x-kom hosting

Proszę o sprawdzenie logów

Wojtip
utworzono
utworzono

OTL
[log]OTL Extras logfile created on: 2011-01-08 18:36:57 - Run 1
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 73,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 6,45 Gb Free Space | 13,20% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,75 Gb Free Space | 2,69% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color="#e56717"]========== Extra Registry (SafeList) ==========[/color]


[color="#e56717"]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]

[HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color="#e56717"]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Photo Manager 12.Manage] -- "C:\Program Files\ACD Systems\ACDSee\12.0\ACDSeeQV12.exe" "%1" (ACD Systems International Inc.)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~2\Office12\ONENOTE.EXE "%L" [2009-03-12 19:14:36 | 000,000,000 | ---D | M]
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color="#e56717"]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color="#e56717"]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color="#e56717"]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[color="#e56717"]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe" = C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Landwirtschafts Simulator 2011\game.exe" = C:\Program Files\Landwirtschafts Simulator 2011\game.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe" = C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Symulator Farmy 2011\game.exe" = C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)


[color="#e56717"]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01000A03-E058-11D3-9C13-0000E220DC33}" = MiraScan V4.03
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{07A13404-2959-4805-B49F-1EC3C2AF35F8}" = GPMapa NT 3d 2009.4
"{086a7d8c-0a38-4c7f-819a-620275550d5c}" = Nero Burning ROM Help
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{08E4AE58-748D-4983-9B8A-495E2341769F}" = Garmin POI Loader
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{16E217EA-C3E0-402D-8D4F-6189DB74497A}" = Studio 9.3 Patch
"{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 23
"{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK
"{2CCBFA48-3E9C-48ED-805C-6FD56956BC0B}" = GPMapa 2007.2
"{2D43FD89-B225-4334-B4AA-0983400BE61B}" = Windows Presentation Foundation Language Pack (PLK)
"{2E5A5B57-57FC-4C79-A239-9DB280ADEC2A}" = Microsoft RAW Image Thumbnailer and Viewer for Windows XP Version 1.0 (Build 50)
"{2F750C77-1FEC-44F9-88CC-2CE322EBD61E}" = Microsoft Games for Windows - LIVE Redistributable
"{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 3.209.00
"{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java™ 6 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{36BD0774-6CD6-4FF9-A148-83CA09AC123E}" = Intel® PROSafe for Wired Connections
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3F866D37-22D0-435D-94F1-31A64D566D0E}" = Pinnacle device drivers
"{403EF592-953B-4794-BCEF-ECAB835C2095}" = Intel® PROSafe for Wired Connections
"{42DC7D64-F389-4E37-B545-E7D674A97D66}" = PC DUAL SHOCK
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5888428E-699C-4E71-BF71-94EE06B497DA}" = TuneUp Utilities 2008
"{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK
"{5C19E2DC-4CCF-3114-B40A-6E565987025F}" = Microsoft .NET Framework 4 Extended PLK Language Pack
"{5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1}" = Nero Vision
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74BF0A46-DF67-4D86-B038-BF0E51871B66}" = Ai Booster
"{76C24F39-B161-498F-BD8B-C64789812D13}_is1" = ConvertXtoDVD 3.0.0.9
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{7CCF417A-76BA-42BB-A3DA-95BF9F01699F}" = GPMapa NT 2008.1 subskrypcja - a4
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7EF13AFD-98D5-46F3-9C1D-E0AE5E80513E}" = GPMapa NT 3d 2010.3
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{8AEEE6D6-C95D-465A-B8D3-B7AE2FA7B8B4}" = InterVideo Launcher
"{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{2D1F88C2-ADAE-47C4-8648-6EA8F7E6EB2D}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{94A4609B-0414-4427-81F3-0FD282A2D0D3}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{934519A2-4D50-4B83-A459-92D90E9E3188}" = WinFast PVR
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"{9E491AB7-4589-48CA-9CBB-874CB2788391}" = Studio 9
"{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}" = ACDSee Photo Manager 12
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7DEBAA4-B211-4D1A-A6B3-E52BFAAA1D0C}" = Garmin Communicator Plugin
"{A89768CF-CD21-44FD-A723-16D5A8557415}" = NEF Codec
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AC76BA86-7AD7-1045-7B44-A93000000001}" = Adobe Reader 9.3.4 - Polish
"{B1102A25-3AA3-446B-AA0F-A699B07A02FD}" = Garmin USB Drivers
"{B1591C79-1C35-4E09-AA15-F7D6923AFB96}" = HP Deskjet 3840
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
"{B81023A5-71ED-46EB-BE3B-9F974D1155F1}" = HP Software Update
"{BA10FB0C-1DD6-4194-BECC-727252E9415C}" = DiskMagik
"{BA115711-83C5-4307-B4B2-1A823AB85714}_is1" = DVD PixPlay Exporting Plug-In Pack
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.1.5.173
"{BE4AA694-815A-4045-BD49-C94F2BED7458}" = WinFast Entertainment Center
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"{C3EBEF79-DE34-44AE-8774-F6A17ABE27B2}" = Garmin nRoute
"{C8616041-2802-4DE2-B3BD-6285AAD65C2A}" = Nikon RAW Codec
"{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{c9920352-04e6-469d-bab8-e2b9c7c75415}.sdb" = Microsoft Automated Troubleshooting Services Shim
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DA1876DD-323E-4D78-8F9F-8F4FDE25C010}" = ID_DCRaw Image Decoder Plug-In
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DEAD07C6-D070-43AB-A60D-D9ABE55E296D}_is1" = JPEGCrops 0.7.5 beta
"{E0783143-EAE2-4047-A8D6-E155523C594C}" = Garmin WebUpdater
"{E0D51394-1D45-460A-B62D-383BC4F8B335}" = QuickTime
"{E2E7A0E8-77C4-495F-8FA3-63DAEDAA2DB3}" = F-Secure PSC Prerequisites
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{E91D14EF-CC7A-4AD3-87B4-4D5D8ED0EC4B}_is1" = EasyRecovery
"{EA6EB7D0-C920-4434-B43D-0DDD0AF8F497}" = Garmin MapSource
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{F84B9669-7102-42B4-A3A2-9A68741CD253}" = Altiris Philips SmartManage Agent
"{F89078FA-D069-462D-AB34-75483E0A38F1}" = Garmin City Navigator Europe NT 2008 Update
"{FD593DE6-C3A0-4722-8E86-9DEEF0A93290}" = Microsoft .NET Framework 3.0 Polish Language Pack
"A4Tech iKeyWorks" = A4Tech iKeyWorks 7.64
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"ALLPlayer_is1" = ALLPlayer V4.X
"A-Ray Scanner" = A-Ray Scanner 2.0.2.3
"AsusUpdate" = AsusUpdate
"AuranTS2009_is1" = Trainz: Engineer's Edition
"Autko" = Autko
"Auto Movie Creator_is1" = Auto Movie Creator 1.5
"AVGantiRootkit" = AVG Anti-Rootkit Free
"Bagger-Simulator 2008" = Bagger-Simulator 2008
"BDESetup.exe_is1" = Borland Database Engine Ver. 5.2.0.2
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"ChomikBox" = ChomikBox
"Cimaware OfficeFIX 6" = Cimaware OfficeFIX 6
"CloneCD" = CloneCD
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"Deluxe Ski Jump 3_is1" = Deluxe Ski Jump 3 v1.7.0
"DemolitionCompanyDE_is1" = Demolition Company
"DreamMail 4.6" = DreamMail 4.6
"DVD PixPlay_is1" = DVD PixPlay
"Ekspert CD_is1" = Ekspert CD
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.50
"FarmingSimulator2011DE_is1" = Landwirtschafts Simulator 2011
"FarmingSimulator2011PL_is1" = Symulator Farmy 2011
"FPAdjust" = FPAdjust
"Free Download Manager_is1" = Free Download Manager 2.1
"free-downloads.net Toolbar" = free-downloads.net Toolbar
"F-Secure Product 303" = multiSAVER
"Gadu-Gadu" = Gadu-Gadu 7.7
"Game Booster_is1" = Game Booster
"giants_editor_4.1.7_is1" = GIANTS Editor 4.1.7
"Hollywood FX 5" = Pinnacle Hollywood FX 5
"HookAnalyzer_is1" = RootKit Hook Analyzer 3.02
"HP-LaserJet 1018" = LaserJet 1018
"ie8" = Windows Internet Explorer 8
"InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"InstallShield_{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"InstallShield_{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"IsoBuster_is1" = IsoBuster 2.3
"JDownloader" = JDownloader
"Kalendarz XP" = Kalendarz XP v29.85
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.0 Full
"LMS" = C-Dilla Licence Management System
"Mafia II_is1" = Mafia II
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mapa UMP-pcPL (prawie cała Polska)_is1" = MapSource - UMP-pcPL
"MGI_Photovista_V1_4_0" = MGI Photovista 2.02(Remove only)
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.0 Polish Language Pack" = Pakiet języka polskiego dla systemu Microsoft .NET Framework 3.0
"Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
"Mining and Tunneling" = Mining and Tunneling
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"NetMeter_is1" = NetMeter 0.9.9.9 (beta 2)
"NVIDIA Drivers" = NVIDIA Drivers
"OggDS" = Direct Show Ogg Vorbis Filter (remove only)
"OpenAL" = OpenAL
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.6
"proDAD-Heroglyph-2.5" = proDAD Heroglyph 2.5
"proDAD-Vitascene-1.0" = proDAD Vitascene 1.0
"Profiler v1.2 PL" = Profiler v1.2 PL
"PROSetDX" = Intel® PRO Network Connections Software v10.0.26.0
"PunkBusterSvc" = PunkBuster Services
"RailWorks" = RailWorks
"Revo Uninstaller" = Revo Uninstaller 1.90
"ScenalyzerLive" = ScenalyzerLive (remove)
"Side 9 Screensaver" = Side 9 Screensaver
"Smart Defrag_is1" = Smart Defrag
"superfotoKURIER_is1" = superfotoKURIER 1.0.3
"Total Audio Converter_is1" = TotalAudioConverter
"Trickshot" = Trickshot
"Ulead Photo Express 3.0 SE" = Ulead Photo Express 3.0 SE
"UltraISO_is1" = UltraISO Premium V8.2
"Update Service" = Update Service
"USB/PS2 Vibration Pad" = USB/PS2 Vibration Pad
"uTorrent" = µTorrent
"VMidi" = vanBasco's Karaoke Player
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinISO_is1" = WinISO 5.3
"WinRAR archiver" = Archiwizator WinRAR
"WMV9_VCM" = Microsoft Windows Media Video 9 VCM
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
"XviD_is1" = XviD 1.1 final uninstall

[color="#e56717"]========== Last 10 Event Log Errors ==========[/color]

Error: Unable to start EventLog service!

< End of report >
[/log]
[log]OTL logfile created on: 2011-01-08 18:36:57 - Run 1
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 73,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 90,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 6,45 Gb Free Space | 13,20% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,75 Gb Free Space | 2,69% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color="#e56717"]========== Processes (All) ==========[/color]

PRC - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe


[color="#e56717"]========== Modules (All) ==========[/color]

MOD - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe
MOD - [2010-11-06 01:23:40 | 000,916,480 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wininet.dll
MOD - [2010-11-06 01:23:39 | 001,210,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\urlmon.dll
MOD - [2010-11-06 01:23:38 | 001,991,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\iertutil.dll
MOD - [2010-11-06 01:23:37 | 011,080,704 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ieframe.dll
MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2010-07-27 07:30:33 | 008,491,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-09-04 22:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msasn1.dll
MOD - [2009-08-05 16:58:30 | 000,330,336 | ---- | M] () -- \\?\c:\program files\mmp\multisaver\hips\fshook32.dll
MOD - [2009-07-17 20:04:02 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\atl.dll
MOD - [2009-07-12 01:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
MOD - [2009-07-11 19:41:02 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_473666fd\ATL80.dll
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2009-01-07 17:20:36 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\normaliz.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-10-15 17:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netapi32.dll
MOD - [2008-06-20 18:48:53 | 000,246,784 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mswsock.dll
MOD - [2008-06-20 18:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dnsapi.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\winspool.drv
MOD - [2008-04-14 22:51:00 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2_32.dll
MOD - [2008-04-14 22:51:00 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ws2help.dll
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:44 | 000,144,896 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntshrui.dll
MOD - [2008-04-14 22:50:42 | 000,245,760 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui1.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:42 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netui0.dll
MOD - [2008-04-14 22:50:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdsapi.dll
MOD - [2008-04-14 22:50:42 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntlanman.dll
MOD - [2008-04-14 22:50:42 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\netrap.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:40 | 000,278,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mstask.dll
MOD - [2008-04-14 22:50:40 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msimg32.dll
MOD - [2008-04-14 22:50:36 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\mpr.dll
MOD - [2008-04-14 22:50:36 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\linkinfo.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:30 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\drprov.dll
MOD - [2008-04-14 22:50:22 | 000,640,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\dbghelp.dll
MOD - [2008-04-14 22:50:22 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\davclnt.dll
MOD - [2008-04-14 22:50:18 | 000,602,624 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\crypt32.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:50:08 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\cabinet.dll
MOD - [2008-04-14 22:50:00 | 000,125,952 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\apphelp.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime
MOD - [2008-04-13 23:07:58 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rsaenh.dll
MOD - [2007-08-24 20:52:28 | 001,727,864 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\1045\GrooveIntlResource.dll
MOD - [2007-08-24 07:02:24 | 000,959,848 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveUtil.dll
MOD - [2007-08-24 07:01:22 | 002,212,224 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
MOD - [2007-08-24 07:00:50 | 000,025,448 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\GrooveNew.dll


[color="#e56717"]========== Win32 Services (SafeList) ==========[/color]


[color="#e56717"]========== Driver Services (SafeList) ==========[/color]


[color="#e56717"]========== Standard Registry (SafeList) ==========[/color]


[color="#e56717"]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = [url="http://www.daemon-search.com/startpage"]http://www.daemon-search.com/startpage[/url]
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\URLSearchHook: {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-12-12 10:57:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-12-12 10:57:00 | 000,000,000 | ---D | M]

[2011-01-08 18:16:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-15 22:24:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-08-25 13:09:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-10-20 15:39:09 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010-12-16 20:28:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2010-11-12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-07-04 22:11:25 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2010-07-04 22:11:25 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2010-07-04 22:11:26 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2010-07-04 22:11:26 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2010-07-04 22:11:26 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2010-07-04 22:11:26 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2009-04-26 09:15:13 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - No CLSID value found.
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (free-downloads.net Toolbar) - {ECDEE021-0D17-467F-A1FF-C7A115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files\mmp\multisaver\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe (A4Tech Co.,Ltd.)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM File not found
O4 - HKLM..\Run: [Launch Ai Booster] C:\Program Files\ASUS\Ai Booster\OverClk.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 351
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 43 01 00 00 [binary data]
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Pobierz wszystko z Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz z Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz zaznaczenie z Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O9 - Extra Button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - Reg Error: Key error. File not found
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008-02-13 18:22:22 | 000,000,095 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-12-22 19:19:04 | 000,068,551 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2010-11-19 08:02:17 | 000,000,000 | R--D | M] - P:\autorun -- [ CDFS ]
O32 - AutoRun File - [2010-11-19 08:02:17 | 000,000,000 | R--D | M] - P:\autorun -- [ CDFS ]
O33 - MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\Shell\AutoRun\command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\Shell\open\Command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O33 - MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\Shell\AutoRun\command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\Shell\open\Command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color="#e56717"]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-01-06 21:12:04 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010-12-28 16:02:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-12-28 10:35:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Techland
[2010-12-28 10:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Symulator Farmy 2011
[2010-12-21 21:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\2K Games
[2010-12-21 21:18:34 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010-12-19 23:36:56 | 000,000,000 | ---D | C] -- C:\Program Files\CDBurnerXP
[2010-12-08 18:31:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Flat Panel Adjust
[2010-12-08 18:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Flat Panel Adjust
[2010-12-08 18:15:46 | 000,000,000 | ---D | C] -- C:\Program Files\Altiris
[2010-12-07 17:06:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA
[2010-11-27 14:46:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Smart Defrag
[2010-11-27 14:45:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Advanced SystemCare 3
[2010-11-27 14:44:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster
[2010-11-27 14:44:37 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2010-11-27 14:44:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2010-11-26 00:18:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010-11-26 00:07:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2010-11-21 23:23:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Landwirtschafts Simulator 2011
[2010-11-21 23:21:39 | 000,000,000 | ---D | C] -- C:\Program Files\Landwirtschafts Simulator 2011
[2010-11-16 21:13:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype
[2010-11-16 21:13:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-11-16 21:13:16 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color="#e56717"]========== Files - Modified Within 60 Days ==========[/color]

[2011-01-07 19:24:47 | 000,572,258 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2011-01-07 19:24:47 | 000,509,088 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-01-07 19:24:47 | 000,113,978 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2011-01-07 19:24:47 | 000,091,752 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-01-07 00:13:55 | 000,000,252 | ---- | M] () -- C:\WINDOWS\WINCMD.INI
[2011-01-06 23:01:00 | 000,000,236 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2011-01-04 21:56:29 | 000,002,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ACDSee Photo Manager 12.lnk
[2010-12-28 18:16:43 | 003,675,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-12-28 16:20:24 | 000,001,618 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-27 11:31:17 | 000,000,002 | ---- | M] () -- C:\WINDOWS\System32\Dvbpws.dll
[2010-12-21 21:29:58 | 000,001,720 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-20 22:37:20 | 000,001,637 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\MapSource.lnk
[2010-12-20 02:00:01 | 000,000,344 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOMP1-Wojtip.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-12-15 18:46:13 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-12-15 17:57:15 | 000,042,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-12-14 23:43:24 | 000,000,749 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk
[2010-12-14 23:43:24 | 000,000,737 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Game Booster.lnk
[2010-12-08 19:07:48 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-05 17:50:59 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-12-05 17:46:13 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2010-11-27 14:46:27 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:45:45 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-12 17:15:00 | 000,000,378 | ---- | M] () -- C:\WINDOWS\tasks\1-Click Maintenance.job
[4 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[2 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

[color="#e56717"]========== Files Created - No Company Name ==========[/color]

[2010-12-28 16:20:24 | 000,001,618 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-28 16:20:05 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2010-12-28 14:13:40 | 000,001,720 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-19 23:29:07 | 000,000,252 | ---- | C] () -- C:\WINDOWS\WINCMD.INI
[2010-12-14 23:44:45 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-12-08 19:07:48 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-05 23:18:20 | 000,000,386 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-11-27 14:46:27 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:45:45 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-27 14:44:53 | 000,000,252 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2010-10-06 17:44:00 | 000,042,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-06-16 22:56:47 | 000,001,747 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2010-06-16 21:53:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Frameworks
[2010-06-14 22:43:40 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdx.DAT
[2010-06-14 22:39:17 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLeq.DAT
[2010-06-14 22:36:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLbx.DAT
[2010-06-13 21:14:30 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ViewNX.INI
[2010-06-13 20:09:07 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-06-13 20:06:58 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2009-10-31 23:54:07 | 000,000,107 | ---- | C] () -- C:\WINDOWS\ETKVE.INI
[2009-09-23 17:10:57 | 000,139,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009-06-22 18:55:28 | 000,004,767 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2009-05-10 20:50:17 | 000,000,002 | ---- | C] () -- C:\WINDOWS\System32\Dvbpws.dll
[2009-04-19 18:00:22 | 000,000,197 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-01-15 15:46:55 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\.zreglib
[2009-01-15 14:50:02 | 000,000,142 | ---- | C] () -- C:\WINDOWS\ClonyDrives.ini
[2009-01-15 14:48:07 | 000,000,340 | ---- | C] () -- C:\WINDOWS\Clony2.ini
[2008-06-23 21:25:26 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2008-06-23 21:25:26 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2008-05-05 11:11:00 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.INI
[2008-04-21 12:17:43 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008-04-21 12:17:43 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008-04-21 12:17:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008-04-21 12:17:29 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008-04-13 00:02:56 | 000,000,034 | ---- | C] () -- C:\Program Files\Common Files\appop.log
[2008-04-13 00:02:41 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2008-04-13 00:02:41 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2008-04-13 00:02:41 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2008-04-13 00:02:41 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2008-04-07 21:00:02 | 000,000,748 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2008-03-11 22:32:16 | 000,000,250 | ---- | C] () -- C:\WINDOWS\gmer.ini
[2008-03-11 22:32:15 | 000,819,200 | ---- | C] () -- C:\WINDOWS\gmer.dll
[2008-03-02 22:53:22 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys
[2008-02-27 20:25:11 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2008-02-17 17:44:02 | 000,000,032 | ---- | C] () -- C:\WINDOWS\Menu.INI
[2008-02-12 23:41:53 | 000,000,037 | ---- | C] () -- C:\WINDOWS\Grappler.ini
[2008-02-12 19:07:59 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\__FileUploader.log
[2008-02-12 17:04:48 | 000,000,017 | ---- | C] () -- C:\WINDOWS\MovingPicture.ini
[2008-02-12 16:38:44 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\mase32.dll
[2008-02-12 16:38:43 | 000,196,096 | ---- | C] () -- C:\WINDOWS\System32\macd32.dll
[2008-02-12 16:38:43 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\mamc32.dll
[2008-02-12 16:38:43 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\masd32.dll
[2008-02-12 16:38:43 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\ma32.dll
[2008-01-31 19:10:18 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008-01-30 23:01:08 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
[2008-01-30 22:07:19 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008-01-30 19:32:03 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008-01-30 19:18:59 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008-01-30 18:48:18 | 000,010,545 | ---- | C] () -- C:\WINDOWS\hpdj3840.ini
[2008-01-30 18:44:10 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\ZTAG32.DLL
[2008-01-30 18:44:09 | 000,028,672 | R--- | C] () -- C:\WINDOWS\System32\zlm.dll
[2008-01-30 18:44:09 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\IMF32.DLL
[2008-01-30 18:44:08 | 000,106,496 | R--- | C] () -- C:\WINDOWS\System32\vshp1018.dll
[2008-01-30 17:23:50 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2008-01-30 17:23:50 | 000,004,962 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2008-01-30 17:23:48 | 000,005,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2008-01-30 17:23:48 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2008-01-30 16:53:16 | 000,026,217 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008-01-30 16:53:16 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008-01-30 16:53:13 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008-01-30 16:32:33 | 000,004,466 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007-09-12 23:54:48 | 000,141,180 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2003-12-22 14:40:06 | 001,663,068 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll
[2003-03-15 08:27:30 | 000,000,117 | ---- | C] () -- C:\WINDOWS\Prof.ini
[2002-10-15 23:54:04 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2002-10-06 19:42:57 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002-10-05 00:04:25 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2002-10-05 00:04:24 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002-10-05 00:04:17 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002-03-21 13:39:02 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL

[color="#e56717"]========== LOP Check ==========[/color]

[2008-08-11 21:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems
[2008-04-14 19:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ashampoo
[2008-02-08 22:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Azureus
[2008-09-11 17:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Bluetooth
[2008-07-27 21:46:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software
[2010-12-28 16:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-02-07 22:46:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-02-14 13:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Deskshare
[2010-12-05 17:37:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EnterNHelp
[2008-04-14 19:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET
[2010-06-24 14:39:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\espionServerData
[2010-10-06 17:43:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\f-secure
[2010-10-06 17:42:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\fssg
[2009-03-12 19:40:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GARMIN
[2010-11-27 14:46:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2009-06-22 20:19:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2008-04-12 19:24:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Pinnacle
[2010-09-09 17:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe
[2009-09-25 22:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SlySoft
[2008-04-15 12:22:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SmartSound Software Inc
[2008-06-25 21:06:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tages
[2010-03-28 11:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-10-27 11:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\tmp
[2008-01-30 19:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software
[2008-01-30 18:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ultima_T15
[2009-02-07 14:33:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\vsosdk
[2010-01-07 12:48:40 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
[2010-11-12 17:15:00 | 000,000,378 | ---- | M] () -- C:\WINDOWS\Tasks\1-Click Maintenance.job
[2002-01-01 00:01:46 | 000,000,252 | ---- | M] () -- C:\WINDOWS\Tasks\Game_Booster_Startup.job
[2011-01-06 23:01:00 | 000,000,236 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag.job

[color="#e56717"]========== Purity Check ==========[/color]



[color="#e56717"]========== Custom Scans ==========[/color]


[color="#a23bec"]< %systemdrive%\*.* >[/color]
[2009-05-26 20:11:21 | 000,002,588 | ---- | M] () -- C:\1.log
[2010-02-19 18:01:00 | 000,064,508 | ---- | M] () -- C:\aaw7boot.log
[2010-06-24 14:39:41 | 000,000,000 | ---- | M] () -- C:\AdobeDebug.txt
[2008-02-13 16:15:33 | 000,000,000 | ---- | M] () -- C:\adorage-protocol.txt
[2008-02-13 18:22:22 | 000,000,095 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-12-22 19:19:04 | 000,068,551 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2008-01-30 15:41:53 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2008-04-12 21:05:40 | 000,012,288 | ---- | M] () -- C:\CAPTURE.AVI
[2009-04-26 09:18:54 | 000,030,341 | ---- | M] () -- C:\ComboFix.txt
[2008-01-30 15:47:16 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2008-04-21 12:35:40 | 000,000,000 | ---- | M] () -- C:\default.wav.wav
[2009-05-26 20:11:21 | 000,005,456 | ---- | M] () -- C:\e_1.log
[2009-08-26 21:26:46 | 000,016,801 | ---- | M] () -- C:\hpfr3840.log
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-11-18 21:20:08 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2008-04-09 18:32:53 | 000,000,578 | -H-- | M] () -- C:\os678647.bin
[2008-10-04 20:51:42 | 000,000,494 | ---- | M] () -- C:\settings.ini
[2008-07-27 21:33:58 | 000,000,016 | ---- | M] () -- C:\UsageTrack.txt
[2007-11-22 05:35:04 | 000,544,296 | ---- | M] (Microsoft Corporation) -- C:\WindowsXP-KB934428-v3-x86-PLK.exe


[color="#a23bec"]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\System32\drivers\agp440.sys

[color="#a23bec"]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\System32\drivers\atapi.sys
[2006-03-02 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\System32\ReinstallBackups\0010\DriverFiles\i386\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\System32\ReinstallBackups\0011\DriverFiles\i386\atapi.sys

[color="#a23bec"]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\System32\drivers\beep.sys

[color="#a23bec"]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\System32\drivers\cdrom.sys

[color="#a23bec"]< MD5 for: EVENTLOG.DLL >[/color]
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color="#a23bec"]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\System32\drivers\ndis.sys

[color="#a23bec"]< MD5 for: WINLOGON.EXE >[/color]
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\System32\winlogon.exe

[color="#e56717"]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 24 bytes -> C:\WINDOWS:07DB40CF0ABBE611
@Alternate Data Stream - 172 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C5096E95
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:51394AA5
@Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:6152D44C
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9
@Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:66B13F37

< End of report >
[/log]


RSIT
[log]Logfile of random's system information tool 1.08 (written by random/random)
Run by Wojtip at 2011-01-08 18:47:27
Microsoft Windows XP Home Edition Dodatek Service Pack 3
System drive C: has 7 GB (13%) free of 50 GB
Total RAM: 3071 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:47:36, on 2011-01-08
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\DiskMagik\DiskMgkS.exe
C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
C:\Program Files\mmp\multisaver\Anti-Virus\FSGK32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\mmp\multisaver\Anti-Virus\fssm32.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\IObit\Game Booster\GameBox.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ASUS\Ai Booster\OverClk.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Kalendarz XP\Kalendarz.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
D:\DreamMail4\DM2005.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\NetMeter\NetMeter.exe
C:\Program Files\TC PowerPack\totalcmd.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\mmp\multisaver\Common\FSLAUNCH.EXE
C:\Documents and Settings\Wojtip\Pulpit\RSIT(3).exe
C:\Program Files\trend micro\Wojtip.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url="http://www.daemon-search.com/startpage"]http://www.daemon-search.com/startpage[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\Ai Booster\OverClk.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\mmp\multisaver\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: DreamMail.lnk = D:\DreamMail4\DM2005.exe
O4 - Global Startup: Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Pobierz wszystko z Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Pobierz z Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Pobierz zaznaczenie z Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O9 - Extra button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{883E43D8-CA34-4E7B-9BCA-4FBC711D0216}: NameServer = 194.204.159.1,217.98.63.164
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: DiskMagik Service (DiskMgkS) - RoseCity Software - C:\Program Files\DiskMagik\DiskMgkS.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMSAccess - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 10903 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1-Click Maintenance.job
C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOMP1-Wojtip.job
C:\WINDOWS\tasks\Game_Booster_Startup.job
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\tasks\SmartDefrag.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdmcks.dll [2006-08-20 81920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-11-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-11-24 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ecdee021-0d17-467f-a1ff-c7a115230949}]
free-downloads.net Toolbar - C:\Program Files\free-downloads.net\tbfre2.dll [2010-10-18 3908192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2010-03-25 968000]
{ecdee021-0d17-467f-a1ff-c7a115230949} - free-downloads.net Toolbar - C:\Program Files\free-downloads.net\tbfre2.dll [2010-10-18 3908192]
{D4027C7F-154A-4066-A1AD-4243D8127440} - Ask Toolbar - C:\Program Files\Ask.com\GenericAskToolbar.dll [2010-09-28 1400712]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Launch Ai Booster"=C:\Program Files\ASUS\Ai Booster\OverClk.exe [2005-06-16 3627520]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2005-11-25 15473664]
"iKeyWorks"=C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe [2004-08-31 61440]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-11-12 13672448]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-11-12 86016]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2004-08-09 221184]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"F-Secure Manager"=C:\Program Files\mmp\multisaver\Common\FSM32.EXE [2009-08-05 199264]
"F-Secure TNB"=C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe [2009-08-05 2349664]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\wcescomm.exe [2006-11-13 1289000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]

C:\Documents and Settings\All Users\Menu Start\Programy\Autostart
Kalendarz XP.lnk - C:\Program Files\Kalendarz XP\Kalendarz.exe

C:\Documents and Settings\Wojtip\Menu Start\Programy\Autostart
DreamMail.lnk - D:\DreamMail4\DM2005.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0x43010000
"NoDriveAutoRun"=67108863
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe"="C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe:*:Enabled:Landwirtschafts Simulator 2011"
"C:\Program Files\Landwirtschafts Simulator 2011\game.exe"="C:\Program Files\Landwirtschafts Simulator 2011\game.exe:*:Enabled:Landwirtschafts Simulator 2011"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe"="C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011"
"C:\Program Files\Symulator Farmy 2011\game.exe"="C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
"Debugger="

======List of files/folders created in the last 1 months======

2011-01-08 18:46:50 ----D---- C:\Program Files\trend micro
2011-01-06 21:12:04 ----D---- C:\Program Files\ESET
2011-01-05 18:05:17 ----A---- C:\WINDOWS\ntbtlog.txt
2010-12-28 16:41:01 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
2010-12-28 16:20:05 ----A---- C:\WINDOWS\system32\drivers\StarOpen.sys
2010-12-28 16:02:46 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
2010-12-28 10:33:35 ----D---- C:\Program Files\Symulator Farmy 2011
2010-12-21 21:18:34 ----D---- C:\Program Files\2K Games
2010-12-19 23:36:56 ----D---- C:\Program Files\CDBurnerXP
2010-12-19 23:29:07 ----A---- C:\WINDOWS\WINCMD.INI
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\javaws.exe
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\javaw.exe
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\java.exe
2010-12-15 18:46:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-15 18:46:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-15 18:45:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-15 18:45:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-15 18:45:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-15 18:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-14 23:44:45 ----A---- C:\WINDOWS\imsins.BAK
2010-12-14 23:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-11 21:19:13 ----A---- C:\AutoMapaSetupLog.txt

======List of files/folders modified in the last 1 months======

2011-01-08 18:47:02 ----D---- C:\WINDOWS\Prefetch
2011-01-08 18:46:50 ----RD---- C:\Program Files
2011-01-08 18:08:24 ----D---- C:\WINDOWS\temp
2011-01-08 18:06:27 ----D---- C:\Program Files\Kalendarz XP
2011-01-07 19:34:27 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-07 19:24:47 ----D---- C:\WINDOWS\system32
2011-01-07 19:24:47 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-01-05 18:05:17 ----AD---- C:\WINDOWS
2011-01-04 22:24:12 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\foobar2000
2011-01-03 18:48:32 ----D---- C:\WINDOWS\system32\NtmsData
2010-12-28 16:20:05 ----D---- C:\WINDOWS\system32\drivers
2010-12-28 10:35:29 ----HD---- C:\WINDOWS\inf
2010-12-28 10:35:29 ----D---- C:\WINDOWS\system32\DirectX
2010-12-27 17:49:30 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\uTorrent
2010-12-27 11:31:17 ----A---- C:\WINDOWS\system32\Dvbpws.dll
2010-12-24 22:58:56 ----D---- C:\Program Files\Landwirtschafts Simulator 2011
2010-12-24 10:36:38 ----SD---- C:\WINDOWS\Tasks
2010-12-21 20:33:02 ----SHD---- C:\WINDOWS\Installer
2010-12-21 20:32:59 ----D---- C:\Config.Msi
2010-12-21 20:32:52 ----D---- C:\Program Files\NVIDIA Corporation
2010-12-21 20:32:12 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-12-21 20:28:36 ----RSD---- C:\WINDOWS\assembly
2010-12-20 22:37:08 ----D---- C:\Garmin
2010-12-19 23:29:07 ----D---- C:\Program Files\TC PowerPack
2010-12-19 13:14:41 ----D---- C:\Program Files\uTorrent
2010-12-19 12:50:35 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\Vso
2010-12-16 20:28:28 ----D---- C:\Program Files\Java
2010-12-15 18:46:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-12-15 18:45:56 ----D---- C:\Program Files\Internet Explorer
2010-12-15 18:45:36 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-14 23:44:55 ----D---- C:\WINDOWS\Debug
2010-12-14 23:44:51 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-14 23:44:43 ----D---- C:\Program Files\Outlook Express
2010-12-12 21:00:29 ----D---- C:\Program Files\Mozilla Firefox
2010-12-11 23:27:53 ----D---- C:\WINDOWS\system32\Restore
2010-12-11 21:04:16 ----SD---- C:\Documents and Settings\Wojtip\Dane aplikacji\Microsoft
2010-12-11 21:02:11 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-11 21:01:59 ----D---- C:\Program Files\Microsoft ActiveSync
2010-12-11 21:01:57 ----D---- C:\WINDOWS\Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVG Anti-Rootkit;AVG Anti-Rootkit; C:\WINDOWS\System32\DRIVERS\avgarkt.sys [2007-01-31 5632]
R0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys [2010-12-15 42664]
R0 FSFW;F-Secure Firewall Driver; C:\WINDOWS\System32\drivers\fsdfw.sys [2009-08-05 80000]
R0 iteatapi;ITEATAPI_Service_Install; C:\WINDOWS\system32\DRIVERS\iteatapi.sys [2005-04-26 25424]
R0 klbg;Kaspersky Lab Boot Guard Driver; C:\WINDOWS\system32\drivers\klbg.sys [2009-10-14 36880]
R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-06-16 44944]
R0 SiFilter;SATALink driver accelerator; C:\WINDOWS\system32\DRIVERS\SiWinAcc.sys [2004-11-01 10368]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-02-07 691696]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2004-10-14 4962]
R1 AvgArCln;Avg Anti-Rootkit Clean Driver; C:\WINDOWS\System32\DRIVERS\AvgArCln.sys [2007-01-18 3968]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files\mmp\multisaver\HIPS\drivers\fshs.sys []
R1 intelppm;Sterownik procesora Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2010-07-11 281760]
R2 CX23880;WinFast CX2388x WDM Video Capture.; C:\WINDOWS\system32\drivers\cx88vid.sys [2006-10-18 162944]
R2 CXAVXBAR;WinFast CX2388x WDM Crossbar.; C:\WINDOWS\system32\drivers\cxavxbar.sys [2006-10-18 9728]
R2 CXTUNE;WinFast CX2388x WDM TVTuner.; C:\WINDOWS\system32\drivers\CX88TUNE.sys [2006-10-18 50816]
R2 hardlock;hardlock; \??\C:\WINDOWS\system32\drivers\hardlock.sys []
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2010-07-11 25888]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files\mmp\multisaver\Anti-Virus\minifilter\fsgk.sys []
R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2005-11-25 4064256]
R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\WINDOWS\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2007-01-04 171520]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-14 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-11-12 6188320]
R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
R3 ULCDRHlp;ULCDRHlp; C:\WINDOWS\System32\Drivers\ULCDRHlp.sys [2004-12-23 27392]
R3 usbstor;Sterownik magazynu masowego USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2005-03-30 230400]
S0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys []
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys []
S0 SI3132;SiI-3132 SATALink Controller; C:\WINDOWS\system32\DRIVERS\SI3132.sys [2005-01-19 67200]
S3 61883;Urządzenie jednostkowe 61883; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-14 48128]
S3 AEXPAM;Philips SmartManage Service; C:\WINDOWS\System32\Drivers\aexpamdrv.sys [2004-09-01 21824]
S3 Arp1394;Protokół klienta 1394 ARP; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 ate9lsqb;ate9lsqb; C:\WINDOWS\system32\drivers\ate9lsqb.sys []
S3 Avc;Urządzenie AVC; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-14 38912]
S3 azhpq3mj;azhpq3mj; C:\WINDOWS\system32\drivers\azhpq3mj.sys []
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BthEnum;Sterownik Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Sterownik portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 273024]
S3 BTHUSB;Sterownik USB odbiornika radiowego Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 CCDECODE;Dekoder napisów; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 C-Dilla;C-Dilla; \??\C:\WINDOWS\system32\drivers\CDANT.SYS []
S3 dtscsi;dtscsi; C:\WINDOWS\system32\drivers\dtscsi.sys []
S3 e1express;Intel® PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2005-04-01 180736]
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-12-11 10976]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2008-12-11 22368]
S3 grmnusb;grmnusb; C:\WINDOWS\system32\drivers\grmnusb.sys [2007-03-08 8320]
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 HidUsb;Sterownik Microsoft klasy HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys []
S3 mouhid;Sterownik myszy HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-26 12160]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-14 51200]
S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;Koder-dekoder NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Połączenie TV/wideo firmy Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;Sterownik sieci 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 PavSRK.sys;PavSRK.sys; C:\WINDOWS\system32\drivers\PavSRK.sys.sys []
S3 PavTPK.sys;PavTPK.sys; C:\WINDOWS\system32\drivers\PavTPK.sys.sys []
S3 PCANDIS5_RETWIFI;PCANDIS5_RETWIFI Protocol Driver; \??\C:\PROGRA~1\EEYEDI~1\RETINA~1\PCANDIS5_RETWIFI.SYS []
S3 PCANDIS5_WIFISCAN.SYS;PCANDIS5_WIFISCAN.SYS; \??\C:\Program Files\eEye Digital Security\Retina Wireless Scanner\PCANDIS5_WIFISCAN.SYS []
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-04-22 47360]
S3 RFCOMM;Urządzenie Bluetooth (Protokół TDI RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2006-03-02 5888]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\WINDOWS\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\WINDOWS\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\WINDOWS\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 SIWIO;SIW low-level I/O driver; \??\C:\WINDOWS\TEMP\SiwIo.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 7168]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Klasa PRINTER USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Sterownik skanera USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 VBus;Virtual Bus; C:\WINDOWS\system32\DRIVERS\NkVBus.sys [2008-01-18 17824]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 vmfilter323;323 filter service, Normal; C:\WINDOWS\system32\drivers\vmfilter323.sys []
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
S3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFTVFM\WFIOCTL.SYS []
S3 WSTCODEC;Kodery-dekodery teletekstu w standardzie światowym; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 ZSMC326;Vimicro USB2.0 PC Camera(VC0323); C:\WINDOWS\System32\Drivers\usbvm323.sys []
S4 F-Secure Filter;F-Secure File System Filter; \??\C:\Program Files\mmp\multisaver\Anti-Virus\Win2K\FSfilter.sys []
S4 F-Secure Recognizer;F-Secure File System Recognizer; \??\C:\Program Files\mmp\multisaver\Anti-Virus\Win2K\FSrec.sys []
S4 WS2IFSL;Środowisko wspomagające dostawcę usług innych niż IFS - Windows Socket 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 C-DillaSrv;C-DillaSrv; C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE [2001-09-10 32256]
R2 DiskMgkS;DiskMagik Service; C:\Program Files\DiskMagik\DiskMgkS.exe [2007-12-14 415768]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe [2009-08-05 215648]
R2 FSMA;F-Secure Management Agent; C:\Program Files\mmp\multisaver\Common\FSMA32.EXE [2009-08-05 186976]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-12 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2006-10-26 335872]
R2 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-11-12 163908]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-09-23 75064]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;„Usługa stanu ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-06-24 867080]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe [2009-08-05 522848]
S3 FSORSPClient;F-Secure ORSP Client; C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe [2010-12-20 63992]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MatSvc;Microsoft Automated Troubleshooting Service; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [2010-04-10 266544]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2007-08-24 68464]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2008-01-30 306432]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
[/log]

Tomek01
komentarz
komentarz

Zastosuj [b][color=#0000CD][url=http://download.bleepingcomputer.com//sUBs/Flash_Disinfector.exe]Flash Disinfector[/url][/color][/b], najlepiej z podpiętym pendrive'm czy innymi pamięciami USB.

Nie odpinając USB uruchom OTL, w oknie Custom scan/fixes wklej:
[code]:Processes
Explorer.exe

:OTL
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\URLSearchHook: {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (free-downloads.net Toolbar) - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (DAEMON Tools Toolbar) - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\..\Toolbar\WebBrowser: (free-downloads.net Toolbar) - {ECDEE021-0D17-467F-A1FF-C7A115230949} - C:\Program Files\free-downloads.net\tbfre2.dll (Conduit Ltd.)
O33 - MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\Shell\AutoRun\command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\Shell\open\Command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\Shell\AutoRun\command - "" = T:\m0vnonh.bat -- File not found
O33 - MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\Shell\open\Command - "" = T:\m0vnonh.bat -- File not found
@Alternate Data Stream - 24 bytes -> C:\WINDOWS:07DB40CF0ABBE611
@Alternate Data Stream - 172 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C5096E95
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:51394AA5
@Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:6152D44C
@Alternate Data Stream - 111 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9
@Alternate Data Stream - 106 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2
@Alternate Data Stream - 101 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:66B13F37

:Files
C:\Program Files\Ask.com
C:\Program Files\DAEMON Tools Toolbar
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
C:\WINDOWS\Tasks\1-Click Maintenance.job

:Reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ecdee021-0d17-467f-a1ff-c7a115230949}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{32099AAC-C132-4136-9E9A-4E364A424E17}=-
{ecdee021-0d17-467f-a1ff-c7a115230949}=-
{D4027C7F-154A-4066-A1AD-4243D8127440}=-

:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Klikasz run fix, komputer uruchamia się ponownie.
Wrzuć log z usuwania oraz nowe logi: OTL i RSIT

Wojtip
komentarz
komentarz

Występuje problem.
Wykonuję wszystko według zaleceń i po wciśnięciu run fix (wykonaj skrypt) program przestaje działać.
Komunikat na dole to: Killing processes. DO NOT INTERRUPT...

Tomek01
komentarz
komentarz

Wykonaj to w takim razie w trybie awaryjnym.

Wojtip
komentarz
komentarz

Log z usuwania


[log]All processes killed
========== PROCESSES ==========
Process Explorer.exe killed successfully!
========== OTL ==========
HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main\\Start Page| /E : value set successfully!
Registry value HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Internet Explorer\URLSearchHooks\\{ecdee021-0d17-467f-a1ff-c7a115230949} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecdee021-0d17-467f-a1ff-c7a115230949}\ deleted successfully.
C:\Program Files\free-downloads.net\tbfre2.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ deleted successfully.
C:\Program Files\Ask.com\GenericAskToolbar.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ecdee021-0d17-467f-a1ff-c7a115230949}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecdee021-0d17-467f-a1ff-c7a115230949}\ not found.
File C:\Program Files\free-downloads.net\tbfre2.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ deleted successfully.
C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{ecdee021-0d17-467f-a1ff-c7a115230949} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecdee021-0d17-467f-a1ff-c7a115230949}\ not found.
File downloads.net\tbfre2.dll not found.
Registry value HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{32099AAC-C132-4136-9E9A-4E364A424E17} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
File C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
File C:\Program Files\Ask.com\GenericAskToolbar.dll not found.
Registry value HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{ECDEE021-0D17-467F-A1FF-C7A115230949} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECDEE021-0D17-467F-A1FF-C7A115230949}\ not found.
File downloads.net\tbfre2.dll not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14b03ad4-0cc7-11de-a39e-0013d4991806}\ not found.
File T:\m0vnonh.bat not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{14b03ad4-0cc7-11de-a39e-0013d4991806}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{14b03ad4-0cc7-11de-a39e-0013d4991806}\ not found.
File T:\m0vnonh.bat not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a842a460-c3de-11df-a682-0013d4991806}\ not found.
File T:\m0vnonh.bat not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a842a460-c3de-11df-a682-0013d4991806}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{a842a460-c3de-11df-a682-0013d4991806}\ not found.
File T:\m0vnonh.bat not found.
ADS C:\WINDOWS:07DB40CF0ABBE611 deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:C5096E95 deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:51394AA5 deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:6152D44C deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9 deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:DFC5A2B2 deleted successfully.
ADS C:\Documents and Settings\All Users\Dane aplikacji\TEMP:66B13F37 deleted successfully.
========== FILES ==========
C:\Program Files\Ask.com folder moved successfully.
C:\Program Files\DAEMON Tools Toolbar\Resources folder moved successfully.
C:\Program Files\DAEMON Tools Toolbar folder moved successfully.
C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job moved successfully.
C:\WINDOWS\Tasks\1-Click Maintenance.job moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{30F9B915-B755-4826-820B-08FBA6BD249D}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{30F9B915-B755-4826-820B-08FBA6BD249D}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{ecdee021-0d17-467f-a1ff-c7a115230949}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecdee021-0d17-467f-a1ff-c7a115230949}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{32099AAC-C132-4136-9E9A-4E364A424E17} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{32099AAC-C132-4136-9E9A-4E364A424E17}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{ecdee021-0d17-467f-a1ff-c7a115230949} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ecdee021-0d17-467f-a1ff-c7a115230949}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}\ not found.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Dagmara
->Temp folder emptied: 1356017 bytes
->Temporary Internet Files folder emptied: 1968844 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 96813700 bytes
->Opera cache emptied: 133444 bytes
->Flash cache emptied: 6316 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes
->Flash cache emptied: 41620 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Patrycja
->Temp folder emptied: 16712869 bytes
->Temporary Internet Files folder emptied: 6392753 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 113580607 bytes
->Flash cache emptied: 39353 bytes

User: Wojtip
->Temp folder emptied: 307309079 bytes
->Temporary Internet Files folder emptied: 1227292 bytes
->Java cache emptied: 12846 bytes
->FireFox cache emptied: 56621460 bytes
->Opera cache emptied: 240682 bytes
->Flash cache emptied: 47179 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 29869298 bytes
%systemroot%\System32 .tmp files removed: 2596 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 52667509 bytes
RecycleBin emptied: 1194831872 bytes

Total Files Cleaned = 1 793,00 mb


OTL by OldTimer - Version 3.2.20.1 log created on 01082011_213819

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
[/log]

OTL

[log]OTL Extras logfile created on: 2011-01-08 21:46:36 - Run 1
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 7,75 Gb Free Space | 15,88% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,62 Gb Free Space | 2,21% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive U: | 7,39 Gb Total Space | 5,13 Gb Free Space | 69,42% Space Free | Partition Type: FAT32

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color="#e56717"]========== Extra Registry (SafeList) ==========[/color]


[color="#e56717"]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]

[HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color="#e56717"]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Photo Manager 12.Manage] -- "C:\Program Files\ACD Systems\ACDSee\12.0\ACDSeeQV12.exe" "%1" (ACD Systems International Inc.)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color="#e56717"]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color="#e56717"]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color="#e56717"]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[color="#e56717"]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe" = C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Landwirtschafts Simulator 2011\game.exe" = C:\Program Files\Landwirtschafts Simulator 2011\game.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe" = C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Symulator Farmy 2011\game.exe" = C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)


[color="#e56717"]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01000A03-E058-11D3-9C13-0000E220DC33}" = MiraScan V4.03
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{07A13404-2959-4805-B49F-1EC3C2AF35F8}" = GPMapa NT 3d 2009.4
"{086a7d8c-0a38-4c7f-819a-620275550d5c}" = Nero Burning ROM Help
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{08E4AE58-748D-4983-9B8A-495E2341769F}" = Garmin POI Loader
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{16E217EA-C3E0-402D-8D4F-6189DB74497A}" = Studio 9.3 Patch
"{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java™ 6 Update 23
"{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK
"{2CCBFA48-3E9C-48ED-805C-6FD56956BC0B}" = GPMapa 2007.2
"{2D43FD89-B225-4334-B4AA-0983400BE61B}" = Windows Presentation Foundation Language Pack (PLK)
"{2E5A5B57-57FC-4C79-A239-9DB280ADEC2A}" = Microsoft RAW Image Thumbnailer and Viewer for Windows XP Version 1.0 (Build 50)
"{2F750C77-1FEC-44F9-88CC-2CE322EBD61E}" = Microsoft Games for Windows - LIVE Redistributable
"{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 3.209.00
"{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java™ 6 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java™ 6 Update 7
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{36BD0774-6CD6-4FF9-A148-83CA09AC123E}" = Intel® PROSafe for Wired Connections
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3F866D37-22D0-435D-94F1-31A64D566D0E}" = Pinnacle device drivers
"{403EF592-953B-4794-BCEF-ECAB835C2095}" = Intel® PROSafe for Wired Connections
"{42DC7D64-F389-4E37-B545-E7D674A97D66}" = PC DUAL SHOCK
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5888428E-699C-4E71-BF71-94EE06B497DA}" = TuneUp Utilities 2008
"{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK
"{5C19E2DC-4CCF-3114-B40A-6E565987025F}" = Microsoft .NET Framework 4 Extended PLK Language Pack
"{5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1}" = Nero Vision
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74BF0A46-DF67-4D86-B038-BF0E51871B66}" = Ai Booster
"{76C24F39-B161-498F-BD8B-C64789812D13}_is1" = ConvertXtoDVD 3.0.0.9
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{7CCF417A-76BA-42BB-A3DA-95BF9F01699F}" = GPMapa NT 2008.1 subskrypcja - a4
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7EF13AFD-98D5-46F3-9C1D-E0AE5E80513E}" = GPMapa NT 3d 2010.3
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{8AEEE6D6-C95D-465A-B8D3-B7AE2FA7B8B4}" = InterVideo Launcher
"{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{2D1F88C2-ADAE-47C4-8648-6EA8F7E6EB2D}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{94A4609B-0414-4427-81F3-0FD282A2D0D3}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{934519A2-4D50-4B83-A459-92D90E9E3188}" = WinFast PVR
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"{9E491AB7-4589-48CA-9CBB-874CB2788391}" = Studio 9
"{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}" = ACDSee Photo Manager 12
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7DEBAA4-B211-4D1A-A6B3-E52BFAAA1D0C}" = Garmin Communicator Plugin
"{A89768CF-CD21-44FD-A723-16D5A8557415}" = NEF Codec
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AC76BA86-7AD7-1045-7B44-A93000000001}" = Adobe Reader 9.3.4 - Polish
"{B1102A25-3AA3-446B-AA0F-A699B07A02FD}" = Garmin USB Drivers
"{B1591C79-1C35-4E09-AA15-F7D6923AFB96}" = HP Deskjet 3840
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
"{B81023A5-71ED-46EB-BE3B-9F974D1155F1}" = HP Software Update
"{BA10FB0C-1DD6-4194-BECC-727252E9415C}" = DiskMagik
"{BA115711-83C5-4307-B4B2-1A823AB85714}_is1" = DVD PixPlay Exporting Plug-In Pack
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.1.5.173
"{BE4AA694-815A-4045-BD49-C94F2BED7458}" = WinFast Entertainment Center
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"{C3EBEF79-DE34-44AE-8774-F6A17ABE27B2}" = Garmin nRoute
"{C8616041-2802-4DE2-B3BD-6285AAD65C2A}" = Nikon RAW Codec
"{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{c9920352-04e6-469d-bab8-e2b9c7c75415}.sdb" = Microsoft Automated Troubleshooting Services Shim
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DA1876DD-323E-4D78-8F9F-8F4FDE25C010}" = ID_DCRaw Image Decoder Plug-In
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DEAD07C6-D070-43AB-A60D-D9ABE55E296D}_is1" = JPEGCrops 0.7.5 beta
"{E0783143-EAE2-4047-A8D6-E155523C594C}" = Garmin WebUpdater
"{E0D51394-1D45-460A-B62D-383BC4F8B335}" = QuickTime
"{E2E7A0E8-77C4-495F-8FA3-63DAEDAA2DB3}" = F-Secure PSC Prerequisites
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{E91D14EF-CC7A-4AD3-87B4-4D5D8ED0EC4B}_is1" = EasyRecovery
"{EA6EB7D0-C920-4434-B43D-0DDD0AF8F497}" = Garmin MapSource
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{F84B9669-7102-42B4-A3A2-9A68741CD253}" = Altiris Philips SmartManage Agent
"{F89078FA-D069-462D-AB34-75483E0A38F1}" = Garmin City Navigator Europe NT 2008 Update
"{FD593DE6-C3A0-4722-8E86-9DEEF0A93290}" = Microsoft .NET Framework 3.0 Polish Language Pack
"A4Tech iKeyWorks" = A4Tech iKeyWorks 7.64
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"ALLPlayer_is1" = ALLPlayer V4.X
"A-Ray Scanner" = A-Ray Scanner 2.0.2.3
"AsusUpdate" = AsusUpdate
"AuranTS2009_is1" = Trainz: Engineer's Edition
"Autko" = Autko
"Auto Movie Creator_is1" = Auto Movie Creator 1.5
"AVGantiRootkit" = AVG Anti-Rootkit Free
"Bagger-Simulator 2008" = Bagger-Simulator 2008
"BDESetup.exe_is1" = Borland Database Engine Ver. 5.2.0.2
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"ChomikBox" = ChomikBox
"Cimaware OfficeFIX 6" = Cimaware OfficeFIX 6
"CloneCD" = CloneCD
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"Deluxe Ski Jump 3_is1" = Deluxe Ski Jump 3 v1.7.0
"DemolitionCompanyDE_is1" = Demolition Company
"DreamMail 4.6" = DreamMail 4.6
"DVD PixPlay_is1" = DVD PixPlay
"Ekspert CD_is1" = Ekspert CD
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.50
"FarmingSimulator2011DE_is1" = Landwirtschafts Simulator 2011
"FarmingSimulator2011PL_is1" = Symulator Farmy 2011
"FPAdjust" = FPAdjust
"Free Download Manager_is1" = Free Download Manager 2.1
"free-downloads.net Toolbar" = free-downloads.net Toolbar
"F-Secure Product 303" = multiSAVER
"Gadu-Gadu" = Gadu-Gadu 7.7
"Game Booster_is1" = Game Booster
"giants_editor_4.1.7_is1" = GIANTS Editor 4.1.7
"Hollywood FX 5" = Pinnacle Hollywood FX 5
"HookAnalyzer_is1" = RootKit Hook Analyzer 3.02
"HP-LaserJet 1018" = LaserJet 1018
"ie8" = Windows Internet Explorer 8
"InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"InstallShield_{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"InstallShield_{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"IsoBuster_is1" = IsoBuster 2.3
"JDownloader" = JDownloader
"Kalendarz XP" = Kalendarz XP v29.85
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.0 Full
"LMS" = C-Dilla Licence Management System
"Mafia II_is1" = Mafia II
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mapa UMP-pcPL (prawie cała Polska)_is1" = MapSource - UMP-pcPL
"MGI_Photovista_V1_4_0" = MGI Photovista 2.02(Remove only)
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.0 Polish Language Pack" = Pakiet języka polskiego dla systemu Microsoft .NET Framework 3.0
"Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
"Mining and Tunneling" = Mining and Tunneling
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"NetMeter_is1" = NetMeter 0.9.9.9 (beta 2)
"NVIDIA Drivers" = NVIDIA Drivers
"OggDS" = Direct Show Ogg Vorbis Filter (remove only)
"OpenAL" = OpenAL
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.6
"proDAD-Heroglyph-2.5" = proDAD Heroglyph 2.5
"proDAD-Vitascene-1.0" = proDAD Vitascene 1.0
"Profiler v1.2 PL" = Profiler v1.2 PL
"PROSetDX" = Intel® PRO Network Connections Software v10.0.26.0
"PunkBusterSvc" = PunkBuster Services
"RailWorks" = RailWorks
"Revo Uninstaller" = Revo Uninstaller 1.90
"ScenalyzerLive" = ScenalyzerLive (remove)
"Side 9 Screensaver" = Side 9 Screensaver
"Smart Defrag_is1" = Smart Defrag
"superfotoKURIER_is1" = superfotoKURIER 1.0.3
"Total Audio Converter_is1" = TotalAudioConverter
"Trickshot" = Trickshot
"Ulead Photo Express 3.0 SE" = Ulead Photo Express 3.0 SE
"UltraISO_is1" = UltraISO Premium V8.2
"Update Service" = Update Service
"USB/PS2 Vibration Pad" = USB/PS2 Vibration Pad
"uTorrent" = µTorrent
"VMidi" = vanBasco's Karaoke Player
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinISO_is1" = WinISO 5.3
"WinRAR archiver" = Archiwizator WinRAR
"WMV9_VCM" = Microsoft Windows Media Video 9 VCM
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
"XviD_is1" = XviD 1.1 final uninstall

[color="#e56717"]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2010-03-30 15:15:29 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd iexplore.exe, wersja 6.0.2900.5512, moduł
powodujący błąd mshtml.dll, wersja 6.0.2900.5921, adres błędu 0x00069400.

Error - 2010-03-31 04:25:07 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-03-31 07:04:41 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-03 09:25:23 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-03 15:05:33 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd javaw.exe, wersja 6.0.190.4, moduł powodujący
błąd java.dll, wersja 6.0.190.4, adres błędu 0x00005875.

Error - 2010-04-07 08:39:30 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-09 10:08:13 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd editor.exe, wersja 0.0.0.0, moduł powodujący
błąd editor.exe, wersja 0.0.0.0, adres błędu 0x00037f1f.

Error - 2010-04-09 10:13:34 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd editor.exe, wersja 0.0.0.0, moduł powodujący
błąd editor.exe, wersja 0.0.0.0, adres błędu 0x00037f1f.

Error - 2010-04-11 10:33:10 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-14 13:14:11 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

[ System Events ]
Error - 2011-01-08 15:51:48 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7034
Description = Usługa DiskMagik Service niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2011-01-08 16:02:08 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Lbd

Error - 2011-01-08 16:08:09 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7034
Description = Usługa NVIDIA Display Driver Service niespodziewanie zakończyła pracę.
Wystąpiło to razy: 1.

Error - 2011-01-08 16:08:10 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7034
Description = Usługa C-DillaSrv niespodziewanie zakończyła pracę. Wystąpiło to razy:
1.

Error - 2011-01-08 16:08:10 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7034
Description = Usługa DiskMagik Service niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2011-01-08 16:34:53 | Computer Name = KOMP1 | Source = sptd | ID = 262148
Description = Sterownik wykrył błąd wewnętrzny w swoich strukturach danych dla .

Error - 2011-01-08 16:35:10 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 16:35:46 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: AsIO ElbyCDIO Fips intelppm kl1 Lbd ohci1394 PCLEPCI sptd

Error - 2011-01-08 16:39:27 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 16:41:34 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Lbd


< End of report >
[/log]

[log]OTL logfile created on: 2011-01-08 21:46:36 - Run 1
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 78,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 93,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 7,75 Gb Free Space | 15,88% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,62 Gb Free Space | 2,21% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive U: | 7,39 Gb Total Space | 5,13 Gb Free Space | 69,42% Space Free | Partition Type: FAT32

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color="#e56717"]========== Processes (All) ==========[/color]

PRC - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe
PRC - [2011-01-04 14:58:46 | 000,372,904 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsav32.exe
PRC - [2010-12-20 13:23:19 | 000,063,992 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe
PRC - [2010-12-12 10:56:48 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-12-09 19:08:18 | 000,413,016 | ---- | M] (IObit) -- C:\Program Files\IObit\Game Booster\GameBox.exe
PRC - [2010-11-12 18:53:22 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2010-10-06 18:01:22 | 000,783,016 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fssm32.exe
PRC - [2010-10-06 18:01:21 | 000,492,200 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32.exe
PRC - [2010-09-20 03:51:14 | 001,812,992 | ---- | M] (DreamStudio) -- D:\DreamMail4\DM2005.exe
PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2010-05-14 10:44:46 | 000,248,552 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
PRC - [2010-04-01 10:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2010-03-04 23:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2009-09-23 17:10:21 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2009-08-05 16:58:52 | 000,186,976 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
PRC - [2009-08-05 16:58:50 | 000,199,264 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSM32.EXE
PRC - [2009-08-05 16:58:50 | 000,088,672 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSHDLL32.EXE
PRC - [2009-08-05 16:57:20 | 000,522,848 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\FWES\program\fsdfwd.exe
PRC - [2009-08-05 16:56:10 | 000,215,648 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2009-02-06 11:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-11-12 13:54:00 | 000,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2008-06-09 09:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [BTHSVCS]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:32 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-04-14 22:51:04 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2007-12-14 01:34:52 | 000,415,768 | ---- | M] (RoseCity Software) -- C:\Program Files\DiskMagik\DiskMgkS.exe
PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\rapimgr.exe
PRC - [2006-10-26 13:40:34 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
PRC - [2006-03-04 17:40:30 | 000,882,176 | ---- | M] () -- C:\Program Files\Kalendarz XP\Kalendarz.exe
PRC - [2006-02-16 06:54:00 | 000,842,788 | ---- | M] (C. Ghisler & Co.) -- C:\Program Files\TC PowerPack\TOTALCMD.EXE
PRC - [2005-11-25 11:53:00 | 015,473,664 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE
PRC - [2005-06-16 15:36:16 | 003,627,520 | ---- | M] () -- C:\Program Files\ASUS\Ai Booster\OverClk.exe
PRC - [2005-01-28 12:44:28 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe
PRC - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2004-08-31 12:33:22 | 000,061,440 | ---- | M] (A4Tech Co.,Ltd.) -- C:\Program Files\A4Tech\Keyboard\Ikeymain.exe
PRC - [2001-09-10 18:08:50 | 000,032,256 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\system32\drivers\CDANTSRV.EXE


[color="#e56717"]========== Modules (All) ==========[/color]

MOD - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe
MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2010-07-27 07:30:33 | 008,491,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-08-05 16:58:30 | 000,330,336 | ---- | M] () -- \\?\c:\program files\mmp\multisaver\hips\fshook32.dll
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime


[color="#e56717"]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010-12-20 13:23:19 | 000,063,992 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe -- (FSORSPClient)
SRV - [2010-06-24 10:05:32 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-04-10 16:05:58 | 000,266,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe -- (MatSvc)
SRV - [2010-03-18 16:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state)
SRV - [2010-03-18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-03-04 23:38:00 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccess)
SRV - [2010-02-19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009-08-05 16:58:52 | 000,186,976 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files\mmp\multisaver\Common\FSMA32.EXE -- (FSMA)
SRV - [2009-08-05 16:57:20 | 000,522,848 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe -- (FSDFWD)
SRV - [2009-08-05 16:56:10 | 000,215,648 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter)
SRV - [2008-01-30 19:31:35 | 000,306,432 | ---- | M] (TuneUp Software GmbH) [On_Demand | Stopped] -- C:\WINDOWS\system32\TuneUpDefragService.exe -- (TuneUp.Defrag)
SRV - [2007-12-20 10:41:56 | 000,029,440 | ---- | M] (TuneUp Software GmbH) [Auto | Running] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2007-12-14 01:34:52 | 000,415,768 | ---- | M] (RoseCity Software) [Auto | Running] -- C:\Program Files\DiskMagik\DiskMgkS.exe -- (DiskMgkS)
SRV - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2001-09-10 18:08:50 | 000,032,256 | ---- | M] (C-Dilla Ltd) [Auto | Running] -- C:\WINDOWS\system32\drivers\CDANTSRV.EXE -- (C-DillaSrv)


[color="#e56717"]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\usbvm323.sys -- (ZSMC326) Vimicro USB2.0 PC Camera(VC0323)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\vmfilter323.sys -- (vmfilter323)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\VcommMgr.sys -- (VcommMgr)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\VComm.sys -- (VComm)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\TEMP\SiwIo.sys -- (SIWIO)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\eEye Digital Security\Retina Wireless Scanner\PCANDIS5_WIFISCAN.SYS -- (PCANDIS5_WIFISCAN.SYS)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\PROGRA~1\EEYEDI~1\RETINA~1\PCANDIS5_RETWIFI.SYS -- (PCANDIS5_RETWIFI)
DRV - File not found [File_System | Boot | Stopped] -- C:\WINDOWS\System32\DRIVERS\Lbd.sys -- (Lbd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
DRV - File not found [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\BTHidMgr.sys -- (BTHidMgr)
DRV - File not found [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\vbtenum.sys -- (BTHidEnum)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\btcusb.sys -- (Btcsrusb)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\btnetdrv.sys -- (BT)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\BlueletSCOAudio.sys -- (BlueletSCOAudio)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\blueletaudio.sys -- (BlueletAudio)
DRV - [2010-12-15 17:57:15 | 000,042,664 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\Drivers\fsbts.sys -- (fsbts)
DRV - [2010-12-03 19:14:35 | 000,130,728 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\mmp\multisaver\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper)
DRV - [2010-07-11 11:37:55 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2010-07-11 11:37:55 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2010-02-07 18:00:38 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009-11-12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009-10-31 23:56:22 | 000,457,216 | ---- | M] (Aladdin Knowledge Systems) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (hardlock)
DRV - [2009-10-14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\klbg.sys -- (klbg)
DRV - [2009-09-14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2009-09-01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1)
DRV - [2009-08-05 16:58:30 | 000,068,064 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Program Files\mmp\multisaver\HIPS\drivers\fshs.sys -- (F-Secure HIPS)
DRV - [2009-08-05 16:57:20 | 000,080,000 | ---- | M] (F-Secure Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\fsdfw.sys -- (FSFW)
DRV - [2009-08-05 16:56:14 | 000,039,776 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\mmp\multisaver\Anti-Virus\win2k\fsfilter.sys -- (F-Secure Filter)
DRV - [2009-08-05 16:56:14 | 000,025,184 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\mmp\multisaver\Anti-Virus\win2k\fsrec.sys -- (F-Secure Recognizer)
DRV - [2009-02-17 18:11:30 | 000,024,232 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2008-12-11 14:56:47 | 000,022,368 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2008-12-11 14:56:47 | 000,010,976 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2008-11-12 13:54:00 | 006,188,320 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2008-04-14 00:16:22 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\61883.sys -- (61883)
DRV - [2008-04-14 00:16:22 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avc.sys -- (Avc)
DRV - [2008-04-14 00:16:10 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msdv.sys -- (MSDV)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows ® Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008-03-13 17:02:46 | 000,026,640 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klfltdev.sys -- (KLFLTDEV)
DRV - [2008-01-18 17:02:14 | 000,017,824 | ---- | M] (Nikon Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NkVBus.sys -- (VBus)
DRV - [2007-04-03 12:57:54 | 000,099,080 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116unic.sys -- (s116unic) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM)
DRV - [2007-04-03 12:57:52 | 000,098,696 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116obex.sys -- (s116obex)
DRV - [2007-04-03 12:57:52 | 000,023,176 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116nd5.sys -- (s116nd5) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS)
DRV - [2007-04-03 12:57:50 | 000,100,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mgmt.sys -- (s116mgmt) Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM)
DRV - [2007-04-03 12:57:48 | 000,108,680 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdm.sys -- (s116mdm)
DRV - [2007-04-03 12:57:48 | 000,015,112 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdfl.sys -- (s116mdfl)
DRV - [2007-04-03 12:57:42 | 000,083,336 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116bus.sys -- (s116bus) Sony Ericsson Device 116 driver (WDM)
DRV - [2007-02-16 01:57:04 | 000,034,760 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2007-01-31 14:33:46 | 000,005,632 | ---- | M] (GRISOFT, s.r.o.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\avgarkt.sys -- (AVG Anti-Rootkit)
DRV - [2007-01-18 13:00:28 | 000,003,968 | ---- | M] (GRISOFT, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AvgArCln.sys -- (AvgArCln)
DRV - [2007-01-04 10:07:00 | 000,171,520 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MarvinBus.sys -- (MarvinBus)
DRV - [2006-10-18 10:38:38 | 000,009,728 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cxavxbar.sys -- (CXAVXBAR)
DRV - [2006-10-18 10:37:56 | 000,050,816 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88tune.sys -- (CXTUNE)
DRV - [2006-10-18 10:37:26 | 000,162,944 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88vid.sys -- (CX23880)
DRV - [2005-11-25 11:53:00 | 004,064,256 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2005-04-26 13:30:20 | 000,025,424 | R--- | M] (Integrated Technology Express, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\iteatapi.sys -- (iteatapi)
DRV - [2005-04-01 02:04:52 | 000,180,736 | R--- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\e1e5132.sys -- (e1express) Intel®
DRV - [2005-03-30 08:24:00 | 000,230,400 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005-01-19 23:30:52 | 000,067,200 | R--- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\SI3132.sys -- (SI3132)
DRV - [2005-01-06 15:55:38 | 000,009,446 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Stopped] -- C:\Program Files\WinFast\WFTVFM\WFIOCTL.sys -- (WFIOCTL)
DRV - [2004-12-23 16:27:56 | 000,027,392 | ---- | M] (Ulead Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ULCDRHlp.sys -- (ULCDRHlp)
DRV - [2004-11-01 20:21:32 | 000,010,368 | R--- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\SiWinAcc.sys -- (SiFilter)
DRV - [2004-10-14 10:52:28 | 000,004,962 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2004-09-01 14:10:48 | 000,021,824 | ---- | M] (Philips Consumer Electronics Co.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aexpamdrv.sys -- (AEXPAM)
DRV - [2004-08-14 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004-05-02 09:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv)
DRV - [2004-03-10 15:27:18 | 000,011,264 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\asapiW2k.sys -- (ASAPIW2k)
DRV - [2003-09-19 00:47:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (Pfc)
DRV - [2002-03-19 08:29:16 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Pclepci.sys -- (PCLEPCI)
DRV - [2001-09-10 18:09:46 | 000,057,392 | ---- | M] (Macrovision) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CDANT.SYS -- (C-Dilla)


[color="#e56717"]========== Standard Registry (SafeList) ==========[/color]


[color="#e56717"]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color="#e56717"]========== FireFox ==========[/color]

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: elemhidehelper@adblockplus.org:1.1
FF - prefs.js..extensions.enabledItems: {2bfc8624-5b8a-4060-b86a-e78ccbc38509}:2.4
FF - prefs.js..extensions.enabledItems: {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.6.5
FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.3.0244
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:1.1.10
FF - prefs.js..extensions.enabledItems: {89506680-e3f4-484c-a2c0-ed711d481eda}:0.9.5.6
FF - prefs.js..extensions.enabledItems: {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: low_quality_flash@pie2k.com:0.1
FF - prefs.js..extensions.enabledItems: {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.1
FF - prefs.js..extensions.enabledItems: {64161300-e22b-11db-8314-0800200c9a66}:0.9.5.8
FF - prefs.js..extensions.enabledItems: {e0204bd5-9d31-402b-a99d-a6aa8ffebdca}:1.2.5
FF - prefs.js..extensions.enabledItems: foxmarks@kei.com:3.9.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: toolbar@ask.com:3.9.1.14019
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: Office2007Black@JBBS:1.5.8
FF - prefs.js..network.proxy.type: 4

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-12-12 10:57:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-12-12 10:57:00 | 000,000,000 | ---D | M]

[2010-09-07 17:07:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Extensions
[2010-09-07 17:07:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011-01-08 18:16:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions
[2010-10-01 16:07:12 | 000,000,000 | ---D | M] (Forecastfox Weather) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
[2010-12-13 22:00:13 | 000,000,000 | ---D | M] ("ColorfulTabs") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
[2010-12-23 23:40:58 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2010-05-10 21:02:48 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-12-06 21:00:13 | 000,000,000 | ---D | M] ("BetterSearch") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{2bfc8624-5b8a-4060-b86a-e78ccbc38509}
[2010-03-30 19:46:11 | 000,000,000 | ---D | M] (PDF Download) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}
[2010-12-11 20:47:50 | 000,000,000 | ---D | M] (Speed Dial) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}
[2009-07-09 10:04:58 | 000,000,000 | ---D | M] (IE Tab) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}
[2010-10-27 12:11:14 | 000,000,000 | ---D | M] (Firefox Showcase) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{89506680-e3f4-484c-a2c0-ed711d481eda}
[2010-12-23 23:40:56 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010-06-04 09:36:56 | 000,000,000 | ---D | M] (DownThemAll!) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2010-04-24 12:18:12 | 000,000,000 | ---D | M] (Torbutton) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{e0204bd5-9d31-402b-a99d-a6aa8ffebdca}
[2011-01-06 20:35:15 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com
[2010-11-05 09:46:14 | 000,000,000 | ---D | M] (Element Hiding Helper for Adblock Plus) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\elemhidehelper@adblockplus.org
[2010-10-01 16:07:09 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\foxmarks@kei.com
[2010-02-25 21:26:28 | 000,000,000 | ---D | M] (Low Quality Flash) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\low_quality_flash@pie2k.com
[2011-01-06 20:34:41 | 000,000,000 | ---D | M] (Office Black) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\Office2007Black@JBBS
[2010-10-20 19:50:17 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com
[2010-06-16 21:42:30 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\searchplugins\daemon-search.xml
[2009-01-06 19:15:26 | 000,001,447 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\searchplugins\userlogos.xml
[2011-01-08 18:16:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-15 22:24:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-08-25 13:09:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-10-20 15:39:09 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010-12-16 20:28:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2010-01-30 15:27:23 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010-11-12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-07-04 22:11:25 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-07-04 22:11:25 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-07-04 22:11:26 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-07-04 22:11:26 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-07-04 22:11:26 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-07-04 22:11:26 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2009-04-26 09:15:13 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files\mmp\multisaver\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [iKeyWorks] C:\Program Files\A4Tech\Keyboard\Ikeymain.exe (A4Tech Co.,Ltd.)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [Launch Ai Booster] C:\Program Files\ASUS\Ai Booster\OverClk.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe ()
O4 - Startup: C:\Documents and Settings\Wojtip\Menu Start\Programy\Autostart\DreamMail.lnk = D:\DreamMail4\DM2005.exe (DreamStudio)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 351
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = FF FF FF FF [binary data]
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Pobierz wszystko z Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz z Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz zaznaczenie z Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O9 - Extra Button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - Reg Error: Key error. File not found
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} [url="http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab"]http://java.sun.com/...indows-i586.cab[/url] (Java Plug-in 1.6.0_23)
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008-02-13 18:22:22 | 000,000,095 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-12-22 19:19:04 | 000,068,551 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:00 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:00 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - F:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - G:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - H:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - I:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - J:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:03 | 000,000,000 | RHSD | M] - K:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-11-19 08:02:17 | 000,000,000 | R--D | M] - P:\autorun -- [ CDFS ]
O32 - AutoRun File - [2010-10-12 13:32:08 | 000,000,047 | R--- | M] () - P:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2011-01-08 21:04:06 | 000,000,000 | RHSD | M] - U:\autorun.inf -- [ FAT32 ]
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: HidServ - C:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: UxTuneUp - C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software GmbH)
NetSvcs: WmdmPmSp - File not found

MsConfig - StartUpReg: [b]Adobe ARM[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: [b]Adobe Reader Speed Launcher[/b] - hkey= - key= - C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe (Alcohol Soft Development Team)
MsConfig - StartUpReg: [b]EA Core[/b] - hkey= - key= - C:\Program Files\Electronic Arts\EADM\Core.exe File not found
MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)

SafeBootMin: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

[color="#e56717"]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-01-08 20:48:00 | 000,000,000 | RHSD | C] -- C:\autorun.inf
[2011-01-08 18:46:50 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011-01-06 21:12:04 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010-12-28 16:41:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
[2010-12-28 16:02:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-12-28 10:35:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Techland
[2010-12-28 10:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Symulator Farmy 2011
[2010-12-21 21:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\2K Games
[2010-12-21 21:18:34 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010-12-21 20:38:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\2K Games
[2010-12-19 23:36:56 | 000,000,000 | ---D | C] -- C:\Program Files\CDBurnerXP
[2010-12-08 18:31:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Flat Panel Adjust
[2010-12-08 18:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Flat Panel Adjust
[2010-12-08 18:30:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\WINDOWS
[2010-12-08 18:15:46 | 000,000,000 | ---D | C] -- C:\Program Files\Altiris
[2010-12-07 17:06:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA
[2010-12-05 20:06:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\Activision
[2010-12-05 18:17:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\Temp
[2010-11-27 14:46:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Smart Defrag
[2010-11-27 14:45:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Advanced SystemCare 3
[2010-11-27 14:45:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Dane aplikacji\IObit
[2010-11-27 14:44:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster
[2010-11-27 14:44:37 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2010-11-27 14:44:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2010-11-26 21:39:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\PCHealth
[2010-11-26 00:18:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010-11-26 00:07:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2010-11-21 23:23:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Landwirtschafts Simulator 2011
[2010-11-21 23:21:39 | 000,000,000 | ---D | C] -- C:\Program Files\Landwirtschafts Simulator 2011
[2010-11-21 23:20:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Wojtip\Recent
[2010-11-21 22:35:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\GIANTS Editor 4.1.7
[2010-11-17 20:20:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\ConduitEngine
[2010-11-16 21:13:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype
[2010-11-16 21:13:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-11-16 21:13:16 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2008-01-30 19:34:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.sys

[color="#e56717"]========== Files - Modified Within 60 Days ==========[/color]

[2011-01-08 21:44:31 | 000,571,906 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2011-01-08 21:44:31 | 000,508,944 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-01-08 21:44:31 | 000,113,750 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2011-01-08 21:44:31 | 000,091,608 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-01-08 21:43:35 | 000,253,748 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2011-01-08 21:42:44 | 000,000,252 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011-01-08 21:42:43 | 000,013,732 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-01-08 21:41:20 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-01-08 20:12:55 | 000,000,252 | ---- | M] () -- C:\WINDOWS\WINCMD.INI
[2011-01-08 18:44:50 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\RSIT(3).exe
[2011-01-04 21:56:29 | 000,002,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ACDSee Photo Manager 12.lnk
[2011-01-04 16:16:55 | 000,010,950 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\WAW 1.docx
[2010-12-28 18:16:43 | 003,675,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-12-28 16:20:24 | 000,001,618 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-27 11:31:17 | 000,000,002 | ---- | M] () -- C:\WINDOWS\System32\Dvbpws.dll
[2010-12-22 22:04:25 | 000,010,944 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Zezwalam na wykorzystanie sześciu.docx
[2010-12-21 21:29:58 | 000,001,720 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-20 22:37:20 | 000,001,637 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\MapSource.lnk
[2010-12-20 02:00:01 | 000,000,344 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOMP1-Wojtip.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-12-19 12:50:34 | 000,000,668 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\vso_ts_preview.xml
[2010-12-17 15:34:59 | 000,040,758 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Poradnik robienia LODA.pdf
[2010-12-17 15:31:34 | 000,107,568 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\A22292 M8712 garmin.pdf
[2010-12-15 18:46:13 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-12-15 17:57:15 | 000,042,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-12-14 23:43:24 | 000,000,749 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk
[2010-12-14 23:43:24 | 000,000,737 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Game Booster.lnk
[2010-12-11 23:40:35 | 000,166,912 | ---- | M] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-12-09 18:10:35 | 000,017,835 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\zdjęcia numeery.docx
[2010-12-08 19:07:48 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-08 16:02:54 | 000,157,959 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2a.pdf
[2010-12-07 17:00:11 | 000,464,521 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2.pdf
[2010-12-05 22:03:30 | 001,167,404 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\cc_20101205_220308.reg
[2010-12-05 17:50:59 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-12-05 17:50:59 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Font Book
[2010-12-05 17:46:13 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2010-12-05 17:46:13 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions
[2010-11-27 14:46:27 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:46:27 | 000,000,150 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\IObit Freeware.url
[2010-11-27 14:45:45 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-22 18:42:03 | 000,157,696 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe 1.doc
[2010-11-21 23:23:13 | 000,000,958 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\Landwirtschafts Simulator 2011 .lnk
[2010-11-21 18:20:31 | 000,019,012 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe.docx

[color="#e56717"]========== Files Created - No Company Name ==========[/color]

[2011-01-08 18:44:50 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\Wojtip\Pulpit\RSIT(3).exe
[2011-01-04 16:16:55 | 000,010,950 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\WAW 1.docx
[2010-12-28 16:20:24 | 000,001,618 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-28 16:20:05 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2010-12-28 14:13:40 | 000,001,720 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-26 22:37:14 | 000,000,958 | ---- | C] () -- C:\Documents and Settings\Wojtip\Pulpit\Landwirtschafts Simulator 2011 .lnk
[2010-12-22 22:04:25 | 000,010,944 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Zezwalam na wykorzystanie sześciu.docx
[2010-12-19 23:29:07 | 000,000,252 | ---- | C] () -- C:\WINDOWS\WINCMD.INI
[2010-12-17 15:34:59 | 000,040,758 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Poradnik robienia LODA.pdf
[2010-12-17 15:31:45 | 000,107,568 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\A22292 M8712 garmin.pdf
[2010-12-14 23:44:45 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-12-09 18:10:34 | 000,017,835 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\zdjęcia numeery.docx
[2010-12-08 19:07:48 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-08 16:02:54 | 000,157,959 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2a.pdf
[2010-12-07 17:00:11 | 000,464,521 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2.pdf
[2010-12-05 23:18:20 | 000,000,386 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-12-05 22:03:15 | 001,167,404 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\cc_20101205_220308.reg
[2010-11-27 14:46:27 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:45:45 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-27 14:44:53 | 000,000,252 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2010-11-22 18:42:02 | 000,157,696 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe 1.doc
[2010-11-21 18:20:30 | 000,019,012 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe.docx
[2010-10-06 17:44:00 | 000,042,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-06-16 22:56:47 | 000,001,747 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2010-06-16 21:53:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Frameworks
[2010-06-14 22:43:40 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdx.DAT
[2010-06-14 22:43:40 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions Handlers
[2010-06-14 22:39:17 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLeq.DAT
[2010-06-14 22:39:17 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Fruit
[2010-06-14 22:36:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLbx.DAT
[2010-06-13 21:14:30 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ViewNX.INI
[2010-06-13 20:09:07 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-06-13 20:09:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Font Book
[2010-06-13 20:06:59 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions
[2010-06-13 20:06:58 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2009-11-25 22:07:06 | 000,002,604 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\OFMissionEditorConfig.xml
[2009-10-31 23:54:07 | 000,000,107 | ---- | C] () -- C:\WINDOWS\ETKVE.INI
[2009-09-23 17:10:57 | 000,139,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009-09-23 17:10:56 | 000,139,152 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\PnkBstrK.sys
[2009-06-22 20:30:52 | 000,000,140 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\default.rss
[2009-06-22 20:30:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\downloads.m3u
[2009-06-22 18:55:28 | 000,004,767 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2009-06-22 18:15:55 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\inst.exe
[2009-05-26 18:42:52 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\$_hpcst$.hpc
[2009-05-10 20:50:17 | 000,000,002 | ---- | C] () -- C:\WINDOWS\System32\Dvbpws.dll
[2009-04-19 18:00:22 | 000,000,197 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-01-15 15:46:55 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\.zreglib
[2009-01-15 14:50:02 | 000,000,142 | ---- | C] () -- C:\WINDOWS\ClonyDrives.ini
[2009-01-15 14:48:07 | 000,000,340 | ---- | C] () -- C:\WINDOWS\Clony2.ini
[2008-06-23 21:25:26 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2008-06-23 21:25:26 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2008-05-05 11:11:00 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.INI
[2008-04-22 17:32:40 | 000,000,668 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\vso_ts_preview.xml
[2008-04-21 12:17:43 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008-04-21 12:17:43 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008-04-21 12:17:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008-04-21 12:17:29 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008-04-13 00:02:56 | 000,000,034 | ---- | C] () -- C:\Program Files\Common Files\appop.log
[2008-04-13 00:02:41 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2008-04-13 00:02:41 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2008-04-13 00:02:41 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2008-04-13 00:02:41 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2008-04-07 21:00:02 | 000,000,748 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2008-03-11 22:32:16 | 000,000,250 | ---- | C] () -- C:\WINDOWS\gmer.ini
[2008-03-11 22:32:15 | 000,819,200 | ---- | C] () -- C:\WINDOWS\gmer.dll
[2008-03-02 22:53:22 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys
[2008-02-27 20:25:11 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2008-02-17 17:44:02 | 000,000,032 | ---- | C] () -- C:\WINDOWS\Menu.INI
[2008-02-12 23:53:33 | 000,166,912 | ---- | C] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-02-12 23:41:53 | 000,000,037 | ---- | C] () -- C:\WINDOWS\Grappler.ini
[2008-02-12 19:07:59 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\__FileUploader.log
[2008-02-12 17:04:48 | 000,000,017 | ---- | C] () -- C:\WINDOWS\MovingPicture.ini
[2008-02-12 16:41:12 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\fusioncache.dat
[2008-02-12 16:38:44 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\mase32.dll
[2008-02-12 16:38:43 | 000,196,096 | ---- | C] () -- C:\WINDOWS\System32\macd32.dll
[2008-02-12 16:38:43 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\mamc32.dll
[2008-02-12 16:38:43 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\masd32.dll
[2008-02-12 16:38:43 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\ma32.dll
[2008-01-31 19:10:18 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008-01-30 23:01:08 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
[2008-01-30 22:07:19 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008-01-30 19:34:20 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.log
[2008-01-30 19:34:17 | 000,081,920 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\ezpinst.exe
[2008-01-30 19:34:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.cat
[2008-01-30 19:34:17 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.inf
[2008-01-30 19:32:03 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008-01-30 19:18:59 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008-01-30 18:48:18 | 000,010,545 | ---- | C] () -- C:\WINDOWS\hpdj3840.ini
[2008-01-30 18:44:08 | 000,106,496 | R--- | C] () -- C:\WINDOWS\System32\vshp1018.dll
[2008-01-30 17:23:50 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2008-01-30 17:23:50 | 000,004,962 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2008-01-30 17:23:48 | 000,005,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2008-01-30 17:23:48 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2008-01-30 16:53:16 | 000,026,217 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008-01-30 16:53:16 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008-01-30 16:53:13 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008-01-30 16:32:33 | 000,004,466 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007-09-12 23:54:48 | 000,141,180 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2003-12-22 14:40:06 | 001,663,068 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll
[2003-03-15 08:27:30 | 000,000,117 | ---- | C] () -- C:\WINDOWS\Prof.ini
[2002-10-15 23:54:04 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2002-10-06 19:42:57 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002-10-05 00:04:25 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2002-10-05 00:04:24 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002-10-05 00:04:17 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002-03-21 13:39:02 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL

[color="#e56717"]========== LOP Check ==========[/color]

[2008-08-11 21:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems
[2008-04-14 19:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ashampoo
[2008-02-08 22:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Azureus
[2008-09-11 17:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Bluetooth
[2008-07-27 21:46:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software
[2010-12-28 16:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-02-07 22:46:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-02-14 13:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Deskshare
[2010-12-05 17:37:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EnterNHelp
[2008-04-14 19:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET
[2010-06-24 14:39:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\espionServerData
[2010-10-06 17:43:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\f-secure
[2010-10-06 17:42:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\fssg
[2009-03-12 19:40:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GARMIN
[2010-11-27 14:46:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2009-06-22 20:19:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2008-04-12 19:24:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Pinnacle
[2010-09-09 17:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe
[2009-09-25 22:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SlySoft
[2008-04-15 12:22:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SmartSound Software Inc
[2008-06-25 21:06:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tages
[2010-03-28 11:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-10-27 11:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\tmp
[2008-01-30 19:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software
[2008-01-30 18:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ultima_T15
[2009-02-07 14:33:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\vsosdk
[2010-01-07 12:48:40 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
[2009-09-13 20:33:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Gadu-Gadu
[2010-01-07 19:38:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\GARMIN
[2009-10-27 09:24:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Opera
[2010-03-23 19:40:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Spam Monitor
[2009-12-11 15:19:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\SPAMfighter
[2009-09-12 09:54:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Thunderbird
[2009-09-12 10:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\ACD Systems
[2010-05-21 20:17:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\DAEMON Tools Lite
[2009-12-29 15:07:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\GARMIN
[2009-12-10 15:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\SPAMfighter
[2009-12-29 15:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\Thunderbird
[2010-06-24 23:30:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems
[2010-06-24 23:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Azureus
[2010-12-28 16:41:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
[2010-10-07 18:16:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2009-12-12 22:43:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ChomikBox
[2008-06-23 20:15:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Cimaware
[2008-02-22 14:23:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\CoSoSys
[2008-02-22 16:58:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\DAEMON Tools
[2009-09-12 10:37:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\DAEMON Tools Lite
[2008-04-14 19:04:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ESET
[2010-10-08 16:36:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\F-Secure
[2011-01-04 22:24:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\foobar2000
[2010-03-30 19:19:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Free Download Manager
[2008-01-31 22:09:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Gadu-Gadu
[2010-07-11 11:45:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Games
[2009-03-12 19:40:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\GARMIN
[2010-04-09 15:04:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\GIANTS Editor 0.3.0
[2010-09-08 14:30:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\gtk-2.0
[2010-11-27 14:46:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\IObit
[2008-09-20 18:53:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\JPEGCrops
[2010-05-29 23:30:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\LogMate
[2010-06-13 20:47:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Nikon
[2008-08-11 19:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Nowe Gadu-Gadu
[2008-03-30 10:31:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Off Road
[2009-02-28 17:22:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Opera
[2008-02-12 17:04:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\proDAD
[2010-07-07 16:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\RawTherapee
[2008-02-06 23:08:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Simply Super Software
[2010-02-20 13:14:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Softplicity
[2009-12-07 18:48:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\SPAMfighter
[2010-03-28 16:55:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Spamihilator
[2010-09-09 20:27:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2008-06-20 20:35:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\The Bat!
[2010-09-07 17:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Thunderbird
[2008-01-30 19:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\TuneUp Software
[2010-12-27 17:49:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\uTorrent
[2010-12-19 12:50:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Vso
[2011-01-08 21:42:44 | 000,000,252 | ---- | M] () -- C:\WINDOWS\Tasks\Game_Booster_Startup.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag.job

[color="#e56717"]========== Purity Check ==========[/color]



[color="#e56717"]========== Custom Scans ==========[/color]


[color="#a23bec"]< %systemdrive%\*.* >[/color]
[2009-05-26 20:11:21 | 000,002,588 | ---- | M] () -- C:\1.log
[2010-02-19 18:01:00 | 000,064,508 | ---- | M] () -- C:\aaw7boot.log
[2010-06-24 14:39:41 | 000,000,000 | ---- | M] () -- C:\AdobeDebug.txt
[2008-02-13 16:15:33 | 000,000,000 | ---- | M] () -- C:\adorage-protocol.txt
[2008-02-13 18:22:22 | 000,000,095 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-12-22 19:19:04 | 000,068,551 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2008-01-30 15:41:53 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2008-04-12 21:05:40 | 000,012,288 | ---- | M] () -- C:\CAPTURE.AVI
[2009-04-26 09:18:54 | 000,030,341 | ---- | M] () -- C:\ComboFix.txt
[2008-01-30 15:47:16 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2008-04-21 12:35:40 | 000,000,000 | ---- | M] () -- C:\default.wav.wav
[2009-05-26 20:11:21 | 000,005,456 | ---- | M] () -- C:\e_1.log
[2009-08-26 21:26:46 | 000,016,801 | ---- | M] () -- C:\hpfr3840.log
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-11-18 21:20:08 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2008-04-09 18:32:53 | 000,000,578 | -H-- | M] () -- C:\os678647.bin
[2008-10-04 20:51:42 | 000,000,494 | ---- | M] () -- C:\settings.ini
[2008-07-27 21:33:58 | 000,000,016 | ---- | M] () -- C:\UsageTrack.txt
[2007-11-22 05:35:04 | 000,544,296 | ---- | M] (Microsoft Corporation) -- C:\WindowsXP-KB934428-v3-x86-PLK.exe


[color="#a23bec"]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color="#a23bec"]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006-03-02 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\i386\atapi.sys

[color="#a23bec"]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color="#a23bec"]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color="#a23bec"]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 13:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color="#a23bec"]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 13:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color="#a23bec"]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 13:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe

< End of report >
[/log]

RSIT

[log]Logfile of random's system information tool 1.08 (written by random/random)
Run by Wojtip at 2011-01-08 21:57:33
Microsoft Windows XP Home Edition Dodatek Service Pack 3
System drive C: has 8 GB (16%) free of 50 GB
Total RAM: 3071 MB (79% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:57:40, on 2011-01-08
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
C:\Program Files\DiskMagik\DiskMgkS.exe
C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
C:\Program Files\mmp\multisaver\Anti-Virus\FSGK32.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\mmp\multisaver\Anti-Virus\fssm32.exe
C:\Program Files\IObit\Game Booster\GameBox.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\notepad.exe
C:\Program Files\ASUS\Ai Booster\OverClk.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Kalendarz XP\Kalendarz.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
D:\DreamMail4\DM2005.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\TC PowerPack\totalcmd.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\mmp\multisaver\Common\FSLAUNCH.EXE
I:\Z Firefox\RSIT.exe
C:\Program Files\trend micro\Wojtip.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url="http://go.microsoft.com/fwlink/?LinkId=54896"]http://go.microsoft....k/?LinkId=54896[/url]
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = [url="http://go.microsoft.com/fwlink/?LinkId=69157"]http://go.microsoft....k/?LinkId=69157[/url]
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\Ai Booster\OverClk.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [iKeyWorks] C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\mmp\multisaver\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: DreamMail.lnk = D:\DreamMail4\DM2005.exe
O4 - Global Startup: Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Pobierz wszystko z Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Pobierz z Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Pobierz zaznaczenie z Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O9 - Extra button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O17 - HKLM\System\CCS\Services\Tcpip\..\{883E43D8-CA34-4E7B-9BCA-4FBC711D0216}: NameServer = 194.204.159.1,217.98.63.164
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE
O23 - Service: DiskMagik Service (DiskMgkS) - RoseCity Software - C:\Program Files\DiskMagik\DiskMgkS.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NMSAccess - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe

--
End of file - 9943 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOMP1-Wojtip.job
C:\WINDOWS\tasks\Game_Booster_Startup.job
C:\WINDOWS\tasks\SmartDefrag.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-06-19 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdmcks.dll [2006-08-20 81920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java™ Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2010-11-24 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2010-11-24 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Launch Ai Booster"=C:\Program Files\ASUS\Ai Booster\OverClk.exe [2005-06-16 3627520]
"RTHDCPL"=C:\WINDOWS\RTHDCPL.EXE [2005-11-25 15473664]
"iKeyWorks"=C:\PROGRA~1\A4Tech\Keyboard\Ikeymain.exe [2004-08-31 61440]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-11-12 13672448]
"NvMediaCenter"=C:\WINDOWS\system32\NvMcTray.dll [2008-11-12 86016]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe [2004-08-09 221184]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-05-14 248552]
"F-Secure Manager"=C:\Program Files\mmp\multisaver\Common\FSM32.EXE [2009-08-05 199264]
"F-Secure TNB"=C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe [2009-08-05 2349664]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\DTLite.exe [2010-04-01 357696]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\wcescomm.exe [2006-11-13 1289000]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-21 932288]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2010-06-20 35760]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AlcoholAutomount]
C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2009-11-15 33120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Malwarebytes Anti-Malware (reboot)]
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [2009-09-10 1312080]

C:\Documents and Settings\All Users\Menu Start\Programy\Autostart
Kalendarz XP.lnk - C:\Program Files\Kalendarz XP\Kalendarz.exe

C:\Documents and Settings\Wojtip\Menu Start\Programy\Autostart
DreamMail.lnk - D:\DreamMail4\DM2005.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll [2007-08-24 2212224]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=36
"NoDriveAutoRun"=0xFFFFFFFF
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=351
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft Office\Office12\GROOVE.EXE"="C:\Program Files\Microsoft Office\Office12\GROOVE.EXE:*:Enabled:Microsoft Office Groove"
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE"="C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote"
"C:\WINDOWS\system32\PnkBstrA.exe"="C:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\WINDOWS\system32\PnkBstrB.exe"="C:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\Program Files\Skype\Plugin Manager\skypePM.exe"="C:\Program Files\Skype\Plugin Manager\skypePM.exe:*:Enabled:Skype Extras Manager"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Opera\opera.exe"="C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe"="C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe:*:Enabled:Landwirtschafts Simulator 2011"
"C:\Program Files\Landwirtschafts Simulator 2011\game.exe"="C:\Program Files\Landwirtschafts Simulator 2011\game.exe:*:Enabled:Landwirtschafts Simulator 2011"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe"="C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011"
"C:\Program Files\Symulator Farmy 2011\game.exe"="C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
"Debugger="

======List of files/folders created in the last 1 months======

2011-01-08 20:48:00 ----RASHD---- C:\autorun.inf
2011-01-08 18:46:50 ----D---- C:\Program Files\trend micro
2011-01-06 21:12:04 ----D---- C:\Program Files\ESET
2011-01-05 18:05:17 ----A---- C:\WINDOWS\ntbtlog.txt
2010-12-28 16:41:01 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
2010-12-28 16:20:05 ----A---- C:\WINDOWS\system32\drivers\StarOpen.sys
2010-12-28 16:02:46 ----D---- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
2010-12-28 10:33:35 ----D---- C:\Program Files\Symulator Farmy 2011
2010-12-21 21:18:34 ----D---- C:\Program Files\2K Games
2010-12-19 23:36:56 ----D---- C:\Program Files\CDBurnerXP
2010-12-19 23:29:07 ----A---- C:\WINDOWS\WINCMD.INI
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\javaws.exe
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\javaw.exe
2010-12-16 20:28:31 ----A---- C:\WINDOWS\system32\java.exe
2010-12-15 18:46:18 ----HDC---- C:\WINDOWS\$NtUninstallKB2296199$
2010-12-15 18:46:10 ----HDC---- C:\WINDOWS\$NtUninstallKB2443105$
2010-12-15 18:45:30 ----HDC---- C:\WINDOWS\$NtUninstallKB2440591$
2010-12-15 18:45:20 ----HDC---- C:\WINDOWS\$NtUninstallKB2443685$
2010-12-15 18:45:12 ----HDC---- C:\WINDOWS\$NtUninstallKB2436673$
2010-12-15 18:00:06 ----HDC---- C:\WINDOWS\$NtUninstallKB2467659$
2010-12-14 23:44:45 ----A---- C:\WINDOWS\imsins.BAK
2010-12-14 23:44:41 ----HDC---- C:\WINDOWS\$NtUninstallKB2423089$
2010-12-11 21:19:13 ----A---- C:\AutoMapaSetupLog.txt

======List of files/folders modified in the last 1 months======

2011-01-08 21:57:04 ----D---- C:\WINDOWS\Prefetch
2011-01-08 21:53:46 ----D---- C:\Program Files\Kalendarz XP
2011-01-08 21:48:41 ----D---- C:\WINDOWS\temp
2011-01-08 21:44:31 ----D---- C:\WINDOWS\system32
2011-01-08 21:44:31 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2011-01-08 21:43:35 ----D---- C:\WINDOWS\system32\Lang
2011-01-08 21:41:37 ----D---- C:\WINDOWS\system32\CatRoot2
2011-01-08 21:39:17 ----AD---- C:\WINDOWS
2011-01-08 21:38:52 ----SD---- C:\WINDOWS\Tasks
2011-01-08 21:38:52 ----RD---- C:\Program Files
2011-01-08 21:38:23 ----D---- C:\Program Files\free-downloads.net
2011-01-08 21:32:52 ----A---- C:\WINDOWS\SchedLgU.Txt
2011-01-04 22:24:12 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\foobar2000
2011-01-03 18:48:32 ----D---- C:\WINDOWS\system32\NtmsData
2010-12-28 16:20:05 ----D---- C:\WINDOWS\system32\drivers
2010-12-28 10:35:29 ----HD---- C:\WINDOWS\inf
2010-12-28 10:35:29 ----D---- C:\WINDOWS\system32\DirectX
2010-12-27 17:49:30 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\uTorrent
2010-12-27 11:31:17 ----A---- C:\WINDOWS\system32\Dvbpws.dll
2010-12-24 22:58:56 ----D---- C:\Program Files\Landwirtschafts Simulator 2011
2010-12-21 20:33:02 ----SHD---- C:\WINDOWS\Installer
2010-12-21 20:32:59 ----D---- C:\Config.Msi
2010-12-21 20:32:52 ----D---- C:\Program Files\NVIDIA Corporation
2010-12-21 20:32:12 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2010-12-21 20:28:36 ----RSD---- C:\WINDOWS\assembly
2010-12-20 22:37:08 ----D---- C:\Garmin
2010-12-19 23:29:07 ----D---- C:\Program Files\TC PowerPack
2010-12-19 13:14:41 ----D---- C:\Program Files\uTorrent
2010-12-19 12:50:35 ----D---- C:\Documents and Settings\Wojtip\Dane aplikacji\Vso
2010-12-16 20:28:28 ----D---- C:\Program Files\Java
2010-12-15 18:46:20 ----RSHDC---- C:\WINDOWS\system32\dllcache
2010-12-15 18:45:56 ----D---- C:\Program Files\Internet Explorer
2010-12-15 18:45:36 ----HD---- C:\WINDOWS\$hf_mig$
2010-12-14 23:44:55 ----D---- C:\WINDOWS\Debug
2010-12-14 23:44:51 ----A---- C:\WINDOWS\system32\MRT.exe
2010-12-14 23:44:43 ----D---- C:\Program Files\Outlook Express
2010-12-12 21:00:29 ----D---- C:\Program Files\Mozilla Firefox
2010-12-11 23:27:53 ----D---- C:\WINDOWS\system32\Restore
2010-12-11 21:04:16 ----SD---- C:\Documents and Settings\Wojtip\Dane aplikacji\Microsoft
2010-12-11 21:02:11 ----D---- C:\WINDOWS\system32\ReinstallBackups
2010-12-11 21:01:59 ----D---- C:\Program Files\Microsoft ActiveSync
2010-12-11 21:01:57 ----D---- C:\WINDOWS\Help

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVG Anti-Rootkit;AVG Anti-Rootkit; C:\WINDOWS\System32\DRIVERS\avgarkt.sys [2007-01-31 5632]
R0 fsbts;fsbts; C:\WINDOWS\system32\Drivers\fsbts.sys [2010-12-15 42664]
R0 FSFW;F-Secure Firewall Driver; C:\WINDOWS\System32\drivers\fsdfw.sys [2009-08-05 80000]
R0 iteatapi;ITEATAPI_Service_Install; C:\WINDOWS\system32\DRIVERS\iteatapi.sys [2005-04-26 25424]
R0 klbg;Kaspersky Lab Boot Guard Driver; C:\WINDOWS\system32\drivers\klbg.sys [2009-10-14 36880]
R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; C:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-14 61696]
R0 PxHelp20;PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [2008-06-16 44944]
R0 SI3132;SiI-3132 SATALink Controller; C:\WINDOWS\system32\DRIVERS\SI3132.sys [2005-01-19 67200]
R0 SiFilter;SATALink driver accelerator; C:\WINDOWS\system32\DRIVERS\SiWinAcc.sys [2004-11-01 10368]
R0 sptd;sptd; C:\WINDOWS\System32\Drivers\sptd.sys [2010-02-07 691696]
R1 AsIO;AsIO; C:\WINDOWS\system32\drivers\AsIO.sys [2004-10-14 4962]
R1 AvgArCln;Avg Anti-Rootkit Clean Driver; C:\WINDOWS\System32\DRIVERS\AvgArCln.sys [2007-01-18 3968]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2009-02-17 24232]
R1 F-Secure HIPS;F-Secure HIPS Driver; \??\C:\Program Files\mmp\multisaver\HIPS\drivers\fshs.sys []
R1 intelppm;Sterownik procesora Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448]
R1 kl1;Kl1; \??\C:\WINDOWS\system32\drivers\kl1.sys []
R1 PCLEPCI;PCLEPCI; \??\C:\WINDOWS\system32\drivers\pclepci.sys []
R2 atksgt;atksgt; C:\WINDOWS\system32\DRIVERS\atksgt.sys [2010-07-11 281760]
R2 CX23880;WinFast CX2388x WDM Video Capture.; C:\WINDOWS\system32\drivers\cx88vid.sys [2006-10-18 162944]
R2 CXAVXBAR;WinFast CX2388x WDM Crossbar.; C:\WINDOWS\system32\drivers\cxavxbar.sys [2006-10-18 9728]
R2 CXTUNE;WinFast CX2388x WDM TVTuner.; C:\WINDOWS\system32\drivers\CX88TUNE.sys [2006-10-18 50816]
R2 hardlock;hardlock; \??\C:\WINDOWS\system32\drivers\hardlock.sys []
R2 lirsgt;lirsgt; C:\WINDOWS\system32\DRIVERS\lirsgt.sys [2010-07-11 25888]
R3 ASAPIW2k;ASAPIW2K; C:\WINDOWS\system32\drivers\ASAPIW2k.sys [2004-03-10 11264]
R3 ElbyCDFL;ElbyCDFL; C:\WINDOWS\System32\Drivers\ElbyCDFL.sys [2007-02-16 34760]
R3 F-Secure Gatekeeper;F-Secure Gatekeeper; \??\C:\Program Files\mmp\multisaver\Anti-Virus\minifilter\fsgk.sys []
R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2005-11-25 4064256]
R3 KLFLTDEV;Kaspersky Lab KLFltDev; C:\WINDOWS\system32\DRIVERS\klfltdev.sys [2008-03-13 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter; C:\WINDOWS\system32\DRIVERS\klim5.sys [2009-09-14 32272]
R3 MarvinBus;Pinnacle Marvin Bus; C:\WINDOWS\system32\DRIVERS\MarvinBus.sys [2007-01-04 171520]
R3 MTsensor;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-14 5810]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-11-12 6188320]
R3 Pfc;Padus ASPI Shell; C:\WINDOWS\system32\drivers\pfc.sys [2003-09-19 10368]
R3 ULCDRHlp;ULCDRHlp; C:\WINDOWS\System32\Drivers\ULCDRHlp.sys [2004-12-23 27392]
R3 usbstor;Sterownik magazynu masowego USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; C:\WINDOWS\system32\DRIVERS\yk51x86.sys [2005-03-30 230400]
S0 BTHidEnum;Bluetooth HID Enumerator; C:\WINDOWS\System32\Drivers\vbtenum.sys []
S0 BTHidMgr;Bluetooth HID Manager Service; C:\WINDOWS\System32\Drivers\BTHidMgr.sys []
S0 Lbd;Lbd; C:\WINDOWS\system32\DRIVERS\Lbd.sys []
S3 61883;Urządzenie jednostkowe 61883; C:\WINDOWS\system32\DRIVERS\61883.sys [2008-04-14 48128]
S3 ab9dk2o8;ab9dk2o8; C:\WINDOWS\system32\drivers\ab9dk2o8.sys []
S3 AEXPAM;Philips SmartManage Service; C:\WINDOWS\System32\Drivers\aexpamdrv.sys [2004-09-01 21824]
S3 ai6s22p5;ai6s22p5; C:\WINDOWS\system32\drivers\ai6s22p5.sys []
S3 Arp1394;Protokół klienta 1394 ARP; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-14 60800]
S3 Avc;Urządzenie AVC; C:\WINDOWS\system32\DRIVERS\avc.sys [2008-04-14 38912]
S3 BlueletAudio;Bluetooth Audio Service; C:\WINDOWS\system32\DRIVERS\blueletaudio.sys []
S3 BlueletSCOAudio;Bluetooth SCO Audio Service; C:\WINDOWS\system32\DRIVERS\BlueletSCOAudio.sys []
S3 BT;Bluetooth PAN Network Adapter; C:\WINDOWS\system32\DRIVERS\btnetdrv.sys []
S3 Btcsrusb;Bluetooth USB For Bluetooth Service; C:\WINDOWS\System32\Drivers\btcusb.sys []
S3 BthEnum;Sterownik Bluetooth Request Block; C:\WINDOWS\system32\DRIVERS\BthEnum.sys [2008-04-14 17024]
S3 BthPan;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2008-04-14 101120]
S3 BTHPORT;Sterownik portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2008-06-14 273024]
S3 BTHUSB;Sterownik USB odbiornika radiowego Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2008-04-14 18944]
S3 CCDECODE;Dekoder napisów; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-14 17024]
S3 C-Dilla;C-Dilla; \??\C:\WINDOWS\system32\drivers\CDANT.SYS []
S3 dtscsi;dtscsi; C:\WINDOWS\system32\drivers\dtscsi.sys []
S3 e1express;Intel® PRO/1000 PCI Express Network Connection Driver; C:\WINDOWS\system32\DRIVERS\e1e5132.sys [2005-04-01 180736]
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-12-11 10976]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2008-12-11 22368]
S3 grmnusb;grmnusb; C:\WINDOWS\system32\drivers\grmnusb.sys [2007-03-08 8320]
S3 GVCplDrv;GVCplDrv; C:\WINDOWS\system32\drivers\GVCplDrv.sys [2004-05-02 23040]
S3 HidUsb;Sterownik Microsoft klasy HID; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
S3 hwdatacard;Huawei DataCard USB Modem and USB Serial; C:\WINDOWS\system32\DRIVERS\ewusbmdm.sys []
S3 mouhid;Sterownik myszy HID; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-10-26 12160]
S3 MSDV;Microsoft DV Camera and VCR; C:\WINDOWS\system32\DRIVERS\msdv.sys [2008-04-14 51200]
S3 MSTEE;Konwerter strumieni Tee/Sink-to-Sink Microsoft Streaming; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-14 5504]
S3 NABTSFEC;Koder-dekoder NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-14 85248]
S3 NdisIP;Połączenie TV/wideo firmy Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-14 10880]
S3 NIC1394;Sterownik sieci 1394; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-14 61824]
S3 PavSRK.sys;PavSRK.sys; C:\WINDOWS\system32\drivers\PavSRK.sys.sys []
S3 PavTPK.sys;PavTPK.sys; C:\WINDOWS\system32\drivers\PavTPK.sys.sys []
S3 PCANDIS5_RETWIFI;PCANDIS5_RETWIFI Protocol Driver; \??\C:\PROGRA~1\EEYEDI~1\RETINA~1\PCANDIS5_RETWIFI.SYS []
S3 PCANDIS5_WIFISCAN.SYS;PCANDIS5_WIFISCAN.SYS; \??\C:\Program Files\eEye Digital Security\Retina Wireless Scanner\PCANDIS5_WIFISCAN.SYS []
S3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-04-22 47360]
S3 RFCOMM;Urządzenie Bluetooth (Protokół TDI RFCOMM); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2008-04-14 59136]
S3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2006-03-02 5888]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\WINDOWS\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\WINDOWS\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\WINDOWS\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 SIWIO;SIW low-level I/O driver; \??\C:\WINDOWS\TEMP\SiwIo.sys []
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-14 11136]
S3 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2009-11-12 7168]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-14 15232]
S3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-14 32128]
S3 usbprint;Klasa PRINTER USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-14 25856]
S3 usbscan;Sterownik skanera USB; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 VBus;Virtual Bus; C:\WINDOWS\system32\DRIVERS\NkVBus.sys [2008-01-18 17824]
S3 VComm;Virtual Serial port driver; C:\WINDOWS\system32\DRIVERS\VComm.sys []
S3 VcommMgr;Bluetooth VComm Manager Service; C:\WINDOWS\System32\Drivers\VcommMgr.sys []
S3 vmfilter323;323 filter service, Normal; C:\WINDOWS\system32\drivers\vmfilter323.sys []
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2008-03-27 503008]
S3 WFIOCTL;WFIOCTL; \??\C:\Program Files\WinFast\WFTVFM\WFIOCTL.SYS []
S3 WSTCODEC;Kodery-dekodery teletekstu w standardzie światowym; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-14 19200]
S3 ZSMC326;Vimicro USB2.0 PC Camera(VC0323); C:\WINDOWS\System32\Drivers\usbvm323.sys []
S4 F-Secure Filter;F-Secure File System Filter; \??\C:\Program Files\mmp\multisaver\Anti-Virus\Win2K\FSfilter.sys []
S4 F-Secure Recognizer;F-Secure File System Recognizer; \??\C:\Program Files\mmp\multisaver\Anti-Virus\Win2K\FSrec.sys []
S4 WS2IFSL;Środowisko wspomagające dostawcę usług innych niż IFS - Windows Socket 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2006-03-02 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BthServ;Bluetooth Support Service; C:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 C-DillaSrv;C-DillaSrv; C:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE [2001-09-10 32256]
R2 DiskMgkS;DiskMagik Service; C:\Program Files\DiskMagik\DiskMgkS.exe [2007-12-14 415768]
R2 F-Secure Gatekeeper Handler Starter;FSGKHS; C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe [2009-08-05 215648]
R2 FSMA;F-Secure Management Agent; C:\Program Files\mmp\multisaver\Common\FSMA32.EXE [2009-08-05 186976]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2010-11-12 153376]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2008-06-09 73728]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2006-10-26 335872]
R2 NMSAccess;NMSAccess; C:\Program Files\CDBurnerXP\NMSAccessU.exe [2010-03-04 71096]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-11-12 163908]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-09-23 75064]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
R2 UleadBurningHelper;Ulead Burning Helper; C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe [2004-12-13 49152]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-01-28 38912]
R2 UxTuneUp;TuneUp Theme Extension; C:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S3 aspnet_state;„Usługa stanu ASP.NET; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2010-03-18 35160]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2010-06-24 867080]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 FSDFWD;F-Secure Anti-Virus Firewall Daemon; C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe [2009-08-05 522848]
S3 FSORSPClient;F-Secure ORSP Client; C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe [2010-12-20 63992]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 MatSvc;Microsoft Automated Troubleshooting Service; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [2010-04-10 266544]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2007-08-24 68464]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;SwitchBoard; C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
S3 TuneUp.Defrag;TuneUp Drive Defrag Service; C:\WINDOWS\System32\TuneUpDefragService.exe [2008-01-30 306432]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504]
S4 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------
[/log]

Tomek01
komentarz
komentarz

Z podpiętym pendriv'em wklej skrypt:
W OTL, w oknie Custom scan/fixes wklej:
[code]:Processes
Explorer.exe

:OTL
FF - prefs.js..extensions.enabledItems: DTToolbar@toolbarnet.com:1.1.3.0244
[2011-01-06 20:35:15 | 000,000,000 | ---D | M] ("DAEMON Tools Toolbar") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com
[2010-10-20 19:50:17 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com
[2010-06-16 21:42:30 | 000,002,059 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\searchplugins\daemon-search.xml
O32 - AutoRun File - [2010-10-12 13:32:08 | 000,000,047 | R--- | M] () - P:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()

:Files
C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\ConduitEngine

:Commands
[emptytemp]
[start explorer]
[Reboot][/code]

Klikasz run fix, komputer uruchamia się ponownie.
Wrzuć log z usuwania oraz nowy log: OTL

Wojtip
komentarz
komentarz

Proszę Log z usuwania

[log]All processes killed
========== PROCESSES ==========
Process Explorer.exe killed successfully!
========== OTL ==========
Prefs.js: DTToolbar@toolbarnet.com:1.1.3.0244 removed from extensions.enabledItems
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com\components\Resources folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com\components folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com\chrome\content folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com\chrome folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\DTToolbar@toolbarnet.com folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\searchplugins folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\logs folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\defaults\preferences folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\defaults folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\datastore folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Wed-20-Oct-2010-16-29-34-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Tue-07-Dec-2010-20-24-48-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sun-27-Jun-2010-20-01-42-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-25-Sep-2010-15-39-35-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Sat-07-Aug-2010-10-37-51-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp\ff-config.Fri-25-Jun-2010-06-48-10-GMT folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\temp folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\skin folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome\content folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com\chrome folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\toolbar@ask.com folder moved successfully.
C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\searchplugins\daemon-search.xml moved successfully.
File P:\autorun.inf not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90897a08-e15f-11dc-b489-0013d4991806}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{90897a08-e15f-11dc-b489-0013d4991806}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{90897a08-e15f-11dc-b489-0013d4991806}\ not found.
File P:\cdstart.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b91e440a-9f7f-11de-a4ae-0013d4991806}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{b91e440a-9f7f-11de-a4ae-0013d4991806}\ not found.
File P:\cdstart.exe not found.
========== FILES ==========
C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\ConduitEngine\MyStuffApps folder moved successfully.
C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\ConduitEngine\Logs folder moved successfully.
C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\ConduitEngine folder moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Dagmara
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Patrycja
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Wojtip
->Temp folder emptied: 9322 bytes
->Temporary Internet Files folder emptied: 222161 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 30615947 bytes
->Opera cache emptied: 0 bytes
->Flash cache emptied: 615 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 117393954 bytes

Total Files Cleaned = 141,00 mb


OTL by OldTimer - Version 3.2.20.1 log created on 01092011_001228

Files\Folders moved on Reboot...

Registry entries deleted on Reboot...
[/log]

OTL

[log]OTL Extras logfile created on: 2011-01-09 00:33:56 - Run 3
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 76,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 7,55 Gb Free Space | 15,46% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,59 Gb Free Space | 2,12% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive U: | 7,39 Gb Total Space | 5,13 Gb Free Space | 69,42% Space Free | Partition Type: FAT32

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\]

[HKEY_USERS\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Classes\]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [ACDSee Photo Manager 12.Manage] -- "C:\Program Files\ACD Systems\ACDSee\12.0\ACDSeeQV12.exe" "%1" (ACD Systems International Inc.)
Directory [Bridge] -- C:\Program Files\Adobe\Adobe Bridge CS5\Bridge.exe "%L" (Adobe Systems, Inc.)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
"DisableMonitoring" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
"26675:TCP" = 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\uTorrent\uTorrent.exe" = C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Program Files\Opera\opera.exe" = C:\Program Files\Opera\opera.exe:*:Enabled:Opera Internet Browser -- (Opera Software)
"C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe" = C:\Program Files\Landwirtschafts Simulator 2011\FarmingSimulator2011.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Landwirtschafts Simulator 2011\game.exe" = C:\Program Files\Landwirtschafts Simulator 2011\game.exe:*:Enabled:Landwirtschafts Simulator 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe" = C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe" = C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager -- (Microsoft Corporation)
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe" = C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application -- (Microsoft Corporation)
"C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe" = C:\Program Files\Symulator Farmy 2011\FarmingSimulator2011.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)
"C:\Program Files\Symulator Farmy 2011\game.exe" = C:\Program Files\Symulator Farmy 2011\game.exe:*:Enabled:Symulator Farmy 2011 -- (GIANTS Software GmbH)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{01000A03-E058-11D3-9C13-0000E220DC33}" = MiraScan V4.03
"{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}" = Microsoft_VC90_ATL_x86
"{07A13404-2959-4805-B49F-1EC3C2AF35F8}" = GPMapa NT 3d 2009.4
"{086a7d8c-0a38-4c7f-819a-620275550d5c}" = Nero Burning ROM Help
"{08D2E121-7F6A-43EB-97FD-629B44903403}" = Microsoft_VC90_CRT_x86
"{08E4AE58-748D-4983-9B8A-495E2341769F}" = Garmin POI Loader
"{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended
"{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}" = Adobe Community Help
"{0D499481-22C6-4B25-8AC2-6D3F6C885FB9}" = OpenOffice.org Installer 1.0
"{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1
"{0F3647F8-E51D-4FCC-8862-9A8D0C5ACF25}" = Microsoft_VC80_ATL_x86
"{15FEDA5F-141C-4127-8D7E-B962D1742728}" = Adobe Photoshop CS5
"{16E217EA-C3E0-402D-8D4F-6189DB74497A}" = Studio 9.3 Patch
"{1BC4026B-1957-4514-9058-2B542557F143}" = Opera 9.63
"{26A24AE4-039D-4CA4-87B4-2F83216017FF}" = Java(TM) 6 Update 23
"{2AFF2951-86B1-3C53-B34D-B440F11E7D0A}" = Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - PLK
"{2CCBFA48-3E9C-48ED-805C-6FD56956BC0B}" = GPMapa 2007.2
"{2D43FD89-B225-4334-B4AA-0983400BE61B}" = Windows Presentation Foundation Language Pack (PLK)
"{2E5A5B57-57FC-4C79-A239-9DB280ADEC2A}" = Microsoft RAW Image Thumbnailer and Viewer for Windows XP Version 1.0 (Build 50)
"{2F750C77-1FEC-44F9-88CC-2CE322EBD61E}" = Microsoft Games for Windows - LIVE Redistributable
"{2FFE93F0-BB72-4E52-8761-354D1AAA9387}" = Sony Ericsson PC Suite 3.209.00
"{321320E1-0E5A-36CB-9E52-F3B201B8C4D4}" = Microsoft .NET Framework 4 Client Profile PLK Language Pack
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0160070}" = Java(TM) 6 Update 7
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{36BD0774-6CD6-4FF9-A148-83CA09AC123E}" = Intel(R) PROSafe for Wired Connections
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{3F866D37-22D0-435D-94F1-31A64D566D0E}" = Pinnacle device drivers
"{403EF592-953B-4794-BCEF-ECAB835C2095}" = Intel(R) PROSafe for Wired Connections
"{42DC7D64-F389-4E37-B545-E7D674A97D66}" = PC DUAL SHOCK
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml
"{5888428E-699C-4E71-BF71-94EE06B497DA}" = TuneUp Utilities 2008
"{5A0DDC27-88E5-3CAD-BC3D-28FFD05CA6B9}" = Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - PLK
"{5C19E2DC-4CCF-3114-B40A-6E565987025F}" = Microsoft .NET Framework 4 Extended PLK Language Pack
"{5d9be3c1-8ba4-4e7e-82fd-9f74fa6815d1}" = Nero Vision
"{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}" = Microsoft_VC90_MFC_x86
"{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack
"{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}" = PowerDVD
"{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{74BF0A46-DF67-4D86-B038-BF0E51871B66}" = Ai Booster
"{76C24F39-B161-498F-BD8B-C64789812D13}_is1" = ConvertXtoDVD 3.0.0.9
"{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}" = Avanquest update
"{7CCF417A-76BA-42BB-A3DA-95BF9F01699F}" = GPMapa NT 2008.1 subskrypcja - a4
"{7E265513-8CDA-4631-B696-F40D983F3B07}_is1" = CDBurnerXP
"{7EF13AFD-98D5-46F3-9C1D-E0AE5E80513E}" = GPMapa NT 3d 2010.3
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{87CC8013-56D1-43E1-A0A5-AD406B4EBA95}" = Opera 10.63
"{8AEEE6D6-C95D-465A-B8D3-B7AE2FA7B8B4}" = InterVideo Launcher
"{90120000-0010-0415-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (Polish) 12
"{90120000-0015-0415-0000-0000000FF1CE}" = Microsoft Office Access MUI (Polish) 2007
"{90120000-0015-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0016-0415-0000-0000000FF1CE}" = Microsoft Office Excel MUI (Polish) 2007
"{90120000-0016-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0018-0415-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (Polish) 2007
"{90120000-0018-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0019-0415-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (Polish) 2007
"{90120000-0019-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001A-0415-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (Polish) 2007
"{90120000-001A-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001B-0415-0000-0000000FF1CE}" = Microsoft Office Word MUI (Polish) 2007
"{90120000-001B-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007
"{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{2AB528A5-BB1B-4EBE-8E51-AD0C4CD33CA9}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{3EC77D26-799B-4CD8-914F-C1565E796173}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-001F-0415-0000-0000000FF1CE}" = Microsoft Office Proof (Polish) 2007
"{90120000-001F-0415-0000-0000000FF1CE}_ENTERPRISE_{2D1F88C2-ADAE-47C4-8648-6EA8F7E6EB2D}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-002C-0415-0000-0000000FF1CE}" = Microsoft Office Proofing (Polish) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{BEE75E01-DD3F-4D5F-B96C-609E6538D419}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-0044-0415-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (Polish) 2007
"{90120000-0044-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-006E-0415-0000-0000000FF1CE}" = Microsoft Office Shared MUI (Polish) 2007
"{90120000-006E-0415-0000-0000000FF1CE}_ENTERPRISE_{94A4609B-0414-4427-81F3-0FD282A2D0D3}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00A1-0415-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (Polish) 2007
"{90120000-00A1-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{90120000-00BA-0415-0000-0000000FF1CE}" = Microsoft Office Groove MUI (Polish) 2007
"{90120000-00BA-0415-0000-0000000FF1CE}_ENTERPRISE_{72776234-19F1-4688-9312-85FAF07143F4}" = 2007 Microsoft Office Suite Service Pack 1 (SP1)
"{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}" = Microsoft_VC80_CRT_x86
"{934519A2-4D50-4B83-A459-92D90E9E3188}" = WinFast PVR
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"{9E491AB7-4589-48CA-9CBB-874CB2788391}" = Studio 9
"{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A5CBD7C5-CF16-443F-A4F2-3503C9DE311B}" = ACDSee Photo Manager 12
"{A78FE97A-C0C8-49CE-89D0-EDD524A17392}" = PDF Settings CS5
"{A7DEBAA4-B211-4D1A-A6B3-E52BFAAA1D0C}" = Garmin Communicator Plugin
"{A89768CF-CD21-44FD-A723-16D5A8557415}" = NEF Codec
"{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}" = ImagXpress
"{AC76BA86-7AD7-1045-7B44-A93000000001}" = Adobe Reader 9.3.4 - Polish
"{B1102A25-3AA3-446B-AA0F-A699B07A02FD}" = Garmin USB Drivers
"{B1591C79-1C35-4E09-AA15-F7D6923AFB96}" = HP Deskjet 3840
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B7588D45-AFDC-4C93-9E2E-A100F3554B64}" = Microsoft Fix it Center
"{B81023A5-71ED-46EB-BE3B-9F974D1155F1}" = HP Software Update
"{BA10FB0C-1DD6-4194-BECC-727252E9415C}" = DiskMagik
"{BA115711-83C5-4307-B4B2-1A823AB85714}_is1" = DVD PixPlay Exporting Plug-In Pack
"{BAF78226-3200-4DB4-BE33-4D922A799840}" = Windows Presentation Foundation
"{BB406CEB-6207-4512-9BB2-89950DC9D6B6}_is1" = ConvertXtoDVD 2.1.5.173
"{BE4AA694-815A-4045-BD49-C94F2BED7458}" = WinFast Entertainment Center
"{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}" = The Sims™ 3
"{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"{C3EBEF79-DE34-44AE-8774-F6A17ABE27B2}" = Garmin nRoute
"{C8616041-2802-4DE2-B3BD-6285AAD65C2A}" = Nikon RAW Codec
"{C92C584E-C781-475E-A8E2-C67D993A6B95}" = WinFast PVR2
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{c9920352-04e6-469d-bab8-e2b9c7c75415}.sdb" = Microsoft Automated Troubleshooting Services Shim
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D1A19B02-817E-4296-A45B-07853FD74D57}" = Microsoft_VC80_MFC_x86
"{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}" = Microsoft_VC80_MFCLOC_x86
"{DA1876DD-323E-4D78-8F9F-8F4FDE25C010}" = ID_DCRaw Image Decoder Plug-In
"{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}" = Adobe Media Player
"{DEAD07C6-D070-43AB-A60D-D9ABE55E296D}_is1" = JPEGCrops 0.7.5 beta
"{E0783143-EAE2-4047-A8D6-E155523C594C}" = Garmin WebUpdater
"{E0D51394-1D45-460A-B62D-383BC4F8B335}" = QuickTime
"{E2E7A0E8-77C4-495F-8FA3-63DAEDAA2DB3}" = F-Secure PSC Prerequisites
"{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime
"{E633D396-5188-4E9D-8F6B-BFB8BF3467E8}" = Skype™ 5.0
"{E91D14EF-CC7A-4AD3-87B4-4D5D8ED0EC4B}_is1" = EasyRecovery
"{EA6EB7D0-C920-4434-B43D-0DDD0AF8F497}" = Garmin MapSource
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{f4041dce-3fe1-4e18-8a9e-9de65231ee36}" = Nero ControlCenter
"{F84B9669-7102-42B4-A3A2-9A68741CD253}" = Altiris Philips SmartManage Agent
"{F89078FA-D069-462D-AB34-75483E0A38F1}" = Garmin City Navigator Europe NT 2008 Update
"{FD593DE6-C3A0-4722-8E86-9DEEF0A93290}" = Microsoft .NET Framework 3.0 Polish Language Pack
"A4Tech iKeyWorks" = A4Tech iKeyWorks 7.64
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Advanced SystemCare 3_is1" = Advanced SystemCare 3
"ALLPlayer_is1" = ALLPlayer V4.X
"A-Ray Scanner" = A-Ray Scanner 2.0.2.3
"AsusUpdate" = AsusUpdate
"AuranTS2009_is1" = Trainz: Engineer's Edition
"Autko" = Autko
"Auto Movie Creator_is1" = Auto Movie Creator 1.5
"AVGantiRootkit" = AVG Anti-Rootkit Free
"Bagger-Simulator 2008" = Bagger-Simulator 2008
"BDESetup.exe_is1" = Borland Database Engine Ver. 5.2.0.2
"chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Community Help
"ChomikBox" = ChomikBox
"Cimaware OfficeFIX 6" = Cimaware OfficeFIX 6
"CloneCD" = CloneCD
"com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Adobe Media Player
"DAEMON Tools Toolbar" = DAEMON Tools Toolbar
"Deluxe Ski Jump 3_is1" = Deluxe Ski Jump 3 v1.7.0
"DemolitionCompanyDE_is1" = Demolition Company
"DreamMail 4.6" = DreamMail 4.6
"DVD PixPlay_is1" = DVD PixPlay
"Ekspert CD_is1" = Ekspert CD
"ENTERPRISE" = Microsoft Office Enterprise 2007
"EVEREST Ultimate Edition_is1" = EVEREST Ultimate Edition v4.50
"FarmingSimulator2011DE_is1" = Landwirtschafts Simulator 2011
"FarmingSimulator2011PL_is1" = Symulator Farmy 2011
"FPAdjust" = FPAdjust
"Free Download Manager_is1" = Free Download Manager 2.1
"free-downloads.net Toolbar" = free-downloads.net Toolbar
"F-Secure Product 303" = multiSAVER
"Gadu-Gadu" = Gadu-Gadu 7.7
"Game Booster_is1" = Game Booster
"giants_editor_4.1.7_is1" = GIANTS Editor 4.1.7
"Hollywood FX 5" = Pinnacle Hollywood FX 5
"HookAnalyzer_is1" = RootKit Hook Analyzer 3.02
"HP-LaserJet 1018" = LaserJet 1018
"ie8" = Windows Internet Explorer 8
"InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}" = SmartSound Quicktracks Plugin
"InstallShield_{9C488DA2-01C0-47A4-A4C9-7A1F82B819D9}" = Construction - Destruction
"InstallShield_{C219D284-F161-4731-AC0E-D89814ACEABE}" = DV Network Software
"IsoBuster_is1" = IsoBuster 2.3
"JDownloader" = JDownloader
"Kalendarz XP" = Kalendarz XP v29.85
"KLiteCodecPack_is1" = K-Lite Codec Pack 3.8.0 Full
"LMS" = C-Dilla Licence Management System
"Mafia II_is1" = Mafia II
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Mapa UMP-pcPL (prawie cała Polska)_is1" = MapSource - UMP-pcPL
"MGI_Photovista_V1_4_0" = MGI Photovista 2.02(Remove only)
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.0 Polish Language Pack" = Pakiet języka polskiego dla systemu Microsoft .NET Framework 3.0
"Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended
"Microsoft .NET Framework 4 Extended PLK Language Pack" = Polski pakiet językowy dla programu Microsoft .NET Framework 4 Extended
"Mining and Tunneling" = Mining and Tunneling
"Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13)
"NetMeter_is1" = NetMeter 0.9.9.9 (beta 2)
"NVIDIA Drivers" = NVIDIA Drivers
"OggDS" = Direct Show Ogg Vorbis Filter (remove only)
"OpenAL" = OpenAL
"PITy 2009_is1" = PITy 2009 dla Windows kompilacja:1.1.2.6
"proDAD-Heroglyph-2.5" = proDAD Heroglyph 2.5
"proDAD-Vitascene-1.0" = proDAD Vitascene 1.0
"Profiler v1.2 PL" = Profiler v1.2 PL
"PROSetDX" = Intel(R) PRO Network Connections Software v10.0.26.0
"PunkBusterSvc" = PunkBuster Services
"RailWorks" = RailWorks
"Revo Uninstaller" = Revo Uninstaller 1.90
"ScenalyzerLive" = ScenalyzerLive (remove)
"Side 9 Screensaver" = Side 9 Screensaver
"Smart Defrag_is1" = Smart Defrag
"superfotoKURIER_is1" = superfotoKURIER 1.0.3
"Total Audio Converter_is1" = TotalAudioConverter
"Trickshot" = Trickshot
"Ulead Photo Express 3.0 SE" = Ulead Photo Express 3.0 SE
"UltraISO_is1" = UltraISO Premium V8.2
"Update Service" = Update Service
"USB/PS2 Vibration Pad" = USB/PS2 Vibration Pad
"uTorrent" = µTorrent
"VMidi" = vanBasco's Karaoke Player
"Wdf01005" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinISO_is1" = WinISO 5.3
"WinRAR archiver" = Archiwizator WinRAR
"WMV9_VCM" = Microsoft Windows Media Video 9 VCM
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0
"XviD_is1" = XviD 1.1 final uninstall

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2010-03-30 15:15:29 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd iexplore.exe, wersja 6.0.2900.5512, moduł
powodujący błąd mshtml.dll, wersja 6.0.2900.5921, adres błędu 0x00069400.

Error - 2010-03-31 04:25:07 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-03-31 07:04:41 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-03 09:25:23 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-03 15:05:33 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd javaw.exe, wersja 6.0.190.4, moduł powodujący
błąd java.dll, wersja 6.0.190.4, adres błędu 0x00005875.

Error - 2010-04-07 08:39:30 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-09 10:08:13 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd editor.exe, wersja 0.0.0.0, moduł powodujący
błąd editor.exe, wersja 0.0.0.0, adres błędu 0x00037f1f.

Error - 2010-04-09 10:13:34 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd editor.exe, wersja 0.0.0.0, moduł powodujący
błąd editor.exe, wersja 0.0.0.0, adres błędu 0x00037f1f.

Error - 2010-04-11 10:33:10 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

Error - 2010-04-14 13:14:11 | Computer Name = KOMP1 | Source = Application Error | ID = 1000
Description = Aplikacja powodująca błąd overclk.exe, wersja 0.0.0.0, moduł powodujący
błąd aoverclk.dll, wersja 1.2.0.0, adres błędu 0x0004a918.

[ System Events ]
Error - 2011-01-08 16:35:10 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 16:35:46 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: AsIO ElbyCDIO Fips intelppm kl1 Lbd ohci1394 PCLEPCI sptd

Error - 2011-01-08 16:39:27 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 16:41:34 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Lbd

Error - 2011-01-08 19:09:50 | Computer Name = KOMP1 | Source = sptd | ID = 262148
Description = Sterownik wykrył błąd wewnętrzny w swoich strukturach danych dla .

Error - 2011-01-08 19:09:56 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 19:10:44 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: AsIO ElbyCDIO Fips intelppm kl1 Lbd ohci1394 PCLEPCI sptd

Error - 2011-01-08 19:12:43 | Computer Name = KOMP1 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-01-08 19:15:31 | Computer Name = KOMP1 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: Lbd

Error - 2011-01-08 19:16:51 | Computer Name = KOMP1 | Source = DCOM | ID = 10010
Description = Serwer {8BC3F05E-D86B-11D0-A075-00C04FB68820} nie zarejestrował się
w modelu DCOM w wymaganym czasie.


< End of report >
[/log]


[log]OTL logfile created on: 2011-01-09 00:33:56 - Run 3
OTL by OldTimer - Version 3.2.20.1 Folder = I:\Z Firefox
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 76,00% Memory free
7,00 Gb Paging File | 6,00 Gb Available in Paging File | 92,00% Paging File free
Paging file location(s): H:\pagefile.sys 4096 4096 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 48,83 Gb Total Space | 7,55 Gb Free Space | 15,46% Space Free | Partition Type: NTFS
Drive D: | 48,83 Gb Total Space | 39,75 Gb Free Space | 81,42% Space Free | Partition Type: NTFS
Drive E: | 58,59 Gb Total Space | 14,56 Gb Free Space | 24,85% Space Free | Partition Type: NTFS
Drive F: | 45,95 Gb Total Space | 10,29 Gb Free Space | 22,38% Space Free | Partition Type: NTFS
Drive G: | 39,06 Gb Total Space | 27,28 Gb Free Space | 69,83% Space Free | Partition Type: NTFS
Drive H: | 61,15 Gb Total Space | 32,27 Gb Free Space | 52,78% Space Free | Partition Type: NTFS
Drive I: | 27,95 Gb Total Space | 0,59 Gb Free Space | 2,12% Space Free | Partition Type: NTFS
Drive J: | 44,92 Gb Total Space | 14,46 Gb Free Space | 32,19% Space Free | Partition Type: NTFS
Drive K: | 29,60 Gb Total Space | 3,02 Gb Free Space | 10,20% Space Free | Partition Type: NTFS
Drive P: | 921,19 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive U: | 7,39 Gb Total Space | 5,13 Gb Free Space | 69,42% Space Free | Partition Type: FAT32

Computer Name: KOMP1 | User Name: Wojtip | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe
PRC - [2011-01-04 14:58:46 | 000,372,904 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsav32.exe
PRC - [2010-12-20 13:23:19 | 000,063,992 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe
PRC - [2010-12-12 10:56:53 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2010-12-12 10:56:48 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010-12-09 19:08:18 | 000,413,016 | ---- | M] (IObit) -- C:\Program Files\IObit\Game Booster\GameBox.exe
PRC - [2010-11-12 18:53:22 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2010-10-06 18:01:22 | 000,783,016 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fssm32.exe
PRC - [2010-10-06 18:01:21 | 000,492,200 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32.exe
PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\spoolsv.exe
PRC - [2010-05-14 10:44:46 | 000,248,552 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Common Files\Java\Java Update\jusched.exe
PRC - [2010-04-01 10:16:20 | 000,357,696 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\DTLite.exe
PRC - [2010-03-04 23:38:00 | 000,071,096 | ---- | M] () -- C:\Program Files\CDBurnerXP\NMSAccessU.exe
PRC - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2009-09-23 17:10:21 | 000,075,064 | ---- | M] () -- C:\WINDOWS\system32\PnkBstrA.exe
PRC - [2009-08-05 16:58:52 | 000,186,976 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSMA32.EXE
PRC - [2009-08-05 16:58:50 | 000,199,264 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSM32.EXE
PRC - [2009-08-05 16:58:50 | 000,088,672 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Common\FSHDLL32.EXE
PRC - [2009-08-05 16:57:20 | 000,522,848 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\FWES\program\fsdfwd.exe
PRC - [2009-08-05 16:56:10 | 000,215,648 | ---- | M] (F-Secure Corporation) -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\services.exe
PRC - [2008-11-12 13:54:00 | 000,163,908 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvsvc32.exe
PRC - [2008-06-09 09:21:58 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2008-04-14 22:51:52 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wscntfy.exe
PRC - [2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 22:51:44 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 22:51:44 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\svchost.exe [BTHSVCS]
PRC - [2008-04-14 22:51:40 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 22:51:32 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\notepad.exe
PRC - [2008-04-14 22:51:24 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2008-04-14 22:51:12 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 22:51:12 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\csrss.exe
PRC - [2008-04-14 22:51:04 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\alg.exe
PRC - [2007-12-14 01:34:52 | 000,415,768 | ---- | M] (RoseCity Software) -- C:\Program Files\DiskMagik\DiskMgkS.exe
PRC - [2006-11-13 15:57:16 | 001,289,000 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\wcescomm.exe
PRC - [2006-11-13 15:57:06 | 000,199,464 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft ActiveSync\rapimgr.exe
PRC - [2006-10-26 13:40:34 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
PRC - [2006-03-04 17:40:30 | 000,882,176 | ---- | M] () -- C:\Program Files\Kalendarz XP\Kalendarz.exe
PRC - [2006-02-16 06:54:00 | 000,842,788 | ---- | M] (C. Ghisler & Co.) -- C:\Program Files\TC PowerPack\TOTALCMD.EXE
PRC - [2005-11-25 11:53:00 | 015,473,664 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\RTHDCPL.EXE
PRC - [2005-06-16 15:36:16 | 003,627,520 | ---- | M] () -- C:\Program Files\ASUS\Ai Booster\OverClk.exe
PRC - [2005-01-28 12:44:28 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wdfmgr.exe
PRC - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
PRC - [2004-08-31 12:33:22 | 000,061,440 | ---- | M] (A4Tech Co.,Ltd.) -- C:\Program Files\A4Tech\Keyboard\Ikeymain.exe
PRC - [2001-09-10 18:08:50 | 000,032,256 | ---- | M] (C-Dilla Ltd) -- C:\WINDOWS\system32\drivers\CDANTSRV.EXE


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-01-08 18:27:55 | 000,602,112 | ---- | M] (OldTimer Tools) -- I:\Z Firefox\OTL.exe
MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\rpcrt4.dll
MOD - [2010-07-27 07:30:33 | 008,491,008 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shell32.dll
MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ole32.dll
MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\shlwapi.dll
MOD - [2009-08-05 16:58:30 | 000,330,336 | ---- | M] () -- \\?\c:\program files\mmp\multisaver\hips\fshook32.dll
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\secur32.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\advapi32.dll
MOD - [2009-02-09 11:53:43 | 000,722,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntdll.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\gdi32.dll
MOD - [2008-04-14 22:51:58 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 22:50:58 | 000,732,672 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 22:50:58 | 000,580,096 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 22:50:58 | 000,219,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\uxtheme.dll
MOD - [2008-04-14 22:50:58 | 000,172,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 22:50:58 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 22:50:58 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\version.dll
MOD - [2008-04-14 22:50:48 | 000,997,888 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 22:50:46 | 000,551,936 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 22:50:46 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 22:50:46 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 22:50:46 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 22:50:42 | 000,119,808 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 22:50:40 | 000,343,040 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 22:50:38 | 000,297,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 22:50:34 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\imm32.dll
MOD - [2008-04-14 22:50:32 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 22:50:16 | 000,822,272 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 22:50:14 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 22:50:12 | 000,498,688 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 22:46:34 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
MOD - [2008-04-14 22:43:00 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msctfime.ime


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- C:\WINDOWS\System32\hidserv.dll -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010-12-20 13:23:19 | 000,063,992 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files\mmp\multisaver\ORSP Client\fsorsp.exe -- (FSORSPClient)
SRV - [2010-06-24 10:05:32 | 000,867,080 | ---- | M] (Acresso Software Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-04-10 16:05:58 | 000,266,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Microsoft Fix it Center\Matsvc.exe -- (MatSvc)
SRV - [2010-03-18 16:47:22 | 000,035,160 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe -- (aspnet_state)
SRV - [2010-03-18 13:16:28 | 000,753,504 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe -- (WPFFontCache_v0400)
SRV - [2010-03-18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010-03-04 23:38:00 | 000,071,096 | ---- | M] () [Auto | Running] -- C:\Program Files\CDBurnerXP\NMSAccessU.exe -- (NMSAccess)
SRV - [2010-02-19 12:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)
SRV - [2009-12-23 22:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009-08-05 16:58:52 | 000,186,976 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files\mmp\multisaver\Common\FSMA32.EXE -- (FSMA)
SRV - [2009-08-05 16:57:20 | 000,522,848 | ---- | M] (F-Secure Corporation) [On_Demand | Running] -- C:\Program Files\mmp\multisaver\FWES\Program\fsdfwd.exe -- (FSDFWD)
SRV - [2009-08-05 16:56:10 | 000,215,648 | ---- | M] (F-Secure Corporation) [Auto | Running] -- C:\Program Files\mmp\multisaver\Anti-Virus\fsgk32st.exe -- (F-Secure Gatekeeper Handler Starter)
SRV - [2008-01-30 19:31:35 | 000,306,432 | ---- | M] (TuneUp Software GmbH) [On_Demand | Stopped] -- C:\WINDOWS\system32\TuneUpDefragService.exe -- (TuneUp.Defrag)
SRV - [2007-12-20 10:41:56 | 000,029,440 | ---- | M] (TuneUp Software GmbH) [Auto | Running] -- C:\WINDOWS\system32\uxtuneup.dll -- (UxTuneUp)
SRV - [2007-12-14 01:34:52 | 000,415,768 | ---- | M] (RoseCity Software) [Auto | Running] -- C:\Program Files\DiskMagik\DiskMgkS.exe -- (DiskMgkS)
SRV - [2004-12-13 04:34:32 | 000,049,152 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
SRV - [2001-09-10 18:08:50 | 000,032,256 | ---- | M] (C-Dilla Ltd) [Auto | Running] -- C:\WINDOWS\system32\drivers\CDANTSRV.EXE -- (C-DillaSrv)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\usbvm323.sys -- (ZSMC326) Vimicro USB2.0 PC Camera(VC0323)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\vmfilter323.sys -- (vmfilter323)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\VcommMgr.sys -- (VcommMgr)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\VComm.sys -- (VComm)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\TEMP\SiwIo.sys -- (SIWIO)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Program Files\eEye Digital Security\Retina Wireless Scanner\PCANDIS5_WIFISCAN.SYS -- (PCANDIS5_WIFISCAN.SYS)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\PROGRA~1\EEYEDI~1\RETINA~1\PCANDIS5_RETWIFI.SYS -- (PCANDIS5_RETWIFI)
DRV - File not found [File_System | Boot | Stopped] -- C:\WINDOWS\System32\DRIVERS\Lbd.sys -- (Lbd)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\ewusbmdm.sys -- (hwdatacard)
DRV - File not found [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\BTHidMgr.sys -- (BTHidMgr)
DRV - File not found [Kernel | Boot | Stopped] -- C:\WINDOWS\System32\Drivers\vbtenum.sys -- (BTHidEnum)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\Drivers\btcusb.sys -- (Btcsrusb)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\btnetdrv.sys -- (BT)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\BlueletSCOAudio.sys -- (BlueletSCOAudio)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\blueletaudio.sys -- (BlueletAudio)
DRV - [2010-12-15 17:57:15 | 000,042,664 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\Drivers\fsbts.sys -- (fsbts)
DRV - [2010-12-03 19:14:35 | 000,130,728 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Program Files\mmp\multisaver\Anti-Virus\minifilter\fsgk.sys -- (F-Secure Gatekeeper)
DRV - [2010-07-11 11:37:55 | 000,281,760 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
DRV - [2010-07-11 11:37:55 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
DRV - [2010-02-07 18:00:38 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2009-11-12 14:48:56 | 000,007,168 | ---- | M] () [File_System | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\StarOpen.sys -- (StarOpen)
DRV - [2009-10-31 23:56:22 | 000,457,216 | ---- | M] (Aladdin Knowledge Systems) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\hardlock.sys -- (hardlock)
DRV - [2009-10-14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\klbg.sys -- (klbg)
DRV - [2009-09-14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2009-09-01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1)
DRV - [2009-08-05 16:58:30 | 000,068,064 | ---- | M] (F-Secure Corporation) [Kernel | System | Running] -- C:\Program Files\mmp\multisaver\HIPS\drivers\fshs.sys -- (F-Secure HIPS)
DRV - [2009-08-05 16:57:20 | 000,080,000 | ---- | M] (F-Secure Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\fsdfw.sys -- (FSFW)
DRV - [2009-08-05 16:56:14 | 000,039,776 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\mmp\multisaver\Anti-Virus\win2k\fsfilter.sys -- (F-Secure Filter)
DRV - [2009-08-05 16:56:14 | 000,025,184 | ---- | M] () [Kernel | Disabled | Stopped] -- C:\Program Files\mmp\multisaver\Anti-Virus\win2k\fsrec.sys -- (F-Secure Recognizer)
DRV - [2009-02-17 18:11:30 | 000,024,232 | ---- | M] (Elaborate Bytes AG) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO)
DRV - [2008-12-11 14:56:47 | 000,022,368 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2008-12-11 14:56:47 | 000,010,976 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2008-11-12 13:54:00 | 006,188,320 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nv4_mini.sys -- (nv)
DRV - [2008-04-14 00:16:22 | 000,048,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\61883.sys -- (61883)
DRV - [2008-04-14 00:16:22 | 000,038,912 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\avc.sys -- (Avc)
DRV - [2008-04-14 00:16:10 | 000,051,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\msdv.sys -- (MSDV)
DRV - [2008-04-13 22:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus)
DRV - [2008-03-13 17:02:46 | 000,026,640 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klfltdev.sys -- (KLFLTDEV)
DRV - [2008-01-18 17:02:14 | 000,017,824 | ---- | M] (Nikon Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\NkVBus.sys -- (VBus)
DRV - [2007-04-03 12:57:54 | 000,099,080 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116unic.sys -- (s116unic) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM)
DRV - [2007-04-03 12:57:52 | 000,098,696 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116obex.sys -- (s116obex)
DRV - [2007-04-03 12:57:52 | 000,023,176 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116nd5.sys -- (s116nd5) Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS)
DRV - [2007-04-03 12:57:50 | 000,100,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mgmt.sys -- (s116mgmt) Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM)
DRV - [2007-04-03 12:57:48 | 000,108,680 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdm.sys -- (s116mdm)
DRV - [2007-04-03 12:57:48 | 000,015,112 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116mdfl.sys -- (s116mdfl)
DRV - [2007-04-03 12:57:42 | 000,083,336 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\s116bus.sys -- (s116bus) Sony Ericsson Device 116 driver (WDM)
DRV - [2007-02-16 01:57:04 | 000,034,760 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2007-01-31 14:33:46 | 000,005,632 | ---- | M] (GRISOFT, s.r.o.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\avgarkt.sys -- (AVG Anti-Rootkit)
DRV - [2007-01-18 13:00:28 | 000,003,968 | ---- | M] (GRISOFT, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AvgArCln.sys -- (AvgArCln)
DRV - [2007-01-04 10:07:00 | 000,171,520 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\MarvinBus.sys -- (MarvinBus)
DRV - [2006-10-18 10:38:38 | 000,009,728 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cxavxbar.sys -- (CXAVXBAR)
DRV - [2006-10-18 10:37:56 | 000,050,816 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88tune.sys -- (CXTUNE)
DRV - [2006-10-18 10:37:26 | 000,162,944 | ---- | M] (Leadtek Research Inc.) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cx88vid.sys -- (CX23880)
DRV - [2005-11-25 11:53:00 | 004,064,256 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
DRV - [2005-04-26 13:30:20 | 000,025,424 | R--- | M] (Integrated Technology Express, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\iteatapi.sys -- (iteatapi)
DRV - [2005-04-01 02:04:52 | 000,180,736 | R--- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\e1e5132.sys -- (e1express) Intel(R)
DRV - [2005-03-30 08:24:00 | 000,230,400 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005-01-19 23:30:52 | 000,067,200 | R--- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\SI3132.sys -- (SI3132)
DRV - [2005-01-06 15:55:38 | 000,009,446 | ---- | M] (Leadtek Research Inc.) [Kernel | On_Demand | Stopped] -- C:\Program Files\WinFast\WFTVFM\WFIOCTL.sys -- (WFIOCTL)
DRV - [2004-12-23 16:27:56 | 000,027,392 | ---- | M] (Ulead Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ULCDRHlp.sys -- (ULCDRHlp)
DRV - [2004-11-01 20:21:32 | 000,010,368 | R--- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\SiWinAcc.sys -- (SiFilter)
DRV - [2004-10-14 10:52:28 | 000,004,962 | R--- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2004-09-01 14:10:48 | 000,021,824 | ---- | M] (Philips Consumer Electronics Co.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aexpamdrv.sys -- (AEXPAM)
DRV - [2004-08-14 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004-05-02 09:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv)
DRV - [2004-03-10 15:27:18 | 000,011,264 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\asapiW2k.sys -- (ASAPIW2k)
DRV - [2003-09-19 00:47:00 | 000,010,368 | ---- | M] (Padus, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\pfc.sys -- (Pfc)
DRV - [2002-03-19 08:29:16 | 000,014,165 | ---- | M] (Pinnacle Systems GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Pclepci.sys -- (PCLEPCI)
DRV - [2001-09-10 18:09:46 | 000,057,392 | ---- | M] (Macrovision) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\CDANT.SYS -- (C-Dilla)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
IE - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "http://www.wp.pl/"
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.3
FF - prefs.js..extensions.enabledItems: elemhidehelper@adblockplus.org:1.1
FF - prefs.js..extensions.enabledItems: {2bfc8624-5b8a-4060-b86a-e78ccbc38509}:2.4
FF - prefs.js..extensions.enabledItems: {0545b830-f0aa-4d7e-8820-50a4629a56fe}:4.6.5
FF - prefs.js..extensions.enabledItems: {DDC359D1-844A-42a7-9AA1-88A850A938A8}:1.1.10
FF - prefs.js..extensions.enabledItems: {89506680-e3f4-484c-a2c0-ed711d481eda}:0.9.5.6
FF - prefs.js..extensions.enabledItems: {0538E3E3-7E9B-4d49-8831-A227C80A7AD3}:2.0.2
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: low_quality_flash@pie2k.com:0.1
FF - prefs.js..extensions.enabledItems: {37E4D8EA-8BDA-4831-8EA1-89053939A250}:3.0.0.1
FF - prefs.js..extensions.enabledItems: {64161300-e22b-11db-8314-0800200c9a66}:0.9.5.8
FF - prefs.js..extensions.enabledItems: {e0204bd5-9d31-402b-a99d-a6aa8ffebdca}:1.2.5
FF - prefs.js..extensions.enabledItems: foxmarks@kei.com:3.9.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}:6.0.20
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: Office2007Black@JBBS:1.5.8

FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010-12-12 10:57:00 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010-12-12 10:57:00 | 000,000,000 | ---D | M]

[2010-09-07 17:07:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Extensions
[2010-09-07 17:07:41 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Extensions\{3550f703-e582-4d05-9a08-453d09bdfdc6}
[2011-01-09 00:16:23 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions
[2010-10-01 16:07:12 | 000,000,000 | ---D | M] (Forecastfox Weather) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{0538E3E3-7E9B-4d49-8831-A227C80A7AD3}
[2010-12-13 22:00:13 | 000,000,000 | ---D | M] ("ColorfulTabs") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{0545b830-f0aa-4d7e-8820-50a4629a56fe}
[2010-12-23 23:40:58 | 000,000,000 | ---D | M] (FlashGot) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}
[2010-05-10 21:02:48 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-12-06 21:00:13 | 000,000,000 | ---D | M] ("BetterSearch") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{2bfc8624-5b8a-4060-b86a-e78ccbc38509}
[2010-03-30 19:46:11 | 000,000,000 | ---D | M] (PDF Download) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{37E4D8EA-8BDA-4831-8EA1-89053939A250}
[2010-12-11 20:47:50 | 000,000,000 | ---D | M] (Speed Dial) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{64161300-e22b-11db-8314-0800200c9a66}
[2009-07-09 10:04:58 | 000,000,000 | ---D | M] (IE Tab) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9}
[2010-10-27 12:11:14 | 000,000,000 | ---D | M] (Firefox Showcase) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{89506680-e3f4-484c-a2c0-ed711d481eda}
[2010-12-23 23:40:56 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
[2010-06-04 09:36:56 | 000,000,000 | ---D | M] (DownThemAll!) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}
[2010-04-24 12:18:12 | 000,000,000 | ---D | M] (Torbutton) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\{e0204bd5-9d31-402b-a99d-a6aa8ffebdca}
[2010-11-05 09:46:14 | 000,000,000 | ---D | M] (Element Hiding Helper for Adblock Plus) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\elemhidehelper@adblockplus.org
[2010-10-01 16:07:09 | 000,000,000 | ---D | M] ("Xmarks") -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\foxmarks@kei.com
[2010-02-25 21:26:28 | 000,000,000 | ---D | M] (Low Quality Flash) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\low_quality_flash@pie2k.com
[2011-01-06 20:34:41 | 000,000,000 | ---D | M] (Office Black) -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\extensions\Office2007Black@JBBS
[2009-01-06 19:15:26 | 000,001,447 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Mozilla\Firefox\Profiles\spb6g74k.default\searchplugins\userlogos.xml
[2011-01-08 18:16:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2010-04-15 22:24:24 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
[2010-08-25 13:09:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-10-20 15:39:09 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2010-12-16 20:28:33 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2010-01-30 15:27:23 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010-11-12 18:53:06 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-07-04 22:11:25 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-07-04 22:11:25 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-07-04 22:11:26 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-07-04 22:11:26 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-07-04 22:11:26 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-07-04 22:11:26 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2009-04-26 09:15:13 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (FDMIECookiesBHO Class) - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll ()
O4 - HKLM..\Run: [F-Secure Manager] C:\Program Files\mmp\multisaver\Common\FSM32.EXE (F-Secure Corporation)
O4 - HKLM..\Run: [F-Secure TNB] C:\Program Files\mmp\multisaver\FSGUI\TNBUtil.exe (F-Secure Corporation)
O4 - HKLM..\Run: [iKeyWorks] C:\Program Files\A4Tech\Keyboard\Ikeymain.exe (A4Tech Co.,Ltd.)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [Launch Ai Booster] C:\Program Files\ASUS\Ai Booster\OverClk.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.DLL (NVIDIA Corporation)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004..\Run: [H/PC Connection Agent] C:\Program Files\Microsoft ActiveSync\wcescomm.exe (Microsoft Corporation)
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Kalendarz XP.lnk = C:\Program Files\Kalendarz XP\Kalendarz.exe ()
O4 - Startup: C:\Documents and Settings\Wojtip\Menu Start\Programy\Autostart\DreamMail.lnk = D:\DreamMail4\DM2005.exe (DreamStudio)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Infodelivery present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 351
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = FF FF FF FF [binary data]
O7 - HKU\S-1-5-21-1614895754-1644491937-1801674531-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8 - Extra context menu item: Pobierz wszystko z Free Download Manager - C:\Program Files\Free Download Manager\dlall.htm ()
O8 - Extra context menu item: Pobierz z Free Download Manager - C:\Program Files\Free Download Manager\dllink.htm ()
O8 - Extra context menu item: Pobierz zaznaczenie z Free Download Manager - C:\Program Files\Free Download Manager\dlselected.htm ()
O9 - Extra Button: Statystyki ochrony WWW - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - Reg Error: Key error. File not found
O9 - Extra Button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Utwórz Ulubione dla urządzenia przenośnego... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000037 - C:\Program Files\mmp\multisaver\FSPS\program\FSLSP.DLL (F-Secure Corporation)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems\ACDSee\Tapeta ACD.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2008-02-13 18:22:22 | 000,000,095 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010-12-22 19:19:04 | 000,068,551 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:00 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:00 | 000,000,000 | RHSD | M] - D:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - E:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - F:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:01 | 000,000,000 | RHSD | M] - G:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - H:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - I:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:02 | 000,000,000 | RHSD | M] - J:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-01-08 20:48:03 | 000,000,000 | RHSD | M] - K:\autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-11-19 08:02:17 | 000,000,000 | R--D | M] - P:\autorun -- [ CDFS ]
O32 - AutoRun File - [2010-10-12 13:32:08 | 000,000,047 | R--- | M] () - P:\autorun.inf -- [ CDFS ]
O32 - AutoRun File - [2011-01-08 21:04:06 | 000,000,000 | RHSD | M] - U:\autorun.inf -- [ FAT32 ]
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell - "" = AutoRun
O33 - MountPoints2\{b91e440a-9f7f-11de-a4ae-0013d4991806}\Shell\AutoRun\command - "" = P:\cdstart.exe -- [2010-11-12 11:32:58 | 001,413,120 | R--- | M] ()
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
NetSvcs: HidServ - C:\WINDOWS\System32\hidserv.dll File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: UxTuneUp - C:\WINDOWS\system32\uxtuneup.dll (TuneUp Software GmbH)
NetSvcs: WmdmPmSp - File not found

MsConfig - StartUpReg: [b]Adobe ARM[/b] - hkey= - key= - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: [b]Adobe Reader Speed Launcher[/b] - hkey= - key= - C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
MsConfig - StartUpReg: [b]AlcoholAutomount[/b] - hkey= - key= - C:\Program Files\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe (Alcohol Soft Development Team)
MsConfig - StartUpReg: [b]EA Core[/b] - hkey= - key= - C:\Program Files\Electronic Arts\EADM\Core.exe File not found
MsConfig - StartUpReg: [b]Malwarebytes Anti-Malware (reboot)[/b] - hkey= - key= - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)

SafeBootMin: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - C:\WINDOWS\System32\appmgmts.dll File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-01-08 20:48:00 | 000,000,000 | RHSD | C] -- C:\autorun.inf
[2011-01-08 18:46:50 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2011-01-06 21:12:04 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2010-12-28 16:41:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
[2010-12-28 16:02:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-12-28 10:35:14 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Techland
[2010-12-28 10:33:35 | 000,000,000 | ---D | C] -- C:\Program Files\Symulator Farmy 2011
[2010-12-21 21:29:57 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\2K Games
[2010-12-21 21:18:34 | 000,000,000 | ---D | C] -- C:\Program Files\2K Games
[2010-12-21 20:38:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\2K Games
[2010-12-19 23:36:56 | 000,000,000 | ---D | C] -- C:\Program Files\CDBurnerXP
[2010-12-08 18:31:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Flat Panel Adjust
[2010-12-08 18:31:23 | 000,000,000 | ---D | C] -- C:\Program Files\Flat Panel Adjust
[2010-12-08 18:30:46 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\WINDOWS
[2010-12-08 18:15:46 | 000,000,000 | ---D | C] -- C:\Program Files\Altiris
[2010-12-07 17:06:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\NVIDIA
[2010-12-05 20:06:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\Activision
[2010-12-05 18:17:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\Temp
[2010-11-27 14:46:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Smart Defrag
[2010-11-27 14:45:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Advanced SystemCare 3
[2010-11-27 14:45:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Dane aplikacji\IObit
[2010-11-27 14:44:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Game Booster
[2010-11-27 14:44:37 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2010-11-27 14:44:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2010-11-26 21:39:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\PCHealth
[2010-11-26 00:18:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010-11-26 00:07:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTEMP
[2010-11-21 23:23:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Landwirtschafts Simulator 2011
[2010-11-21 23:21:39 | 000,000,000 | ---D | C] -- C:\Program Files\Landwirtschafts Simulator 2011
[2010-11-21 23:20:49 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Wojtip\Recent
[2010-11-21 22:35:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\GIANTS Editor 4.1.7
[2010-11-16 21:13:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Skype
[2010-11-16 21:13:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2010-11-16 21:13:16 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2008-01-30 19:34:17 | 000,047,360 | ---- | C] (VSO Software) -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.sys

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-01-09 00:15:35 | 000,253,748 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2011-01-09 00:14:45 | 000,013,732 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-01-09 00:14:45 | 000,000,252 | ---- | M] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2011-01-09 00:14:32 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-01-08 21:44:31 | 000,571,906 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2011-01-08 21:44:31 | 000,508,944 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011-01-08 21:44:31 | 000,113,750 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2011-01-08 21:44:31 | 000,091,608 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011-01-08 20:12:55 | 000,000,252 | ---- | M] () -- C:\WINDOWS\WINCMD.INI
[2011-01-08 18:44:50 | 000,339,991 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\RSIT(3).exe
[2011-01-04 21:56:29 | 000,002,571 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\ACDSee Photo Manager 12.lnk
[2011-01-04 16:16:55 | 000,010,950 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\WAW 1.docx
[2010-12-28 18:16:43 | 003,675,992 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-12-28 16:20:24 | 000,001,618 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-27 11:31:17 | 000,000,002 | ---- | M] () -- C:\WINDOWS\System32\Dvbpws.dll
[2010-12-22 22:04:25 | 000,010,944 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Zezwalam na wykorzystanie sześciu.docx
[2010-12-21 21:29:58 | 000,001,720 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-20 22:37:20 | 000,001,637 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\MapSource.lnk
[2010-12-20 02:00:01 | 000,000,344 | ---- | M] () -- C:\WINDOWS\tasks\AdobeAAMUpdater-1.0-KOMP1-Wojtip.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-12-19 12:50:34 | 000,000,668 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\vso_ts_preview.xml
[2010-12-17 15:34:59 | 000,040,758 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Poradnik robienia LODA.pdf
[2010-12-17 15:31:34 | 000,107,568 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\A22292 M8712 garmin.pdf
[2010-12-15 18:46:13 | 000,001,393 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010-12-15 17:57:15 | 000,042,664 | ---- | M] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-12-14 23:43:24 | 000,000,749 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Switch to Gaming Mode.lnk
[2010-12-14 23:43:24 | 000,000,737 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Game Booster.lnk
[2010-12-11 23:40:35 | 000,166,912 | ---- | M] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-12-09 18:10:35 | 000,017,835 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\zdjęcia numeery.docx
[2010-12-08 19:07:48 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | M] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-08 16:02:54 | 000,157,959 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2a.pdf
[2010-12-07 17:00:11 | 000,464,521 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2.pdf
[2010-12-05 22:03:30 | 001,167,404 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\cc_20101205_220308.reg
[2010-12-05 17:50:59 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-12-05 17:50:59 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Font Book
[2010-12-05 17:46:13 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2010-12-05 17:46:13 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions
[2010-11-27 14:46:27 | 000,000,792 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:46:27 | 000,000,150 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\IObit Freeware.url
[2010-11-27 14:45:45 | 000,000,874 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-22 18:42:03 | 000,157,696 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe 1.doc
[2010-11-21 23:23:13 | 000,000,958 | ---- | M] () -- C:\Documents and Settings\Wojtip\Pulpit\Landwirtschafts Simulator 2011 .lnk
[2010-11-21 18:20:31 | 000,019,012 | ---- | M] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe.docx

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-01-08 18:44:50 | 000,339,991 | ---- | C] () -- C:\Documents and Settings\Wojtip\Pulpit\RSIT(3).exe
[2011-01-04 16:16:55 | 000,010,950 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\WAW 1.docx
[2010-12-28 16:20:24 | 000,001,618 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\CDBurnerXP.lnk
[2010-12-28 16:20:05 | 000,007,168 | ---- | C] () -- C:\WINDOWS\System32\drivers\StarOpen.sys
[2010-12-28 14:13:40 | 000,001,720 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Mafia II.lnk
[2010-12-26 22:37:14 | 000,000,958 | ---- | C] () -- C:\Documents and Settings\Wojtip\Pulpit\Landwirtschafts Simulator 2011 .lnk
[2010-12-22 22:04:25 | 000,010,944 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Zezwalam na wykorzystanie sześciu.docx
[2010-12-19 23:29:07 | 000,000,252 | ---- | C] () -- C:\WINDOWS\WINCMD.INI
[2010-12-17 15:34:59 | 000,040,758 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Poradnik robienia LODA.pdf
[2010-12-17 15:31:45 | 000,107,568 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\A22292 M8712 garmin.pdf
[2010-12-14 23:44:45 | 000,001,393 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2010-12-09 18:10:34 | 000,017,835 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\zdjęcia numeery.docx
[2010-12-08 19:07:48 | 000,054,156 | -H-- | C] () -- C:\WINDOWS\QTFont.qfn
[2010-12-08 19:07:48 | 000,001,409 | ---- | C] () -- C:\WINDOWS\QTFont.for
[2010-12-08 18:31:24 | 000,001,643 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\FPAdjust.lnk
[2010-12-08 16:02:54 | 000,157,959 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2a.pdf
[2010-12-07 17:00:11 | 000,464,521 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\ICCv2.pdf
[2010-12-05 23:18:20 | 000,000,386 | ---- | C] () -- C:\WINDOWS\tasks\SmartDefrag.job
[2010-12-05 22:03:15 | 001,167,404 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\cc_20101205_220308.reg
[2010-11-27 14:46:27 | 000,000,792 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Smart Defrag.lnk
[2010-11-27 14:45:45 | 000,000,874 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Advanced SystemCare.lnk
[2010-11-27 14:44:53 | 000,000,252 | ---- | C] () -- C:\WINDOWS\tasks\Game_Booster_Startup.job
[2010-11-22 18:42:02 | 000,157,696 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe 1.doc
[2010-11-21 18:20:30 | 000,019,012 | ---- | C] () -- C:\Documents and Settings\Wojtip\Moje dokumenty\Dagmara - Badania Okresowe.docx
[2010-10-06 17:44:00 | 000,042,664 | ---- | C] () -- C:\WINDOWS\System32\drivers\fsbts.sys
[2010-06-16 22:56:47 | 000,001,747 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache
[2010-06-16 21:53:11 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\Frameworks
[2010-06-14 22:43:40 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdx.DAT
[2010-06-14 22:43:40 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions Handlers
[2010-06-14 22:39:17 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLeq.DAT
[2010-06-14 22:39:17 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Fruit
[2010-06-14 22:36:14 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLbx.DAT
[2010-06-13 21:14:30 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ViewNX.INI
[2010-06-13 20:09:07 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdw.DAT
[2010-06-13 20:09:07 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Font Book
[2010-06-13 20:06:59 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\Folder Actions
[2010-06-13 20:06:58 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\PKP_DLdu.DAT
[2009-11-25 22:07:06 | 000,002,604 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\OFMissionEditorConfig.xml
[2009-10-31 23:54:07 | 000,000,107 | ---- | C] () -- C:\WINDOWS\ETKVE.INI
[2009-09-23 17:10:57 | 000,139,152 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
[2009-09-23 17:10:56 | 000,139,152 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\PnkBstrK.sys
[2009-06-22 20:30:52 | 000,000,140 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\default.rss
[2009-06-22 20:30:52 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\downloads.m3u
[2009-06-22 18:55:28 | 000,004,767 | ---- | C] () -- C:\WINDOWS\Irremote.ini
[2009-06-22 18:15:55 | 000,087,608 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\inst.exe
[2009-05-26 18:42:52 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\$_hpcst$.hpc
[2009-05-10 20:50:17 | 000,000,002 | ---- | C] () -- C:\WINDOWS\System32\Dvbpws.dll
[2009-04-19 18:00:22 | 000,000,197 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI
[2009-01-15 15:46:55 | 000,000,041 | -HS- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\.zreglib
[2009-01-15 14:50:02 | 000,000,142 | ---- | C] () -- C:\WINDOWS\ClonyDrives.ini
[2009-01-15 14:48:07 | 000,000,340 | ---- | C] () -- C:\WINDOWS\Clony2.ini
[2008-06-23 21:25:26 | 000,281,760 | ---- | C] () -- C:\WINDOWS\System32\drivers\atksgt.sys
[2008-06-23 21:25:26 | 000,025,888 | ---- | C] () -- C:\WINDOWS\System32\drivers\lirsgt.sys
[2008-05-05 11:11:00 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.INI
[2008-04-22 17:32:40 | 000,000,668 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\vso_ts_preview.xml
[2008-04-21 12:17:43 | 000,761,856 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2008-04-21 12:17:43 | 000,180,224 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2008-04-21 12:17:42 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll
[2008-04-21 12:17:29 | 000,007,680 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2008-04-13 00:02:56 | 000,000,034 | ---- | C] () -- C:\Program Files\Common Files\appop.log
[2008-04-13 00:02:41 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2008-04-13 00:02:41 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2008-04-13 00:02:41 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2008-04-13 00:02:41 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2008-04-13 00:02:41 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2008-04-07 21:00:02 | 000,000,748 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2008-03-11 22:32:16 | 000,000,250 | ---- | C] () -- C:\WINDOWS\gmer.ini
[2008-03-11 22:32:15 | 000,819,200 | ---- | C] () -- C:\WINDOWS\gmer.dll
[2008-03-02 22:53:22 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys
[2008-02-27 20:25:11 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
[2008-02-17 17:44:02 | 000,000,032 | ---- | C] () -- C:\WINDOWS\Menu.INI
[2008-02-12 23:53:33 | 000,166,912 | ---- | C] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2008-02-12 23:41:53 | 000,000,037 | ---- | C] () -- C:\WINDOWS\Grappler.ini
[2008-02-12 19:07:59 | 000,000,024 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\__FileUploader.log
[2008-02-12 17:04:48 | 000,000,017 | ---- | C] () -- C:\WINDOWS\MovingPicture.ini
[2008-02-12 16:41:12 | 000,000,131 | ---- | C] () -- C:\Documents and Settings\Wojtip\Ustawienia lokalne\Dane aplikacji\fusioncache.dat
[2008-02-12 16:38:44 | 000,138,752 | ---- | C] () -- C:\WINDOWS\System32\mase32.dll
[2008-02-12 16:38:43 | 000,196,096 | ---- | C] () -- C:\WINDOWS\System32\macd32.dll
[2008-02-12 16:38:43 | 000,136,192 | ---- | C] () -- C:\WINDOWS\System32\mamc32.dll
[2008-02-12 16:38:43 | 000,057,856 | ---- | C] () -- C:\WINDOWS\System32\masd32.dll
[2008-02-12 16:38:43 | 000,027,648 | ---- | C] () -- C:\WINDOWS\System32\ma32.dll
[2008-01-31 19:10:18 | 000,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2008-01-30 23:01:08 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
[2008-01-30 22:07:19 | 000,000,427 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2008-01-30 19:34:20 | 000,000,033 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.log
[2008-01-30 19:34:17 | 000,081,920 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\ezpinst.exe
[2008-01-30 19:34:17 | 000,007,887 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.cat
[2008-01-30 19:34:17 | 000,001,144 | ---- | C] () -- C:\Documents and Settings\Wojtip\Dane aplikacji\pcouffin.inf
[2008-01-30 19:32:03 | 000,034,308 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2008-01-30 19:18:59 | 000,691,696 | ---- | C] () -- C:\WINDOWS\System32\drivers\sptd.sys
[2008-01-30 18:48:18 | 000,010,545 | ---- | C] () -- C:\WINDOWS\hpdj3840.ini
[2008-01-30 18:44:08 | 000,106,496 | R--- | C] () -- C:\WINDOWS\System32\vshp1018.dll
[2008-01-30 17:23:50 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\AsIO.dll
[2008-01-30 17:23:50 | 000,004,962 | R--- | C] () -- C:\WINDOWS\System32\drivers\AsIO.sys
[2008-01-30 17:23:48 | 000,005,120 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp64.sys
[2008-01-30 17:23:48 | 000,003,328 | ---- | C] () -- C:\WINDOWS\System32\drivers\AsInsHelp32.sys
[2008-01-30 16:53:16 | 000,026,217 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2008-01-30 16:53:16 | 000,005,810 | R--- | C] () -- C:\WINDOWS\System32\drivers\ASACPI.sys
[2008-01-30 16:53:13 | 000,005,824 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2008-01-30 16:32:33 | 000,004,466 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2007-09-12 23:54:48 | 000,141,180 | ---- | C] () -- C:\WINDOWS\System32\xlive.dll.cat
[2003-12-22 14:40:06 | 001,663,068 | ---- | C] () -- C:\WINDOWS\System32\libmmd.dll
[2003-03-15 08:27:30 | 000,000,117 | ---- | C] () -- C:\WINDOWS\Prof.ini
[2002-10-15 23:54:04 | 000,153,088 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2002-10-06 19:42:57 | 000,237,568 | ---- | C] () -- C:\WINDOWS\System32\OggDS.dll
[2002-10-05 00:04:25 | 000,921,600 | ---- | C] () -- C:\WINDOWS\System32\vorbisenc.dll
[2002-10-05 00:04:24 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\vorbis.dll
[2002-10-05 00:04:17 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\ogg.dll
[2002-03-21 13:39:02 | 000,073,728 | ---- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL

[color=#E56717]========== LOP Check ==========[/color]

[2008-08-11 21:21:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems
[2008-04-14 19:19:54 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ashampoo
[2008-02-08 22:28:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Azureus
[2008-09-11 17:21:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Bluetooth
[2008-07-27 21:46:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software
[2010-12-28 16:02:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Canneverbe Limited
[2010-02-07 22:46:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\DAEMON Tools Lite
[2009-02-14 13:38:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Deskshare
[2010-12-05 17:37:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EnterNHelp
[2008-04-14 19:03:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET
[2010-06-24 14:39:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\espionServerData
[2010-10-06 17:43:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\f-secure
[2010-10-06 17:42:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\fssg
[2009-03-12 19:40:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\GARMIN
[2010-11-27 14:46:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\IObit
[2009-06-22 20:19:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\LightScribe
[2008-04-12 19:24:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Pinnacle
[2010-09-09 17:45:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe
[2009-09-25 22:12:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SlySoft
[2008-04-15 12:22:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SmartSound Software Inc
[2008-06-25 21:06:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tages
[2010-03-28 11:58:13 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-10-27 11:59:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\tmp
[2008-01-30 19:31:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TuneUp Software
[2008-01-30 18:35:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ulead Systems
[2010-06-14 22:43:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Ultima_T15
[2009-02-07 14:33:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\vsosdk
[2010-01-07 12:48:40 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\{0691F710-1ECA-4B5A-9727-25554F1BFDC6}
[2009-09-13 20:33:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Gadu-Gadu
[2010-01-07 19:38:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\GARMIN
[2009-10-27 09:24:24 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Opera
[2010-03-23 19:40:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Spam Monitor
[2009-12-11 15:19:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\SPAMfighter
[2009-09-12 09:54:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Dagmara\Dane aplikacji\Thunderbird
[2009-09-12 10:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\ACD Systems
[2010-05-21 20:17:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\DAEMON Tools Lite
[2009-12-29 15:07:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\GARMIN
[2009-12-10 15:29:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\SPAMfighter
[2009-12-29 15:12:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Patrycja\Dane aplikacji\Thunderbird
[2010-06-24 23:30:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ACD Systems
[2010-06-24 23:16:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Azureus
[2010-12-28 16:41:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Canneverbe Limited
[2010-10-07 18:16:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
[2009-12-12 22:43:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ChomikBox
[2008-06-23 20:15:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Cimaware
[2008-02-22 14:23:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\CoSoSys
[2008-02-22 16:58:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\DAEMON Tools
[2009-09-12 10:37:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\DAEMON Tools Lite
[2008-04-14 19:04:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\ESET
[2010-10-08 16:36:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\F-Secure
[2011-01-04 22:24:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\foobar2000
[2010-03-30 19:19:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Free Download Manager
[2008-01-31 22:09:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Gadu-Gadu
[2010-07-11 11:45:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Games
[2009-03-12 19:40:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\GARMIN
[2010-04-09 15:04:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\GIANTS Editor 0.3.0
[2010-09-08 14:30:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\gtk-2.0
[2010-11-27 14:46:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\IObit
[2008-09-20 18:53:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\JPEGCrops
[2010-05-29 23:30:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\LogMate
[2010-06-13 20:47:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Nikon
[2008-08-11 19:41:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Nowe Gadu-Gadu
[2008-03-30 10:31:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Off Road
[2009-02-28 17:22:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Opera
[2008-02-12 17:04:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\proDAD
[2010-07-07 16:26:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\RawTherapee
[2008-02-06 23:08:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Simply Super Software
[2010-02-20 13:14:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Softplicity
[2009-12-07 18:48:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\SPAMfighter
[2010-03-28 16:55:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Spamihilator
[2010-09-09 20:27:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2008-06-20 20:35:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\The Bat!
[2010-09-07 17:07:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Thunderbird
[2008-01-30 19:31:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\TuneUp Software
[2010-12-27 17:49:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\uTorrent
[2010-12-19 12:50:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Wojtip\Dane aplikacji\Vso
[2011-01-09 00:14:45 | 000,000,252 | ---- | M] () -- C:\WINDOWS\Tasks\Game_Booster_Startup.job
[2010-12-19 22:03:08 | 000,000,386 | ---- | M] () -- C:\WINDOWS\Tasks\SmartDefrag.job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2009-05-26 20:11:21 | 000,002,588 | ---- | M] () -- C:\1.log
[2010-02-19 18:01:00 | 000,064,508 | ---- | M] () -- C:\aaw7boot.log
[2010-06-24 14:39:41 | 000,000,000 | ---- | M] () -- C:\AdobeDebug.txt
[2008-02-13 16:15:33 | 000,000,000 | ---- | M] () -- C:\adorage-protocol.txt
[2008-02-13 18:22:22 | 000,000,095 | ---- | M] () -- C:\AUTOEXEC.BAT
[2010-12-22 19:19:04 | 000,068,551 | ---- | M] () -- C:\AutoMapaSetupLog.txt
[2008-01-30 15:41:53 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2006-03-02 13:00:00 | 000,004,952 | RHS- | M] () -- C:\Bootfont.bin
[2008-04-12 21:05:40 | 000,012,288 | ---- | M] () -- C:\CAPTURE.AVI
[2009-04-26 09:18:54 | 000,030,341 | ---- | M] () -- C:\ComboFix.txt
[2008-01-30 15:47:16 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2008-04-21 12:35:40 | 000,000,000 | ---- | M] () -- C:\default.wav.wav
[2009-05-26 20:11:21 | 000,005,456 | ---- | M] () -- C:\e_1.log
[2009-08-26 21:26:46 | 000,016,801 | ---- | M] () -- C:\hpfr3840.log
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2008-01-30 15:47:16 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2006-03-02 13:00:00 | 000,047,564 | RHS- | M] () -- C:\NTDETECT.COM
[2008-11-18 21:20:08 | 000,251,152 | RHS- | M] () -- C:\ntldr
[2008-04-09 18:32:53 | 000,000,578 | -H-- | M] () -- C:\os678647.bin
[2008-10-04 20:51:42 | 000,000,494 | ---- | M] () -- C:\settings.ini
[2008-07-27 21:33:58 | 000,000,016 | ---- | M] () -- C:\UsageTrack.txt
[2007-11-22 05:35:04 | 000,544,296 | ---- | M] (Microsoft Corporation) -- C:\WindowsXP-KB934428-v3-x86-PLK.exe


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-14 00:06:40 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-14 00:10:32 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2006-03-02 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\i386\atapi.sys
[2004-08-03 22:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\i386\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2006-03-02 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\dllcache\beep.sys
[2006-03-02 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- C:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2006-03-02 13:00:00 | 018,789,127 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2008-04-14 23:09:56 | 020,110,420 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-14 00:10:48 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- C:\WINDOWS\system32\drivers\cdrom.sys
[2006-03-02 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- C:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2006-03-02 13:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 22:50:32 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- C:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-14 00:50:38 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- C:\WINDOWS\system32\drivers\ndis.sys
[2006-03-02 13:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- C:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2006-03-02 13:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- C:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 22:51:50 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- C:\WINDOWS\system32\winlogon.exe

< End of report >
[/log]

Tomek01
komentarz
komentarz

Jest ok.
W OTL wciśnij CleanUp.

Wojtip
komentarz
komentarz

Niestety problem z biosem występuje nadal. Dziwna sprawa 31.12.2010 było wszystko ok. A po nowym roku bios nie zachowuje ustawień.

A powiesz mi co za bałagan miałem.

Tomek01
komentarz
komentarz

Była infekcja z pendrive'a i niegroźne Adwar'e.
Próbowałeś zrestartować Bios poprzez zworkę ? Błędy mogą się wtedy wykasować. Jeśli to nie pomoże możliwe że wina leży w baterii.

Wojtip
komentarz
komentarz

Bateria na 100% dobra bo nawet dwie nowe zakładałem, mierzyłem miernikiem i wszystko ok. Resetowałem w biosie no i bateryjką poprzez jej wyjęcie. A przez zworkę to inaczej to przebiega?

Tomek01
komentarz
komentarz

To tak jak komputer się zawiesi i nie reaguje na żadne wyłączanie czy restart. Jedynie przycisk na obudowie (ten nielubiany ;) ) usuwa problem.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.