualnej instalacji nakładkowej [b]wyłącz i włącz Przywracanie systemu[/b] na wszystkich dyskach. Instrukcja [url=http://support.microsoft.com/kb/310405/pl][b]XP[/b][/url] lub [url=http://windowshelp.microsoft.com/Windows/pl-PL/Help/517d3b8e-3379-46c1-b479-05b30d6fb3f01045.mspx][b]Vista[/b][/url].
Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url].
Jeśli skaner nic nie znajdzie, dla pewności podaj log z [url=http://forum.dobreprogramy.pl/post1170959.html#p1170959][b]Combofix[/b][/url] i wyłącz ponownie przywracanie systemu włączone przez Combofixa.

w0t2
komentarz
komentarz

Ten 1 Link mi nie działa.;/

Sohei
komentarz
komentarz

[code]:Processes
Explorer.exe



:OTL

O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AUToPLaY\commanD - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\exploRe\COmmanD - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c6-5a03-11df-b947-001f95be8455}\Shell\oPen\cOmmaNd - "" = F:\luqanu.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AUtopLAY\COMManD - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\AutoRun\command - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\expLore\COmMand - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{533d79c7-5a03-11df-b947-001f95be8455}\Shell\oPen\commaND - "" = H:\guqsv.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoplaY\coMmand - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\exPlore\ComMand - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fc-ea58-11de-b65c-001f95be8455}\Shell\opeN\cOmmaNd - "" = F:\ohptc.exe -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AUtOplAy\coMmand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\AutoRun\command - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\ExplOre\COMMand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{ae3533fd-ea58-11de-b65c-001f95be8455}\Shell\oPen\COmmand - "" = G:\iqdrc.pif -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoplaY\commANd - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\AutoRun\command - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\exploRE\cOMmand - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{d2c45d23-b8b1-11de-b530-001f95be8455}\Shell\oPen\coMManD - "" = F:\nsiyj.exe -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AUTopLAy\comMand - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\AutoRun\command - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\expLoRE\cOMmanD - "" = F:\tsvptp.pif -- File not found
O33 - MountPoints2\{f36b1906-b8d2-11de-b532-001f95be8455}\Shell\oPEn\commAnd - "" = F:\tsvptp.pif -- File not found
[2010-08-06 13:19:08 | 000,000,000 | ---D | C] -- D:\a13dd659cdf510fd4211
[2010-08-05 17:58:30 | 000,000,000 | ---D | C] -- D:\f67aea37d808c381703dadfc4b662b


:files



:Commands
[emptytemp]
[start explorer]
[Reboot][/code]
Wklejasz to do OTL w białe okienko i klikasz run fix.
Wykonaj pełny skan [url=http://dobreprogramy.pl/index.php?dz=2&id=1998][b]DR WEB CureIt[/b][/url]
Wykonaj pełny skan[url=http://www.dobreprogramy.pl/Malwarebytes-AntiMalware,Program,Windows,13117.html][b]MBAM[/b][/url]
Co znajda usun po czym daj logi z usuwania + nowy log OTL

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.