banditoo87 utworzono 9 lutego 2011 utworzono 9 lutego 2011 Proszę o pomoc: OTL : [log]OTL logfile created on: 2011-02-09 12:15:57 - Run 1 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Bartosz\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 54,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 116,44 Gb Total Space | 24,83 Gb Free Space | 21,33% Space Free | Partition Type: NTFS Drive D: | 106,68 Gb Total Space | 2,54 Gb Free Space | 2,38% Space Free | Partition Type: NTFS Computer Name: BARTOSZ-PC | User Name: Bartosz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2011-02-09 12:12:14 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Bartosz\Downloads\OTL_3.2.20.6(dobreprogramy.pl).exe PRC - [2010-12-03 20:58:04 | 000,912,344 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe PRC - [2010-12-03 20:58:04 | 000,016,856 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\plugin-container.exe PRC - [2010-10-21 14:08:04 | 000,328,568 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\uTorrent\uTorrent.exe PRC - [2010-09-07 16:12:02 | 002,838,912 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastUI.exe PRC - [2010-09-07 16:11:59 | 000,040,384 | ---- | M] (AVAST Software) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe PRC - [2009-04-11 07:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe PRC - [2008-02-01 22:29:32 | 000,061,440 | ---- | M] () -- C:\Program Files\ASUS\ATK Media\DMedia.exe PRC - [2008-01-21 03:23:32 | 001,008,184 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MSASCui.exe PRC - [2007-12-26 22:38:32 | 000,297,528 | ---- | M] (ASUS) -- C:\Program Files\ASUS\SmartLogon\sensorsrv.exe PRC - [2007-11-13 18:17:14 | 000,851,968 | ---- | M] (ATK) -- C:\Program Files\ASUS\Splendid\ACMON.exe PRC - [2007-10-18 03:04:00 | 007,737,344 | ---- | M] () -- C:\Program Files\ATKOSD2\ATKOSD2.exe PRC - [2007-10-17 00:24:32 | 000,229,376 | ---- | M] (ATK0100) -- C:\Program Files\ATK Hotkey\HControl.exe PRC - [2007-10-03 05:53:00 | 000,094,208 | ---- | M] () -- C:\Program Files\ATK Hotkey\AsLdrSrv.exe PRC - [2007-09-26 19:24:12 | 000,147,456 | ---- | M] () -- C:\Program Files\ASUS\ASUS CopyProtect\ASPG.exe PRC - [2007-09-01 01:38:12 | 000,180,224 | ---- | M] (ATK) -- C:\Program Files\P4G\BatteryLife.exe PRC - [2007-08-15 19:38:30 | 000,147,456 | ---- | M] () -- C:\Program Files\ATK Hotkey\WDC.exe PRC - [2007-08-15 19:20:16 | 000,106,496 | ---- | M] () -- C:\Program Files\ATK Hotkey\KBFiltr.exe PRC - [2007-08-08 19:03:42 | 002,441,216 | ---- | M] () -- C:\Program Files\ATK Hotkey\ATKOSD.exe PRC - [2007-08-08 10:15:16 | 000,059,920 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\SetPoint\LBTWiz.exe PRC - [2007-08-08 10:15:02 | 000,121,360 | ---- | M] (Logitech, Inc.) -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe PRC - [2007-08-08 08:08:40 | 000,094,208 | ---- | M] () -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe PRC - [2007-08-03 20:24:54 | 000,125,496 | ---- | M] () -- C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe PRC - [2007-07-06 00:53:44 | 001,040,384 | ---- | M] () -- C:\Program Files\Wireless Console 2\wcourier.exe PRC - [2007-05-18 10:31:16 | 000,073,728 | ---- | M] () -- C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe PRC - [2006-10-22 23:29:00 | 000,014,456 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32Info.exe PRC - [2005-07-06 23:43:42 | 000,155,648 | ---- | M] (ASUSTeK) -- C:\Windows\System32\ACEngSvr.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2011-02-09 12:12:14 | 000,602,624 | ---- | M] (OldTimer Tools) -- C:\Users\Bartosz\Downloads\OTL_3.2.20.6(dobreprogramy.pl).exe MOD - [2009-04-11 07:21:38 | 001,686,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.6002.18005_none_5cb72f96088b0de0\comctl32.dll [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2010-09-07 16:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Web Scanner) SRV - [2010-09-07 16:11:59 | 000,040,384 | ---- | M] (AVAST Software) [On_Demand | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Mail Scanner) SRV - [2010-09-07 16:11:59 | 000,040,384 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe -- (avast! Antivirus) SRV - [2009-09-25 02:27:04 | 000,793,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\FntCache.dll -- (FontCache) SRV - [2009-07-16 16:04:16 | 000,316,664 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2008-01-21 03:23:32 | 000,272,952 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend) SRV - [2007-10-03 05:53:00 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATK Hotkey\AsLdrSrv.exe -- (ASLDRService) SRV - [2007-08-08 10:15:02 | 000,121,360 | ---- | M] (Logitech, Inc.) [Auto | Running] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ) SRV - [2007-08-08 08:08:40 | 000,094,208 | ---- | M] () [Auto | Running] -- C:\Program Files\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv) SRV - [2007-08-03 20:24:54 | 000,125,496 | ---- | M] () [Auto | Running] -- C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe -- (spmgr) SRV - [2007-05-18 10:31:16 | 000,073,728 | ---- | M] () [Auto | Running] -- C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe -- (ADSMService) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-09-07 15:52:25 | 000,046,672 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi) DRV - [2010-09-07 15:52:03 | 000,165,584 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP) DRV - [2010-09-07 15:47:46 | 000,023,376 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr) DRV - [2010-09-07 15:47:30 | 000,050,768 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt) DRV - [2010-09-07 15:47:07 | 000,017,744 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk) DRV - [2010-08-31 08:58:43 | 000,691,696 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-07-22 16:16:54 | 000,271,360 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\atksgt.sys -- (atksgt) DRV - [2010-07-22 16:16:54 | 000,018,048 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\System32\drivers\lirsgt.sys -- (lirsgt) DRV - [2009-07-01 23:59:00 | 009,786,752 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm) DRV - [2009-04-11 05:45:24 | 000,113,664 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rmcast.sys -- (RMCAST) Sterownik protokołu RMCAST (Pgm) DRV - [2009-02-03 16:36:58 | 000,059,000 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfdrv01.sys -- (sfdrv01) StarForce Protection Environment Driver (version 1.x) DRV - [2008-09-26 18:04:10 | 000,101,760 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard) DRV - [2008-01-21 03:23:27 | 000,386,616 | ---- | M] (LSI Corporation, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasr.sys -- (MegaSR) DRV - [2008-01-21 03:23:27 | 000,149,560 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu320.sys -- (adpu320) DRV - [2008-01-21 03:23:27 | 000,031,288 | ---- | M] (LSI Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\megasas.sys -- (megasas) DRV - [2008-01-21 03:23:26 | 000,101,432 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpu160m.sys -- (adpu160m) DRV - [2008-01-21 03:23:26 | 000,074,808 | ---- | M] (Silicon Integrated Systems) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sisraid4.sys -- (SiSRaid4) DRV - [2008-01-21 03:23:26 | 000,040,504 | ---- | M] (Hewlett-Packard Company) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\hpcisss.sys -- (HpCISSs) DRV - [2008-01-21 03:23:25 | 000,300,600 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adpahci.sys -- (adpahci) DRV - [2008-01-21 03:23:25 | 000,089,656 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_sas.sys -- (LSI_SAS) DRV - [2008-01-21 03:23:24 | 001,122,360 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql2300.sys -- (ql2300) DRV - [2008-01-21 03:23:24 | 000,118,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\E1G60I32.sys -- (E1G60) Intel(R) DRV - [2008-01-21 03:23:24 | 000,079,928 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arcsas.sys -- (arcsas) DRV - [2008-01-21 03:23:23 | 000,235,064 | ---- | M] (Intel Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iastorv.sys -- (iaStorV) DRV - [2008-01-21 03:23:23 | 000,130,616 | ---- | M] (VIA Technologies Inc.,Ltd) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\vsmraid.sys -- (vsmraid) DRV - [2008-01-21 03:23:23 | 000,115,816 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata2.sys -- (ulsata2) DRV - [2008-01-21 03:23:23 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_scsi.sys -- (LSI_SCSI) DRV - [2008-01-21 03:23:23 | 000,096,312 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\lsi_fc.sys -- (LSI_FC) DRV - [2008-01-21 03:23:23 | 000,079,416 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\arc.sys -- (arc) DRV - [2008-01-21 03:23:22 | 000,342,584 | ---- | M] (Emulex) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\elxstor.sys -- (elxstor) DRV - [2008-01-21 03:23:21 | 000,422,968 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\adp94xx.sys -- (adp94xx) DRV - [2008-01-21 03:23:21 | 000,102,968 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvraid.sys -- (nvraid) DRV - [2008-01-21 03:23:21 | 000,045,112 | ---- | M] (NVIDIA Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nvstor.sys -- (nvstor) DRV - [2008-01-21 03:23:20 | 000,238,648 | ---- | M] (ULi Electronics Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\uliahci.sys -- (uliahci) DRV - [2008-01-21 03:23:00 | 000,020,024 | ---- | M] (VIA Technologies, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\viaide.sys -- (viaide) DRV - [2008-01-21 03:23:00 | 000,019,000 | ---- | M] (CMD Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\cmdide.sys -- (cmdide) DRV - [2008-01-21 03:23:00 | 000,017,464 | ---- | M] (Acer Laboratories Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\aliide.sys -- (aliide) DRV - [2007-12-06 11:12:47 | 000,196,400 | ---- | M] (Synaptics, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SynTP.sys -- (SynTP) DRV - [2007-10-31 12:55:59 | 000,046,592 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\l160x86.sys -- (AtcL001) DRV - [2007-10-01 07:59:45 | 001,769,984 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC) USB2.0 PC Camera (SNP2UVC) DRV - [2007-09-29 16:03:11 | 000,308,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\system32\DRIVERS\iaStor.sys -- (iaStor) DRV - [2007-09-26 23:03:42 | 000,015,416 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [File_System | Boot | Running] -- C:\Windows\system32\DRIVERS\lullaby.sys -- (lullaby) DRV - [2007-09-26 13:12:22 | 002,251,776 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETw4v32.sys -- (NETw4v32) Sterownik karty Intel(R) DRV - [2007-09-05 10:36:25 | 001,953,944 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\RTKVHDA.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2007-08-28 04:53:47 | 001,019,136 | ---- | M] (Motorola Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\smserial.sys -- (smserial) DRV - [2007-08-11 04:19:26 | 000,029,752 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [File_System | Boot | Running] -- C:\Windows\System32\drivers\AsDsm.sys -- (AsDsm) DRV - [2007-08-08 13:42:07 | 000,045,568 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimmptsk.sys -- (rimmptsk) DRV - [2007-08-03 05:26:21 | 000,020,936 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys -- (ghaio) DRV - [2007-07-30 04:54:01 | 000,038,400 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rixdptsk.sys -- (rismxdp) DRV - [2007-07-30 03:42:57 | 000,043,008 | ---- | M] (REDC) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\rimsptsk.sys -- (rimsptsk) DRV - [2007-07-24 19:09:04 | 000,013,880 | ---- | M] () [Kernel | Auto | Running] -- C:\Program Files\ATKGFNEX\ASMMAP.sys -- (ASMMAP) DRV - [2007-06-12 13:04:12 | 000,036,496 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LMouFilt.Sys -- (LMouFilt) DRV - [2007-06-12 13:04:06 | 000,035,216 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\LHidFilt.Sys -- (LHidFilt) DRV - [2007-02-08 18:44:43 | 000,083,320 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfvfs02.sys -- (sfvfs02) StarForce Protection VFS Driver (version 2.x) DRV - [2007-01-24 11:08:39 | 000,005,632 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\kbfiltr.sys -- (kbfiltr) DRV - [2006-12-14 08:11:57 | 000,007,680 | ---- | M] (ATK0100) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ATKACPI.sys -- (MTsensor) DRV - [2006-11-07 09:42:30 | 000,086,368 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\w200obex.sys -- (w200obex) DRV - [2006-11-07 09:42:28 | 000,088,560 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\w200mgmt.sys -- (w200mgmt) Sony Ericsson W200 USB WMC Device Management Drivers (WDM) DRV - [2006-11-07 09:42:24 | 000,097,056 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\w200mdm.sys -- (w200mdm) DRV - [2006-11-07 09:42:22 | 000,009,328 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\w200mdfl.sys -- (w200mdfl) DRV - [2006-11-07 09:42:16 | 000,061,504 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\w200bus.sys -- (w200bus) Sony Ericsson W200 driver (WDM) DRV - [2006-11-02 10:50:35 | 000,106,088 | ---- | M] (QLogic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ql40xx.sys -- (ql40xx) DRV - [2006-11-02 10:50:35 | 000,098,408 | ---- | M] (Promise Technology, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ulsata.sys -- (UlSata) DRV - [2006-11-02 10:50:19 | 000,045,160 | ---- | M] (IBM Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\nfrd960.sys -- (nfrd960) DRV - [2006-11-02 10:50:17 | 000,041,576 | ---- | M] (Intel Corp./ICP vortex GmbH) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iirsp.sys -- (iirsp) DRV - [2006-11-02 10:50:11 | 000,071,272 | ---- | M] (Adaptec, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\djsvs.sys -- (aic78xx) DRV - [2006-11-02 10:50:09 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteraid.sys -- (iteraid) DRV - [2006-11-02 10:50:07 | 000,035,944 | ---- | M] (Integrated Technology Express, Inc.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\iteatapi.sys -- (iteatapi) DRV - [2006-11-02 10:50:05 | 000,035,944 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\symc8xx.sys -- (Symc8xx) DRV - [2006-11-02 10:50:03 | 000,034,920 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_u3.sys -- (Sym_u3) DRV - [2006-11-02 10:49:59 | 000,033,384 | ---- | M] (LSI Logic Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\mraid35x.sys -- (Mraid35x) DRV - [2006-11-02 10:49:56 | 000,031,848 | ---- | M] (LSI Logic) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\sym_hi.sys -- (Sym_hi) DRV - [2006-11-02 09:25:24 | 000,071,808 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserid.sys -- (Brserid) Brother MFC Serial Port Interface Driver (WDM) DRV - [2006-11-02 09:24:47 | 000,011,904 | ---- | M] (Brother Industries Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brusbser.sys -- (BrUsbSer) DRV - [2006-11-02 09:24:46 | 000,005,248 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltup.sys -- (BrFiltUp) DRV - [2006-11-02 09:24:45 | 000,013,568 | ---- | M] (Brother Industries, Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\system32\drivers\brfiltlo.sys -- (BrFiltLo) DRV - [2006-11-02 09:24:44 | 000,062,336 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brserwdm.sys -- (BrSerWdm) DRV - [2006-11-02 09:24:44 | 000,012,160 | ---- | M] (Brother Industries Ltd.) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\brusbmdm.sys -- (BrUsbMdm) DRV - [2006-11-02 08:36:50 | 000,020,608 | ---- | M] (N-trig Innovative Technologies) [Kernel | Disabled | Stopped] -- C:\Windows\system32\drivers\ntrigdigi.sys -- (ntrigdigi) DRV - [2006-11-02 08:30:56 | 000,194,048 | ---- | M] (Marvell) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\yk60x86.sys -- (yukonwlh) DRV - [2006-07-10 17:19:58 | 000,027,032 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfsync02.sys -- (sfsync02) StarForce Protection Synchronization Driver (version 2.x) DRV - [2006-06-14 15:56:56 | 000,013,680 | ---- | M] (Protection Technology (StarForce)) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\sfhlp02.sys -- (sfhlp02) StarForce Protection Helper Driver (version 2.x) DRV - [2003-04-02 08:54:16 | 000,020,648 | ---- | M] (Thomson Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\netrcacm.sys -- (netrcacm) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qooqlle.com/ IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1 IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local> [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.selectedEngine: "qooqlle" FF - prefs.js..browser.search.useDBForOrder: true FF - prefs.js..browser.startup.homepage: "http://pl.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:pl:official" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {888d99e7-e8b5-46a3-851e-1ec45da1e644}:4.0.0 FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.2.2 FF - prefs.js..extensions.enabledItems: cssreloader@kenneth.io:1.0.2 FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.8.20100408.6 FF - prefs.js..network.proxy.backup.ftp: "127.0.0.1" FF - prefs.js..network.proxy.backup.ftp_port: 9666 FF - prefs.js..network.proxy.backup.gopher: "127.0.0.1" FF - prefs.js..network.proxy.backup.gopher_port: 9666 FF - prefs.js..network.proxy.backup.socks: "127.0.0.1" FF - prefs.js..network.proxy.backup.socks_port: 9666 FF - prefs.js..network.proxy.backup.ssl: "127.0.0.1" FF - prefs.js..network.proxy.backup.ssl_port: 9666 FF - prefs.js..network.proxy.ftp: "127.0.0.1" FF - prefs.js..network.proxy.ftp_port: 9666 FF - prefs.js..network.proxy.gopher: "127.0.0.1" FF - prefs.js..network.proxy.gopher_port: 9666 FF - prefs.js..network.proxy.http: "127.0.0.1" FF - prefs.js..network.proxy.http_port: 9666 FF - prefs.js..network.proxy.share_proxy_settings: true FF - prefs.js..network.proxy.socks: "127.0.0.1" FF - prefs.js..network.proxy.socks_port: 9666 FF - prefs.js..network.proxy.ssl: "127.0.0.1" FF - prefs.js..network.proxy.ssl_port: 9666 FF - prefs.js..network.proxy.type: 0 FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-02-09 11:07:48 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.13\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-02-09 11:07:47 | 000,000,000 | ---D | M] [2011-02-09 11:08:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bartosz\AppData\Roaming\mozilla\Extensions [2011-02-09 11:30:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Bartosz\AppData\Roaming\mozilla\Firefox\Profiles\n6otu7hu.default\extensions [2011-02-09 11:10:46 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Bartosz\AppData\Roaming\mozilla\Firefox\Profiles\n6otu7hu.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2011-02-09 11:07:47 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions [2010-09-01 13:08:57 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-07-17 04:00:04 | 000,423,656 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-01-13 23:46:00 | 000,063,488 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npwachk.dll [2010-12-03 18:54:54 | 000,002,767 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-12-03 18:54:54 | 000,001,406 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-12-03 18:54:54 | 000,000,917 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-12-03 18:54:54 | 000,000,858 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-12-03 18:54:54 | 000,001,183 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-12-03 18:54:54 | 000,001,683 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2006-09-18 22:41:30 | 000,000,761 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: ::1 localhost O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (IEPluginBHO Class) - {F5CC7F02-6F4E-4462-B5B1-394A57FD3E0D} - File not found O3 - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\..\Toolbar\WebBrowser: (no name) - {32099AAC-C132-4136-9E9A-4E364A424E17} - No CLSID value found. O3 - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\..\Toolbar\WebBrowser: (no name) - {D4027C7F-154A-4066-A1AD-4243D8127440} - No CLSID value found. O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMedia.exe () O4 - HKLM..\Run: [ATKOSD2] C:\Program Files\ATKOSD2\ATKOSD2.exe () O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\avastUI.exe (AVAST Software) O4 - HKLM..\Run: [Bluetooth Connection Assistant] File not found O4 - HKLM..\Run: [Kernel and Hardware Abstraction Layer] C:\Windows\KHALMNPR.Exe (Logitech, Inc.) O4 - HKLM..\Run: [NvCplDaemon] C:\Windows\System32\NvCpl.dll (NVIDIA Corporation) O4 - HKLM..\Run: [Readar_sl] C:\Users\Bartosz\AppData\Roaming\Readar_sl.exe (Created with WinAutomation (http://www.WinAutomation.com)) O4 - HKLM..\Run: [Skytel] C:\Windows\SkyTel.exe (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [TunesHelper] C:\ProgramData\TunesHelper.exe () O4 - HKLM..\Run: [Windows Defender] C:\Program Files\Windows Defender\MSASCui.exe (Microsoft Corporation) O4 - HKU\S-1-5-19..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O4 - HKU\S-1-5-20..\Run: [WindowsWelcomeCenter] C:\Windows\System32\oobefldr.dll (Microsoft Corporation) O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab (Java Plug-in 1.6.0_21) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O24 - Desktop WallPaper: C:\Users\Bartosz\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O24 - Desktop BackupWallPaper: C:\Users\Bartosz\AppData\Roaming\Microsoft\Windows Photo Gallery\Tapeta z Galerii fotografii systemu Windows.jpg O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2006-09-18 22:43:36 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ] O33 - MountPoints2\{39cdfd7a-14dc-11e0-882f-a41366d34a32}\Shell - "" = AutoRun O33 - MountPoints2\{39cdfd7a-14dc-11e0-882f-a41366d34a32}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{3a0808a9-ea50-11df-937f-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{3a0808a9-ea50-11df-937f-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{3a0808c3-ea50-11df-937f-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{3a0808c3-ea50-11df-937f-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88a6-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88a6-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88cd-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88cd-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88d9-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88d9-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88dd-cb3b-11df-8581-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88dd-cb3b-11df-8581-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88de-cb3b-11df-8581-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88de-cb3b-11df-8581-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{6cb388a1-0aa9-11df-8995-002215b0bdfe}\Shell\AutoRun\command - "" = H:\sywyrl0q.exe O33 - MountPoints2\{6cb388a1-0aa9-11df-8995-002215b0bdfe}\Shell\open\Command - "" = H:\sywyrl0q.exe O33 - MountPoints2\{9cf67e19-29e7-11df-b4a9-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{9cf67e19-29e7-11df-b4a9-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{9cf67e1c-29e7-11df-b4a9-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{9cf67e1c-29e7-11df-b4a9-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{a4fdc62f-d146-11de-b68c-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{a4fdc62f-d146-11de-b68c-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{a4fdc647-d146-11de-b68c-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{a4fdc647-d146-11de-b68c-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{bfd413b5-52d3-11df-8a75-0009dd6455c9}\Shell\AutoRun\command - "" = F:\i8gcgmg.exe O33 - MountPoints2\{bfd413b5-52d3-11df-8a75-0009dd6455c9}\Shell\open\Command - "" = F:\i8gcgmg.exe O33 - MountPoints2\{cf04cbc9-cc6c-11df-91db-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{cf04cbc9-cc6c-11df-91db-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{cf04cbcb-cc6c-11df-91db-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{cf04cbcb-cc6c-11df-91db-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{ed93aa67-4475-11df-84d6-0009dd6455c9}\Shell\AutoRun\command - "" = hk.exe O33 - MountPoints2\{ed93aa67-4475-11df-84d6-0009dd6455c9}\Shell\open\Command - "" = hk.exe O33 - MountPoints2\{f55dab0f-01e7-11e0-b84f-0009dd6455c9}\Shell\AutoRun\command - "" = w9.exe O33 - MountPoints2\{f55dab0f-01e7-11e0-b84f-0009dd6455c9}\Shell\open\Command - "" = w9.exe O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2011-02-09 11:08:45 | 000,000,000 | ---D | C] -- C:\Users\Bartosz\AppData\Roaming\Opera [2011-02-09 11:08:45 | 000,000,000 | ---D | C] -- C:\Users\Bartosz\AppData\Local\Opera [2011-02-09 11:08:43 | 000,000,000 | ---D | C] -- C:\Program Files\Opera [2011-02-09 11:07:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox [2011-02-09 11:06:48 | 000,000,000 | ---D | C] -- C:\Users\Bartosz\AppData\Local\searchplugins [2011-02-07 16:31:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Activision [2011-02-07 13:49:38 | 000,311,296 | RHS- | C] (Created with WinAutomation (http://www.WinAutomation.com)) -- C:\Users\Bartosz\AppData\Roaming\Readar_sl.exe [2011-01-17 18:59:46 | 000,000,000 | ---D | C] -- C:\Users\Bartosz\Desktop\chóry emisja [2007-01-24 11:08:39 | 000,005,632 | ---- | C] ( ) -- C:\Windows\System32\drivers\kbfiltr.sys [2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [1 C:\Users\Bartosz\*.tmp files -> C:\Users\Bartosz\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2011-02-09 12:18:48 | 002,621,440 | -HS- | M] () -- C:\Users\Bartosz\ntuser.dat [2011-02-09 11:21:35 | 001,497,870 | ---- | M] () -- C:\Windows\System32\PerfStringBackup.INI [2011-02-09 11:21:35 | 000,671,666 | ---- | M] () -- C:\Windows\System32\perfh015.dat [2011-02-09 11:21:35 | 000,595,946 | ---- | M] () -- C:\Windows\System32\perfh009.dat [2011-02-09 11:21:35 | 000,132,422 | ---- | M] () -- C:\Windows\System32\perfc015.dat [2011-02-09 11:21:35 | 000,105,276 | ---- | M] () -- C:\Windows\System32\perfc009.dat [2011-02-09 11:13:56 | 000,283,547 | ---- | M] () -- C:\ProgramData\nvModes.dat [2011-02-09 11:13:56 | 000,283,547 | ---- | M] () -- C:\ProgramData\nvModes.001 [2011-02-09 11:13:49 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 [2011-02-09 11:13:49 | 000,003,616 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 [2011-02-09 11:13:49 | 000,000,006 | -H-- | M] () -- C:\Windows\tasks\SA.DAT [2011-02-09 11:13:42 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011-02-09 11:12:52 | 000,000,012 | ---- | M] () -- C:\Windows\bthservsdp.dat [2011-02-09 11:12:51 | 000,524,288 | -HS- | M] () -- C:\Users\Bartosz\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms [2011-02-09 11:12:51 | 000,065,536 | -HS- | M] () -- C:\Users\Bartosz\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf [2011-02-09 11:12:47 | 003,097,068 | -H-- | M] () -- C:\Users\Bartosz\AppData\Local\IconCache.db [2011-02-09 11:08:44 | 000,001,581 | ---- | M] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-09 11:07:49 | 000,001,691 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011-02-09 10:19:04 | 000,000,422 | -H-- | M] () -- C:\Windows\tasks\User_Feed_Synchronization-{DAEFD734-1326-416C-960A-A986A348707F}.job [2011-02-08 09:46:05 | 000,045,056 | ---- | M] () -- C:\Windows\System32\acovcnt.exe [2011-02-07 23:23:37 | 000,051,712 | ---- | M] () -- C:\Users\Bartosz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-02-07 16:31:29 | 000,000,773 | ---- | M] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Singleplayer.lnk [2011-02-07 16:31:22 | 000,000,322 | ---- | M] () -- C:\Windows\game.ini [2011-02-07 13:49:34 | 008,180,224 | RHS- | M] () -- C:\ProgramData\TunesHelper.exe [2011-02-07 13:49:33 | 000,311,296 | RHS- | M] (Created with WinAutomation (http://www.WinAutomation.com)) -- C:\Users\Bartosz\AppData\Roaming\Readar_sl.exe [2 C:\Windows\System32\*.tmp files -> C:\Windows\System32\*.tmp -> ] [1 C:\Users\Bartosz\*.tmp files -> C:\Users\Bartosz\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-02-09 11:08:44 | 000,001,593 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk [2011-02-09 11:08:44 | 000,001,581 | ---- | C] () -- C:\Users\Public\Desktop\Opera.lnk [2011-02-09 11:07:49 | 000,001,691 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk [2011-02-07 16:31:29 | 000,000,773 | ---- | C] () -- C:\Users\Public\Desktop\Call of Duty(R) 4 - Modern Warfare(TM) Singleplayer.lnk [2011-02-07 16:31:22 | 000,000,322 | ---- | C] () -- C:\Windows\game.ini [2011-02-07 13:49:36 | 008,180,224 | RHS- | C] () -- C:\ProgramData\TunesHelper.exe [2010-09-02 00:22:16 | 000,000,085 | ---- | C] () -- C:\Windows\wininit.ini [2010-09-01 14:27:03 | 000,283,547 | ---- | C] () -- C:\ProgramData\nvModes.dat [2010-09-01 14:27:03 | 000,283,547 | ---- | C] () -- C:\ProgramData\nvModes.001 [2010-08-31 08:58:43 | 000,691,696 | ---- | C] () -- C:\Windows\System32\drivers\sptd.sys [2010-07-22 16:16:54 | 000,271,360 | ---- | C] () -- C:\Windows\System32\drivers\atksgt.sys [2010-07-22 16:16:54 | 000,018,048 | ---- | C] () -- C:\Windows\System32\drivers\lirsgt.sys [2010-06-10 10:40:47 | 000,000,180 | ---- | C] () -- C:\Users\Bartosz\AppData\Roaming\setup.log [2010-06-10 10:40:42 | 000,000,760 | ---- | C] () -- C:\Users\Bartosz\AppData\Roaming\setup_ldm.iss [2010-02-11 10:20:59 | 000,000,118 | ---- | C] () -- C:\Windows\System32\MRT.INI [2010-02-10 17:03:57 | 000,000,095 | ---- | C] () -- C:\Users\Bartosz\AppData\Local\fusioncache.dat [2009-09-11 18:14:18 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll [2009-09-11 18:14:00 | 000,368,640 | ---- | C] () -- C:\Windows\System32\msjetoledb40.dll [2009-02-20 13:49:45 | 000,164,352 | ---- | C] () -- C:\Windows\System32\unrar.dll [2009-02-05 18:42:14 | 000,000,024 | ---- | C] () -- C:\Windows\ATKPF.ini [2009-01-26 02:56:35 | 000,218,811 | ---- | C] () -- C:\Users\Bartosz\AppData\Roaming\nvModes.001 [2009-01-26 02:44:53 | 000,218,811 | ---- | C] () -- C:\Users\Bartosz\AppData\Roaming\nvModes.dat [2009-01-26 02:14:56 | 000,051,712 | ---- | C] () -- C:\Users\Bartosz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2009-01-25 14:54:11 | 003,097,068 | -H-- | C] () -- C:\Users\Bartosz\AppData\Local\IconCache.db [2009-01-25 14:37:30 | 000,103,808 | ---- | C] () -- C:\Users\Bartosz\AppData\Local\GDIPFONTCACHEV1.DAT [2008-09-05 13:53:25 | 000,012,288 | ---- | C] () -- C:\Windows\impborl.dll [2008-04-18 00:45:31 | 000,000,010 | ---- | C] () -- C:\Windows\System32\ABLKSR.ini [2008-01-21 03:24:38 | 000,060,124 | ---- | C] () -- C:\Windows\System32\tcpmon.ini [2007-10-01 07:59:45 | 001,769,984 | ---- | C] () -- C:\Windows\System32\drivers\snp2uvc.sys [2007-05-09 08:16:39 | 000,028,160 | ---- | C] () -- C:\Windows\System32\drivers\sncduvc.sys [2006-11-02 13:50:50 | 000,000,174 | -HS- | C] () -- C:\Program Files\desktop.ini [2006-11-02 13:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll [2006-11-02 11:33:01 | 001,497,870 | ---- | C] () -- C:\Windows\System32\PerfStringBackup.INI [2006-11-02 11:24:31 | 000,001,405 | ---- | C] () -- C:\Windows\msdfmap.ini [2006-11-02 11:23:31 | 000,000,219 | ---- | C] () -- C:\Windows\system.ini [2006-11-02 11:23:31 | 000,000,128 | ---- | C] () -- C:\Windows\win.ini [2006-11-02 08:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini [2006-11-02 08:09:45 | 000,027,097 | ---- | C] () -- C:\Windows\System32\country.sys [2006-11-02 08:09:44 | 000,042,809 | ---- | C] () -- C:\Windows\System32\KEY01.SYS [2006-11-02 08:09:44 | 000,042,537 | ---- | C] () -- C:\Windows\System32\KEYBOARD.SYS [2006-11-02 08:09:42 | 000,009,029 | ---- | C] () -- C:\Windows\System32\ANSI.SYS [2006-11-02 08:09:41 | 000,004,768 | ---- | C] () -- C:\Windows\System32\HIMEM.SYS [2006-11-02 08:09:40 | 000,029,274 | ---- | C] () -- C:\Windows\System32\NTDOS412.SYS [2006-11-02 08:09:38 | 000,029,370 | ---- | C] () -- C:\Windows\System32\NTDOS411.SYS [2006-11-02 08:09:35 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS404.SYS [2006-11-02 08:09:31 | 000,029,146 | ---- | C] () -- C:\Windows\System32\NTDOS804.SYS [2006-11-02 08:09:29 | 000,027,866 | ---- | C] () -- C:\Windows\System32\NTDOS.SYS [2006-11-02 08:09:26 | 000,035,536 | ---- | C] () -- C:\Windows\System32\NTIO412.SYS [2006-11-02 08:09:24 | 000,035,776 | ---- | C] () -- C:\Windows\System32\NTIO411.SYS [2006-11-02 08:09:23 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO404.SYS [2006-11-02 08:09:22 | 000,034,672 | ---- | C] () -- C:\Windows\System32\NTIO804.SYS [2006-11-02 08:09:20 | 000,033,952 | ---- | C] () -- C:\Windows\System32\NTIO.SYS [2006-11-02 07:25:08 | 000,013,312 | ---- | C] () -- C:\Windows\System32\win87em.dll [2006-03-09 02:57:59 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll [color=#E56717]========== LOP Check ==========[/color] [2010-10-20 20:44:57 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\BESTplayer [2010-12-26 19:28:30 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\Bioshock [2010-08-31 09:15:16 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\DAEMON Tools Lite [2009-02-09 23:53:36 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\GetRightToGo [2011-01-05 22:20:32 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\GHISLER [2010-04-10 10:18:04 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\OpenFM [2010-03-10 14:54:43 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\OpenOffice.org [2011-02-09 11:08:45 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\Opera [2011-02-09 12:16:18 | 000,000,000 | ---D | M] -- C:\Users\Bartosz\AppData\Roaming\uTorrent [2011-02-09 11:12:52 | 000,032,546 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT [2011-02-09 10:19:04 | 000,000,422 | -H-- | M] () -- C:\Windows\Tasks\User_Feed_Synchronization-{DAEFD734-1326-416C-960A-A986A348707F}.job [color=#E56717]========== Purity Check ==========[/color] < End of report > [/log] Extras : [log]OTL Extras logfile created on: 2011-02-09 12:15:57 - Run 1 OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Bartosz\Downloads Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation Internet Explorer (Version = 7.0.6002.18005) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 54,00% Memory free 6,00 Gb Paging File | 5,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 116,44 Gb Total Space | 24,83 Gb Free Space | 21,33% Space Free | Partition Type: NTFS Drive D: | 106,68 Gb Total Space | 2,54 Gb Free Space | 2,38% Space Free | Partition Type: NTFS Computer Name: BARTOSZ-PC | User Name: Bartosz | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software) .url [@ = InternetShortcut] -- rundll32.exe ieframe.dll,OpenURL %l [HKEY_USERS\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) https [open] -- "C:\Program Files\Opera\Opera.exe" "%1" (Opera Software) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- rundll32.exe ieframe.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /separate,/idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /separate,/e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 "UacDisableNotify" = 0 "InternetSettingsDisableNotify" = 0 "AutoUpdateDisableNotify" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 "VistaSp1" = Reg Error: Unknown registry data type -- File not found "VistaSp2" = Reg Error: Unknown registry data type -- File not found [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\S-1-5-21-2847654069-2157158812-933180134-1000] "EnableNotifications" = 0 "EnableNotificationsRef" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{2A837CFC-343F-49CC-A20B-9B003DE823DF}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{2B8554DB-F591-4DC1-B14C-0DAD6564CD03}" = rport=445 | protocol=6 | dir=out | app=system | "{2F14A2A3-E72A-49AA-A044-2327111F4FD4}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{35C2B7AE-8ED0-4F77-9B63-2D87B1DA6066}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{4548FA98-14D3-4C58-97D2-493652B31768}" = rport=138 | protocol=17 | dir=out | app=system | "{4B902212-6834-4A0C-9875-37407954B036}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4F363E55-45B4-4262-AC26-E1F6C9DDE4F5}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{56769724-EFCE-41A4-BDAC-1324B33EDBF0}" = lport=138 | protocol=17 | dir=in | app=system | "{58907110-AD14-4396-B924-EA16E53F7478}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{5B30DA8C-EECD-447E-B37C-42A44C5E41A7}" = rport=2869 | protocol=6 | dir=out | app=system | "{6438D7C8-0B73-472E-A653-846BBA0AC17C}" = rport=137 | protocol=17 | dir=out | app=system | "{705CF4D8-5160-41B8-B755-E1048FE6049E}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7CC16188-C02A-4262-873A-66F9D8769581}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7EB921FE-8AA6-4B5F-A7FA-B0279BA2BEF2}" = rport=139 | protocol=6 | dir=out | app=system | "{875A6AC3-BF5F-4651-8B37-87DE13DC31AA}" = lport=445 | protocol=6 | dir=in | app=system | "{9F96DCE1-93C9-48C9-9BE3-795AF49DA308}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{A8D15F2D-0BA7-4275-BD8E-6E9C7CF76CDF}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B4DF86A2-2DA1-4875-98BC-3B0978F393FA}" = lport=137 | protocol=17 | dir=in | app=system | "{B9530DB1-7C3E-4F93-B6E3-A27EDA87129A}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{B9A39775-62E8-4F7A-92CC-04567549644D}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{BA224BD3-16CF-4AEA-A094-0FA20B3413B0}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{C8DF650F-BCF4-4761-81E0-641FDFA30FE1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{DD299D49-4D0E-4D8F-9400-7F338CB1DDC8}" = lport=2869 | protocol=6 | dir=in | app=system | "{E18D0FA1-8908-4B51-A60C-DB692668866A}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{F9F1B582-5CA5-42CF-95B6-CB399B27B663}" = lport=139 | protocol=6 | dir=in | app=system | "{FD04E93E-6E13-4B4E-9BCA-66719BC0940C}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{065E5086-ABFB-4E7A-9D3C-4A87291A10AB}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty - world at war\codwawmp.exe | "{06808838-3949-4B03-B46E-8E14F90E9D0E}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty - world at war\codwaw.exe | "{0E09533C-9780-4997-BDC9-F94D1B73300E}" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "{12A496C0-F5D6-4FE9-B3CA-0A2CA3779AAA}" = protocol=6 | dir=in | app=d:\gry\starcraft ii\starcraft ii.exe | "{17C90064-10C3-4C6A-A71B-41BA2BC7B3AC}" = protocol=6 | dir=in | app=c:\program files\activision\call of duty - world at war\codwaw.exe | "{24B7F17D-3F92-4238-958F-C68449655FE5}" = protocol=6 | dir=in | app=d:\gry\call of duty 4 [pc-dvd] [english] [www.topetorrent.com]\iw3mp.exe | "{2A126715-CC7C-43A9-A89E-F91735A87F72}" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "{312140B4-3F41-45C5-8935-FAD7C059D404}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{4BF231A2-27DC-48F8-90F4-7EA977E1B248}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{586A0665-A835-4A07-B1CD-33327563C696}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{62ED2945-33D3-4E7A-A79F-609BABBEEA9D}" = protocol=17 | dir=in | app=c:\program files\steam\steam.exe | "{748D2364-9B48-4852-8294-CD0558DCA306}" = protocol=6 | dir=in | app=d:\gry\cojbibgame_x86.exe | "{9521FB10-AF71-45CD-96FF-26A1FCC8E611}" = protocol=6 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{B65661B2-EB9D-412D-90DA-185D412AC6A9}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B79677C1-C4AF-4381-AB81-AA296988FD73}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{BF7C872C-12BC-4577-A3C0-AE80C952F92B}" = protocol=17 | dir=in | app=d:\gry\call of duty 4 [pc-dvd] [english] [www.topetorrent.com]\iw3mp.exe | "{C115FF45-066B-47A1-837F-F5881920AAC9}" = protocol=17 | dir=in | app=d:\gry\starcraft ii\starcraft ii.exe | "{C27C0E68-A4D8-4D06-840A-2331E93515EF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{C7E44E9B-9457-4A7D-BBB4-209BF196F008}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{C7FD6564-0537-49BF-AD62-7AB7931EC9F7}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{C85C0889-5106-47BC-8B9A-4B688911A745}" = protocol=17 | dir=in | app=c:\program files\activision\call of duty - world at war\codwawmp.exe | "{E2543214-B16E-476D-8BF5-D68F45B355B1}" = protocol=17 | dir=in | app=c:\program files\utorrent\utorrent.exe | "{EE0194E6-5683-470C-A899-48775FCF9C86}" = protocol=17 | dir=in | app=d:\gry\cojbibgame_x86.exe | "{FA1AAB67-3DB6-4F76-A182-707B1A30DED4}" = protocol=6 | dir=in | app=c:\program files\steam\steam.exe | "TCP Query User{0E8DCBB0-F8D1-4C87-BF10-265787A771A7}C:\program files\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "TCP Query User{1380C3A8-C958-47C8-9C0E-7A519A418099}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{1CD095AE-30E3-438E-8ADE-7847B7F9A585}C:\program files\gadu-gadu 10\gg.exe" = protocol=6 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "TCP Query User{1EA9601D-D349-41A1-A56A-A074408021D7}C:\program files\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "TCP Query User{55D3230F-96BA-47A4-8FC5-C3158EB111D2}C:\program files\opera\opera.exe" = protocol=6 | dir=in | app=c:\program files\opera\opera.exe | "TCP Query User{5A5C9CE6-4FE7-4EB5-9435-1CCF92B4B56D}D:\gry\starcraft ii\support\blizzarddownloader.exe" = protocol=6 | dir=in | app=d:\gry\starcraft ii\support\blizzarddownloader.exe | "TCP Query User{638D35EB-7769-4E4C-8336-DD9BEC105EA2}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{6A450684-4E2F-4BEF-8D31-E2AB54936596}D:\gry\call of\call\activision\call of duty - world at war\codwawmp.exe" = protocol=6 | dir=in | app=d:\gry\call of\call\activision\call of duty - world at war\codwawmp.exe | "TCP Query User{83548215-FE5A-4194-AE7E-7A4060580802}D:\gry\call\activision\call of duty - world at war\codwaw.exe" = protocol=6 | dir=in | app=d:\gry\call\activision\call of duty - world at war\codwaw.exe | "TCP Query User{AD820ED5-E3FF-4744-9023-E2E01C48D385}C:\program files\nowe gadu-gadu\gg.exe" = protocol=6 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "TCP Query User{ADE657EA-1790-4742-AA17-BD418609C1F8}D:\gry\starcraft ii\versions\base15405\sc2.exe" = protocol=6 | dir=in | app=d:\gry\starcraft ii\versions\base15405\sc2.exe | "TCP Query User{AE369D9C-96A2-423E-8606-F889CAA04AA3}D:\gry\call\activision\call of duty - world at war\codwawmp.exe" = protocol=6 | dir=in | app=d:\gry\call\activision\call of duty - world at war\codwawmp.exe | "TCP Query User{F40D8DF7-566A-44F7-984C-8C0EA0531576}D:\gry\call of\call\activision\call of duty - world at war\codwaw.exe" = protocol=6 | dir=in | app=d:\gry\call of\call\activision\call of duty - world at war\codwaw.exe | "UDP Query User{3A4B6DF1-D0A6-44F5-996A-11BE899188C2}C:\program files\gadu-gadu 10\gg.exe" = protocol=17 | dir=in | app=c:\program files\gadu-gadu 10\gg.exe | "UDP Query User{3F3DB564-C142-4DF4-AB96-ADF0EB4953CC}D:\gry\starcraft ii\support\blizzarddownloader.exe" = protocol=17 | dir=in | app=d:\gry\starcraft ii\support\blizzarddownloader.exe | "UDP Query User{40C036EE-D6F5-4D58-B0C5-23C4FF9CF3BF}C:\program files\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "UDP Query User{544067B7-4862-493F-9471-13FA021BAFF2}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{59ED3AA6-D254-4A97-A18B-05B98A728901}D:\gry\call\activision\call of duty - world at war\codwawmp.exe" = protocol=17 | dir=in | app=d:\gry\call\activision\call of duty - world at war\codwawmp.exe | "UDP Query User{71887022-322B-4B8E-B306-641297DE1494}D:\gry\call\activision\call of duty - world at war\codwaw.exe" = protocol=17 | dir=in | app=d:\gry\call\activision\call of duty - world at war\codwaw.exe | "UDP Query User{772733E2-A69C-4146-B5BE-03E3FF403FCA}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{7E157418-01E4-4B7D-9226-9C0D7EC74E14}D:\gry\call of\call\activision\call of duty - world at war\codwaw.exe" = protocol=17 | dir=in | app=d:\gry\call of\call\activision\call of duty - world at war\codwaw.exe | "UDP Query User{83F9D5B9-D225-4BAD-B9BA-AD54B347E851}C:\program files\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\java\jre6\bin\javaw.exe | "UDP Query User{9F7C22B4-1CCA-4CB8-B385-2C2266E2A8AD}D:\gry\call of\call\activision\call of duty - world at war\codwawmp.exe" = protocol=17 | dir=in | app=d:\gry\call of\call\activision\call of duty - world at war\codwawmp.exe | "UDP Query User{A8C0EA53-0A6D-4E8D-A4AF-0E5E3F3CA065}C:\program files\opera\opera.exe" = protocol=17 | dir=in | app=c:\program files\opera\opera.exe | "UDP Query User{E26946B1-5DA8-4408-BC5A-EBF1A678FE0F}C:\program files\nowe gadu-gadu\gg.exe" = protocol=17 | dir=in | app=c:\program files\nowe gadu-gadu\gg.exe | "UDP Query User{ECA00A3A-865D-4BDD-B421-BEB33FB66F09}D:\gry\starcraft ii\versions\base15405\sc2.exe" = protocol=17 | dir=in | app=d:\gry\starcraft ii\versions\base15405\sc2.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0E7DBD52-B097-4F2B-A7C7-F105B0D20FDB}" = LightScribe System Software 1.14.17.1 "{139B0FFA-187E-4BA1-BCA6-6B56B2B6AB8C}" = ATK Media "{1C8521E5-5A7B-4A4E-A9CD-AD53116EAEE0}" = ASUS Data Security Manager "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{2396F815-84E0-4353-83D7-8B190556DA42}" = ASUS CopyProtect "{26A24AE4-039D-4CA4-87B4-2F83216016FF}" = Java(TM) 6 Update 21 "{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}" = Logitech SetPoint "{3912D529-02BC-4CA8-B5ED-0D0C20EB6003}" = ATK Hotkey "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go "{56918C0C-0D87-4CA6-92BF-4975A43AC719}" = KhalInstallWrapper "{56C049BE-79E9-4502-BEA7-9754A3E60F9B}" = neroxml "{57B15AD4-8C9D-4164-82BB-E33D8644E757}" = ASUS InstantFun "{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.52.02 "{5C1DB4ED-E9B4-402D-BB14-D75D97D6C1A6}" = ATKOSD2 "{6324A1EF-CEF4-43E3-8BCD-9EF3F67317FD}" = NB Probe "{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS SmartLogon "{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}" = Windows Media Player Firefox Plugin "{6E19F210-3813-4002-B561-94D66AA182B6}" = Atheros Communications Inc.(R) L1 Gigabit Ethernet Driver "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{83F73CB1-7705-49D1-9852-84D839CA2A45}" = Wireless Console 2 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8CC990CD-87C8-475C-AC32-8A7984E2FCFA}" = CDDRV_Installer "{8CFEBE9C-F29F-4C49-80E0-7106970F8734}" = Power4Gear eXtreme "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9EFDFBA8-9174-3C61-8645-28376C5CA994}" = Microsoft .NET Framework 3.5 Language Pack SP1 - plk "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{AC76BA86-7AD7-1045-7B44-A81200000003}" = Adobe Reader 8 - Polish "{C0FC1C14-4824-4A73-87A6-9E888C9C3102}" = ASUS Splendid Video Enhancement Technology "{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint "{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1 "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D3D54F3E-C5C3-443D-978F-87A72E5616E8}" = ATK Generic Function Service "{D5A6D02F-3CBB-4FBF-8F65-C3A6D721E8A4}" = OpenOffice.org 3.2 "{DE10AB76-4756-4913-BE25-55D1C1051F9A}" = WinFlash "{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}" = ASUS Live Update "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FC3D290D-79BE-44B7-ABF9-FDD110925930}" = P4P "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "Asus_Camera_ScreenSaver" = Asus_Camera_ScreenSaver "avast5" = avast! Free Antivirus "CCleaner" = CCleaner "Dziobas Rar Player_is1" = Dziobas Rar Player 0.009.38 "InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go "InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}" = Call of Duty(R) 4 - Modern Warfare(TM) "JDownloader" = JDownloader "KLiteCodecPack_is1" = K-Lite Codec Pack 3.9.5 (Standard) "LastFM_is1" = Last.fm 1.5.4.24567 "Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1 "Microsoft .NET Framework 3.5 Language Pack SP1 - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 z dodatkiem SP1 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.13)" = Mozilla Firefox (3.6.13) "NVIDIA Drivers" = NVIDIA Drivers "OpenAL" = OpenAL "Opera 11.01.1190" = Opera 11.01 "PLAY ONLINE" = PLAY ONLINE "Shank_is1" = Shank "SMSERIAL" = Motorola SM56 Speakerphone Modem "SynTPDeinstKey" = Synaptics Pointing Device Driver "Totalcmd" = Total Commander (Remove or Repair) "USB 2.0 1.3M UVC WebCam" = USB 2.0 1.3M UVC WebCam "uTorrent" = µTorrent "Winamp" = Winamp [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Winamp Detect" = Winamp Detector Plug-in [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Antivirus Events ] Error - 2010-01-02 20:42:36 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-02-10 11:12:37 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-03-17 17:50:55 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-04-15 05:17:57 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-04-15 10:33:01 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-04-28 14:28:28 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-06-05 03:09:09 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-06-26 09:05:50 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-06-28 07:38:07 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = Error - 2010-07-22 13:57:25 | Computer Name = Bartosz-PC | Source = avast! | ID = 33554522 Description = [ Application Events ] Error - 2010-12-30 04:39:56 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-30 16:30:55 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-30 17:26:58 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-31 04:22:37 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-31 05:15:34 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-31 08:09:17 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-31 08:50:04 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = Error - 2010-12-31 09:53:22 | Computer Name = Bartosz-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2010-12-31 09:53:22 | Computer Name = Bartosz-PC | Source = Windows Search Service | ID = 3013 Description = Error - 2011-01-01 05:11:30 | Computer Name = Bartosz-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 2011-02-09 02:49:01 | Computer Name = Bartosz-PC | Source = ipnathlp | ID = 31004 Description = Agent proxy DNS nie może przydzielić 0 bajtów pamięci. Może to wskazywać, że w systemie brakuje pamięci wirtualnej lub że menedżer pamięci napotkał błąd wewnętrzny. Error - 2011-02-09 02:51:36 | Computer Name = Bartosz-PC | Source = BROWSER | ID = 8032 Description = Error - 2011-02-09 06:05:34 | Computer Name = Bartosz-PC | Source = DCOM | ID = 10010 Description = Error - 2011-02-09 06:07:33 | Computer Name = Bartosz-PC | Source = ipnathlp | ID = 34001 Description = Usługa ICS_IPV6 nie mogła skonfigurować stosu IPv6. Error - 2011-02-09 06:07:33 | Computer Name = Bartosz-PC | Source = ipnathlp | ID = 30013 Description = Program przydzielania DHCP sam wyłączył się dla adresu IP 192.168.1.3, gdyż adres ten jest spoza zakresu 192.168.0.0/255.255.255.0, z którego są przydzielane adresy klientom DHCP. Aby włączyć program przydzielania DHCP dla tego adresu IP, zmień zakres, tak aby zawierał adres IP, albo zmień adres IP, tak aby mieścił się w zakresie. Error - 2011-02-09 06:08:18 | Computer Name = Bartosz-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 2011-02-09 06:14:47 | Computer Name = Bartosz-PC | Source = ipnathlp | ID = 34001 Description = Usługa ICS_IPV6 nie mogła skonfigurować stosu IPv6. Error - 2011-02-09 06:14:47 | Computer Name = Bartosz-PC | Source = ipnathlp | ID = 30013 Description = Program przydzielania DHCP sam wyłączył się dla adresu IP 192.168.1.3, gdyż adres ten jest spoza zakresu 192.168.0.0/255.255.255.0, z którego są przydzielane adresy klientom DHCP. Aby włączyć program przydzielania DHCP dla tego adresu IP, zmień zakres, tak aby zawierał adres IP, albo zmień adres IP, tak aby mieścił się w zakresie. Error - 2011-02-09 06:15:16 | Computer Name = Bartosz-PC | Source = Microsoft-Windows-LanguagePackSetup | ID = 1001 Description = Error - 2011-02-09 06:17:50 | Computer Name = Bartosz-PC | Source = BROWSER | ID = 8032 Description = < End of report > [/log] [color="#FF0000"]//Logi wstawiamy w tagi ! //Poprawiam //Tom01[/color]
Tomek01 komentarz 9 lutego 2011 komentarz 9 lutego 2011 Zastosuj [b][color=#0000CD][url=http://download.bleepingcomputer.com//sUBs/Flash_Disinfector.exe]Flash Disinfector[/url][/color][/b], najlepiej z podpiętym pendrive'm czy innymi pamięciami USB. W OTL, w oknie Custom scan/fixes wklej: [code]:OTL IE - HKU\S-1-5-21-2847654069-2157158812-933180134-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.qooqlle.com/ FF - prefs.js..browser.search.selectedEngine: "qooqlle" O4 - HKLM..\Run: [Readar_sl] C:\Users\Bartosz\AppData\Roaming\Readar_sl.exe (Created with WinAutomation (http://www.WinAutomation.com)) O4 - HKLM..\Run: [TunesHelper] C:\ProgramData\TunesHelper.exe () O33 - MountPoints2\{39cdfd7a-14dc-11e0-882f-a41366d34a32}\Shell - "" = AutoRun O33 - MountPoints2\{39cdfd7a-14dc-11e0-882f-a41366d34a32}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{3a0808a9-ea50-11df-937f-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{3a0808a9-ea50-11df-937f-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{3a0808c3-ea50-11df-937f-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{3a0808c3-ea50-11df-937f-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88a6-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88a6-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88cd-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88cd-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88d9-cb3b-11df-8581-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88d9-cb3b-11df-8581-0009dd6455c9}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88dd-cb3b-11df-8581-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88dd-cb3b-11df-8581-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{69fd88de-cb3b-11df-8581-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{69fd88de-cb3b-11df-8581-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{6cb388a1-0aa9-11df-8995-002215b0bdfe}\Shell\AutoRun\command - "" = H:\sywyrl0q.exe O33 - MountPoints2\{6cb388a1-0aa9-11df-8995-002215b0bdfe}\Shell\open\Command - "" = H:\sywyrl0q.exe O33 - MountPoints2\{9cf67e19-29e7-11df-b4a9-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{9cf67e19-29e7-11df-b4a9-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{9cf67e1c-29e7-11df-b4a9-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{9cf67e1c-29e7-11df-b4a9-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{a4fdc62f-d146-11de-b68c-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{a4fdc62f-d146-11de-b68c-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{a4fdc647-d146-11de-b68c-0009dd6455c9}\Shell - "" = AutoRun O33 - MountPoints2\{a4fdc647-d146-11de-b68c-0009dd6455c9}\Shell\AutoRun\command - "" = F:\AutoRun.exe O33 - MountPoints2\{bfd413b5-52d3-11df-8a75-0009dd6455c9}\Shell\AutoRun\command - "" = F:\i8gcgmg.exe O33 - MountPoints2\{bfd413b5-52d3-11df-8a75-0009dd6455c9}\Shell\open\Command - "" = F:\i8gcgmg.exe O33 - MountPoints2\{cf04cbc9-cc6c-11df-91db-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{cf04cbc9-cc6c-11df-91db-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{cf04cbcb-cc6c-11df-91db-002215b0bdfe}\Shell - "" = AutoRun O33 - MountPoints2\{cf04cbcb-cc6c-11df-91db-002215b0bdfe}\Shell\AutoRun\command - "" = G:\AutoRun.exe O33 - MountPoints2\{ed93aa67-4475-11df-84d6-0009dd6455c9}\Shell\AutoRun\command - "" = hk.exe O33 - MountPoints2\{ed93aa67-4475-11df-84d6-0009dd6455c9}\Shell\open\Command - "" = hk.exe O33 - MountPoints2\{f55dab0f-01e7-11e0-b84f-0009dd6455c9}\Shell\AutoRun\command - "" = w9.exe O33 - MountPoints2\{f55dab0f-01e7-11e0-b84f-0009dd6455c9}\Shell\open\Command - "" = w9.exe O33 - MountPoints2\G\Shell - "" = AutoRun O33 - MountPoints2\G\Shell\AutoRun\command - "" = G:\AutoRun.exe :Files C:\Windows\Tasks\User_Feed_Synchronization-{DAEFD734-1326-416C-960A-A986A348707F}.job :Commands [emptytemp][/code] Klikasz run fix, komputer uruchamia się ponownie. Wrzuć log z usuwania oraz nowe logi: OTL i RSIT
banditoo87 komentarz 9 lutego 2011 Autor komentarz 9 lutego 2011 Przepraszam za pomyłkę i dziękuje za pomoc.
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.