domin46 utworzono 14 marca 2011 utworzono 14 marca 2011 (edytowane) Witam. Od jakiegoś czasu na pasku zadań bardzo szybko miga ikonka setup mimo że nic nie instaluje. Gdy zainstalowałem Battlefield 2 i chciałem sobie pograć w sieci gra została zrzucana na pasek. Działo się to bardzo często. Skanowałem system AVG nic nie znalazł. Później zainstalowałem COMODO i wywalił dwa trojany. Na koniec w trybie awaryjnym przeskanowałem Ad-aware i wywalił robaka. Niestety problem dale jest. Nie wiem czy to jakiś wirus, czy może nieświadomie wywaliłem coś z rejestru. [log]OTL logfile created on: 2011-03-14 22:08:41 - Run 3 OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 72,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): E:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files Drive C: | 645,21 Gb Total Space | 246,72 Gb Free Space | 38,24% Space Free | Partition Type: NTFS Drive D: | 232,88 Gb Total Space | 208,76 Gb Free Space | 89,64% Space Free | Partition Type: NTFS Drive E: | 100,00 Gb Total Space | 51,34 Gb Free Space | 51,34% Space Free | Partition Type: NTFS Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days [color=#E56717]========== Processes (All) ==========[/color] PRC - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe PRC - [2011-03-12 22:17:27 | 000,399,224 | ---- | M] (BitTorrent, Inc.) -- E:\Program Files\uTorrent\uTorrent.exe PRC - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2011-03-07 23:49:22 | 000,939,848 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2011-03-06 21:44:57 | 000,016,856 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\plugin-container.exe PRC - [2011-03-06 21:44:56 | 000,912,344 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe PRC - [2011-03-02 14:31:04 | 000,997,032 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe PRC - [2011-02-02 21:40:41 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Java\jre6\bin\jqs.exe PRC - [2011-01-24 11:42:42 | 000,427,008 | ---- | M] (Sony Ericsson) -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe PRC - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-01-17 23:30:16 | 002,548,552 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe PRC - [2010-11-06 00:05:49 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- E:\Program Files\Real\RealPlayer\Update\realsched.exe PRC - [2010-10-29 14:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Common Files\Java\Java Update\jusched.exe PRC - [2010-10-16 00:30:14 | 000,075,064 | ---- | M] () -- E:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-08-26 02:37:00 | 000,606,208 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\spoolsv.exe PRC - [2009-07-01 19:23:52 | 001,435,136 | ---- | M] () -- E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe PRC - [2009-04-22 17:38:50 | 000,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe PRC - [2009-04-22 17:37:16 | 000,065,536 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe PRC - [2009-04-09 09:29:34 | 002,304,552 | ---- | M] (Gainward Co.) -- E:\Program Files\EXPERTool ATI\TBPANEL.exe PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\services.exe PRC - [2009-02-06 11:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [mi] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPDEVMGMT] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 18:21:42 | 000,050,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\smss.exe PRC - [2008-04-14 18:21:38 | 000,035,328 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 18:21:22 | 000,013,312 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 18:21:16 | 001,542,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\explorer.exe PRC - [2008-04-14 18:21:10 | 000,040,448 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ctfmon.exe PRC - [2008-04-14 18:21:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\csrss.exe PRC - [2008-04-14 18:21:02 | 000,044,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\alg.exe PRC - [2008-01-15 23:54:54 | 000,037,376 | ---- | M] () -- E:\Program Files\Winamp\winampa.exe PRC - [2007-03-11 20:34:40 | 000,049,152 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\HP Software Update\hpwuSchd2.exe PRC - [2007-03-11 20:32:42 | 000,151,552 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqste08.exe PRC - [2007-03-11 20:26:24 | 000,210,520 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe PRC - [2006-01-20 10:20:00 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- E:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2005-10-31 09:51:52 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe PRC - [2004-08-04 13:00:00 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\unsecapp.exe PRC - [2004-06-16 06:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe PRC - [2004-03-04 13:47:30 | 000,266,240 | ---- | M] () -- E:\Program Files\NetMeter\NetMeter.exe PRC - [1999-12-13 02:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe MOD - [2011-01-21 15:44:11 | 008,491,008 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shell32.dll MOD - [2010-12-29 01:42:04 | 000,285,480 | ---- | M] (COMODO) -- E:\WINDOWS\system32\guard32.dll MOD - [2010-12-09 16:15:25 | 000,726,528 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdll.dll MOD - [2010-11-06 00:06:07 | 000,040,448 | ---- | M] (RealNetworks, Inc.) -- E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rpcrt4.dll MOD - [2010-08-08 17:15:06 | 000,219,648 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\uxtheme.dll MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ole32.dll MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shlwapi.dll MOD - [2009-07-12 00:02:02 | 000,653,120 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll MOD - [2009-07-12 00:02:00 | 000,569,664 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\secur32.dll MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\advapi32.dll MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\gdi32.dll MOD - [2008-04-14 21:50:48 | 002,572,288 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 18:21:56 | 000,146,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 18:20:57 | 000,172,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 18:20:57 | 000,018,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\version.dll MOD - [2008-04-14 18:20:56 | 000,757,248 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 18:20:56 | 000,580,096 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\user32.dll MOD - [2008-04-14 18:20:56 | 000,078,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 18:20:45 | 000,064,000 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 18:20:44 | 000,551,936 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 18:20:44 | 000,084,992 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 18:20:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 18:20:41 | 000,119,808 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 18:20:39 | 000,343,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 18:20:36 | 000,297,984 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msctf.dll MOD - [2008-04-14 18:20:31 | 000,185,344 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 18:20:31 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\fltlib.dll MOD - [2008-04-14 18:20:14 | 001,524,224 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comres.dll MOD - [2008-04-14 18:20:13 | 000,333,824 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 18:20:11 | 000,498,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 18:16:32 | 000,110,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msscript.ocx [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) [Auto | Running] -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe -- (CLPSLS) SRV - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-03-07 23:52:40 | 000,015,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys -- (Lavasoft Kernexplorer) DRV - [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2011-01-06 17:37:02 | 000,239,368 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-01-06 17:37:02 | 000,015,592 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd) DRV - [2010-11-05 21:53:08 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri) DRV - [2010-10-10 20:51:05 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc) DRV - [2010-10-10 20:51:05 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt) DRV - [2010-08-26 04:33:38 | 005,386,752 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2010-08-08 16:28:25 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-03-10 16:25:58 | 000,020,968 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- E:\WINDOWS\system32\drivers\cpuz133_x32.sys -- (cpuz133) DRV - [2010-02-16 05:38:12 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5) DRV - [2009-12-06 18:48:49 | 000,012,400 | ---- | M] () [Kernel | System | Running] -- E:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO) DRV - [2008-10-21 03:03:13 | 000,089,600 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV - [2006-11-02 06:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB) DRV - [2006-09-24 14:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- E:\WINDOWS\system32\speedfan.sys -- (speedfan) DRV - [2006-07-26 07:56:00 | 000,248,832 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2005-07-07 09:14:30 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\P17.sys -- (P17) DRV - [2005-01-10 11:15:30 | 000,106,496 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2005-01-10 11:15:24 | 000,138,752 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k) DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2004-04-14 11:08:00 | 000,044,064 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore) DRV - [2004-04-14 11:08:00 | 000,021,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter) DRV - [2004-04-14 11:08:00 | 000,014,432 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo) DRV - [2004-04-14 11:08:00 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum) DRV - [2004-04-14 11:08:00 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid) DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\system32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: BSToolbar@toolbarnet.com:1.0.0.5 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..keyword.URL: "http://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-06 00:06:07 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2011-03-13 22:22:56 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2011-03-06 21:44:59 | 000,000,000 | ---D | M] [2010-08-08 12:13:03 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Extensions [2011-03-13 18:30:13 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions [2010-08-12 16:01:31 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-08-15 17:07:19 | 000,002,447 | ---- | M] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\searchplugins\bsplayer-search.xml [2011-03-13 18:30:13 | 000,000,000 | ---D | M] (No name found) -- E:\Program Files\Mozilla Firefox\extensions [2010-09-01 21:23:04 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-11-03 21:58:21 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011-02-05 21:47:27 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011-03-13 17:59:01 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2010-11-06 00:06:07 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- E:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT [2010-08-15 17:07:16 | 000,000,000 | ---D | M] (BS.Player ControlBar) -- E:\PROGRAM FILES\BS.PLAYER CONTROLBAR\FIREFOXDTT [2010-09-01 21:22:50 | 000,000,000 | ---D | M] (Java Quick Starter) -- E:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011-02-02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-10-06 22:29:51 | 000,002,767 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-10-06 22:29:51 | 000,001,406 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-10-06 22:29:51 | 000,000,917 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-10-06 22:29:51 | 000,000,858 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-10-06 22:29:51 | 000,001,183 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-10-06 22:29:51 | 000,001,683 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-03-14 01:06:27 | 000,000,742 | ---- | M]) - E:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O3 - HKLM\..\Toolbar: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll () O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll () O4 - HKLM..\Run: [Ai Nap] E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe () O4 - HKLM..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe (COMODO) O4 - HKLM..\Run: [COMODO Internet Security] E:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe (Corel Corporation) O4 - HKLM..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe () O4 - HKLM..\Run: [Cpu Level Up help] E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe () O4 - HKLM..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe (Creative Technology Ltd) O4 - HKLM..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [P17Helper] E:\WINDOWS\System32\P17.dll () O4 - HKLM..\Run: [QFan Help] E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe () O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [TkBellExe] E:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [UpdReg] E:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [WinampAgent] E:\Program Files\Winamp\winampa.exe () O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [ALLUpdate] E:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe (Gainward Co.) O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Sony Ericsson PC Companion] E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [uTorrent] E:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data] O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecycleFiles = 1 O9 - Extra Button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O20 - AppInit_DLLs: (E:\WINDOWS\system32\guard32.dll) - E:\WINDOWS\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 0 O32 - AutoRun File - [2010-08-07 22:52:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell - "" = AutoRun O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell\AutoRun\command - "" = I:\Startme.exe O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell - "" = AutoRun O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\AutoRun\command - "" = nqdymj.exe O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\open\Command - "" = nqdymj.exe O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (lsdelete) - E:\WINDOWS\System32\lsdelete.exe () O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2011-03-14 01:40:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO [2011-03-14 01:36:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens [2011-03-14 01:36:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\SymbolLibrary [2011-03-14 00:21:06 | 000,000,000 | R--D | C] -- E:\32788R22FWJFW [2011-03-14 00:18:08 | 000,000,000 | RH-D | C] -- E:\Documents and Settings\Dominik\Recent [2011-03-14 00:01:54 | 000,000,000 | ---D | C] -- E:\WINDOWS\ERDNT [2011-03-14 00:00:50 | 000,000,000 | ---D | C] -- E:\Qoobox [2011-03-13 21:19:37 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Battlejield 2 Łatki [2011-03-13 20:42:47 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\GameSpy Arcade [2011-03-13 20:42:23 | 000,000,000 | ---D | C] -- E:\Program Files\GameSpy Arcade [2011-03-13 20:42:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Battlefield 2 [2011-03-13 20:37:38 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\EA GAMES [2011-03-13 17:59:16 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Java [2011-03-13 00:16:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\VRX 1 [2011-03-12 22:35:58 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Downloads [2011-03-12 22:17:27 | 000,000,000 | ---D | C] -- E:\Program Files\uTorrent [2011-03-12 22:16:52 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent [2011-03-12 13:06:27 | 000,049,904 | R--- | C] (Avanquest Software) -- E:\WINDOWS\System32\drivers\BVRPMPR5.SYS [2011-03-12 13:05:04 | 000,000,000 | ---D | C] -- E:\Netgear [2011-03-12 13:00:25 | 000,000,000 | -H-D | C] -- E:\VritualRoot [2011-03-12 11:30:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dokumenty\COMODO [2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\COMODO [2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Comodo [2011-03-12 11:27:25 | 000,000,000 | ---D | C] -- E:\Program Files\COMODO [2011-03-09 22:49:48 | 000,032,768 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\WooDial2000.dll [2011-03-09 22:49:06 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\AlertModule [2011-03-09 22:49:05 | 000,040,960 | ---- | C] (France Telecom) -- E:\WINDOWS\System32\FTRTSVC.exe [2011-03-09 22:49:05 | 000,036,864 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\IfHelper.dll [2011-03-09 22:47:16 | 000,000,000 | -HSD | C] -- E:\WINDOWS\ftpcache [2011-03-07 23:54:17 | 000,000,000 | ---D | C] -- E:\Program Files\THQ [2011-03-07 23:53:03 | 000,064,512 | ---- | C] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys [2011-03-07 23:52:54 | 000,098,392 | ---- | C] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys [2011-03-07 23:27:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software [2011-03-07 23:11:38 | 000,000,000 | -H-D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Program Files\Lavasoft [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Lavasoft [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft [2011-03-06 00:00:01 | 000,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- E:\WINDOWS\uninst.exe [2011-03-05 23:59:48 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\WINDOWS [2011-03-05 23:48:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\RealFlight G4 [2011-03-05 23:45:32 | 000,000,000 | ---D | C] -- E:\Program Files\RealFlightG4 [2011-03-05 23:45:30 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\KnifeEdge [2011-03-05 16:12:11 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\AeroFly Professional Deluxe [2011-03-04 22:56:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\Flying Model Simulator [2011-03-04 22:56:17 | 000,000,000 | ---D | C] -- E:\Program Files\FMS [2011-02-27 21:22:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Titan Quest [2011-02-22 22:50:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Codemasters [2011-02-22 22:49:18 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Codemasters [2011-02-22 22:23:18 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Logitech [2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Program Files\Logitech [2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Logitech [2011-02-19 12:58:25 | 022,383,954 | ---- | C] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe [2011-02-07 19:46:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\kuna [2011-02-03 22:45:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Corel User Files [2011-02-03 18:17:24 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\CorelDRAW Graphics Suite 12 [2011-02-03 18:17:17 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Corel [2011-02-03 18:17:15 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Designer [2011-02-03 18:16:41 | 000,000,000 | ---D | C] -- E:\Program Files\Corel [2011-02-03 14:40:00 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Corel [2011-02-03 14:35:12 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2011-02-02 21:37:35 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Solid Edge 2D Drafting ST3 [2011-02-02 21:29:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape [2011-02-02 21:18:25 | 000,000,000 | ---D | C] -- E:\Program Files\Inkscape [2011-02-02 21:16:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions [2011-02-02 21:14:18 | 000,000,000 | R--D | C] -- E:\Documents and Settings\Dominik\Pulpit\CNC [2011-02-02 21:12:19 | 000,389,632 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XXUN.EXE [2011-02-02 21:12:19 | 000,057,344 | ---- | C] (FTDI Ltd) -- E:\WINDOWS\FTD2XX.DLL [2011-02-02 21:12:19 | 000,023,750 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XX.SYS [2011-02-02 21:10:25 | 000,000,000 | ---D | C] -- E:\Program Files\Solid Edge 2D Drafting ST3 [2011-02-02 20:55:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Nowy folder [2011-02-01 21:11:51 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\ATI [2011-02-01 21:09:36 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center [2011-02-01 21:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\ATI [2011-02-01 21:08:18 | 000,000,000 | ---D | C] -- E:\Program Files\ATI Technologies [2011-01-30 23:20:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\1C [2011-01-30 23:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\Adobe [2011-01-25 23:42:37 | 000,000,000 | ---D | C] -- E:\WINDOWS\Cache [2002-04-11 02:41:06 | 000,065,536 | R--- | C] ( ) -- E:\WINDOWS\System32\A3d.dll [9 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ] [6 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2011-03-14 22:08:19 | 001,474,832 | ---- | M] () -- E:\WINDOWS\System32\drivers\sfi.dat [2011-03-14 11:34:22 | 000,000,290 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job [2011-03-14 11:34:22 | 000,000,282 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job [2011-03-14 01:39:41 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011-03-14 01:38:45 | 000,000,294 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-14 01:38:42 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat [2011-03-14 01:06:32 | 000,004,630 | ---- | M] () -- E:\WINDOWS\System32\tmp.reg [2011-03-13 22:36:03 | 000,000,302 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-13 20:47:58 | 000,000,652 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2011-03-13 20:47:58 | 000,000,630 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2011-03-13 20:43:02 | 000,000,707 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk [2011-03-13 19:39:16 | 000,000,499 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk [2011-03-12 23:54:14 | 000,000,529 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk [2011-03-12 22:17:28 | 000,000,636 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-03-12 20:55:14 | 000,000,490 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk [2011-03-12 14:14:55 | 000,006,440 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html [2011-03-12 12:59:54 | 000,000,046 | ---- | M] () -- E:\WINDOWS\adiras.ini [2011-03-12 12:57:27 | 000,000,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk [2011-03-12 11:28:22 | 000,001,653 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk [2011-03-11 12:36:49 | 000,013,646 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl [2011-03-07 23:58:04 | 000,001,787 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk [2011-03-07 23:52:49 | 000,098,392 | ---- | M] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys [2011-03-07 23:52:44 | 000,016,432 | ---- | M] () -- E:\WINDOWS\System32\lsdelete.exe [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys [2011-03-07 23:11:36 | 000,000,873 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk [2011-03-06 00:24:33 | 000,000,141 | ---- | M] () -- E:\WINDOWS\RealFlight.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\PROTOCOL.INI [2011-03-06 00:00:19 | 000,000,000 | ---- | M] () -- E:\WINDOWS\PROTOCOL.INI [2011-03-04 22:56:19 | 000,000,616 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk [2011-02-27 21:25:09 | 000,001,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Sony Ericsson PC Companion 2.0.lnk [2011-02-24 23:20:01 | 000,004,096 | ---- | M] () -- E:\WINDOWS\System32\crash [2011-02-22 23:19:01 | 000,445,016 | ---- | M] (Creative Labs) -- E:\WINDOWS\System32\wrap_oal.dll [2011-02-22 22:49:18 | 000,000,522 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk [2011-02-22 22:42:21 | 000,000,412 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk [2011-02-19 13:00:43 | 000,000,730 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Napi-projekt.lnk [2011-02-19 13:00:42 | 000,000,700 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk [2011-02-19 12:59:37 | 022,383,954 | ---- | M] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe [2011-02-11 22:21:29 | 000,001,735 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2011-02-09 22:58:13 | 000,036,864 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-02-09 22:51:52 | 002,067,174 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp [2011-02-09 22:49:16 | 000,007,279 | ---- | M] () -- E:\Documents and Settings\Dominik\.recently-used.xbel [2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\dllcache\sbe.dll [2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\dllcache\encdec.dll [2011-02-08 22:14:45 | 000,130,888 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT [2011-02-02 22:55:47 | 000,066,077 | ---- | M] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg [2011-01-22 23:17:03 | 000,000,664 | ---- | M] () -- E:\WINDOWS\System32\d3d9caps.dat [2011-01-20 22:10:37 | 000,000,069 | ---- | M] () -- E:\WINDOWS\NeroDigital.ini [9 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ] [6 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-03-14 01:06:32 | 000,004,630 | ---- | C] () -- E:\WINDOWS\System32\tmp.reg [2011-03-13 22:30:21 | 000,016,432 | ---- | C] () -- E:\WINDOWS\System32\lsdelete.exe [2011-03-13 22:23:35 | 000,000,302 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-13 22:23:35 | 000,000,294 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-13 20:47:58 | 000,000,652 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2011-03-13 20:47:58 | 000,000,630 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2011-03-13 20:43:02 | 000,000,707 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk [2011-03-13 19:39:15 | 000,000,499 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk [2011-03-12 22:17:28 | 000,000,636 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-03-12 20:55:14 | 000,000,490 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk [2011-03-12 14:14:55 | 000,006,440 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html [2011-03-12 11:29:54 | 001,474,832 | ---- | C] () -- E:\WINDOWS\System32\drivers\sfi.dat [2011-03-12 11:28:22 | 000,001,653 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk [2011-03-12 11:27:29 | 000,000,913 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk [2011-03-11 12:00:52 | 000,000,046 | ---- | C] () -- E:\WINDOWS\adiras.ini [2011-03-07 23:58:45 | 011,157,504 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Titan_Quest.exe [2011-03-07 23:58:04 | 000,001,787 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk [2011-03-07 23:56:39 | 000,040,960 | R--- | C] () -- E:\WINDOWS\System32\psfind.dll [2011-03-07 23:53:20 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011-03-07 23:11:36 | 000,000,873 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk [2011-03-06 00:17:34 | 000,000,141 | ---- | C] () -- E:\WINDOWS\RealFlight.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\PROTOCOL.INI [2011-03-06 00:00:19 | 000,000,000 | ---- | C] () -- E:\WINDOWS\PROTOCOL.INI [2011-03-04 22:52:54 | 000,000,616 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk [2011-02-22 23:18:31 | 000,000,529 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk [2011-02-22 22:49:18 | 000,000,522 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk [2011-02-22 22:42:21 | 000,000,412 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk [2011-02-19 13:00:42 | 000,000,700 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk [2011-02-09 22:51:52 | 002,067,174 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp [2011-02-09 22:49:16 | 000,007,279 | ---- | C] () -- E:\Documents and Settings\Dominik\.recently-used.xbel [2011-02-09 14:53:59 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\dllcache\sbe.dll [2011-02-09 14:53:59 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\dllcache\encdec.dll [2011-02-02 22:55:47 | 000,066,077 | ---- | C] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg [2011-02-02 21:21:39 | 000,000,726 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Inkscape.lnk [2011-02-02 21:12:19 | 000,014,960 | ---- | C] () -- E:\WINDOWS\FTD2XX.LIB [2011-02-02 21:12:19 | 000,014,042 | ---- | C] () -- E:\WINDOWS\FTD2XX.H [2011-02-02 21:12:19 | 000,002,391 | ---- | C] () -- E:\WINDOWS\FTD2XX.INF [2011-02-01 21:08:55 | 000,887,724 | ---- | C] () -- E:\WINDOWS\System32\ativva6x.dat [2011-02-01 21:08:54 | 000,219,348 | ---- | C] () -- E:\WINDOWS\System32\atiicdxx.dat [2011-02-01 21:08:54 | 000,076,216 | ---- | C] () -- E:\WINDOWS\System32\atiapfxx.blb [2011-02-01 21:08:54 | 000,021,866 | ---- | C] () -- E:\WINDOWS\atiogl.xml [2011-02-01 21:08:54 | 000,000,003 | ---- | C] () -- E:\WINDOWS\System32\ativva5x.dat [2011-01-30 23:08:58 | 000,002,377 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader 9.lnk [2011-01-30 23:08:58 | 000,001,735 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Sys6925.Config Collection.sys [2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\WINDOWS\Sys3390 SettingsCollection.bin [2010-11-18 00:38:54 | 000,423,832 | ---- | C] () -- E:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-11-17 22:06:55 | 000,810,496 | ---- | C] () -- E:\WINDOWS\System32\xvidcore.dll [2010-11-17 22:06:55 | 000,258,048 | ---- | C] () -- E:\WINDOWS\System32\libFLAC.dll [2010-10-23 23:25:12 | 000,000,001 | ---- | C] () -- E:\WINDOWS\System32\SI.bin [2010-10-16 00:30:15 | 000,189,248 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrB.exe [2010-10-16 00:30:14 | 002,601,752 | ---- | C] () -- E:\WINDOWS\System32\pbsvc_moh.exe [2010-10-16 00:30:14 | 000,075,064 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrA.exe [2010-09-14 18:29:08 | 000,000,069 | ---- | C] () -- E:\WINDOWS\NeroDigital.ini [2010-09-05 17:27:59 | 000,000,664 | ---- | C] () -- E:\WINDOWS\System32\d3d9caps.dat [2010-08-13 22:38:12 | 000,053,248 | ---- | C] () -- E:\WINDOWS\System32\CommonDL.dll [2010-08-13 22:38:12 | 000,002,413 | ---- | C] () -- E:\WINDOWS\System32\lgAxconfig.ini [2010-08-08 17:50:15 | 000,032,215 | ---- | C] () -- E:\WINDOWS\Ascd_tmp.ini [2010-08-08 16:02:00 | 000,001,769 | ---- | C] () -- E:\WINDOWS\Language_trs.ini [2010-08-08 14:57:22 | 000,153,583 | ---- | C] () -- E:\WINDOWS\hpoins14.dat [2010-08-08 14:57:22 | 000,002,000 | ---- | C] () -- E:\WINDOWS\hpomdl14.dat [2010-08-08 13:14:52 | 000,036,864 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-08-08 12:39:44 | 000,000,000 | ---- | C] () -- E:\WINDOWS\ativpsrm.bin [2010-08-08 12:39:36 | 000,294,912 | ---- | C] () -- E:\WINDOWS\System32\ATIODE.exe [2010-08-08 12:39:36 | 000,045,056 | ---- | C] () -- E:\WINDOWS\System32\ATIODCLI.exe [2010-08-08 12:21:45 | 000,005,627 | R--- | C] () -- E:\WINDOWS\System32\Ludap17.ini [2010-08-08 12:21:45 | 000,000,039 | R--- | C] () -- E:\WINDOWS\System32\ctzapxx.ini [2010-08-08 12:12:59 | 000,000,000 | ---- | C] () -- E:\WINDOWS\nsreg.dat [2010-08-08 12:00:06 | 000,024,576 | ---- | C] () -- E:\WINDOWS\System32\AsIO.dll [2010-08-08 12:00:06 | 000,012,400 | ---- | C] () -- E:\WINDOWS\System32\drivers\AsIO.sys [2010-08-08 11:55:37 | 000,005,810 | R--- | C] () -- E:\WINDOWS\System32\drivers\ASACPI.sys [2010-08-08 11:55:22 | 000,010,288 | ---- | C] () -- E:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2010-08-08 11:45:34 | 000,002,048 | --S- | C] () -- E:\WINDOWS\bootstat.dat [2010-08-08 11:41:22 | 000,021,856 | ---- | C] () -- E:\WINDOWS\System32\emptyregdb.dat [2010-08-08 02:51:26 | 000,004,293 | ---- | C] () -- E:\WINDOWS\ODBCINST.INI [2010-08-08 02:48:36 | 000,130,888 | ---- | C] () -- E:\WINDOWS\System32\FNTCACHE.DAT [2010-01-11 08:24:40 | 000,001,683 | ---- | C] () -- E:\WINDOWS\System32\oeminfo.ini [2009-11-06 09:58:04 | 000,178,975 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat [2005-05-25 21:06:26 | 000,119,296 | ---- | C] () -- E:\WINDOWS\System32\WnASPI32.dll [2005-05-03 12:38:42 | 000,064,512 | R--- | C] () -- E:\WINDOWS\System32\P17.dll [2004-10-03 19:28:58 | 000,032,768 | ---- | C] () -- E:\WINDOWS\System32\chckshll.dll [2004-08-04 13:00:00 | 000,673,088 | ---- | C] () -- E:\WINDOWS\System32\mlang.dat [2004-08-04 13:00:00 | 000,490,628 | ---- | C] () -- E:\WINDOWS\System32\perfh015.dat [2004-08-04 13:00:00 | 000,432,492 | ---- | C] () -- E:\WINDOWS\System32\perfh009.dat [2004-08-04 13:00:00 | 000,313,828 | ---- | C] () -- E:\WINDOWS\System32\perfi015.dat [2004-08-04 13:00:00 | 000,272,128 | ---- | C] () -- E:\WINDOWS\System32\perfi009.dat [2004-08-04 13:00:00 | 000,218,003 | ---- | C] () -- E:\WINDOWS\System32\dssec.dat [2004-08-04 13:00:00 | 000,083,880 | ---- | C] () -- E:\WINDOWS\System32\perfc015.dat [2004-08-04 13:00:00 | 000,067,448 | ---- | C] () -- E:\WINDOWS\System32\perfc009.dat [2004-08-04 13:00:00 | 000,046,258 | ---- | C] () -- E:\WINDOWS\System32\mib.bin [2004-08-04 13:00:00 | 000,034,990 | ---- | C] () -- E:\WINDOWS\System32\perfd015.dat [2004-08-04 13:00:00 | 000,028,626 | ---- | C] () -- E:\WINDOWS\System32\perfd009.dat [2004-08-04 13:00:00 | 000,004,569 | ---- | C] () -- E:\WINDOWS\System32\secupd.dat [2004-08-04 13:00:00 | 000,001,804 | ---- | C] () -- E:\WINDOWS\System32\dcache.bin [2004-08-04 13:00:00 | 000,000,741 | ---- | C] () -- E:\WINDOWS\System32\noise.dat [2003-10-02 11:48:18 | 000,053,248 | R--- | C] () -- E:\WINDOWS\System32\P17CPI.dll [2002-01-04 10:58:52 | 013,107,200 | ---- | C] () -- E:\WINDOWS\System32\oembios.bin [2002-01-04 10:57:56 | 000,004,514 | ---- | C] () -- E:\WINDOWS\System32\oembios.dat [1996-04-03 20:33:26 | 000,005,248 | ---- | C] () -- E:\WINDOWS\System32\giveio.sys [color=#E56717]========== LOP Check ==========[/color] [2010-09-16 20:21:48 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Administrator\Dane aplikacji\Simply Super Software [2011-03-12 11:16:59 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2010-08-25 10:01:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\BearShare [2011-02-22 22:50:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters [2010-12-08 16:14:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Common Files [2010-10-16 00:31:30 | 000,000,000 | -HSD | M] -- E:\Documents and Settings\All Users\Dane aplikacji\DSS [2010-08-15 11:46:29 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-09-15 20:51:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Grisoft [2010-12-05 00:37:25 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-08-15 12:04:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-08-13 22:38:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\LGMOBILEAX [2010-12-08 16:12:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\MFAData [2010-09-29 08:52:52 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-12-05 00:40:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-11-10 22:22:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-08-08 18:01:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2011-03-07 23:11:39 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} [2010-08-25 10:57:08 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24} [2010-09-07 23:54:38 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Auslogics [2010-12-08 16:15:13 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\AVG10 [2010-10-09 08:26:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer [2010-08-15 17:07:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer Pro [2010-08-08 16:28:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\DAEMON Tools [2010-08-15 12:08:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Gadu-Gadu 10 [2011-02-02 21:29:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape [2010-08-15 12:04:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\ipla [2010-08-13 22:32:26 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\LG Electronics [2010-11-17 22:07:08 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenCandy [2010-09-29 08:52:50 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenFM [2010-12-05 00:40:24 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\PC Suite [2010-12-05 00:39:03 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Samsung [2010-12-08 19:02:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Smart Recorder [2010-10-31 18:36:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Sony [2010-08-08 18:01:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Ubisoft [2011-02-02 21:16:19 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions [2011-03-14 22:12:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent [2010-08-13 22:32:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\{D94BA408-F110-488B-A65E-3AE7945F79E6} [2011-03-14 01:39:41 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 136 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:B755D674 @Alternate Data Stream - 116 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9 < End of report >[/log] [log]OTL Extras logfile created on: 2011-03-14 22:37:52 - Run 3 OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 72,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 81,00% Paging File free Paging file location(s): E:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files Drive C: | 645,21 Gb Total Space | 246,72 Gb Free Space | 38,24% Space Free | Partition Type: NTFS Drive D: | 232,88 Gb Total Space | 208,76 Gb Free Space | 89,64% Space Free | Partition Type: NTFS Drive E: | 100,00 Gb Total Space | 51,37 Gb Free Space | 51,37% Space Free | Partition Type: NTFS Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hta [@ = htafile] -- Reg Error: Key error. File not found .url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l [HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* htafile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "E:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "E:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "E:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 1 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft) "C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- () "C:\Gry\Assasin Creed 2\AssassinsCreedII.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft) "C:\Gry\Assasin Creed 2\UPlayBrowser.exe" = C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment) "C:\Gry\StarCraft II\StarCraft II.exe" = C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment) "E:\Program Files\Gadu-Gadu\gg.exe" = E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny "E:\Program Files\Gadu-Gadu 10\gg.exe" = E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.) "C:\Gry\StarCraft II\Versions\Base15405\SC2.exe" = C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.) "E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC) "C:\Gry\Medal of Honor\Binaries\moh.exe" = C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer) -- (Electronic Arts Inc.) "C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe" = C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater) -- (EA Digital Illusions CE AB) "C:\Gry\Medal of Honor\MP\mohmpgame.exe" = C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer) -- (EA Digital Illusions CE AB) "C:\Gry\Medal of Honor\MP\mohmpupdater.exe" = C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater) -- (EA Digital Illusions CE AB) "E:\Program Files\Sony Ericsson\Update Service\Update Service.exe" = E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- () "C:\Gry\Call of Duty - Black Ops\BlackOps.exe" = C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps "E:\Program Files\AVG\AVG10\avgmfapx.exe" = E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG "C:\Gry\Grid\GRID.exe" = C:\Gry\Grid\GRID.exe:*:Enabled:GRID -- (Codemasters) "C:\Gry\F1 2010\f1_2010.exe" = C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010 "C:\Gry\F1 2010\F1_2010_game.exe" = C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable -- (Codemasters) "E:\Program Files\uTorrent\uTorrent.exe" = E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Gry\Battelfield 2\BF2.exe" = C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2 -- () "E:\Program Files\GameSpy Arcade\Aphex.exe" = E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (GameSpy Industries, Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK "{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM) "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store "{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp "{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch "{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy "{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{22A647A1-E442-7302-3905-DA8C5FDFCAFB}" = Catalyst Control Center Graphics Previews Common "{23768150-5EFE-14A4-CECE-914D03FF18B4}" = CCC Help English "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 24 "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{292899E7-6B8F-8099-0ACD-71D5F448106D}" = ccc-utility "{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan "{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{415CDA53-9100-476F-A7B2-476691E117C7}" = HP Smart Web Printing "{41B8A39C-E97D-FDE5-3A4A-8E6FA961E94E}" = ccc-core-static "{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{505AFDC0-5E72-4928-8368-5DEA385E3647}" = CorelDRAW Graphics Suite 12 "{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport "{5A0B7BA5-4682-4273-81C2-69B17E649103}" = GRID "{5A274D69-F9BB-4AA9-85C9-440FA947DF04}_is1" = Medal of Honor "{5C318BD3-BA72-43E4-9D16-A18210B4A5A5}" = Media Go "{5CA1C102-CFB3-9C8E-2DEF-E98A4B57C8CF}" = Catalyst Control Center InstallProxy "{5F624839-947D-46EA-BD63-FD847C1AC6F1}" = BearShare "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder "{706BB40A-4102-4c89-8107-DC68C4EBD19B}" = HP Deskjet All-In-One Software 9.0 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{78B771A0-6883-44FB-A830-B138EA89278E}" = Solid Edge 2D Drafting ST3 "{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK "{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01 "{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}" = AeroFly Professional Deluxe "{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update "{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime "{93F54611-2701-454e-94AB-623F458D9E6B}" = DeviceDiscovery "{97A39919-9FEA-48B7-AB2B-4F99212D1E98}" = HDD Regenerator "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A9C365A3-06C0-43b4-A2DB-EDF0A6079AA9}" = DJ_AIO_Software "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish "{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant "{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan "{B4B1F18B-5CED-4f8f-8A8F-1BD0503C222E}" = DJ_AIO_ProductContext "{B5924CA6-24A7-48F5-BC9C-8BFA94ED4564}" = LightScribe 1.4.67.1 "{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}" = Titan Quest Immortal Throne "{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader "{B9242864-2841-4ADE-86E0-8F90F91B04DD}" = Logitech Gaming Software "{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter "{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component "{D94BA408-F110-488B-A65E-3AE7945F79E6}_is1" = Odinstalowuj LG PC Suite III "{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag "{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm "{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.123 "{F0C5CF53-FE88-B20E-CE8C-2B5CAA3ECFD0}" = ATI Catalyst Install Manager "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F56D6F46-1D62-4734-BF12-6457A1ED17BD}" = DJ_AIO_Software_min "{F68563C0-2CCD-4799-A014-017A370D627B}" = Edycja kolekcjonerska Heroes of Might and Magic V "{F72E2DDC-3DB8-4190-A21D-63883D955FE7}" = PSSWCORE "{F7338FA3-DAB5-49B2-900D-0AFB5760C166}" = PC Probe II "{FD8D8B04-BEAD-4A55-AA1D-62D2373E7DEA}" = Status "{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security "Ad-Aware" = Ad-Aware "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "ALLPlayer_is1" = ALLPlayer V4.X "BearShare" = BearShare "BS.Player ControlBar" = BS.Player ControlBar "BSPlayerf" = BS.Player FREE "CCleaner" = CCleaner "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2007-07-22 "COMODO GeekBuddy" = COMODO GeekBuddy "CPUID CPU-Z_is1" = CPUID CPU-Z 1.54 "Creative Software AutoUpdate" = Creative Software AutoUpdate "Disk Checker" = Disk Checker "EXPERTool ATI_is1" = EXPERTool ATI 4.2 "F1 2010_is1" = F1 2010 "FMS" = FMS "Fraps" = Fraps "Gadu-Gadu 10" = Gadu-Gadu 10 "GameSpy Arcade" = GameSpy Arcade "HP Imaging Device Functions" = HP Imaging Device Functions 9.0 "HP Photosmart Essential" = HP Photosmart Essential 2.01 "HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0 "HPExtendedCapabilities" = HP Customer Participation Program 9.0 "Inkscape" = Inkscape 0.48.0 "Mafia II_is1" = Mafia II "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15) "NeroMultiInstaller!UninstallKey" = Nero Suite "NetMeter_is1" = NetMeter 0.9.9.9 (beta 2) "OpenAL" = OpenAL "PunkBusterSvc" = PunkBuster Services "RealAlt_is1" = Real Alternative 1.60 "RealPlayer 12.0" = RealPlayer "Seven Remix XP" = Seven Remix XP 2.4 "SpeedFan" = SpeedFan (remove only) "StarCraft II" = StarCraft II "Unlocker" = Unlocker 1.8.5 "Update Service" = Sony Ericsson Update Service "uTorrent" = µTorrent "Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinRAR archiver" = Archiwizator WinRAR "winusb0100" = Microsoft WinUsb 1.0 "WMFDist11" = Windows Media Format 11 runtime "Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5 "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "I-Doser v4" = I-Doser v4 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-02-22 18:40:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca F1_2010_game.exe, wersja 1.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:37:22 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:38:10 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:38:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1001 Description = Pakiet błędów 288306601. Error - 2011-03-05 18:52:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca setup2.exe, wersja 1.0.0.177, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-07 18:26:53 | Computer Name = DOMINIK-BFC9604 | Source = Lavasoft Ad-Aware Service | ID = 0 Description = Error - 2011-03-12 19:22:52 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:53 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:55 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. [ System Events ] Error - 2011-03-13 20:04:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7026 Description = Nie można załadować następujących sterowników startu rozruchowego lub systemowego: AFD AsIO cmdGuard Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip Error - 2011-03-13 20:04:59 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error - 2011-03-13 20:05:03 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E} Error - 2011-03-13 20:05:39 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi StiSvc z argumentami „” w celu uruchomienia serwera: {A1F4E726-8CF1-11D1-BF92-0060081ED811} Error - 2011-03-13 20:10:44 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E} Error - 2011-03-13 20:11:50 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E} Error - 2011-03-13 20:11:54 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005 Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF} Error - 2011-03-13 20:13:11 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 Error - 2011-03-13 20:34:42 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 Error - 2011-03-13 20:39:01 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 < End of report >[/log] [log]Logfile of random's system information tool 1.08 (written by random/random) Run by Dominik at 2011-03-14 22:33:26 Microsoft Windows XP Home Edition Dodatek Service Pack 3 System drive E: has 53 GB (51%) free of 102 GB Total RAM: 3071 MB (71% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:33:34, on 2011-03-14 Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: E:\WINDOWS\System32\smss.exe E:\WINDOWS\system32\winlogon.exe E:\WINDOWS\system32\services.exe E:\WINDOWS\system32\lsass.exe E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe E:\WINDOWS\system32\Ati2evxx.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe E:\WINDOWS\system32\svchost.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe E:\WINDOWS\system32\Ati2evxx.exe E:\WINDOWS\system32\spoolsv.exe E:\WINDOWS\Explorer.EXE E:\WINDOWS\system32\CTsvcCDA.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\Java\jre6\bin\jqs.exe E:\Program Files\Common Files\LightScribe\LSSrvc.exe E:\WINDOWS\System32\svchost.exe E:\WINDOWS\System32\svchost.exe E:\WINDOWS\system32\PnkBstrA.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe E:\WINDOWS\system32\Rundll32.exe E:\Program Files\Winamp\winampa.exe E:\Program Files\HP\HP Software Update\HPWuSchd2.exe E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe E:\Program Files\Real\RealPlayer\update\realsched.exe E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe E:\Program Files\COMODO\COMODO Internet Security\cfp.exe E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe E:\Program Files\Common Files\Java\Java Update\jusched.exe E:\WINDOWS\system32\ctfmon.exe E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe E:\Program Files\EXPERTool ATI\TBPanel.exe E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe E:\WINDOWS\System32\svchost.exe E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe E:\Program Files\uTorrent\uTorrent.exe E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe E:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe E:\Program Files\NetMeter\NetMeter.exe E:\Program Files\Mozilla Firefox\firefox.exe E:\Program Files\Mozilla Firefox\plugin-container.exe E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe E:\WINDOWS\notepad.exe E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\RSIT.exe E:\Program Files\trend micro\Dominik.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) O3 - Toolbar: BS.Player ControlBar - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll O4 - HKLM\..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper O4 - HKLM\..\Run: [UpdReg] E:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [WinampAgent] "E:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [HP Software Update] E:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [Ai Nap] "E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe" O4 - HKLM\..\Run: [QFan Help] "E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe" O4 - HKLM\..\Run: [Cpu Level Up help] "E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe" O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [ISUSPM Startup] E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=032011 serial=DR12WNB-6417934-NRC lang=PL O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h O4 - HKLM\..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe O4 - HKLM\..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe /A O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background O4 - HKCU\..\Run: [ALLUpdate] "E:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep" O4 - HKCU\..\Run: [uTorrent] "E:\Program Files\uTorrent\uTorrent.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: HP Digital Imaging Monitor.lnk = E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O9 - Extra button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.optimus.pl O20 - AppInit_DLLs: E:\WINDOWS\system32\guard32.dll O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - E:\WINDOWS\system32\CTsvcCDA.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - E:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- End of file - 9071 bytes ======Scheduled tasks folder====== E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}] HP Print Enhancer - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}] HP Print Clips - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] RealPlayer Download and Record Plugin for Internet Explorer - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-11-06 382720] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}] IplexToALLPlayer - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll [2011-02-09 400384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {CCC7A320-B3CA-4199-B1A6-9F516DD69829} {2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - E:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-10-08 859592] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CTSysVol"=E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe [2005-10-31 57344] "P17Helper"=Rundll32 P17.dll,P17Helper [] "UpdReg"=E:\WINDOWS\UpdReg.EXE [2000-05-11 90112] "WinampAgent"=E:\Program Files\Winamp\winampa.exe [2008-01-15 37376] "HP Software Update"=E:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152] "Ai Nap"=E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe [2009-07-01 1435136] "QFan Help"=E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088] "Cpu Level Up help"=E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152] "NeroFilterCheck"=E:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648] "QuickTime Task"=E:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696] "TkBellExe"=E:\Program Files\Real\RealPlayer\update\realsched.exe [2010-11-06 274608] "Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760] "Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288] "StartCCC"=E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-25 98304] "ISUSPM Startup"=E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe [2004-06-16 221184] "ISUSScheduler"=E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920] "CorelDRAW Graphics Suite 11b"=E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe [2004-06-23 733184] "COMODO Internet Security"=E:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-17 2548552] "COMODO"=E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [2011-03-02 210648] "CPA"=E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [2011-03-02 184344] "SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 40448] "Gainward"=E:\Program Files\EXPERTool ATI\TBPanel.exe [2009-04-09 2304552] "Sony Ericsson PC Companion"=E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-24 427008] "ALLUpdate"=E:\Program Files\ALLPlayer\ALLUpdate.exe [2011-02-08 1362944] "uTorrent"=E:\Program Files\uTorrent\uTorrent.exe [2011-03-12 399224] E:\Documents and Settings\All Users\Menu Start\Programy\Autostart HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=" E:\WINDOWS\system32\guard32.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] E:\WINDOWS\system32\Ati2evxx.dll [2010-08-26 159744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=0x95000000 "NoFavoritesMenu"=1 "NoRecycleFiles"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher" "C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II" "C:\Gry\Assasin Creed 2\AssassinsCreedII.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update" "C:\Gry\Assasin Creed 2\UPlayBrowser.exe"="C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay" "C:\Gry\StarCraft II\StarCraft II.exe"="C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher" "E:\Program Files\Gadu-Gadu\gg.exe"="E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny" "E:\Program Files\Gadu-Gadu 10\gg.exe"="E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10" "C:\Gry\StarCraft II\Versions\Base15405\SC2.exe"="C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II" "E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare" "E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA" "E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB.exe" "C:\Gry\Medal of Honor\Binaries\moh.exe"="C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer)" "C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe"="C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater)" "C:\Gry\Medal of Honor\MP\mohmpgame.exe"="C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer)" "C:\Gry\Medal of Honor\MP\mohmpupdater.exe"="C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater)" "E:\Program Files\Sony Ericsson\Update Service\Update Service.exe"="E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service" "C:\Gry\Call of Duty - Black Ops\BlackOps.exe"="C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps" "E:\Program Files\AVG\AVG10\avgmfapx.exe"="E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG" "C:\Gry\Grid\GRID.exe"="C:\Gry\Grid\GRID.exe:*:Enabled:GRID" "C:\Gry\F1 2010\f1_2010.exe"="C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010" "C:\Gry\F1 2010\F1_2010_game.exe"="C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable" "E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent" "C:\Gry\Battelfield 2\BF2.exe"="C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2" "E:\Program Files\GameSpy Arcade\Aphex.exe"="E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare" ======List of files/folders created in the last 1 months====== 2011-03-14 22:33:27 ----D---- E:\Program Files\trend micro 2011-03-14 22:33:26 ----D---- E:\rsit 2011-03-14 01:06:32 ----A---- E:\WINDOWS\system32\tmp.txt 2011-03-14 01:04:17 ----A---- E:\WINDOWS\ntbtlog.txt 2011-03-14 00:58:55 ----A---- E:\rapport.txt 2011-03-14 00:21:06 ----RD---- E:\32788R22FWJFW 2011-03-14 00:01:54 ----D---- E:\WINDOWS\ERDNT 2011-03-14 00:00:50 ----D---- E:\Qoobox 2011-03-13 22:30:21 ----A---- E:\WINDOWS\system32\lsdelete.exe 2011-03-13 20:42:23 ----D---- E:\Program Files\GameSpy Arcade 2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files\Java 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaws.exe 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaw.exe 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\java.exe 2011-03-12 22:17:27 ----D---- E:\Program Files\uTorrent 2011-03-12 22:16:52 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent 2011-03-12 13:06:27 ----RA---- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS 2011-03-12 13:05:04 ----D---- E:\Netgear 2011-03-12 13:00:25 ----HD---- E:\VritualRoot 2011-03-12 11:27:29 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Comodo 2011-03-12 11:27:25 ----D---- E:\Program Files\COMODO 2011-03-11 12:00:52 ----A---- E:\WINDOWS\adiras.ini 2011-03-11 00:00:24 ----HDC---- E:\WINDOWS\$NtUninstallKB2479943$ 2011-03-10 23:58:50 ----HDC---- E:\WINDOWS\$NtUninstallKB2481109$ 2011-03-09 22:49:48 ----A---- E:\WINDOWS\system32\WooDial2000.dll 2011-03-09 22:49:06 ----D---- E:\WINDOWS\system32\AlertModule 2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\IfHelper.dll 2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\FTRTSVC.exe 2011-03-09 22:47:16 ----SHD---- E:\WINDOWS\ftpcache 2011-03-07 23:56:39 ----RA---- E:\WINDOWS\system32\psfind.dll 2011-03-07 23:54:17 ----D---- E:\Program Files\THQ 2011-03-07 23:53:03 ----A---- E:\WINDOWS\system32\drivers\Lbd.sys 2011-03-07 23:52:54 ----A---- E:\WINDOWS\system32\drivers\SBREDrv.sys 2011-03-07 23:11:38 ----HDC---- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} 2011-03-07 23:11:22 ----D---- E:\Program Files\Lavasoft 2011-03-07 23:11:22 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2011-03-06 23:32:26 ----HDC---- E:\WINDOWS\$NtUninstallKB971029$ 2011-03-06 00:17:34 ----A---- E:\WINDOWS\RealFlight.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\WIN.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\SYSTEM.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\PROTOCOL.INI 2011-03-06 00:00:19 ----A---- E:\WINDOWS\PROTOCOL.INI 2011-03-06 00:00:01 ----A---- E:\WINDOWS\uninst.exe 2011-03-05 23:45:32 ----D---- E:\Program Files\RealFlightG4 2011-03-05 23:45:30 ----D---- E:\Program Files\Common Files\KnifeEdge 2011-03-04 22:56:17 ----D---- E:\Program Files\FMS 2011-02-22 23:19:01 ----RA---- E:\WINDOWS\system32\tmp121.tmp 2011-02-22 23:19:01 ----RA---- E:\WINDOWS\system32\tmp120.tmp 2011-02-22 22:49:12 ----RA---- E:\WINDOWS\system32\tmp113.tmp 2011-02-22 22:49:12 ----RA---- E:\WINDOWS\system32\tmp112.tmp 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmVirHid.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmHidLo.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmFilter.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmBEnum.sys 2011-02-22 22:23:19 ----A---- E:\WINDOWS\system32\drivers\WmXlCore.sys 2011-02-22 22:23:18 ----D---- E:\Program Files\Common Files\Logitech 2011-02-22 22:23:18 ----A---- E:\WINDOWS\system32\WmJoyFrc.dll 2011-02-22 22:23:08 ----D---- E:\Program Files\Logitech ======List of files/folders modified in the last 1 months====== 2011-03-14 22:33:28 ----D---- E:\WINDOWS\Prefetch 2011-03-14 22:33:27 ----D---- E:\Program Files 2011-03-14 17:22:12 ----D---- E:\WINDOWS\system32\CatRoot2 2011-03-14 11:34:22 ----SD---- E:\WINDOWS\Tasks 2011-03-14 01:39:40 ----D---- E:\WINDOWS\Temp 2011-03-14 01:37:01 ----A---- E:\WINDOWS\SchedLgU.Txt 2011-03-14 01:34:28 ----D---- E:\WINDOWS\system32 2011-03-14 01:13:11 ----D---- E:\WINDOWS 2011-03-14 01:09:46 ----SHD---- E:\RECYCLER 2011-03-14 00:57:05 ----D---- E:\Program Files\Mozilla Firefox 2011-03-14 00:18:12 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\Winamp 2011-03-14 00:01:13 ----D---- E:\WINDOWS\system32\drivers 2011-03-13 20:55:03 ----D---- E:\WINDOWS\system32\config 2011-03-13 20:47:50 ----D---- E:\WINDOWS\system32\DirectX 2011-03-13 20:47:49 ----RSD---- E:\WINDOWS\assembly 2011-03-13 20:37:32 ----HD---- E:\Program Files\InstallShield Installation Information 2011-03-13 17:59:16 ----SHD---- E:\WINDOWS\Installer 2011-03-13 17:59:16 ----HD---- E:\Config.Msi 2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files 2011-03-13 17:58:56 ----D---- E:\Program Files\Java 2011-03-12 23:38:51 ----HD---- E:\WINDOWS\inf 2011-03-12 23:38:51 ----DC---- E:\WINDOWS\system32\DRVSTORE 2011-03-12 13:51:56 ----D---- E:\WINDOWS\system32\LogFiles 2011-03-12 11:26:38 ----D---- E:\WINDOWS\Minidump 2011-03-12 11:26:38 ----D---- E:\WINDOWS\Debug 2011-03-12 11:16:59 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\AVG10 2011-03-12 11:16:18 ----RSHDC---- E:\WINDOWS\system32\dllcache 2011-03-11 21:35:05 ----D---- E:\WINDOWS\system32\CatRoot 2011-03-10 23:58:57 ----A---- E:\WINDOWS\system32\MRT.exe 2011-03-10 21:40:59 ----HD---- E:\WINDOWS\$hf_mig$ 2011-03-07 23:11:18 ----D---- E:\WINDOWS\WinSxS 2011-02-26 16:48:27 ----D---- E:\Program Files\Sony Ericsson 2011-02-25 22:00:23 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson 2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\wrap_oal.dll 2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\OpenAL32.dll 2011-02-22 22:50:40 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters 2011-02-22 22:49:12 ----D---- E:\Program Files\OpenAL 2011-02-22 22:23:54 ----D---- E:\WINDOWS\system32\ReinstallBackups 2011-02-19 13:00:42 ----D---- E:\Program Files\ALLPlayer 2011-02-19 13:00:39 ----D---- E:\Program Files\NAPI-PROJEKT ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 giveio;giveio; E:\WINDOWS\system32\giveio.sys [1996-04-03 5248] R0 Lbd;Lbd; E:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-03-07 64512] R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696] R0 PxHelp20;PxHelp20; E:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528] R0 speedfan;speedfan; E:\WINDOWS\system32\speedfan.sys [2006-09-24 5248] R0 sptd;sptd; E:\WINDOWS\System32\Drivers\sptd.sys [2010-08-08 717296] R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-15 76544] R1 AsIO;AsIO; E:\WINDOWS\system32\drivers\AsIO.sys [2009-12-06 12400] R1 cmderd;COMODO Internet Security Eradication Driver; E:\WINDOWS\System32\DRIVERS\cmderd.sys [2011-01-06 15592] R1 cmdGuard;COMODO Internet Security Sandbox Driver; E:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-01-06 239368] R1 intelppm;Sterownik procesora Intel; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448] R1 kbdhid;Sterownik klawiatury HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] R2 cpuz133;cpuz133; \??\E:\WINDOWS\system32\drivers\cpuz133_x32.sys [] R3 Arp1394;Protokół klienta 1394 ARP; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-08-26 5386752] R3 AtiHdmiService;ATI Function Driver for HDMI Service; E:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-10-21 89600] R3 ctsfm2k;Creative SoundFont Management Device Driver; E:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752] R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 hidusb;Sterownik Microsoft klasy HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 mouhid;Sterownik myszy HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12160] R3 MTsensor;ATK0110 ACPI UTILITY; E:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810] R3 NIC1394;Sterownik sieci 1394; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 ossrv;Creative OS Services Driver; E:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496] R3 P17;Sound Blaster Audigy; E:\WINDOWS\system32\drivers\P17.sys [2005-07-07 1389056] R3 seehcri;Sony Ericsson seehcri Device Driver; E:\WINDOWS\system32\DRIVERS\seehcri.sys [2010-11-05 27632] R3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; E:\WINDOWS\system32\drivers\WmBEnum.sys [2004-04-14 10144] R3 WmXlCore;Logitech WingMan Translation Layer Driver; E:\WINDOWS\system32\drivers\WmXlCore.sys [2004-04-14 44064] R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; E:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-07-26 248832] S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); E:\WINDOWS\System32\Drivers\e4ldr.sys [] S3 a8rsxzwr;a8rsxzwr; E:\WINDOWS\system32\drivers\a8rsxzwr.sys [] S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys [] S3 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\E:\WINDOWS\system32\drivers\BVRPMPR5.SYS [] S3 e4usbaw;USB ADSL2 WAN Adapter; E:\WINDOWS\system32\DRIVERS\e4usbaw.sys [] S3 ggflt;SEMC USB Flash Driver Filter; E:\WINDOWS\system32\DRIVERS\ggflt.sys [2010-10-10 13224] S3 ggsemc;SEMC USB Flash Driver; E:\WINDOWS\system32\DRIVERS\ggsemc.sys [2010-10-10 25512] S3 HPZid412;IEEE-1284.4 Driver HPZid412; E:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920] S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; E:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496] S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; E:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568] S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\E:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [] S3 LgBttPort;LGE Bluetooth TransPort; E:\WINDOWS\system32\DRIVERS\lgbtport.sys [] S3 lgbusenum;LG Bluetooth Bus Enumerator; E:\WINDOWS\system32\DRIVERS\lgbtbus.sys [] S3 lgmdbus;LG Mobile driver (WDM); E:\WINDOWS\system32\DRIVERS\lgmdbus.sys [] S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys [] S3 lgmdmdm;LG Mobile USB WMC Modem Driver; E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys [] S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys [] S3 lgmdobex;LG Mobile USB WMC OBEX Interface; E:\WINDOWS\system32\DRIVERS\lgmdobex.sys [] S3 LGVMODEM;LGE Virtual Modem; E:\WINDOWS\system32\DRIVERS\lgvmodem.sys [] S3 usbprint;Klasa PRINTER USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;Sterownik skanera USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 USBSTOR;Sterownik magazynu masowego USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008] S3 WinUSB;Sony Ericsson USB Device sa0101 Driver; E:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368] S3 WmFilter;Logitech WingMan HID Filter Driver; E:\WINDOWS\system32\drivers\WmFilter.sys [2004-04-14 21280] S3 WmHidLo;Logitech WingMan USB Filter Driver; E:\WINDOWS\system32\drivers\WmHidLo.sys [2004-04-14 14432] S3 WmVirHid;Logitech Virtual Hid Device Driver; E:\WINDOWS\system32\drivers\WmVirHid.sys [2004-04-14 5600] S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2010-08-26 606208] R2 CLPSLS;COMODO livePCsupport Service; E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 156576] R2 cmdAgent;COMODO Internet Security Helper Service; E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-17 1803224] R2 Creative Service for CDROM Access;Creative Service for CDROM Access; E:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032] R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2011-03-08 1405384] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; E:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-01-20 73728] R2 Net Driver HPZ12;Net Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 Pml Driver HPZ12;Pml Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2010-10-16 75064] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R3 hpqcxs08;hpqcxs08; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 aspnet_state;Usuga stanu ASP.NET; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344] S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF-----------------[/log] [log]info.txt logfile of random's system information tool 1.08 2011-03-14 22:33:36 ======Uninstall list====== -->"E:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x0009 -->"E:\Program Files\Creative\SBAudigy\Program\Setup.exe" /S /U /W -->E:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL -->E:\Program Files\InstallShield Installation Information\{1ECB9828-38A7-424F-9280-730F11EBBB96}\setup.exe -->MsiExec /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{32B4B536-4443-42F0-9676-98373BE9114F}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{32B4B536-4443-42F0-9676-98373BE9114F}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{34EBD418-B8E6-4E86-89C4-33B72CF5663F}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{34EBD418-B8E6-4E86-89C4-33B72CF5663F}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{52338F65-A1C3-4CDC-B733-50051682B297}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{52338F65-A1C3-4CDC-B733-50051682B297}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{9194237B-7B58-40B4-A739-184AD59531A2}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{9194237B-7B58-40B4-A739-184AD59531A2}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{C64409FA-42A7-49C6-837A-D2E5D813BD57}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{C64409FA-42A7-49C6-837A-D2E5D813BD57}\setup.exe" -l0x9 /remove -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{DE4A4C48-2232-4CCB-AD61-490ACD29BA85}\setup.exe" -l0x9 -->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{DE4A4C48-2232-4CCB-AD61-490ACD29BA85}\setup.exe" -l0x9 /remove -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 E:\WINDOWS\INF\PCHealth.inf µTorrent-->"E:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL 32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7} Ad-Aware-->"E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}\Ad-Aware90Install.exe" REMOVE=TRUE MODIFY=FALSE Ad-Aware-->E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}\Ad-Aware90Install.exe Adobe Flash Player 10 ActiveX-->E:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe Adobe Flash Player 10 Plugin-->E:\WINDOWS\system32\Macromed\Flash\FlashUtil10n_Plugin.exe -maintain plugin Adobe Reader 9.4.2 - Polish-->MsiExec.exe /I{AC76BA86-7AD7-1045-7B44-A94000000001} AeroFly Professional Deluxe-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}\setup.exe" -l0x9 AI Suite-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\Setup.exe" -l0x9 Aktualizacja dla systemu Windows XP (KB2141007)-->"E:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB2345886)-->"E:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB2467659)-->"E:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB951978)-->"E:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB955759)-->"E:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB967715)-->"E:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB968389)-->"E:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB971029)-->"E:\WINDOWS\$NtUninstallKB971029$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB971737)-->"E:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB973687)-->"E:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe" Aktualizacja dla systemu Windows XP (KB973815)-->"E:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB2378111)-->"E:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB952069)-->"E:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB954155)-->"E:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"E:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"E:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB975558)-->"E:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB978695)-->"E:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"E:\WINDOWS\$NtUninstallKB979402_WM9$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"E:\WINDOWS\$NtUninstallKB979402_WM9L$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2079403)-->"E:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2115168)-->"E:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2121546)-->"E:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2160329)-->"E:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2183461)-->"E:\WINDOWS\$NtUninstallKB2183461$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2229593)-->"E:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2259922)-->"E:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2279986)-->"E:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2286198)-->"E:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2296011)-->"E:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2296199)-->"E:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2347290)-->"E:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2360131)-->"E:\WINDOWS\$NtUninstallKB2360131$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2360937)-->"E:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2387149)-->"E:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2393802)-->"E:\WINDOWS\$NtUninstallKB2393802$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2416400)-->"E:\WINDOWS\$NtUninstallKB2416400$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2419632)-->"E:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2423089)-->"E:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2436673)-->"E:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2440591)-->"E:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2443105)-->"E:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2476687)-->"E:\WINDOWS\$NtUninstallKB2476687$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2478960)-->"E:\WINDOWS\$NtUninstallKB2478960$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2478971)-->"E:\WINDOWS\$NtUninstallKB2478971$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2479628)-->"E:\WINDOWS\$NtUninstallKB2479628$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2479943)-->"E:\WINDOWS\$NtUninstallKB2479943$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2481109)-->"E:\WINDOWS\$NtUninstallKB2481109$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2482017)-->"E:\WINDOWS\$NtUninstallKB2482017$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2483185)-->"E:\WINDOWS\$NtUninstallKB2483185$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB2485376)-->"E:\WINDOWS\$NtUninstallKB2485376$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB923561)-->"E:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB923789)-->E:\WINDOWS\system32\MacroMed\Flash\genuinst.exe E:\WINDOWS\system32\MacroMed\Flash\KB923789.inf Aktualizacja zabezpieczeń dla systemu Windows XP (KB946648)-->"E:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760)-->"E:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762)-->"E:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB950974)-->"E:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2)-->"E:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748)-->"E:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB952004)-->"E:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB952954)-->"E:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB955069)-->"E:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956572)-->"E:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956744)-->"E:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956802)-->"E:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956803)-->"E:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB956844)-->"E:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB958644)-->"E:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB958869)-->"E:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB959426)-->"E:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960225)-->"E:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960803)-->"E:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB960859)-->"E:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB961501)-->"E:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB969059)-->"E:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB970238)-->"E:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB970430)-->"E:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971468)-->"E:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971657)-->"E:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB971961)-->"E:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB972270)-->"E:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973507)-->"E:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973869)-->"E:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB973904)-->"E:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974112)-->"E:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974318)-->"E:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974392)-->"E:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB974571)-->"E:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975025)-->"E:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975467)-->"E:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975560)-->"E:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975561)-->"E:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975562)-->"E:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB975713)-->"E:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB977816)-->"E:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB977914)-->"E:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978037)-->"E:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978338)-->"E:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978542)-->"E:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978601)-->"E:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB978706)-->"E:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979309)-->"E:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979482)-->"E:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979559)-->"E:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979683)-->"E:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB979687)-->"E:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980195)-->"E:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980218)-->"E:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980232)-->"E:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB980436)-->"E:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981322)-->"E:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981349)-->"E:\WINDOWS\$NtUninstallKB981349$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981852)-->"E:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981957)-->"E:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB981997)-->"E:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982132)-->"E:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982214)-->"E:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982381)-->"E:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982665)-->"E:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla systemu Windows XP (KB982802)-->"E:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe" Aktualizacja zabezpieczeń dla Windows XP (KB941569)-->"E:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe" ALLPlayer V4.X-->"E:\Program Files\ALLPlayer\unins000.exe" Archiwizator WinRAR-->E:\Program Files\WinRAR\uninstall.exe Assassin's Creed II-->"E:\Program Files\InstallShield Installation Information\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}\setup.exe" -runfromtemp -l0x0015 -removeonly Auslogics Disk Defrag-->"E:\Program Files\Auslogics\Auslogics Disk Defrag\unins000.exe" Battlefield 2(TM)-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\setup.exe" -l0x15 -removeonly BearShare-->"E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}\BearShare_V9_pl_Setup.exe" REMOVE=TRUE MODIFY=FALSE BearShare-->E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}\BearShare_V9_pl_Setup.exe BS.Player ControlBar-->E:\Program Files\BS.Player ControlBar\uninst.exe BS.Player FREE-->"E:\Program Files\Webteh\BSplayer\uninstall.exe" Catalyst Control Center - Branding-->MsiExec.exe /I{DDA34038-89BD-4804-B0B8-DC48D5DFB463} CCleaner-->"E:\Program Files\CCleaner\uninst.exe" Combined Community Codec Pack 2007-07-22-->"E:\Program Files\Combined Community Codec Pack\unins001.exe" COMODO GeekBuddy-->E:\Program Files\COMODO\COMODO GeekBuddy\uninstall.exe COMODO Internet Security-->MsiExec.exe /I{FD8E178D-8B4E-42DA-B434-EFF270329B1C} CorelDRAW Graphics Suite 12-->MsiExec.exe /I{505AFDC0-5E72-4928-8368-5DEA385E3647} CPUID CPU-Z 1.54-->"E:\Program Files\CPUID\CPU-Z\unins000.exe" Creative MediaSource 5-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\SETUP.EXE" -l0x9 /remove Creative Software AutoUpdate-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x9 /remove Disk Checker-->"E:\Program Files\Disk Checker\uninstall.exe" Edycja kolekcjonerska Heroes of Might and Magic V-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{F68563C0-2CCD-4799-A014-017A370D627B}\setup.exe" -l0x15 EXPERTool ATI 4.2-->"E:\Program Files\EXPERTool ATI\unins000.exe" F1 2010-->"C:\Gry\F1 2010\unins000.exe" FMS-->E:\Program Files\FMS\Uninstall.exe Fraps-->"E:\Fraps\uninstall.exe" Gadu-Gadu 10-->E:\Program Files\Gadu-Gadu 10\Uninstall.exe GameSpy Arcade-->E:\PROGRA~1\GameSpy Arcade\UNWISE.EXE E:\PROGRA~1\GameSpy Arcade\INSTALL.LOG GRID-->"E:\Program Files\InstallShield Installation Information\{5A0B7BA5-4682-4273-81C2-69B17E649103}\setup.exe" -runfromtemp -l0x0009 -removeonly HDD Regenerator-->MsiExec.exe /X{97A39919-9FEA-48B7-AB2B-4F99212D1E98} Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT="" Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT="" Hotfix for Windows Media Format 11 SDK (KB929399)-->"E:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe" HP Customer Participation Program 9.0-->E:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat HP Deskjet All-In-One Software 9.0-->E:\Program Files\HP\Digital Imaging\{706BB40A-4102-4c89-8107-DC68C4EBD19B}\setup\hpzscr01.exe -datfile hposcr14.dat HP Imaging Device Functions 9.0-->E:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat HP Photosmart Essential 2.01-->E:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7} HP Solution Center 9.0-->E:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat HP Update-->MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134} HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3} Inkscape 0.48.0-->E:\Program Files\Inkscape\Uninstall.exe Java(TM) 6 Update 24-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216021FF} Logitech Gaming Software-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{B9242864-2841-4ADE-86E0-8F90F91B04DD}\setup.exe" -l0x9 Mafia II-->"C:\Gry\Mafia II\unins000.exe" Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B} Medal of Honor-->"C:\Gry\Medal of Honor\Uninstall\unins000.exe" Media Go-->MsiExec.exe /X{5C318BD3-BA72-43E4-9D16-A18210B4A5A5} Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK-->MsiExec.exe /I{036FD544-AED6-3F33-856D-A2292D0CF471} Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F} Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK-->MsiExec.exe /I{7C77393F-8237-3825-A88A-AFAF3C69C072} Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7} Microsoft .NET Framework 3.5 Language Pack - plk-->MsiExec.exe /I{F31E509D-3597-324E-83CF-0C160B2320F0} Microsoft .NET Framework 3.5 SP1-->E:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669} Microsoft Games for Windows - LIVE-->MsiExec.exe /X{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77} Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"E:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe" Microsoft User-Mode Driver Framework Feature Pack 1.5-->"E:\WINDOWS\$NtUninstallWudf01005$\spuninst\spuninst.exe" Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c} Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475} Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989} Microsoft WinUsb 1.0-->"E:\WINDOWS\$NtUninstallwinusb0100$\spuninst\spuninst.exe" Mozilla Firefox (3.6.15)-->E:\Program Files\Mozilla Firefox\uninstall\helper.exe MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27} MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71} MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC} Nero Suite-->E:\Program Files\Common Files\Nero\Uninstall\setupx.exe /uninstall ExtraUninstallID="" NetMeter 0.9.9.9 (beta 2)-->"E:\Program Files\NetMeter\unins000.exe" NVIDIA PhysX-->MsiExec.exe /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} Odinstalowuj LG PC Suite III-->"E:\Program Files\LG Electronics\LG PC Suite III\unins000.exe" OpenAL-->"E:\Program Files\OpenAL\OpenALwEAX.exe" /U Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK-->E:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack - plk\setup.exe PC Probe II-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\setup.exe" -l0x9 PlayStation(R)Network Downloader-->MsiExec.exe /X{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66} PlayStation(R)Store-->MsiExec.exe /X{0E532C84-4275-41B3-9D81-D4A1A20D8EE7} Poprawka dla systemu Windows XP (KB2158563)-->"E:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB2443685)-->"E:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB942288-v3)-->"E:\WINDOWS\$NtUninstallKB942288-v3$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB952287)-->"E:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB961118)-->"E:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe" Poprawka dla systemu Windows XP (KB981793)-->"E:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe" PunkBuster Services-->E:\WINDOWS\system32\pbsvc_moh.exe -u --language= QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB} Real Alternative 1.60-->"E:\Program Files\Real Alternative\unins000.exe" RealNetworks - Microsoft Visual C++ 2008 Runtime-->MsiExec.exe /X{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA} RealPlayer-->E:\Program Files\Real\RealPlayer\Update\r1puninst.exe RealNetworks|RealPlayer|12.0 RealUpgrade 1.1-->MsiExec.exe /I{28C2DED6-325B-4CC7-983A-1777C8F7FBAB} Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT="" Seven Remix XP 2.4-->E:\WINDOWS\NiwradSoft Shell Pack\uninst.exe Solid Edge 2D Drafting ST3-->MsiExec.exe /X{78B771A0-6883-44FB-A830-B138EA89278E} Sony Ericsson PC Companion 2.01.123-->"E:\Program Files\InstallShield Installation Information\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}\setup.exe" -runfromtemp -l0x0009 -removeonly Sony Ericsson Update Service-->E:\Program Files\Sony Ericsson\Update Service\uninst.exe Sound Blaster Audigy-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}\SETUP.EXE" -l0x9 /remove SpeedFan (remove only)-->"E:\Program Files\SpeedFan\uninstall.exe" StarCraft II-->E:\Program Files\Common Files\Blizzard Entertainment\StarCraft II\Uninstall.exe Titan Quest Immortal Throne-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}\setup.exe" -l0x15 -removeonly Ubisoft Game Launcher-->"E:\Program Files\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly Unlocker 1.8.5-->E:\Program Files\Unlocker\uninst.exe Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT="" Visual C++ 2008 x86 Runtime - (v9.0.30729)-->MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27} Visual C++ 2008 x86 Runtime - v9.0.30729.01-->E:\WINDOWS\system32\msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT="" Winamp-->"E:\Program Files\Winamp\UninstWA.exe" Windows Media Format 11 runtime-->"E:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll Windows Media Format 11 runtime-->"E:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe" Windows XP Service Pack 3-->"E:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe" XML Paper Specification Shared Components Language Pack 1.0-->"E:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe" ======System event log====== Computer Name: DOMINIK-BFC9604 Event Code: 7036 Message: Usługa Menedżer połączeń usługi Dostęp zdalny weszła w stan uruchomienia. Record Number: 14692 Source Name: Service Control Manager Time Written: 20110224213549.000000+060 Event Type: informacje User: Computer Name: DOMINIK-BFC9604 Event Code: 7036 Message: Usługa Usługa COM nagrywania dysków CD IMAPI weszła w stan zatrzymania. Record Number: 14691 Source Name: Service Control Manager Time Written: 20110224213547.000000+060 Event Type: informacje User: Computer Name: DOMINIK-BFC9604 Event Code: 7036 Message: Usługa Usługa bramy warstwy aplikacji weszła w stan uruchomienia. Record Number: 14690 Source Name: Service Control Manager Time Written: 20110224213547.000000+060 Event Type: informacje User: Computer Name: DOMINIK-BFC9604 Event Code: 7035 Message: Do usługi Usługa bramy warstwy aplikacji został pomyślnie wysłany kod sterowania uruchom. Record Number: 14689 Source Name: Service Control Manager Time Written: 20110224213547.000000+060 Event Type: informacje User: ZARZĄDZANIE NT\SYSTEM Computer Name: DOMINIK-BFC9604 Event Code: 7036 Message: Usługa Usługa odnajdywania SSDP weszła w stan uruchomienia. Record Number: 14688 Source Name: Service Control Manager Time Written: 20110224213546.000000+060 Event Type: informacje User: =====Application event log===== Computer Name: DOMINIK-BFC9604 Event Code: 105 Message: The service was started. Record Number: 2195 Source Name: Creative Service for CDROM Access Time Written: 20101204152352.000000+060 Event Type: informacje User: Computer Name: DOMINIK-BFC9604 Event Code: 1000 Message: Aplikacja powodująca błąd drwtsn32.exe, wersja 5.1.2600.0, moduł powodujący błąd dbghelp.dll, wersja 5.1.2600.5512, adres błędu 0x0001295d. Record Number: 2194 Source Name: Application Error Time Written: 20101202234537.000000+060 Event Type: błąd User: Computer Name: DOMINIK-BFC9604 Event Code: 1000 Message: Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.5512, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x03cb29f0. Record Number: 2193 Source Name: Application Error Time Written: 20101202234519.000000+060 Event Type: błąd User: Computer Name: DOMINIK-BFC9604 Event Code: 4097 Message: Aplikacja E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\gde_miromind_android.rar.exe wygenerowała błąd aplikacji. Błąd wystąpił na 12/02/2010 @ 22:55:09.705. Wygenerowany wyjątek to c0000005 pod adresem 00A9FFA8 (gde_miromind_android.rar). Record Number: 2192 Source Name: DrWatson Time Written: 20101202225509.000000+060 Event Type: informacje User: Computer Name: DOMINIK-BFC9604 Event Code: 1000 Message: Aplikacja powodująca błąd gde_miromind_android.rar.exe, wersja 0.0.0.0, moduł powodujący błąd gde_miromind_android.rar.exe, wersja 0.0.0.0, adres błędu 0x0069ffa8. Record Number: 2191 Source Name: Application Error Time Written: 20101202225508.000000+060 Event Type: błąd User: ======Environment variables====== "ComSpec"=%SystemRoot%\system32\cmd.exe "Path"=E:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;E:\Program Files\ATI Technologies\ATI.ACE\Core-Static;E:\Program Files\QuickTime\QTSystem\ "windir"=%SystemRoot% "FP_NO_HOST_CHECK"=NO "OS"=Windows_NT "PROCESSOR_ARCHITECTURE"=x86 "PROCESSOR_LEVEL"=6 "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 6, GenuineIntel "PROCESSOR_REVISION"=1706 "NUMBER_OF_PROCESSORS"=2 "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH "TEMP"=%SystemRoot%\TEMP "TMP"=%SystemRoot%\TEMP "CLASSPATH"=.;E:\Program Files\Java\jre6\lib\ext\QTJava.zip "QTJAVA"=E:\Program Files\Java\jre6\lib\ext\QTJava.zip -----------------EOF-----------------[/log] Bardzo proszę o pamoc. Zwróciłem uwagę że ikonka pojawia się znacznie częściej gdy ściągam plik z dużą prędkością.
Tomek01 komentarz 16 marca 2011 komentarz 16 marca 2011 Pokaż log z Combofix'a, który powstał po jego użyciu. Tak na przyszłość, odradzam samowolne stosowanie. Zastosuj [b][color=#0000CD][url=http://download.bleepingcomputer.com//sUBs/Flash_Disinfector.exe]Flash Disinfector[/url][/color][/b], najlepiej z podpiętym pendrive'm czy innymi pamięciami USB. W OTL, w oknie Custom scan/fixes wklej: [code] :OTL O3 - HKLM\..\Toolbar: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll () O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll () O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell - "" = AutoRun O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell\AutoRun\command - "" = I:\Startme.exe O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell - "" = AutoRun O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\AutoRun\command - "" = nqdymj.exe O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\open\Command - "" = nqdymj.exe [2011-03-14 01:06:32 | 000,004,630 | ---- | C] () -- E:\WINDOWS\System32\tmp.reg :Files E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job E:\WINDOWS\system32\tmp121.tmp E:\WINDOWS\system32\tmp120.tmp E:\WINDOWS\system32\tmp113.tmp E:\WINDOWS\system32\tmp112.tmp :Commands [emptytemp][/code] Klikasz run fix, komputer uruchamia się ponownie. Wrzuć log z usuwania oraz nowe logi: OTL i RSIT
domin46 komentarz 16 marca 2011 Autor komentarz 16 marca 2011 Wcześniej nie udało mi się uruchomić combofix-a. Jak go uruchomiałem to wyskakiwał błąd więc nie mam z niego loga. Flash Disinfector też nie odpaliłem z tego samego powodu. Po dodaniu skryptu nic się nie zmieniło. [log]All processes killed ========== OTL ========== Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2C688203-7EB3-4327-9995-1CB417BA23F9} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C688203-7EB3-4327-9995-1CB417BA23F9}\ deleted successfully. E:\Program Files\BS.Player ControlBar\BSToolbar.dll moved successfully. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}\ not found. Registry value HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2C688203-7EB3-4327-9995-1CB417BA23F9} deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C688203-7EB3-4327-9995-1CB417BA23F9}\ not found. File E:\Program Files\BS.Player ControlBar\BSToolbar.dll not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found. File I:\Startme.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9221c022-a2c7-11df-b44b-00221553899f}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9221c022-a2c7-11df-b44b-00221553899f}\ not found. File H:\LaunchU3.exe -a not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found. File nqdymj.exe not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found. File nqdymj.exe not found. E:\WINDOWS\system32\tmp.reg moved successfully. ========== FILES ========== E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job moved successfully. E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job moved successfully. E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job moved successfully. E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job moved successfully. File\Folder E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job E:\WINDOWS\system32\tmp121.tmp not found. E:\WINDOWS\system32\tmp120.tmp moved successfully. E:\WINDOWS\system32\tmp113.tmp moved successfully. E:\WINDOWS\system32\tmp112.tmp moved successfully. ========== COMMANDS ========== [EMPTYTEMP] User: Administrator ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 37812 bytes ->FireFox cache emptied: 3985503 bytes User: All Users User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes User: Dominik ->Temp folder emptied: 1163701684 bytes ->Temporary Internet Files folder emptied: 95913 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 92942577 bytes ->Flash cache emptied: 1481 bytes User: LocalService ->Temp folder emptied: 65984 bytes ->Temporary Internet Files folder emptied: 44760 bytes ->FireFox cache emptied: 3425881 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 2344639 bytes %systemroot%\System32 .tmp files removed: 5104428 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 29135 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 1 213,00 mb OTL by OldTimer - Version 3.2.22.3 log created on 03162011_213637 Files\Folders moved on Reboot... File move failed. E:\Documents and Settings\Dominik\Ustawienia lokalne\Temp\nircmd.exe scheduled to be moved on reboot. Registry entries deleted on Reboot...[/log] [log]OTL logfile created on: 2011-03-16 21:56:30 - Run 4 OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 70,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free Paging file location(s): E:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files Drive C: | 645,21 Gb Total Space | 246,74 Gb Free Space | 38,24% Space Free | Partition Type: NTFS Drive D: | 232,88 Gb Total Space | 208,01 Gb Free Space | 89,32% Space Free | Partition Type: NTFS Drive E: | 100,00 Gb Total Space | 51,54 Gb Free Space | 51,54% Space Free | Partition Type: NTFS Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days [color=#E56717]========== Processes (All) ==========[/color] PRC - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe PRC - [2011-03-12 22:17:27 | 000,399,224 | ---- | M] (BitTorrent, Inc.) -- E:\Program Files\uTorrent\uTorrent.exe PRC - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe PRC - [2011-03-07 23:49:22 | 000,939,848 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe PRC - [2011-03-06 21:44:57 | 000,016,856 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\plugin-container.exe PRC - [2011-03-06 21:44:56 | 000,912,344 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\firefox.exe PRC - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe PRC - [2011-03-02 14:31:04 | 000,997,032 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe PRC - [2011-02-02 21:40:41 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Java\jre6\bin\jqs.exe PRC - [2011-01-24 11:42:42 | 000,427,008 | ---- | M] (Sony Ericsson) -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe PRC - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe PRC - [2011-01-17 23:30:16 | 002,548,552 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cfp.exe PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe PRC - [2010-11-06 00:05:49 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- E:\Program Files\Real\RealPlayer\Update\realsched.exe PRC - [2010-10-29 14:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Common Files\Java\Java Update\jusched.exe PRC - [2010-10-16 00:30:14 | 000,075,064 | ---- | M] () -- E:\WINDOWS\system32\PnkBstrA.exe PRC - [2010-08-26 02:37:00 | 000,606,208 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\spoolsv.exe PRC - [2009-07-01 19:23:52 | 001,435,136 | ---- | M] () -- E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe PRC - [2009-04-22 17:38:50 | 000,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe PRC - [2009-04-22 17:37:16 | 000,065,536 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe PRC - [2009-04-09 09:29:34 | 002,304,552 | ---- | M] (Gainward Co.) -- E:\Program Files\EXPERTool ATI\TBPANEL.exe PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\services.exe PRC - [2009-02-06 11:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\wmiprvse.exe PRC - [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winlogon.exe PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [RPCSS] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETWORKSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETSVCS] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [mi] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [IMGSVC] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HTTPFILTER] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPDEVMGMT] PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [DCOMLAUNCH] PRC - [2008-04-14 18:21:42 | 000,050,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\smss.exe PRC - [2008-04-14 18:21:38 | 000,035,328 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rundll32.exe PRC - [2008-04-14 18:21:22 | 000,013,312 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\lsass.exe PRC - [2008-04-14 18:21:16 | 001,542,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\explorer.exe PRC - [2008-04-14 18:21:10 | 000,040,448 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ctfmon.exe PRC - [2008-04-14 18:21:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\csrss.exe PRC - [2008-04-14 18:21:02 | 000,044,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\alg.exe PRC - [2008-01-15 23:54:54 | 000,037,376 | ---- | M] () -- E:\Program Files\Winamp\winampa.exe PRC - [2007-03-11 20:34:40 | 000,049,152 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\HP Software Update\hpwuSchd2.exe PRC - [2007-03-11 20:32:42 | 000,151,552 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqste08.exe PRC - [2007-03-11 20:26:24 | 000,210,520 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe PRC - [2006-01-20 10:20:00 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- E:\Program Files\Common Files\LightScribe\LSSrvc.exe PRC - [2005-10-31 09:51:52 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe PRC - [2004-08-04 13:00:00 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\unsecapp.exe PRC - [2004-06-16 06:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe PRC - [1999-12-13 02:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTSVCCDA.EXE [color=#E56717]========== Modules (All) ==========[/color] MOD - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe MOD - [2011-01-21 15:44:11 | 008,491,008 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shell32.dll MOD - [2010-12-29 01:42:04 | 000,285,480 | ---- | M] (COMODO) -- E:\WINDOWS\system32\guard32.dll MOD - [2010-12-20 23:14:34 | 001,510,400 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shdocvw.dll MOD - [2010-12-20 23:14:34 | 000,669,696 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wininet.dll MOD - [2010-12-20 23:14:34 | 000,627,712 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\urlmon.dll MOD - [2010-12-09 16:15:25 | 000,726,528 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdll.dll MOD - [2010-11-06 00:06:07 | 000,040,448 | ---- | M] (RealNetworks, Inc.) -- E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rpcrt4.dll MOD - [2010-08-08 17:15:06 | 000,219,648 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\uxtheme.dll MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ole32.dll MOD - [2009-12-24 08:04:53 | 000,187,392 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wintrust.dll MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shlwapi.dll MOD - [2009-09-04 22:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msasn1.dll MOD - [2009-07-17 20:04:02 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\atl.dll MOD - [2009-07-12 00:02:02 | 000,653,120 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll MOD - [2009-07-12 00:02:00 | 000,569,664 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\secur32.dll MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\kernel32.dll MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\advapi32.dll MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\gdi32.dll MOD - [2008-10-15 17:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\netapi32.dll MOD - [2008-06-20 18:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\dnsapi.dll MOD - [2008-04-14 21:50:48 | 002,572,288 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\setupapi.dll MOD - [2008-04-14 18:21:56 | 000,146,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winspool.drv MOD - [2008-04-14 18:20:58 | 000,082,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ws2_32.dll MOD - [2008-04-14 18:20:58 | 000,019,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ws2help.dll MOD - [2008-04-14 18:20:57 | 000,172,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wldap32.dll MOD - [2008-04-14 18:20:57 | 000,018,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\version.dll MOD - [2008-04-14 18:20:56 | 000,757,248 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\userenv.dll MOD - [2008-04-14 18:20:56 | 000,580,096 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\user32.dll MOD - [2008-04-14 18:20:56 | 000,078,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\srclient.dll MOD - [2008-04-14 18:20:45 | 000,064,000 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\samlib.dll MOD - [2008-04-14 18:20:44 | 000,551,936 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\oleaut32.dll MOD - [2008-04-14 18:20:44 | 000,084,992 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\olepro32.dll MOD - [2008-04-14 18:20:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\psapi.dll MOD - [2008-04-14 18:20:42 | 000,146,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntshrui.dll MOD - [2008-04-14 18:20:41 | 000,119,808 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntmarta.dll MOD - [2008-04-14 18:20:41 | 000,067,072 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdsapi.dll MOD - [2008-04-14 18:20:39 | 000,381,952 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\mstask.dll MOD - [2008-04-14 18:20:39 | 000,343,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msvcrt.dll MOD - [2008-04-14 18:20:36 | 000,297,984 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msctf.dll MOD - [2008-04-14 18:20:35 | 000,059,904 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\mpr.dll MOD - [2008-04-14 18:20:34 | 000,019,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\linkinfo.dll MOD - [2008-04-14 18:20:32 | 000,144,384 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\imagehlp.dll MOD - [2008-04-14 18:20:31 | 000,185,344 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\framedyn.dll MOD - [2008-04-14 18:20:31 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\fltlib.dll MOD - [2008-04-14 18:20:17 | 001,070,080 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\cryptui.dll MOD - [2008-04-14 18:20:16 | 000,602,624 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\crypt32.dll MOD - [2008-04-14 18:20:14 | 001,524,224 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comres.dll MOD - [2008-04-14 18:20:13 | 000,333,824 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comdlg32.dll MOD - [2008-04-14 18:20:11 | 000,498,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\clbcatq.dll MOD - [2008-04-14 18:20:06 | 000,060,416 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\cabinet.dll MOD - [2008-04-14 18:19:59 | 000,125,952 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\apphelp.dll MOD - [2008-04-14 18:16:32 | 000,110,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msscript.ocx [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt) SRV - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) [Auto | Running] -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service) SRV - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe -- (CLPSLS) SRV - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent) SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2011-03-07 23:52:40 | 000,015,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys -- (Lavasoft Kernexplorer) DRV - [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd) DRV - [2011-01-06 17:37:02 | 000,239,368 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard) DRV - [2011-01-06 17:37:02 | 000,015,592 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd) DRV - [2010-11-05 21:53:08 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri) DRV - [2010-10-10 20:51:05 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc) DRV - [2010-10-10 20:51:05 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt) DRV - [2010-08-26 04:33:38 | 005,386,752 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag) DRV - [2010-08-08 16:28:25 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\System32\Drivers\sptd.sys -- (sptd) DRV - [2010-03-10 16:25:58 | 000,020,968 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- E:\WINDOWS\system32\drivers\cpuz133_x32.sys -- (cpuz133) DRV - [2010-02-16 05:38:12 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5) DRV - [2009-12-06 18:48:49 | 000,012,400 | ---- | M] () [Kernel | System | Running] -- E:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO) DRV - [2008-10-21 03:03:13 | 000,089,600 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService) DRV - [2006-11-02 06:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB) DRV - [2006-09-24 14:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- E:\WINDOWS\system32\speedfan.sys -- (speedfan) DRV - [2006-07-26 07:56:00 | 000,248,832 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp) DRV - [2005-07-07 09:14:30 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\P17.sys -- (P17) DRV - [2005-01-10 11:15:30 | 000,106,496 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv) DRV - [2005-01-10 11:15:24 | 000,138,752 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k) DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor) DRV - [2004-04-14 11:08:00 | 000,044,064 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore) DRV - [2004-04-14 11:08:00 | 000,021,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter) DRV - [2004-04-14 11:08:00 | 000,014,432 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo) DRV - [2004-04-14 11:08:00 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum) DRV - [2004-04-14 11:08:00 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid) DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\system32\giveio.sys -- (giveio) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.startup.homepage: "http://www.google.pl/" FF - prefs.js..extensions.enabledItems: BSToolbar@toolbarnet.com:1.0.0.5 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21 FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22 FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.0 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23 FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24 FF - prefs.js..keyword.URL: "http://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q=" FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-06 00:06:07 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2011-03-13 22:22:56 | 000,000,000 | ---D | M] FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2011-03-06 21:44:59 | 000,000,000 | ---D | M] [2010-08-08 12:13:03 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Extensions [2011-03-14 23:34:04 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions [2010-08-12 16:01:31 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2010-08-15 17:07:19 | 000,002,447 | ---- | M] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\searchplugins\bsplayer-search.xml [2011-03-14 23:34:04 | 000,000,000 | ---D | M] (No name found) -- E:\Program Files\Mozilla Firefox\extensions [2010-09-01 21:23:04 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} [2010-11-03 21:58:21 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} [2011-02-05 21:47:27 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} [2011-03-13 17:59:01 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} [2010-11-06 00:06:07 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- E:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT [2010-08-15 17:07:16 | 000,000,000 | ---D | M] (BS.Player ControlBar) -- E:\PROGRAM FILES\BS.PLAYER CONTROLBAR\FIREFOXDTT [2010-09-01 21:22:50 | 000,000,000 | ---D | M] (Java Quick Starter) -- E:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF [2011-02-02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll [2010-10-06 22:29:51 | 000,002,767 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml [2010-10-06 22:29:51 | 000,001,406 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml [2010-10-06 22:29:51 | 000,000,917 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml [2010-10-06 22:29:51 | 000,000,858 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml [2010-10-06 22:29:51 | 000,001,183 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml [2010-10-06 22:29:51 | 000,001,683 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml O1 HOSTS File: ([2011-03-14 01:06:27 | 000,000,742 | ---- | M]) - E:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.) O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer) O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.) O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found. O4 - HKLM..\Run: [Ai Nap] E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe () O4 - HKLM..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe (COMODO) O4 - HKLM..\Run: [COMODO Internet Security] E:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO) O4 - HKLM..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe (Corel Corporation) O4 - HKLM..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe () O4 - HKLM..\Run: [Cpu Level Up help] E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe () O4 - HKLM..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe (Creative Technology Ltd) O4 - HKLM..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh) O4 - HKLM..\Run: [P17Helper] E:\WINDOWS\System32\P17.dll () O4 - HKLM..\Run: [QFan Help] E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe () O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKLM..\Run: [TkBellExe] E:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.) O4 - HKLM..\Run: [UpdReg] E:\WINDOWS\Updreg.EXE (Creative Technology Ltd.) O4 - HKLM..\Run: [WinampAgent] E:\Program Files\Winamp\winampa.exe () O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [ALLUpdate] E:\Program Files\ALLPlayer\ALLUpdate.exe () O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe (Gainward Co.) O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Sony Ericsson PC Companion] E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson) O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [uTorrent] E:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data] O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1 O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecycleFiles = 1 O9 - Extra Button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O9 - Extra Button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1 O20 - AppInit_DLLs: (E:\WINDOWS\system32\guard32.dll) - E:\WINDOWS\system32\guard32.dll (COMODO) O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.) O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O32 - HKLM CDRom: AutoRun - 0 O32 - AutoRun File - [2010-08-07 22:52:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O34 - HKLM BootExecute: (autocheck autochk *) - File not found O34 - HKLM BootExecute: (lsdelete) - E:\WINDOWS\System32\lsdelete.exe () O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* NetSvcs: 6to4 - File not found NetSvcs: AppMgmt - File not found NetSvcs: Ias - File not found NetSvcs: Iprip - File not found NetSvcs: Irmon - File not found NetSvcs: NWCWorkstation - File not found NetSvcs: Nwsapagent - File not found NetSvcs: WmdmPmSp - File not found SafeBootMin: AppMgmt - File not found SafeBootMin: Base - Driver Group SafeBootMin: Boot Bus Extender - Driver Group SafeBootMin: Boot file system - Driver Group SafeBootMin: CLPSLS - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe (COMODO) SafeBootMin: File system - Driver Group SafeBootMin: Filter - Driver Group SafeBootMin: Lavasoft Ad-Aware Service - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited) SafeBootMin: PCI Configuration - Driver Group SafeBootMin: PNP Filter - Driver Group SafeBootMin: Primary disk - Driver Group SafeBootMin: SCSI Class - Driver Group SafeBootMin: sermouse.sys - Driver SafeBootMin: System Bus Extender - Driver Group SafeBootMin: vds - Service SafeBootMin: vga.sys - Driver SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices SafeBootNet: AppMgmt - File not found SafeBootNet: Base - Driver Group SafeBootNet: Boot Bus Extender - Driver Group SafeBootNet: Boot file system - Driver Group SafeBootNet: CLPSLS - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe (COMODO) SafeBootNet: File system - Driver Group SafeBootNet: Filter - Driver Group SafeBootNet: Lavasoft Ad-Aware Service - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited) SafeBootNet: NDIS Wrapper - Driver Group SafeBootNet: NetBIOSGroup - Driver Group SafeBootNet: NetDDEGroup - Driver Group SafeBootNet: Network - Driver Group SafeBootNet: NetworkProvider - Driver Group SafeBootNet: PCI Configuration - Driver Group SafeBootNet: PNP Filter - Driver Group SafeBootNet: PNP_TDI - Driver Group SafeBootNet: Primary disk - Driver Group SafeBootNet: SCSI Class - Driver Group SafeBootNet: sermouse.sys - Driver SafeBootNet: Streams Drivers - Driver Group SafeBootNet: System Bus Extender - Driver Group SafeBootNet: TDI - Driver Group SafeBootNet: vga.sys - Driver SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices [color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color] [2011-03-16 21:36:37 | 000,000,000 | ---D | C] -- E:\_OTL [2011-03-16 21:23:34 | 000,000,000 | --SD | C] -- E:\ComboFix [2011-03-14 22:33:27 | 000,000,000 | ---D | C] -- E:\Program Files\trend micro [2011-03-14 22:33:26 | 000,000,000 | ---D | C] -- E:\rsit [2011-03-14 01:40:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO [2011-03-14 01:36:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens [2011-03-14 01:36:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\SymbolLibrary [2011-03-14 00:18:08 | 000,000,000 | RH-D | C] -- E:\Documents and Settings\Dominik\Recent [2011-03-14 00:01:54 | 000,000,000 | ---D | C] -- E:\WINDOWS\ERDNT [2011-03-14 00:00:50 | 000,000,000 | ---D | C] -- E:\Qoobox [2011-03-13 21:19:37 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Battlejield 2 Łatki [2011-03-13 20:42:47 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\GameSpy Arcade [2011-03-13 20:42:23 | 000,000,000 | ---D | C] -- E:\Program Files\GameSpy Arcade [2011-03-13 20:42:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Battlefield 2 [2011-03-13 20:37:38 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\EA GAMES [2011-03-13 17:59:16 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Java [2011-03-13 00:16:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\VRX 1 [2011-03-12 22:35:58 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Downloads [2011-03-12 22:17:27 | 000,000,000 | ---D | C] -- E:\Program Files\uTorrent [2011-03-12 22:16:52 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent [2011-03-12 13:06:27 | 000,049,904 | R--- | C] (Avanquest Software) -- E:\WINDOWS\System32\drivers\BVRPMPR5.SYS [2011-03-12 13:05:04 | 000,000,000 | ---D | C] -- E:\Netgear [2011-03-12 13:00:25 | 000,000,000 | -H-D | C] -- E:\VritualRoot [2011-03-12 11:30:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dokumenty\COMODO [2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\COMODO [2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Comodo [2011-03-12 11:27:25 | 000,000,000 | ---D | C] -- E:\Program Files\COMODO [2011-03-09 22:49:48 | 000,032,768 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\WooDial2000.dll [2011-03-09 22:49:06 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\AlertModule [2011-03-09 22:49:05 | 000,040,960 | ---- | C] (France Telecom) -- E:\WINDOWS\System32\FTRTSVC.exe [2011-03-09 22:49:05 | 000,036,864 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\IfHelper.dll [2011-03-09 22:47:16 | 000,000,000 | -HSD | C] -- E:\WINDOWS\ftpcache [2011-03-07 23:54:17 | 000,000,000 | ---D | C] -- E:\Program Files\THQ [2011-03-07 23:53:03 | 000,064,512 | ---- | C] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys [2011-03-07 23:52:54 | 000,098,392 | ---- | C] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys [2011-03-07 23:27:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software [2011-03-07 23:11:38 | 000,000,000 | -H-D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Program Files\Lavasoft [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Lavasoft [2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft [2011-03-06 00:00:01 | 000,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- E:\WINDOWS\uninst.exe [2011-03-05 23:59:48 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\WINDOWS [2011-03-05 23:48:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\RealFlight G4 [2011-03-05 23:45:32 | 000,000,000 | ---D | C] -- E:\Program Files\RealFlightG4 [2011-03-05 23:45:30 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\KnifeEdge [2011-03-05 16:12:11 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\AeroFly Professional Deluxe [2011-03-04 22:56:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\Flying Model Simulator [2011-03-04 22:56:17 | 000,000,000 | ---D | C] -- E:\Program Files\FMS [2011-02-27 21:22:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Titan Quest [2011-02-22 22:50:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Codemasters [2011-02-22 22:49:18 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Codemasters [2011-02-22 22:23:18 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Logitech [2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Program Files\Logitech [2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Logitech [2011-02-19 12:58:25 | 022,383,954 | ---- | C] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe [2011-02-07 19:46:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\kuna [2011-02-03 22:45:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Corel User Files [2011-02-03 18:17:24 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\CorelDRAW Graphics Suite 12 [2011-02-03 18:17:17 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Corel [2011-02-03 18:17:15 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Designer [2011-02-03 18:16:41 | 000,000,000 | ---D | C] -- E:\Program Files\Corel [2011-02-03 14:40:00 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Corel [2011-02-03 14:35:12 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\InstallShield [2011-02-02 21:37:35 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Solid Edge 2D Drafting ST3 [2011-02-02 21:29:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape [2011-02-02 21:18:25 | 000,000,000 | ---D | C] -- E:\Program Files\Inkscape [2011-02-02 21:16:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions [2011-02-02 21:14:18 | 000,000,000 | R--D | C] -- E:\Documents and Settings\Dominik\Pulpit\CNC [2011-02-02 21:12:19 | 000,389,632 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XXUN.EXE [2011-02-02 21:12:19 | 000,057,344 | ---- | C] (FTDI Ltd) -- E:\WINDOWS\FTD2XX.DLL [2011-02-02 21:12:19 | 000,023,750 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XX.SYS [2011-02-02 21:10:25 | 000,000,000 | ---D | C] -- E:\Program Files\Solid Edge 2D Drafting ST3 [2011-02-02 20:55:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Nowy folder [2011-02-01 21:11:51 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\ATI [2011-02-01 21:09:36 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center [2011-02-01 21:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\ATI [2011-02-01 21:08:18 | 000,000,000 | ---D | C] -- E:\Program Files\ATI Technologies [2011-01-30 23:20:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\1C [2011-01-30 23:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\Adobe [2011-01-25 23:42:37 | 000,000,000 | ---D | C] -- E:\WINDOWS\Cache [2002-04-11 02:41:06 | 000,065,536 | R--- | C] ( ) -- E:\WINDOWS\System32\A3d.dll [color=#E56717]========== Files - Modified Within 60 Days ==========[/color] [2011-03-16 21:48:22 | 001,474,832 | ---- | M] () -- E:\WINDOWS\System32\drivers\sfi.dat [2011-03-16 21:40:39 | 000,153,583 | ---- | M] () -- E:\WINDOWS\hpoins14.dat [2011-03-16 21:39:48 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011-03-16 21:38:59 | 000,000,512 | ---- | M] () -- E:\WINDOWS\win.ini [2011-03-16 21:38:30 | 000,000,006 | -H-- | M] () -- E:\WINDOWS\tasks\SA.DAT [2011-03-16 21:38:27 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat [2011-03-16 21:37:09 | 006,029,312 | -H-- | M] () -- E:\Documents and Settings\Dominik\NTUSER.DAT [2011-03-16 21:37:09 | 000,000,188 | -HS- | M] () -- E:\Documents and Settings\Dominik\ntuser.ini [2011-03-16 21:24:42 | 000,132,597 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Flash_Disinfector.exe [2011-03-16 09:53:42 | 000,013,646 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl [2011-03-13 22:36:03 | 000,000,302 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-13 20:47:58 | 000,000,652 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2011-03-13 20:47:58 | 000,000,630 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2011-03-13 20:43:02 | 000,000,707 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk [2011-03-13 19:39:16 | 000,000,499 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk [2011-03-12 23:54:14 | 000,000,529 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk [2011-03-12 22:17:28 | 000,000,636 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-03-12 20:55:14 | 000,000,490 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk [2011-03-12 14:14:55 | 000,006,440 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html [2011-03-12 12:59:54 | 000,000,046 | ---- | M] () -- E:\WINDOWS\adiras.ini [2011-03-12 12:57:27 | 000,000,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk [2011-03-12 11:28:22 | 000,001,653 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk [2011-03-07 23:58:04 | 000,001,787 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk [2011-03-07 23:52:49 | 000,098,392 | ---- | M] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys [2011-03-07 23:52:44 | 000,016,432 | ---- | M] () -- E:\WINDOWS\System32\lsdelete.exe [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys [2011-03-07 23:11:36 | 000,000,873 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk [2011-03-06 23:31:44 | 002,116,262 | -H-- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\IconCache.db [2011-03-06 00:24:33 | 000,000,141 | ---- | M] () -- E:\WINDOWS\RealFlight.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\WIN.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\SYSTEM.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\PROTOCOL.INI [2011-03-06 00:00:19 | 000,000,000 | ---- | M] () -- E:\WINDOWS\PROTOCOL.INI [2011-03-04 22:56:19 | 000,000,616 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk [2011-02-27 21:25:09 | 000,001,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Sony Ericsson PC Companion 2.0.lnk [2011-02-24 23:20:01 | 000,004,096 | ---- | M] () -- E:\WINDOWS\System32\crash [2011-02-22 23:19:01 | 000,445,016 | ---- | M] (Creative Labs) -- E:\WINDOWS\System32\wrap_oal.dll [2011-02-22 22:49:18 | 000,000,522 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk [2011-02-22 22:42:21 | 000,000,412 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk [2011-02-19 13:00:43 | 000,000,730 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Napi-projekt.lnk [2011-02-19 13:00:42 | 000,000,700 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk [2011-02-19 12:59:37 | 022,383,954 | ---- | M] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe [2011-02-11 22:21:29 | 000,001,735 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2011-02-09 22:58:13 | 000,036,864 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2011-02-09 22:51:52 | 002,067,174 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp [2011-02-09 22:49:16 | 000,007,279 | ---- | M] () -- E:\Documents and Settings\Dominik\.recently-used.xbel [2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\sbe.dll [2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\dllcache\sbe.dll [2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\encdec.dll [2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\dllcache\encdec.dll [2011-02-08 22:14:45 | 000,130,888 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT [2011-02-03 18:21:02 | 000,026,160 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2011-02-02 22:55:47 | 000,066,077 | ---- | M] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg [2011-01-22 23:17:03 | 000,000,664 | ---- | M] () -- E:\WINDOWS\System32\d3d9caps.dat [2011-01-20 22:10:37 | 000,000,069 | ---- | M] () -- E:\WINDOWS\NeroDigital.ini [color=#E56717]========== Files Created - No Company Name ==========[/color] [2011-03-16 21:39:48 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [2011-03-16 21:34:23 | 000,132,597 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Flash_Disinfector.exe [2011-03-13 22:30:21 | 000,016,432 | ---- | C] () -- E:\WINDOWS\System32\lsdelete.exe [2011-03-13 22:23:35 | 000,000,302 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job [2011-03-13 20:47:58 | 000,000,652 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk [2011-03-13 20:47:58 | 000,000,630 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk [2011-03-13 20:43:02 | 000,000,707 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk [2011-03-13 19:39:15 | 000,000,499 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk [2011-03-12 22:17:28 | 000,000,636 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk [2011-03-12 20:55:14 | 000,000,490 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk [2011-03-12 14:14:55 | 000,006,440 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html [2011-03-12 11:29:54 | 001,474,832 | ---- | C] () -- E:\WINDOWS\System32\drivers\sfi.dat [2011-03-12 11:28:22 | 000,001,653 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk [2011-03-12 11:27:29 | 000,000,913 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk [2011-03-11 12:00:52 | 000,000,046 | ---- | C] () -- E:\WINDOWS\adiras.ini [2011-03-07 23:58:45 | 011,157,504 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Titan_Quest.exe [2011-03-07 23:58:04 | 000,001,787 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk [2011-03-07 23:56:39 | 000,040,960 | R--- | C] () -- E:\WINDOWS\System32\psfind.dll [2011-03-07 23:11:36 | 000,000,873 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk [2011-03-06 00:17:34 | 000,000,141 | ---- | C] () -- E:\WINDOWS\RealFlight.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\WIN.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\SYSTEM.INI [2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\PROTOCOL.INI [2011-03-06 00:00:19 | 000,000,000 | ---- | C] () -- E:\WINDOWS\PROTOCOL.INI [2011-03-04 22:52:54 | 000,000,616 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk [2011-02-22 23:18:31 | 000,000,529 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk [2011-02-22 22:49:18 | 000,000,522 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk [2011-02-22 22:42:21 | 000,000,412 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk [2011-02-19 13:00:42 | 000,000,700 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk [2011-02-09 22:51:52 | 002,067,174 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp [2011-02-09 22:49:16 | 000,007,279 | ---- | C] () -- E:\Documents and Settings\Dominik\.recently-used.xbel [2011-02-09 14:53:59 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\dllcache\sbe.dll [2011-02-09 14:53:59 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\dllcache\encdec.dll [2011-02-02 22:55:47 | 000,066,077 | ---- | C] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg [2011-02-02 21:21:39 | 000,000,726 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Inkscape.lnk [2011-02-02 21:12:19 | 000,014,960 | ---- | C] () -- E:\WINDOWS\FTD2XX.LIB [2011-02-02 21:12:19 | 000,014,042 | ---- | C] () -- E:\WINDOWS\FTD2XX.H [2011-02-02 21:12:19 | 000,002,391 | ---- | C] () -- E:\WINDOWS\FTD2XX.INF [2011-02-01 21:08:55 | 000,887,724 | ---- | C] () -- E:\WINDOWS\System32\ativva6x.dat [2011-02-01 21:08:54 | 000,219,348 | ---- | C] () -- E:\WINDOWS\System32\atiicdxx.dat [2011-02-01 21:08:54 | 000,076,216 | ---- | C] () -- E:\WINDOWS\System32\atiapfxx.blb [2011-02-01 21:08:54 | 000,021,866 | ---- | C] () -- E:\WINDOWS\atiogl.xml [2011-02-01 21:08:54 | 000,000,003 | ---- | C] () -- E:\WINDOWS\System32\ativva5x.dat [2011-01-30 23:08:58 | 000,002,377 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader 9.lnk [2011-01-30 23:08:58 | 000,001,735 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk [2010-11-20 00:50:10 | 002,116,262 | -H-- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\IconCache.db [2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Sys6925.Config Collection.sys [2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\WINDOWS\Sys3390 SettingsCollection.bin [2010-11-18 00:38:54 | 000,423,832 | ---- | C] () -- E:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat [2010-11-17 22:06:55 | 000,810,496 | ---- | C] () -- E:\WINDOWS\System32\xvidcore.dll [2010-11-17 22:06:55 | 000,258,048 | ---- | C] () -- E:\WINDOWS\System32\libFLAC.dll [2010-10-23 23:25:12 | 000,000,001 | ---- | C] () -- E:\WINDOWS\System32\SI.bin [2010-10-16 00:30:15 | 000,189,248 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrB.exe [2010-10-16 00:30:14 | 002,601,752 | ---- | C] () -- E:\WINDOWS\System32\pbsvc_moh.exe [2010-10-16 00:30:14 | 000,075,064 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrA.exe [2010-09-14 18:29:08 | 000,000,069 | ---- | C] () -- E:\WINDOWS\NeroDigital.ini [2010-09-05 17:27:59 | 000,000,664 | ---- | C] () -- E:\WINDOWS\System32\d3d9caps.dat [2010-08-13 22:38:12 | 000,053,248 | ---- | C] () -- E:\WINDOWS\System32\CommonDL.dll [2010-08-13 22:38:12 | 000,002,413 | ---- | C] () -- E:\WINDOWS\System32\lgAxconfig.ini [2010-08-08 17:50:15 | 000,032,215 | ---- | C] () -- E:\WINDOWS\Ascd_tmp.ini [2010-08-08 16:28:25 | 000,717,296 | ---- | C] () -- E:\WINDOWS\System32\drivers\sptd.sys [2010-08-08 16:02:00 | 000,001,769 | ---- | C] () -- E:\WINDOWS\Language_trs.ini [2010-08-08 14:57:22 | 000,153,583 | ---- | C] () -- E:\WINDOWS\hpoins14.dat [2010-08-08 14:57:22 | 000,002,000 | ---- | C] () -- E:\WINDOWS\hpomdl14.dat [2010-08-08 13:14:52 | 000,036,864 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2010-08-08 12:39:44 | 000,000,000 | ---- | C] () -- E:\WINDOWS\ativpsrm.bin [2010-08-08 12:39:36 | 000,294,912 | ---- | C] () -- E:\WINDOWS\System32\ATIODE.exe [2010-08-08 12:39:36 | 000,045,056 | ---- | C] () -- E:\WINDOWS\System32\ATIODCLI.exe [2010-08-08 12:21:45 | 000,005,627 | R--- | C] () -- E:\WINDOWS\System32\Ludap17.ini [2010-08-08 12:21:45 | 000,000,039 | R--- | C] () -- E:\WINDOWS\System32\ctzapxx.ini [2010-08-08 12:12:59 | 000,000,000 | ---- | C] () -- E:\WINDOWS\nsreg.dat [2010-08-08 12:12:31 | 000,026,160 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT [2010-08-08 12:00:06 | 000,024,576 | ---- | C] () -- E:\WINDOWS\System32\AsIO.dll [2010-08-08 12:00:06 | 000,012,400 | ---- | C] () -- E:\WINDOWS\System32\drivers\AsIO.sys [2010-08-08 11:55:37 | 000,005,810 | R--- | C] () -- E:\WINDOWS\System32\drivers\ASACPI.sys [2010-08-08 11:55:22 | 000,010,288 | ---- | C] () -- E:\WINDOWS\System32\drivers\ASUSHWIO.SYS [2010-08-08 11:45:34 | 000,002,048 | --S- | C] () -- E:\WINDOWS\bootstat.dat [2010-08-08 11:43:57 | 000,000,000 | ---- | C] () -- E:\WINDOWS\control.ini [2010-08-08 11:43:00 | 000,000,488 | RH-- | C] () -- E:\WINDOWS\System32\logonui.exe.manifest [2010-08-08 11:42:56 | 000,000,749 | RH-- | C] () -- E:\WINDOWS\System32\cdplayer.exe.manifest [2010-08-08 11:41:22 | 000,021,856 | ---- | C] () -- E:\WINDOWS\System32\emptyregdb.dat [2010-08-08 11:41:03 | 000,000,037 | ---- | C] () -- E:\WINDOWS\vbaddin.ini [2010-08-08 11:41:03 | 000,000,036 | ---- | C] () -- E:\WINDOWS\vb.ini [2010-08-08 11:40:04 | 000,026,717 | ---- | C] () -- E:\WINDOWS\System32\tslabels.ini [2010-08-08 11:40:04 | 000,003,813 | ---- | C] () -- E:\WINDOWS\System32\msdtcprf.ini [2010-08-08 02:51:28 | 001,087,700 | ---- | C] () -- E:\WINDOWS\System32\PerfStringBackup.INI [2010-08-08 02:51:26 | 000,004,293 | ---- | C] () -- E:\WINDOWS\ODBCINST.INI [2010-08-08 02:48:36 | 000,130,888 | ---- | C] () -- E:\WINDOWS\System32\FNTCACHE.DAT [2010-01-11 08:24:40 | 000,001,683 | ---- | C] () -- E:\WINDOWS\System32\oeminfo.ini [2009-11-06 09:58:04 | 000,178,975 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat [2005-05-25 21:06:26 | 000,119,296 | ---- | C] () -- E:\WINDOWS\System32\WnASPI32.dll [2005-05-03 12:38:42 | 000,064,512 | R--- | C] () -- E:\WINDOWS\System32\P17.dll [2004-10-03 19:28:58 | 000,032,768 | ---- | C] () -- E:\WINDOWS\System32\chckshll.dll [2004-08-04 13:00:00 | 001,015,477 | ---- | C] () -- E:\WINDOWS\System32\esentprf.ini [2004-08-04 13:00:00 | 000,733,696 | ---- | C] () -- E:\WINDOWS\System32\qedwipes.dll [2004-08-04 13:00:00 | 000,673,088 | ---- | C] () -- E:\WINDOWS\System32\mlang.dat [2004-08-04 13:00:00 | 000,490,628 | ---- | C] () -- E:\WINDOWS\System32\perfh015.dat [2004-08-04 13:00:00 | 000,432,492 | ---- | C] () -- E:\WINDOWS\System32\perfh009.dat [2004-08-04 13:00:00 | 000,407,552 | ---- | C] () -- E:\WINDOWS\System32\compatUI.dll [2004-08-04 13:00:00 | 000,355,112 | ---- | C] () -- E:\WINDOWS\System32\msjetoledb40.dll [2004-08-04 13:00:00 | 000,313,828 | ---- | C] () -- E:\WINDOWS\System32\perfi015.dat [2004-08-04 13:00:00 | 000,272,128 | ---- | C] () -- E:\WINDOWS\System32\perfi009.dat [2004-08-04 13:00:00 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\sbe.dll [2004-08-04 13:00:00 | 000,218,003 | ---- | C] () -- E:\WINDOWS\System32\dssec.dat [2004-08-04 13:00:00 | 000,199,168 | ---- | C] () -- E:\WINDOWS\System32\ir32_32.dll [2004-08-04 13:00:00 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\encdec.dll [2004-08-04 13:00:00 | 000,094,282 | ---- | C] () -- E:\WINDOWS\System32\msencode.dll [2004-08-04 13:00:00 | 000,083,880 | ---- | C] () -- E:\WINDOWS\System32\perfc015.dat [2004-08-04 13:00:00 | 000,070,656 | ---- | C] () -- E:\WINDOWS\System32\amstream.dll [2004-08-04 13:00:00 | 000,070,622 | ---- | C] () -- E:\WINDOWS\System32\edit.com [2004-08-04 13:00:00 | 000,067,448 | ---- | C] () -- E:\WINDOWS\System32\perfc009.dat [2004-08-04 13:00:00 | 000,053,920 | ---- | C] () -- E:\WINDOWS\System32\dosx.exe [2004-08-04 13:00:00 | 000,053,478 | ---- | C] () -- E:\WINDOWS\System32\tcpmon.ini [2004-08-04 13:00:00 | 000,051,823 | ---- | C] () -- E:\WINDOWS\System32\command.com [2004-08-04 13:00:00 | 000,046,258 | ---- | C] () -- E:\WINDOWS\System32\mib.bin [2004-08-04 13:00:00 | 000,042,809 | ---- | C] () -- E:\WINDOWS\System32\key01.sys [2004-08-04 13:00:00 | 000,042,537 | ---- | C] () -- E:\WINDOWS\System32\keyboard.sys [2004-08-04 13:00:00 | 000,039,434 | ---- | C] () -- E:\WINDOWS\System32\mem.exe [2004-08-04 13:00:00 | 000,035,648 | ---- | C] () -- E:\WINDOWS\System32\ntio411.sys [2004-08-04 13:00:00 | 000,035,424 | ---- | C] () -- E:\WINDOWS\System32\ntio412.sys [2004-08-04 13:00:00 | 000,034,990 | ---- | C] () -- E:\WINDOWS\System32\perfd015.dat [2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- E:\WINDOWS\System32\ntio804.sys [2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- E:\WINDOWS\System32\ntio404.sys [2004-08-04 13:00:00 | 000,033,936 | ---- | C] () -- E:\WINDOWS\System32\ntio.sys [2004-08-04 13:00:00 | 000,029,370 | ---- | C] () -- E:\WINDOWS\System32\ntdos411.sys [2004-08-04 13:00:00 | 000,029,274 | ---- | C] () -- E:\WINDOWS\System32\ntdos412.sys [2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- E:\WINDOWS\System32\ntdos804.sys [2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- E:\WINDOWS\System32\ntdos404.sys [2004-08-04 13:00:00 | 000,028,626 | ---- | C] () -- E:\WINDOWS\System32\perfd009.dat [2004-08-04 13:00:00 | 000,027,898 | ---- | C] () -- E:\WINDOWS\System32\ntdos.sys [2004-08-04 13:00:00 | 000,027,097 | ---- | C] () -- E:\WINDOWS\System32\country.sys [2004-08-04 13:00:00 | 000,020,986 | ---- | C] () -- E:\WINDOWS\System32\debug.exe [2004-08-04 13:00:00 | 000,019,806 | ---- | C] () -- E:\WINDOWS\System32\graphics.com [2004-08-04 13:00:00 | 000,016,024 | ---- | C] () -- E:\WINDOWS\System32\rsvp.ini [2004-08-04 13:00:00 | 000,015,360 | ---- | C] () -- E:\WINDOWS\System32\tsd32.dll [2004-08-04 13:00:00 | 000,014,913 | ---- | C] () -- E:\WINDOWS\System32\kb16.com [2004-08-04 13:00:00 | 000,014,336 | ---- | C] () -- E:\WINDOWS\System32\msdmo.dll [2004-08-04 13:00:00 | 000,013,819 | ---- | C] () -- E:\WINDOWS\System32\pschdprf.ini [2004-08-04 13:00:00 | 000,013,312 | ---- | C] () -- E:\WINDOWS\System32\win87em.dll [2004-08-04 13:00:00 | 000,012,866 | ---- | C] () -- E:\WINDOWS\System32\edlin.exe [2004-08-04 13:00:00 | 000,012,594 | ---- | C] () -- E:\WINDOWS\System32\append.exe [2004-08-04 13:00:00 | 000,011,859 | ---- | C] () -- E:\WINDOWS\System32\setver.exe [2004-08-04 13:00:00 | 000,009,043 | ---- | C] () -- E:\WINDOWS\System32\ansi.sys [2004-08-04 13:00:00 | 000,008,520 | ---- | C] () -- E:\WINDOWS\System32\exe2bin.exe [2004-08-04 13:00:00 | 000,007,116 | ---- | C] () -- E:\WINDOWS\System32\nlsfunc.exe [2004-08-04 13:00:00 | 000,006,074 | ---- | C] () -- E:\WINDOWS\System32\rasctrs.ini [2004-08-04 13:00:00 | 000,004,976 | ---- | C] () -- E:\WINDOWS\System32\himem.sys [2004-08-04 13:00:00 | 000,004,569 | ---- | C] () -- E:\WINDOWS\System32\secupd.dat [2004-08-04 13:00:00 | 000,003,346 | ---- | C] () -- E:\WINDOWS\System32\redir.exe [2004-08-04 13:00:00 | 000,002,992 | ---- | C] () -- E:\WINDOWS\System32\perfci.ini [2004-08-04 13:00:00 | 000,002,890 | ---- | C] () -- E:\WINDOWS\System32\perfwci.ini [2004-08-04 13:00:00 | 000,001,804 | ---- | C] () -- E:\WINDOWS\System32\dcache.bin [2004-08-04 13:00:00 | 000,001,405 | ---- | C] () -- E:\WINDOWS\msdfmap.ini [2004-08-04 13:00:00 | 000,001,295 | ---- | C] () -- E:\WINDOWS\System32\perffilt.ini [2004-08-04 13:00:00 | 000,001,168 | ---- | C] () -- E:\WINDOWS\System32\loadfix.com [2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- E:\WINDOWS\System32\share.exe [2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- E:\WINDOWS\System32\fastopen.exe [2004-08-04 13:00:00 | 000,000,817 | ---- | C] () -- E:\WINDOWS\System32\mscdexnt.exe [2004-08-04 13:00:00 | 000,000,741 | ---- | C] () -- E:\WINDOWS\System32\noise.dat [2004-08-04 13:00:00 | 000,000,512 | ---- | C] () -- E:\WINDOWS\win.ini [2004-08-04 13:00:00 | 000,000,359 | ---- | C] () -- E:\WINDOWS\System32\prodspec.ini [2004-08-04 13:00:00 | 000,000,231 | ---- | C] () -- E:\WINDOWS\system.ini [2003-10-02 11:48:18 | 000,053,248 | R--- | C] () -- E:\WINDOWS\System32\P17CPI.dll [2002-01-04 10:58:52 | 013,107,200 | ---- | C] () -- E:\WINDOWS\System32\oembios.bin [2002-01-04 10:57:56 | 000,004,514 | ---- | C] () -- E:\WINDOWS\System32\oembios.dat [2001-10-26 18:29:54 | 000,082,432 | ---- | C] () -- E:\WINDOWS\System32\dvdplay.exe [2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- E:\WINDOWS\System32\paqsp.dll [1996-04-03 20:33:26 | 000,005,248 | ---- | C] () -- E:\WINDOWS\System32\giveio.sys [color=#E56717]========== LOP Check ==========[/color] [2010-09-16 20:21:48 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Administrator\Dane aplikacji\Simply Super Software [2011-03-12 11:16:59 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\AVG10 [2010-08-25 10:01:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\BearShare [2011-02-22 22:50:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters [2010-12-08 16:14:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Common Files [2010-10-16 00:31:30 | 000,000,000 | -HSD | M] -- E:\Documents and Settings\All Users\Dane aplikacji\DSS [2010-08-15 11:46:29 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10 [2010-09-15 20:51:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Grisoft [2010-12-05 00:37:25 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Installations [2010-08-15 12:04:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\ipla [2010-08-13 22:38:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\LGMOBILEAX [2010-12-08 16:12:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\MFAData [2010-09-29 08:52:52 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\OpenFM [2010-12-05 00:40:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\PC Suite [2010-11-10 22:22:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\TEMP [2010-08-08 18:01:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Ubisoft [2011-03-07 23:11:39 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} [2010-08-25 10:57:08 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24} [2010-09-07 23:54:38 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Auslogics [2010-12-08 16:15:13 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\AVG10 [2010-10-09 08:26:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer [2010-08-15 17:07:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer Pro [2010-08-08 16:28:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\DAEMON Tools [2010-08-15 12:08:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Gadu-Gadu 10 [2011-02-02 21:29:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape [2010-08-15 12:04:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\ipla [2010-08-13 22:32:26 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\LG Electronics [2010-11-17 22:07:08 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenCandy [2010-09-29 08:52:50 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenFM [2010-12-05 00:40:24 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\PC Suite [2010-12-05 00:39:03 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Samsung [2010-12-08 19:02:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Smart Recorder [2010-10-31 18:36:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Sony [2010-08-08 18:01:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Ubisoft [2011-02-02 21:16:19 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions [2011-03-16 21:49:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent [2010-08-13 22:32:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\{D94BA408-F110-488B-A65E-3AE7945F79E6} [2011-03-16 21:39:48 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job [color=#E56717]========== Purity Check ==========[/color] [color=#E56717]========== Custom Scans ==========[/color] [color=#A23BEC]< %systemdrive%\*.* >[/color] [2011-03-16 21:38:23 | 2145,386,496 | -HS- | M] () -- E:\pagefile.sys [2011-03-14 01:10:31 | 000,002,261 | ---- | M] () -- E:\rapport.txt [color=#A23BEC]< MD5 for: AGP440.SYS >[/color] [2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys [2008-04-13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\ServicePackFiles\i386\agp440.sys [2008-04-13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\system32\drivers\agp440.sys [color=#A23BEC]< MD5 for: ATAPI.SYS >[/color] [2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys [2008-04-13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\ServicePackFiles\i386\atapi.sys [2008-04-13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\system32\drivers\atapi.sys [2004-08-03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\$NtServicePackUninstall$\atapi.sys [2004-08-04 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\drivers\system32\DRIVERS\atapi.sys [2004-08-04 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys [2004-08-03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys [color=#A23BEC]< MD5 for: BEEP.SYS >[/color] [2004-08-04 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- E:\WINDOWS\system32\dllcache\beep.sys [2004-08-04 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- E:\WINDOWS\system32\drivers\beep.sys [color=#A23BEC]< MD5 for: CDROM.SYS >[/color] [2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys [2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys [2008-04-13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- E:\WINDOWS\ServicePackFiles\i386\cdrom.sys [2008-04-13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- E:\WINDOWS\system32\drivers\cdrom.sys [2004-08-04 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- E:\WINDOWS\$NtServicePackUninstall$\cdrom.sys [color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color] [2004-08-04 13:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- E:\WINDOWS\$NtServicePackUninstall$\eventlog.dll [2008-04-14 18:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- E:\WINDOWS\ServicePackFiles\i386\eventlog.dll [2008-04-14 18:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- E:\WINDOWS\system32\eventlog.dll [color=#A23BEC]< MD5 for: NDIS.SYS >[/color] [2008-04-13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- E:\WINDOWS\ServicePackFiles\i386\ndis.sys [2008-04-13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- E:\WINDOWS\system32\drivers\ndis.sys [2004-08-04 13:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- E:\WINDOWS\$NtServicePackUninstall$\ndis.sys [color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color] [2004-08-04 13:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- E:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) MD5=335813EACD16E84F3047A3326F6E5473 -- E:\WINDOWS\ServicePackFiles\i386\winlogon.exe [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) MD5=335813EACD16E84F3047A3326F6E5473 -- E:\WINDOWS\system32\winlogon.exe [2008-04-14 18:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- E:\WINDOWS\NiwradSoft Shell Pack\Backup\winlogon.exe [color=#E56717]========== Alternate Data Streams ==========[/color] @Alternate Data Stream - 136 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:B755D674 @Alternate Data Stream - 116 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9 < End of report >[/log] [log]OTL Extras logfile created on: 2011-03-16 21:56:30 - Run 4 OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 70,00% Memory free 5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free Paging file location(s): E:\pagefile.sys 2046 4092 [binary data] %SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files Drive C: | 645,21 Gb Total Space | 246,74 Gb Free Space | 38,24% Space Free | Partition Type: NTFS Drive D: | 232,88 Gb Total Space | 208,01 Gb Free Space | 89,32% Space Free | Partition Type: NTFS Drive E: | 100,00 Gb Total Space | 51,54 Gb Free Space | 51,54% Space Free | Partition Type: NTFS Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* .hta [@ = htafile] -- Reg Error: Key error. File not found .url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l [HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%* exefile [open] -- "%1" %* htafile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Winamp.Bookmark] -- "E:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft) Directory [Winamp.Enqueue] -- "E:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft) Directory [Winamp.Play] -- "E:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "FirstRunDisabled" = 1 "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 1 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [color=#E56717]========== System Restore Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore] "DisableSR" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr] "Start" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService] "Start" = 2 [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List] "1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007 "2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008 "139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004 "445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005 "137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001 "138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] "E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC) [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft) "C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- () "C:\Gry\Assasin Creed 2\AssassinsCreedII.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft) "C:\Gry\Assasin Creed 2\UPlayBrowser.exe" = C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment) "C:\Gry\StarCraft II\StarCraft II.exe" = C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment) "E:\Program Files\Gadu-Gadu\gg.exe" = E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny "E:\Program Files\Gadu-Gadu 10\gg.exe" = E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.) "C:\Gry\StarCraft II\Versions\Base15405\SC2.exe" = C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.) "E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC) "C:\Gry\Medal of Honor\Binaries\moh.exe" = C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer) -- (Electronic Arts Inc.) "C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe" = C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater) -- (EA Digital Illusions CE AB) "C:\Gry\Medal of Honor\MP\mohmpgame.exe" = C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer) -- (EA Digital Illusions CE AB) "C:\Gry\Medal of Honor\MP\mohmpupdater.exe" = C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater) -- (EA Digital Illusions CE AB) "E:\Program Files\Sony Ericsson\Update Service\Update Service.exe" = E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- () "C:\Gry\Call of Duty - Black Ops\BlackOps.exe" = C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps "E:\Program Files\AVG\AVG10\avgmfapx.exe" = E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG "C:\Gry\Grid\GRID.exe" = C:\Gry\Grid\GRID.exe:*:Enabled:GRID -- (Codemasters) "C:\Gry\F1 2010\f1_2010.exe" = C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010 "C:\Gry\F1 2010\F1_2010_game.exe" = C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable -- (Codemasters) "E:\Program Files\uTorrent\uTorrent.exe" = E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.) "C:\Gry\Battelfield 2\BF2.exe" = C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2 -- () "E:\Program Files\GameSpy Arcade\Aphex.exe" = E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (GameSpy Industries, Inc.) [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable "{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK "{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM) "{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store "{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp "{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch "{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy "{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86 "{22A647A1-E442-7302-3905-DA8C5FDFCAFB}" = Catalyst Control Center Graphics Previews Common "{23768150-5EFE-14A4-CECE-914D03FF18B4}" = CCC Help English "{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 24 "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{292899E7-6B8F-8099-0ACD-71D5F448106D}" = ccc-utility "{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg "{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE "{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan "{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite "{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX "{415CDA53-9100-476F-A7B2-476691E117C7}" = HP Smart Web Printing "{41B8A39C-E97D-FDE5-3A4A-8E6FA961E94E}" = ccc-core-static "{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840 "{505AFDC0-5E72-4928-8368-5DEA385E3647}" = CorelDRAW Graphics Suite 12 "{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport "{5A0B7BA5-4682-4273-81C2-69B17E649103}" = GRID "{5A274D69-F9BB-4AA9-85C9-440FA947DF04}_is1" = Medal of Honor "{5C318BD3-BA72-43E4-9D16-A18210B4A5A5}" = Media Go "{5CA1C102-CFB3-9C8E-2DEF-E98A4B57C8CF}" = Catalyst Control Center InstallProxy "{5F624839-947D-46EA-BD63-FD847C1AC6F1}" = BearShare "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder "{706BB40A-4102-4c89-8107-DC68C4EBD19B}" = HP Deskjet All-In-One Software 9.0 "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{78B771A0-6883-44FB-A830-B138EA89278E}" = Solid Edge 2D Drafting ST3 "{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK "{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01 "{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II "{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher "{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}" = AeroFly Professional Deluxe "{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update "{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime "{93F54611-2701-454e-94AB-623F458D9E6B}" = DeviceDiscovery "{97A39919-9FEA-48B7-AB2B-4F99212D1E98}" = HDD Regenerator "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable "{A9C365A3-06C0-43b4-A2DB-EDF0A6079AA9}" = DJ_AIO_Software "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish "{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant "{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan "{B4B1F18B-5CED-4f8f-8A8F-1BD0503C222E}" = DJ_AIO_ProductContext "{B5924CA6-24A7-48F5-BC9C-8BFA94ED4564}" = LightScribe 1.4.67.1 "{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}" = Titan Quest Immortal Throne "{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader "{B9242864-2841-4ADE-86E0-8F90F91B04DD}" = Logitech Gaming Software "{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter "{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5 "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component "{D94BA408-F110-488B-A65E-3AE7945F79E6}_is1" = Odinstalowuj LG PC Suite III "{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding "{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware "{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag "{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm "{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox "{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.123 "{F0C5CF53-FE88-B20E-CE8C-2B5CAA3ECFD0}" = ATI Catalyst Install Manager "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk "{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729) "{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01 "{F56D6F46-1D62-4734-BF12-6457A1ED17BD}" = DJ_AIO_Software_min "{F68563C0-2CCD-4799-A014-017A370D627B}" = Edycja kolekcjonerska Heroes of Might and Magic V "{F72E2DDC-3DB8-4190-A21D-63883D955FE7}" = PSSWCORE "{F7338FA3-DAB5-49B2-900D-0AFB5760C166}" = PC Probe II "{FD8D8B04-BEAD-4A55-AA1D-62D2373E7DEA}" = Status "{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security "Ad-Aware" = Ad-Aware "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin "ALLPlayer_is1" = ALLPlayer V4.X "BearShare" = BearShare "BS.Player ControlBar" = BS.Player ControlBar "BSPlayerf" = BS.Player FREE "CCleaner" = CCleaner "Combined Community Codec Pack_is1" = Combined Community Codec Pack 2007-07-22 "COMODO GeekBuddy" = COMODO GeekBuddy "CPUID CPU-Z_is1" = CPUID CPU-Z 1.54 "Creative Software AutoUpdate" = Creative Software AutoUpdate "Disk Checker" = Disk Checker "EXPERTool ATI_is1" = EXPERTool ATI 4.2 "F1 2010_is1" = F1 2010 "FMS" = FMS "Fraps" = Fraps "Gadu-Gadu 10" = Gadu-Gadu 10 "GameSpy Arcade" = GameSpy Arcade "HP Imaging Device Functions" = HP Imaging Device Functions 9.0 "HP Photosmart Essential" = HP Photosmart Essential 2.01 "HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0 "HPExtendedCapabilities" = HP Customer Participation Program 9.0 "Inkscape" = Inkscape 0.48.0 "Mafia II_is1" = Mafia II "Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15) "NeroMultiInstaller!UninstallKey" = Nero Suite "NetMeter_is1" = NetMeter 0.9.9.9 (beta 2) "OpenAL" = OpenAL "PunkBusterSvc" = PunkBuster Services "RealAlt_is1" = Real Alternative 1.60 "RealPlayer 12.0" = RealPlayer "Seven Remix XP" = Seven Remix XP 2.4 "SpeedFan" = SpeedFan (remove only) "StarCraft II" = StarCraft II "Unlocker" = Unlocker 1.8.5 "Update Service" = Sony Ericsson Update Service "uTorrent" = µTorrent "Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7 "Winamp" = Winamp "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows XP Service Pack" = Windows XP Service Pack 3 "WinRAR archiver" = Archiwizator WinRAR "winusb0100" = Microsoft WinUsb 1.0 "WMFDist11" = Windows Media Format 11 runtime "Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5 "XpsEPSC" = XML Paper Specification Shared Components Pack 1.0 "XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "I-Doser v4" = I-Doser v4 [color=#E56717]========== Last 10 Event Log Errors ==========[/color] [ Application Events ] Error - 2011-02-22 18:40:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca F1_2010_game.exe, wersja 1.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:37:22 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:38:10 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-05 11:38:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1001 Description = Pakiet błędów 288306601. Error - 2011-03-05 18:52:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca setup2.exe, wersja 1.0.0.177, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-07 18:26:53 | Computer Name = DOMINIK-BFC9604 | Source = Lavasoft Ad-Aware Service | ID = 0 Description = Error - 2011-03-12 19:22:52 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:53 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. Error - 2011-03-12 19:23:55 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002 Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000. [ System Events ] Error - 2011-03-13 20:39:01 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 Error - 2011-03-16 04:53:58 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 Error - 2011-03-16 16:32:31 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 Error - 2011-03-16 16:36:37 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa COMODO livePCsupport Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:36:37 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa Ati HotKey Poller niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa Creative Service for CDROM Access niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa Java Quick Starter niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa LightScribeService Direct Disc Labeling Service niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034 Description = Usługa PnkBstrA niespodziewanie zakończyła pracę. Wystąpiło to razy: 1. Error - 2011-03-16 16:38:43 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000 Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys) z powodu następującego błędu: %%2 < End of report >[/log] Nie wiem dlaczego ale z RSIT mam tylko jednego loga. [log]Logfile of random's system information tool 1.08 (written by random/random) Run by Dominik at 2011-03-16 22:02:40 Microsoft Windows XP Home Edition Dodatek Service Pack 3 System drive E: has 53 GB (52%) free of 102 GB Total RAM: 3071 MB (70% free) Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 22:02:42, on 2011-03-16 Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: E:\WINDOWS\System32\smss.exe E:\WINDOWS\system32\winlogon.exe E:\WINDOWS\system32\services.exe E:\WINDOWS\system32\lsass.exe E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe E:\WINDOWS\system32\Ati2evxx.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe E:\WINDOWS\system32\svchost.exe E:\WINDOWS\system32\svchost.exe E:\WINDOWS\system32\Ati2evxx.exe E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe E:\WINDOWS\system32\spoolsv.exe E:\WINDOWS\Explorer.EXE E:\WINDOWS\system32\CTsvcCDA.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\Java\jre6\bin\jqs.exe E:\Program Files\Common Files\LightScribe\LSSrvc.exe E:\WINDOWS\System32\svchost.exe E:\WINDOWS\System32\svchost.exe E:\WINDOWS\system32\PnkBstrA.exe E:\WINDOWS\system32\svchost.exe E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe E:\WINDOWS\system32\Rundll32.exe E:\Program Files\Winamp\winampa.exe E:\Program Files\HP\HP Software Update\HPWuSchd2.exe E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe E:\WINDOWS\System32\svchost.exe E:\Program Files\Real\RealPlayer\update\realsched.exe E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe E:\Program Files\COMODO\COMODO Internet Security\cfp.exe E:\Program Files\Common Files\Java\Java Update\jusched.exe E:\WINDOWS\system32\ctfmon.exe E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe E:\Program Files\EXPERTool ATI\TBPanel.exe E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe E:\Program Files\uTorrent\uTorrent.exe E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe E:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe E:\Program Files\Mozilla Firefox\firefox.exe E:\Program Files\Mozilla Firefox\plugin-container.exe E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\RSIT.exe E:\Program Files\trend micro\Dominik.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper O4 - HKLM\..\Run: [UpdReg] E:\WINDOWS\UpdReg.EXE O4 - HKLM\..\Run: [WinampAgent] "E:\Program Files\Winamp\winampa.exe" O4 - HKLM\..\Run: [HP Software Update] E:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [Ai Nap] "E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe" O4 - HKLM\..\Run: [QFan Help] "E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe" O4 - HKLM\..\Run: [Cpu Level Up help] "E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe" O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun O4 - HKLM\..\Run: [ISUSPM Startup] E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe -startup O4 - HKLM\..\Run: [ISUSScheduler] "E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=032011 serial=DR12WNB-6417934-NRC lang=PL O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h O4 - HKLM\..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe O4 - HKLM\..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe" O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe /A O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background O4 - HKCU\..\Run: [ALLUpdate] "E:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep" O4 - HKCU\..\Run: [uTorrent] "E:\Program Files\uTorrent\uTorrent.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: HP Digital Imaging Monitor.lnk = E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O9 - Extra button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=http://www.optimus.pl O20 - AppInit_DLLs: E:\WINDOWS\system32\guard32.dll O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - E:\WINDOWS\system32\CTsvcCDA.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - E:\Program Files\Common Files\LightScribe\LSSrvc.exe O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- End of file - 8729 bytes ======Scheduled tasks folder====== E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}] HP Print Enhancer - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}] HP Print Clips - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}] Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}] RealPlayer Download and Record Plugin for Internet Explorer - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-11-06 382720] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}] Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}] IplexToALLPlayer - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll [2011-02-09 400384] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}] JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "CTSysVol"=E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe [2005-10-31 57344] "P17Helper"=Rundll32 P17.dll,P17Helper [] "UpdReg"=E:\WINDOWS\UpdReg.EXE [2000-05-11 90112] "WinampAgent"=E:\Program Files\Winamp\winampa.exe [2008-01-15 37376] "HP Software Update"=E:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152] "Ai Nap"=E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe [2009-07-01 1435136] "QFan Help"=E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088] "Cpu Level Up help"=E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152] "NeroFilterCheck"=E:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648] "QuickTime Task"=E:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696] "TkBellExe"=E:\Program Files\Real\RealPlayer\update\realsched.exe [2010-11-06 274608] "Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760] "Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288] "StartCCC"=E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-25 98304] "ISUSPM Startup"=E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe [2004-06-16 221184] "ISUSScheduler"=E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920] "CorelDRAW Graphics Suite 11b"=E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe [2004-06-23 733184] "COMODO Internet Security"=E:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-17 2548552] "COMODO"=E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [2011-03-02 210648] "CPA"=E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [2011-03-02 184344] "SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 40448] "Gainward"=E:\Program Files\EXPERTool ATI\TBPanel.exe [2009-04-09 2304552] "Sony Ericsson PC Companion"=E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-24 427008] "ALLUpdate"=E:\Program Files\ALLPlayer\ALLUpdate.exe [2011-02-08 1362944] "uTorrent"=E:\Program Files\uTorrent\uTorrent.exe [2011-03-12 399224] E:\Documents and Settings\All Users\Menu Start\Programy\Autostart HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=" E:\WINDOWS\system32\guard32.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] E:\WINDOWS\system32\Ati2evxx.dll [2010-08-26 159744] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "NoDriveTypeAutoRun"=0x95000000 "NoFavoritesMenu"=1 "NoRecycleFiles"=1 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer] "HonorAutoRunSetting"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher" "C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II" "C:\Gry\Assasin Creed 2\AssassinsCreedII.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update" "C:\Gry\Assasin Creed 2\UPlayBrowser.exe"="C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay" "C:\Gry\StarCraft II\StarCraft II.exe"="C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher" "E:\Program Files\Gadu-Gadu\gg.exe"="E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny" "E:\Program Files\Gadu-Gadu 10\gg.exe"="E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10" "C:\Gry\StarCraft II\Versions\Base15405\SC2.exe"="C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II" "E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare" "E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA" "E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB.exe" "C:\Gry\Medal of Honor\Binaries\moh.exe"="C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer)" "C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe"="C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater)" "C:\Gry\Medal of Honor\MP\mohmpgame.exe"="C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer)" "C:\Gry\Medal of Honor\MP\mohmpupdater.exe"="C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater)" "E:\Program Files\Sony Ericsson\Update Service\Update Service.exe"="E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service" "C:\Gry\Call of Duty - Black Ops\BlackOps.exe"="C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps" "E:\Program Files\AVG\AVG10\avgmfapx.exe"="E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG" "C:\Gry\Grid\GRID.exe"="C:\Gry\Grid\GRID.exe:*:Enabled:GRID" "C:\Gry\F1 2010\f1_2010.exe"="C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010" "C:\Gry\F1 2010\F1_2010_game.exe"="C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable" "E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent" "C:\Gry\Battelfield 2\BF2.exe"="C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2" "E:\Program Files\GameSpy Arcade\Aphex.exe"="E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare" ======List of files/folders created in the last 1 months====== 2011-03-16 21:36:37 ----D---- E:\_OTL 2011-03-16 21:23:34 ----SD---- E:\ComboFix 2011-03-14 22:33:27 ----D---- E:\Program Files\trend micro 2011-03-14 22:33:26 ----D---- E:\rsit 2011-03-14 01:06:32 ----A---- E:\WINDOWS\system32\tmp.txt 2011-03-14 01:04:17 ----A---- E:\WINDOWS\ntbtlog.txt 2011-03-14 00:58:55 ----A---- E:\rapport.txt 2011-03-14 00:01:54 ----D---- E:\WINDOWS\ERDNT 2011-03-14 00:00:50 ----D---- E:\Qoobox 2011-03-13 22:30:21 ----A---- E:\WINDOWS\system32\lsdelete.exe 2011-03-13 20:42:23 ----D---- E:\Program Files\GameSpy Arcade 2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files\Java 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaws.exe 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaw.exe 2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\java.exe 2011-03-12 22:17:27 ----D---- E:\Program Files\uTorrent 2011-03-12 22:16:52 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent 2011-03-12 13:06:27 ----RA---- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS 2011-03-12 13:05:04 ----D---- E:\Netgear 2011-03-12 13:00:25 ----HD---- E:\VritualRoot 2011-03-12 11:27:29 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Comodo 2011-03-12 11:27:25 ----D---- E:\Program Files\COMODO 2011-03-11 12:00:52 ----A---- E:\WINDOWS\adiras.ini 2011-03-11 00:00:24 ----HDC---- E:\WINDOWS\$NtUninstallKB2479943$ 2011-03-10 23:58:50 ----HDC---- E:\WINDOWS\$NtUninstallKB2481109$ 2011-03-09 22:49:48 ----A---- E:\WINDOWS\system32\WooDial2000.dll 2011-03-09 22:49:06 ----D---- E:\WINDOWS\system32\AlertModule 2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\IfHelper.dll 2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\FTRTSVC.exe 2011-03-09 22:47:16 ----SHD---- E:\WINDOWS\ftpcache 2011-03-07 23:56:39 ----RA---- E:\WINDOWS\system32\psfind.dll 2011-03-07 23:54:17 ----D---- E:\Program Files\THQ 2011-03-07 23:53:03 ----A---- E:\WINDOWS\system32\drivers\Lbd.sys 2011-03-07 23:52:54 ----A---- E:\WINDOWS\system32\drivers\SBREDrv.sys 2011-03-07 23:11:38 ----HDC---- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} 2011-03-07 23:11:22 ----D---- E:\Program Files\Lavasoft 2011-03-07 23:11:22 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2011-03-06 23:32:26 ----HDC---- E:\WINDOWS\$NtUninstallKB971029$ 2011-03-06 00:17:34 ----A---- E:\WINDOWS\RealFlight.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\WIN.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\SYSTEM.INI 2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\PROTOCOL.INI 2011-03-06 00:00:19 ----A---- E:\WINDOWS\PROTOCOL.INI 2011-03-06 00:00:01 ----A---- E:\WINDOWS\uninst.exe 2011-03-05 23:45:32 ----D---- E:\Program Files\RealFlightG4 2011-03-05 23:45:30 ----D---- E:\Program Files\Common Files\KnifeEdge 2011-03-04 22:56:17 ----D---- E:\Program Files\FMS 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmVirHid.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmHidLo.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmFilter.sys 2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmBEnum.sys 2011-02-22 22:23:19 ----A---- E:\WINDOWS\system32\drivers\WmXlCore.sys 2011-02-22 22:23:18 ----D---- E:\Program Files\Common Files\Logitech 2011-02-22 22:23:18 ----A---- E:\WINDOWS\system32\WmJoyFrc.dll 2011-02-22 22:23:08 ----D---- E:\Program Files\Logitech ======List of files/folders modified in the last 1 months====== 2011-03-16 21:40:40 ----D---- E:\WINDOWS\Prefetch 2011-03-16 21:39:48 ----SD---- E:\WINDOWS\Tasks 2011-03-16 21:39:47 ----D---- E:\WINDOWS\Temp 2011-03-16 21:39:13 ----D---- E:\WINDOWS\system32 2011-03-16 21:38:59 ----A---- E:\WINDOWS\win.ini 2011-03-16 21:38:58 ----SHD---- E:\WINDOWS\Installer 2011-03-16 21:38:58 ----HD---- E:\Config.Msi 2011-03-16 21:38:46 ----D---- E:\WINDOWS\system32\CatRoot2 2011-03-16 21:37:11 ----A---- E:\WINDOWS\SchedLgU.Txt 2011-03-16 21:37:01 ----D---- E:\WINDOWS 2011-03-16 21:36:44 ----D---- E:\Program Files\BS.Player ControlBar 2011-03-16 21:22:37 ----D---- E:\WINDOWS\system32\drivers 2011-03-14 22:33:27 ----D---- E:\Program Files 2011-03-14 01:09:46 ----SHD---- E:\RECYCLER 2011-03-14 00:57:05 ----D---- E:\Program Files\Mozilla Firefox 2011-03-14 00:18:12 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\Winamp 2011-03-13 20:55:03 ----D---- E:\WINDOWS\system32\config 2011-03-13 20:47:50 ----D---- E:\WINDOWS\system32\DirectX 2011-03-13 20:47:49 ----RSD---- E:\WINDOWS\assembly 2011-03-13 20:37:32 ----HD---- E:\Program Files\InstallShield Installation Information 2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files 2011-03-13 17:58:56 ----D---- E:\Program Files\Java 2011-03-12 23:38:51 ----HD---- E:\WINDOWS\inf 2011-03-12 23:38:51 ----DC---- E:\WINDOWS\system32\DRVSTORE 2011-03-12 13:51:56 ----D---- E:\WINDOWS\system32\LogFiles 2011-03-12 11:26:38 ----D---- E:\WINDOWS\Minidump 2011-03-12 11:26:38 ----D---- E:\WINDOWS\Debug 2011-03-12 11:16:59 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\AVG10 2011-03-12 11:16:18 ----RSHDC---- E:\WINDOWS\system32\dllcache 2011-03-11 21:35:05 ----D---- E:\WINDOWS\system32\CatRoot 2011-03-10 23:58:57 ----A---- E:\WINDOWS\system32\MRT.exe 2011-03-10 21:40:59 ----HD---- E:\WINDOWS\$hf_mig$ 2011-03-07 23:11:18 ----D---- E:\WINDOWS\WinSxS 2011-02-26 16:48:27 ----D---- E:\Program Files\Sony Ericsson 2011-02-25 22:00:23 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson 2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\wrap_oal.dll 2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\OpenAL32.dll 2011-02-22 22:50:40 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters 2011-02-22 22:49:12 ----D---- E:\Program Files\OpenAL 2011-02-22 22:23:54 ----D---- E:\WINDOWS\system32\ReinstallBackups 2011-02-19 13:00:42 ----D---- E:\Program Files\ALLPlayer 2011-02-19 13:00:39 ----D---- E:\Program Files\NAPI-PROJEKT ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R0 giveio;giveio; E:\WINDOWS\system32\giveio.sys [1996-04-03 5248] R0 Lbd;Lbd; E:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-03-07 64512] R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696] R0 PxHelp20;PxHelp20; E:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528] R0 speedfan;speedfan; E:\WINDOWS\system32\speedfan.sys [2006-09-24 5248] R0 sptd;sptd; E:\WINDOWS\System32\Drivers\sptd.sys [2010-08-08 717296] R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-15 76544] R1 AsIO;AsIO; E:\WINDOWS\system32\drivers\AsIO.sys [2009-12-06 12400] R1 cmderd;COMODO Internet Security Eradication Driver; E:\WINDOWS\System32\DRIVERS\cmderd.sys [2011-01-06 15592] R1 cmdGuard;COMODO Internet Security Sandbox Driver; E:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-01-06 239368] R1 intelppm;Sterownik procesora Intel; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448] R1 kbdhid;Sterownik klawiatury HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720] R2 cpuz133;cpuz133; \??\E:\WINDOWS\system32\drivers\cpuz133_x32.sys [] R3 Arp1394;Protokół klienta 1394 ARP; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800] R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-08-26 5386752] R3 AtiHdmiService;ATI Function Driver for HDMI Service; E:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-10-21 89600] R3 ctsfm2k;Creative SoundFont Management Device Driver; E:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752] R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384] R3 hidusb;Sterownik Microsoft klasy HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368] R3 mouhid;Sterownik myszy HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12160] R3 MTsensor;ATK0110 ACPI UTILITY; E:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810] R3 NIC1394;Sterownik sieci 1394; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824] R3 ossrv;Creative OS Services Driver; E:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496] R3 P17;Sound Blaster Audigy; E:\WINDOWS\system32\drivers\P17.sys [2005-07-07 1389056] R3 seehcri;Sony Ericsson seehcri Device Driver; E:\WINDOWS\system32\DRIVERS\seehcri.sys [2010-11-05 27632] R3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128] R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608] R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; E:\WINDOWS\system32\drivers\WmBEnum.sys [2004-04-14 10144] R3 WmXlCore;Logitech WingMan Translation Layer Driver; E:\WINDOWS\system32\drivers\WmXlCore.sys [2004-04-14 44064] R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; E:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-07-26 248832] S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); E:\WINDOWS\System32\Drivers\e4ldr.sys [] S3 aisit5gf;aisit5gf; E:\WINDOWS\system32\drivers\aisit5gf.sys [] S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys [] S3 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\E:\WINDOWS\system32\drivers\BVRPMPR5.SYS [] S3 e4usbaw;USB ADSL2 WAN Adapter; E:\WINDOWS\system32\DRIVERS\e4usbaw.sys [] S3 ggflt;SEMC USB Flash Driver Filter; E:\WINDOWS\system32\DRIVERS\ggflt.sys [2010-10-10 13224] S3 ggsemc;SEMC USB Flash Driver; E:\WINDOWS\system32\DRIVERS\ggsemc.sys [2010-10-10 25512] S3 HPZid412;IEEE-1284.4 Driver HPZid412; E:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920] S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; E:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496] S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; E:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568] S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\E:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys [] S3 LgBttPort;LGE Bluetooth TransPort; E:\WINDOWS\system32\DRIVERS\lgbtport.sys [] S3 lgbusenum;LG Bluetooth Bus Enumerator; E:\WINDOWS\system32\DRIVERS\lgbtbus.sys [] S3 lgmdbus;LG Mobile driver (WDM); E:\WINDOWS\system32\DRIVERS\lgmdbus.sys [] S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys [] S3 lgmdmdm;LG Mobile USB WMC Modem Driver; E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys [] S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys [] S3 lgmdobex;LG Mobile USB WMC OBEX Interface; E:\WINDOWS\system32\DRIVERS\lgmdobex.sys [] S3 LGVMODEM;LGE Virtual Modem; E:\WINDOWS\system32\DRIVERS\lgvmodem.sys [] S3 usbprint;Klasa PRINTER USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856] S3 usbscan;Sterownik skanera USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104] S3 USBSTOR;Sterownik magazynu masowego USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368] S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008] S3 WinUSB;Sony Ericsson USB Device sa0101 Driver; E:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368] S3 WmFilter;Logitech WingMan HID Filter Driver; E:\WINDOWS\system32\drivers\WmFilter.sys [2004-04-14 21280] S3 WmHidLo;Logitech WingMan USB Filter Driver; E:\WINDOWS\system32\drivers\WmHidLo.sys [2004-04-14 14432] S3 WmVirHid;Logitech Virtual Hid Device Driver; E:\WINDOWS\system32\drivers\WmVirHid.sys [2004-04-14 5600] S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528] S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2010-08-26 606208] R2 CLPSLS;COMODO livePCsupport Service; E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 156576] R2 cmdAgent;COMODO Internet Security Helper Service; E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-17 1803224] R2 Creative Service for CDROM Access;Creative Service for CDROM Access; E:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032] R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2011-03-08 1405384] R2 LightScribeService;LightScribeService Direct Disc Labeling Service; E:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-01-20 73728] R2 Net Driver HPZ12;Net Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 Pml Driver HPZ12;Pml Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336] R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2010-10-16 75064] R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] R3 hpqcxs08;hpqcxs08; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336] S3 aspnet_state;Usuga stanu ASP.NET; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312] S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632] S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104] S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664] S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344] S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096] -----------------EOF-----------------[/log]
Tomek01 komentarz 17 marca 2011 komentarz 17 marca 2011 Wyłącz a następnie włącz przywracanie systemu na wszystkich partycjach. Użyj ATF Cleaner, zaznacz trzy pierwsze fajki i empty selected. Wykonaj pełny skan [url=http://www.instalki.pl/programy/download_c/14/155.html][color=#0000CD][b]DrWebCureIt[/b][/color][/url] oraz [url=http://www.instalki.pl/programy/download_c/13/96.html][color=#0000CD][b]Malwarebytes Anti-Malware[/b][/color][/url] i jakby coś wykryły raporty pokaż na forum.
domin46 komentarz 18 marca 2011 Autor komentarz 18 marca 2011 Zrobiłem to co napisałeś. Dodatkowo przeskanowałem jeszcze ComboFix-em. Niestety problem nie zniknął. [log]Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Wersja bazy: 6088 Windows 5.1.2600 Dodatek Service Pack 3 Internet Explorer 6.0.2900.5512 2011-03-17 17:14:21 mbam-log-2011-03-17 (17-13-36).txt Typ skanowania: Pełne skanowanie (C:\|D:\|E:\|) Przeskanowano obiektów: 283124 Upłynęło: 49 minut(y), 50 sekund(y) Zainfekowanych procesów w pamięci: 0 Zainfekowanych modułów w pamięci: 0 Zainfekowanych kluczy rejestru: 0 Zainfekowanych wartości rejestru: 0 Zainfekowane informacje rejestru systemowego: 1 Zainfekowanych folderów: 0 Zainfekowanych plików: 7 Zainfekowanych procesów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych modułów w pamięci: (Nie znaleziono zagrożeń) Zainfekowanych kluczy rejestru: (Nie znaleziono zagrożeń) Zainfekowanych wartości rejestru: (Nie znaleziono zagrożeń) Zainfekowane informacje rejestru systemowego: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRecycleFiles (PUM.Disable.Recycle) -> Bad: (1) Good: (0) -> No action taken. Zainfekowanych folderów: (Nie znaleziono zagrożeń) Zainfekowanych plików: c:\gry instal\assassins.creed 2\crack ac@\SKIDROW\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken. c:\gry instal\call of duty 4 - modern warfare\#readme#\rzr-cod4-keygen.exe (Trojan.Agent.CK) -> No action taken. c:\potrzebne\crack ac@\SKIDROW\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken. c:\Save\assasin creeed 2 (pruby)\ubisoft game launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken. c:\spolszczenia, cracki , serie\call of duty4-razor1911+keygen and crack\rzr-cod4.exe (Trojan.Agent.CK) -> No action taken. e:\program files\Ubisoft\ubisoft game launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken. e:\WINDOWS\system32\calc.exe (Trojan.Agent.Gen) -> No action taken.[/log] [log]ComboFix 11-03-18.01 - Dominik 2011-03-18 21:55:42.1.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3071.2267 [GMT 1:00] Uruchomiony z: E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\ComboFix.exe AV: COMODO Antivirus *Enabled/Updated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B} AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33} UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !! ((((((((((((((((((((((((((((((((((((((( Usunięto ))))))))))))))))))))))))))))))))))))))))))))))))) E:\WINDOWS\settings.reg E:\WINDOWS\system32\AutoRun.inf E:\WINDOWS\system32\Data E:\WINDOWS\system32\win.ini Zainfekowana kopia E:\WINDOWS\regedit.exe została znaleziona. Problem naprawiono Plik odzyskano z - E:\WINDOWS\NiwradSoft Shell Pack\Backup\regedit.exe Zainfekowana kopia E:\WINDOWS\system32\midimap.dll została znaleziona. Problem naprawiono Plik odzyskano z - E:\WINDOWS\NiwradSoft Shell Pack\Backup\midimap.dll ((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_NPF ((((((((((((((((((((((((( Pliki utworzone od 2011-02-18 do 2011-03-18 ))))))))))))))))))))))))))))))) 2011-03-17 16:16:40 . 2011-03-17 16:16:40 -------- d-----w- E:\Documents and Settings\Dominik\DoctorWeb 2011-03-17 15:14:05 . 2011-03-17 15:14:05 -------- d-----w- E:\Documents and Settings\Dominik\Dane aplikacji\Malwarebytes 2011-03-17 15:14:00 . 2010-12-20 17:09:00 38224 ----a-w- E:\WINDOWS\system32\drivers\mbamswissarmy.sys 2011-03-17 15:13:59 . 2011-03-17 15:13:59 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes 2011-03-17 15:13:56 . 2011-03-17 15:14:00 -------- d-----w- E:\Program Files\Malwarebytes' Anti-Malware 2011-03-17 15:13:56 . 2010-12-20 17:08:40 20952 ----a-w- E:\WINDOWS\system32\drivers\mbam.sys 2011-03-16 23:01:10 . 1998-01-23 11:22:40 304128 ----a-w- E:\WINDOWS\IsUninst.exe 2011-03-16 20:36:37 . 2011-03-16 20:36:37 -------- d-----w- E:\_OTL 2011-03-14 21:33:27 . 2011-03-16 22:33:36 -------- d-----w- E:\Program Files\trend micro 2011-03-14 21:33:26 . 2011-03-14 21:33:36 -------- d-----w- E:\rsit 2011-03-14 00:40:26 . 2011-03-14 00:40:26 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO 2011-03-14 00:36:26 . 2011-03-14 00:36:26 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens 2011-03-13 21:30:21 . 2011-03-07 22:52:44 16432 ----a-w- E:\WINDOWS\system32\lsdelete.exe 2011-03-13 21:22:55 . 2011-03-13 21:22:55 -------- d-----w- E:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Mozilla 2011-03-13 19:42:23 . 2011-03-13 19:43:04 -------- d-----w- E:\Program Files\GameSpy Arcade 2011-03-13 19:33:26 . 2004-10-22 01:18:12 749568 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll 2011-03-13 19:33:26 . 2004-10-22 01:17:48 69715 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll 2011-03-13 19:33:26 . 2004-10-22 01:17:04 274432 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll 2011-03-13 19:33:26 . 2004-10-22 01:16:28 180224 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll 2011-03-13 19:33:26 . 2004-10-22 01:16:10 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe 2011-03-13 19:33:19 . 2011-03-13 19:33:19 192644 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll 2011-03-13 19:33:18 . 2011-03-13 19:33:18 323716 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll 2011-03-13 16:59:16 . 2011-03-13 16:59:16 -------- d-----w- E:\Program Files\Common Files\Java 2011-03-12 21:17:27 . 2011-03-12 21:17:27 -------- d-----w- E:\Program Files\uTorrent 2011-03-12 21:16:52 . 2011-03-18 21:05:31 -------- d-----w- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent 2011-03-12 12:06:27 . 2010-02-16 04:38:12 49904 ----a-r- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS 2011-03-12 12:05:04 . 2011-03-12 13:16:35 -------- d-----w- E:\Netgear 2011-03-12 12:00:25 . 2011-03-12 12:00:25 -------- d-----w- E:\VritualRoot 2011-03-12 10:29:54 . 2011-03-18 21:03:54 1474832 ----a-w- E:\WINDOWS\system32\drivers\sfi.dat 2011-03-12 10:27:29 . 2011-03-13 18:31:32 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Comodo 2011-03-12 10:27:25 . 2011-03-12 10:28:11 -------- d-----w- E:\Program Files\COMODO 2011-03-10 22:52:11 . 2011-03-10 22:52:11 -------- d-----w- E:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Sunbelt Software 2011-03-09 21:49:48 . 2004-08-23 12:50:02 32768 ----a-w- E:\WINDOWS\system32\WooDial2000.dll 2011-03-09 21:49:06 . 2011-03-09 21:49:06 -------- d-----w- E:\WINDOWS\system32\AlertModule 2011-03-09 21:49:05 . 2005-10-06 13:55:22 36864 ----a-w- E:\WINDOWS\system32\IfHelper.dll 2011-03-09 21:49:05 . 2004-08-23 12:49:56 40960 ----a-w- E:\WINDOWS\system32\FTRTSVC.exe 2011-03-09 21:47:16 . 2011-03-09 21:47:16 -------- d-sh--w- E:\WINDOWS\ftpcache 2011-03-07 22:56:39 . 2007-01-01 19:03:08 40960 ----a-r- E:\WINDOWS\system32\psfind.dll 2011-03-07 22:54:17 . 2011-03-07 22:54:17 -------- d-----w- E:\Program Files\THQ 2011-03-07 22:53:03 . 2011-03-07 22:50:28 64512 ----a-w- E:\WINDOWS\system32\drivers\Lbd.sys 2011-03-07 22:52:54 . 2011-03-07 22:52:49 98392 ----a-w- E:\WINDOWS\system32\drivers\SBREDrv.sys 2011-03-07 22:52:06 . 2006-02-07 14:40:38 204800 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iuser.dll 2011-03-07 22:52:06 . 2006-02-07 14:40:30 69715 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ctor.dll 2011-03-07 22:52:06 . 2006-02-07 14:40:22 274432 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iscript.dll 2011-03-07 22:52:06 . 2005-11-13 22:19:18 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe 2011-03-07 22:52:05 . 2011-03-07 22:52:05 331908 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\setup.dll 2011-03-07 22:52:05 . 2011-03-07 22:52:05 200836 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iGdi.dll 2011-03-07 22:52:05 . 2006-02-07 14:45:54 757760 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iKernel.dll 2011-03-07 22:27:05 . 2011-03-07 22:27:05 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software 2011-03-07 22:11:38 . 2011-03-07 22:11:39 -------- dc-h--w- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620} 2011-03-07 22:11:22 . 2011-03-07 22:52:57 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft 2011-03-07 22:11:22 . 2011-03-07 22:11:22 -------- d-----w- E:\Program Files\Lavasoft 2011-03-05 23:00:01 . 1999-03-23 09:12:34 299520 ----a-w- E:\WINDOWS\uninst.exe 2011-03-05 22:59:48 . 2011-03-05 22:59:48 -------- d-----w- E:\Documents and Settings\Dominik\WINDOWS 2011-03-05 22:45:32 . 2011-03-05 23:24:03 -------- d-----w- E:\Program Files\RealFlightG4 2011-03-05 22:45:30 . 2011-03-07 22:47:44 -------- d-----w- E:\Program Files\Common Files\KnifeEdge 2011-03-04 21:56:17 . 2011-03-04 21:56:26 -------- d-----w- E:\Program Files\FMS 2011-02-22 21:23:20 . 2004-04-14 10:08:00 5600 ----a-w- E:\WINDOWS\system32\drivers\WmVirHid.sys 2011-02-22 21:23:20 . 2004-04-14 10:08:00 21280 ----a-w- E:\WINDOWS\system32\drivers\WmFilter.sys 2011-02-22 21:23:20 . 2004-04-14 10:08:00 14432 ----a-w- E:\WINDOWS\system32\drivers\WmHidLo.sys 2011-02-22 21:23:20 . 2004-04-14 10:08:00 10144 ----a-w- E:\WINDOWS\system32\drivers\WmBEnum.sys 2011-02-22 21:23:19 . 2004-04-14 10:08:00 44064 ----a-w- E:\WINDOWS\system32\drivers\WmXlCore.sys 2011-02-22 21:23:18 . 2011-02-22 21:23:20 -------- d-----w- E:\Program Files\Common Files\Logitech 2011-02-22 21:23:18 . 2004-04-14 09:54:00 163840 ----a-w- E:\WINDOWS\system32\WmJoyFrc.dll 2011-02-22 21:23:08 . 2011-02-22 21:23:08 -------- d-----w- E:\Program Files\Logitech 2011-02-22 21:22:54 . 2003-02-27 15:12:48 696320 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll 2011-02-22 21:22:54 . 2002-12-05 13:10:32 155648 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll 2011-02-22 21:22:54 . 2002-12-02 14:22:44 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe 2011-02-22 21:22:54 . 2002-12-02 12:33:04 57344 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll 2011-02-22 21:22:54 . 2002-12-02 12:33:04 237568 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll 2011-02-22 21:22:30 . 2011-02-22 21:22:30 282756 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll 2011-02-22 21:22:30 . 2011-02-22 21:22:30 163972 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll (((((((((((((((((((((((((((((((((((((((( Sekcja Find3M )))))))))))))))))))))))))))))))))))))))))))))))))))) 2011-02-22 22:19:01 . 2010-09-28 20:36:22 445016 ----a-w- E:\WINDOWS\system32\wrap_oal.dll 2011-02-22 22:19:01 . 2003-03-28 03:24:48 109144 ----a-w- E:\WINDOWS\system32\OpenAL32.dll 2011-02-09 13:53:59 . 2004-08-04 12:00:00 270848 ----a-w- E:\WINDOWS\system32\sbe.dll 2011-02-09 13:53:59 . 2004-08-04 12:00:00 186880 ----a-w- E:\WINDOWS\system32\encdec.dll 2011-02-02 20:40:23 . 2010-09-01 20:23:01 472808 ----a-w- E:\WINDOWS\system32\deployJava1.dll 2011-02-02 18:19:39 . 2010-09-01 20:23:01 73728 ----a-w- E:\WINDOWS\system32\javacpl.cpl 2011-02-02 07:58:35 . 2010-08-08 10:39:56 2067456 ----a-w- E:\WINDOWS\system32\mstscax.dll 2011-01-27 11:57:06 . 2010-08-08 10:39:56 677888 ----a-w- E:\WINDOWS\system32\mstsc.exe 2011-01-21 14:44:11 . 2004-08-04 12:00:00 440832 ----a-w- E:\WINDOWS\system32\shimgvw.dll 2011-01-07 14:09:02 . 2004-08-04 12:00:00 290048 ----a-w- E:\WINDOWS\system32\atmfd.dll 2011-01-06 16:37:04 . 2011-01-06 16:37:04 94784 ----a-w- E:\WINDOWS\system32\drivers\inspect.sys 2011-01-06 16:37:04 . 2011-01-06 16:37:04 27576 ----a-w- E:\WINDOWS\system32\drivers\cmdhlp.sys 2011-01-06 16:37:02 . 2011-01-06 16:37:02 239368 ----a-w- E:\WINDOWS\system32\drivers\cmdGuard.sys 2011-01-06 16:37:02 . 2011-01-06 16:37:02 15592 ----a-w- E:\WINDOWS\system32\drivers\cmderd.sys 2011-01-05 02:46:12 . 2011-01-31 21:15:02 1112576 ----a-w- E:\WINDOWS\system32\ativvamv.dll 2010-12-31 14:04:12 . 2004-08-04 12:00:00 1855232 ----a-w- E:\WINDOWS\system32\win32k.sys 2010-12-29 00:42:04 . 2010-12-29 00:42:04 285480 ----a-w- E:\WINDOWS\system32\guard32.dll 2010-12-22 12:34:22 . 2004-08-04 12:00:00 301568 ----a-w- E:\WINDOWS\system32\kerberos.dll 2010-12-20 22:14:34 . 2004-08-04 12:00:00 669696 ----a-w- E:\WINDOWS\system32\wininet.dll 2010-12-20 22:14:34 . 2004-08-04 12:00:00 61952 ----a-w- E:\WINDOWS\system32\tdc.ocx 2010-12-20 22:14:32 . 2004-08-04 12:00:00 81920 ----a-w- E:\WINDOWS\system32\ieencode.dll 2010-12-20 22:13:08 . 2004-08-04 12:00:00 370688 ----a-w- E:\WINDOWS\system32\html.iec 2010-12-20 17:25:52 . 2004-08-04 12:00:00 732160 ----a-w- E:\WINDOWS\system32\lsasrv.dll ------- Sigcheck ------- [7] 2008-04-14 17:20:14 . 8A7426E69FFA30EE4DC76CA3E3999121 . 822272 . . [2001.12.4414.700] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\comres.dll [-] 2008-04-14 17:20:14 . 9FDCD266057ABC7F07CC8E04978945C4 . 1524224 . . [2001.12.4414.700] . . E:\WINDOWS\ServicePackFiles\i386\comres.dll [-] 2008-04-14 17:20:14 . 9FDCD266057ABC7F07CC8E04978945C4 . 1524224 . . [2001.12.4414.700] . . E:\WINDOWS\system32\comres.dll [7] 2004-08-04 12:00:00 . 8797D059EEBD5101CC6257EE2D6B900A . 822272 . . [2001.12.4414.258] . . E:\WINDOWS\$NtServicePackUninstall$\comres.dll [7] 2008-04-14 17:21:48 . 51FD2E13D723857B9CA239AE77150F48 . 510464 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\winlogon.exe [-] 2008-04-14 17:21:48 . 335813EACD16E84F3047A3326F6E5473 . 549888 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\ServicePackFiles\i386\winlogon.exe [-] 2008-04-14 17:21:48 . 335813EACD16E84F3047A3326F6E5473 . 549888 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\system32\winlogon.exe [7] 2004-08-04 12:00:00 . 0344407089B08548D4FEBA62BB0F32D0 . 504832 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\winlogon.exe [7] 2008-04-14 17:20:56 . A435C5C069AFD901751AC323AD238793 . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\user32.dll [-] 2008-04-14 17:20:56 . 3AA91200D0D08A3B69B036C15A340E5C . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\user32.dll [-] 2008-04-14 17:20:56 . 3AA91200D0D08A3B69B036C15A340E5C . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\system32\user32.dll [7] 2004-08-04 12:00:00 . 0C81764F50F32D376E6E4B9E9F4B01A0 . 578560 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\user32.dll [-] 2008-04-14 17:21:16 . 866FD92C15462CB18786EF091FA187AB . 1542144 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\explorer.exe [7] 2008-04-14 17:21:16 . C791ED9EAC5E76D9525E157B1D7A599A . 1035264 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\explorer.exe [-] 2008-04-14 17:21:16 . 866FD92C15462CB18786EF091FA187AB . 1542144 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\explorer.exe [7] 2004-08-04 12:00:00 . 379098A96E6C165B659DE7E4328010EA . 1033728 . . [6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\explorer.exe [7] 2008-04-14 17:21:10 . 1BD41EDA5B869AFC99895C39A8DE36E1 . 15360 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\ctfmon.exe [-] 2008-04-14 17:21:10 . 0277E1A3E8B337555A45943808451981 . 40448 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\ctfmon.exe [-] 2008-04-14 17:21:10 . 0277E1A3E8B337555A45943808451981 . 40448 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\system32\ctfmon.exe [7] 2004-08-04 12:00:00 . CBFA30492D70CE3938D8A7783D0C0436 . 15360 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe [7] 2008-04-14 17:20:32 . 2DEE3DC6EB17D7BB774CE05695BA26D6 . 346112 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\hnetcfg.dll [-] 2008-04-14 17:20:32 . 572B0A653990AFE6B71D38D7DD2F202D . 370688 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll [-] 2008-04-14 17:20:32 . 572B0A653990AFE6B71D38D7DD2F202D . 370688 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\system32\hnetcfg.dll [7] 2004-08-04 12:00:00 . E2012CF69E88C83118472DE4945A27E5 . 346624 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\hnetcfg.dll [7] 2008-04-14 17:21:19 . AF3C3F051675CF688EAD4065FE11542D . 93184 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\iexplore.exe [-] 2008-04-14 17:21:19 . EA912EC6E6D51EAB7D36507B4DD8DFA5 . 102912 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\iexplore.exe [7] 2004-08-04 12:00:00 . 94E790CB14279FF3EA244DAF0864B8A6 . 93184 . . [6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\iexplore.exe ((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru )))))))))))))))))))))))))))))))))))))))))))))))))) *Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Gainward"="E:\Program Files\EXPERTool ATI\TBPanel.exe" [2009-04-09 08:29:34 2304552] "Sony Ericsson PC Companion"="E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" [2011-01-24 10:42:42 427008] "uTorrent"="E:\Program Files\uTorrent\uTorrent.exe" [2011-03-12 21:17:27 399224] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTSysVol"="E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 08:51:52 57344] "P17Helper"="P17.dll" [2005-05-03 11:38:42 64512] "UpdReg"="E:\WINDOWS\UpdReg.EXE" [2000-05-10 23:00:00 90112] "WinampAgent"="E:\Program Files\Winamp\winampa.exe" [2008-01-15 22:54:54 37376] "HP Software Update"="E:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 19:34:40 49152] "Ai Nap"="E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe" [2009-07-01 18:23:52 1435136] "QFan Help"="E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe" [2009-07-01 18:19:18 601088] "Cpu Level Up help"="E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe" [2007-11-30 18:03:28 881152] "NeroFilterCheck"="E:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 08:50:42 155648] "QuickTime Task"="E:\Program Files\QuickTime\QTTask.exe" [2008-09-06 14:09:14 413696] "TkBellExe"="E:\Program Files\Real\RealPlayer\update\realsched.exe" [2010-11-05 23:05:49 274608] "Adobe Reader Speed Launcher"="E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-01-31 08:44:43 35760] "Adobe ARM"="E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 22:07:44 932288] "StartCCC"="E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-08-25 20:37:00 98304] "ISUSPM Startup"="E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe" [2004-06-16 05:03:26 221184] "ISUSScheduler"="E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 05:03:04 81920] "CorelDRAW Graphics Suite 11b"="E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe" [2004-06-22 23:20:26 733184] "COMODO Internet Security"="E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" [2011-01-17 22:30:16 2548552] "COMODO"="E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe" [2011-03-02 13:31:04 210648] "CPA"="E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe" [2011-03-02 13:31:08 184344] "SunJavaUpdateSched"="E:\Program Files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 13:49:28 249064] "UnlockerAssistant"="E:\Program Files\Unlocker\UnlockerAssistant.exe" [2006-09-07 17:19:27 15872] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="E:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 17:21:10 40448] E:\Documents and Settings\All Users\Menu Start\Programy\Autostart\ HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer] "NoFavoritesMenu"= 1 (0x1) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=E:\WINDOWS\system32\guard32.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "E:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"= "C:\\Gry\\Assasin Creed 2\\AssassinsCreedIIGame.exe"= "C:\\Gry\\Assasin Creed 2\\AssassinsCreedII.exe"= "C:\\Gry\\Assasin Creed 2\\UPlayBrowser.exe"= "C:\\Gry\\StarCraft II\\StarCraft II.exe"= "E:\\Program Files\\Gadu-Gadu\\gg.exe"= "E:\\Program Files\\Gadu-Gadu 10\\gg.exe"= "C:\\Gry\\StarCraft II\\Versions\\Base15405\\SC2.exe"= "E:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"= "E:\\WINDOWS\\system32\\PnkBstrA.exe"= "E:\\WINDOWS\\system32\\PnkBstrB.exe"= "C:\\Gry\\Medal of Honor\\Binaries\\moh.exe"= "C:\\Gry\\Medal of Honor\\Binaries\\MoHUpdater.exe"= "C:\\Gry\\Medal of Honor\\MP\\mohmpgame.exe"= "C:\\Gry\\Medal of Honor\\MP\\mohmpupdater.exe"= "E:\\Program Files\\Sony Ericsson\\Update Service\\Update Service.exe"= "C:\\Gry\\Call of Duty - Black Ops\\BlackOps.exe"= "E:\\Program Files\\AVG\\AVG10\\avgmfapx.exe"= "C:\\Gry\\Grid\\GRID.exe"= "C:\\Gry\\F1 2010\\f1_2010.exe"= "C:\\Gry\\F1 2010\\F1_2010_game.exe"= "E:\\Program Files\\uTorrent\\uTorrent.exe"= "C:\\Gry\\Battelfield 2\\BF2.exe"= "E:\\Program Files\\GameSpy Arcade\\Aphex.exe"= R0 Lbd;Lbd;E:\WINDOWS\system32\drivers\Lbd.sys [2011-03-07 23:53:03 64512] R0 sptd;sptd;E:\WINDOWS\system32\drivers\sptd.sys [2010-08-08 16:28:25 717296] R1 cmderd;COMODO Internet Security Eradication Driver;E:\WINDOWS\system32\drivers\cmderd.sys [2011-01-06 17:37:02 15592] R1 cmdGuard;COMODO Internet Security Sandbox Driver;E:\WINDOWS\system32\drivers\cmdGuard.sys [2011-01-06 17:37:02 239368] R2 CLPSLS;COMODO livePCsupport Service;E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 14:31:06 156576] R2 cpuz133;cpuz133;E:\WINDOWS\system32\drivers\cpuz133_x32.sys [2010-08-20 14:50:30 20968] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-12-03 10:05:32 1405384] R3 seehcri;Sony Ericsson seehcri Device Driver;E:\WINDOWS\system32\drivers\seehcri.sys [2010-11-05 21:53:08 27632] S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys);E:\WINDOWS\system32\Drivers\e4ldr.sys --> E:\WINDOWS\system32\Drivers\e4ldr.sys [?] S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;E:\WINDOWS\system32\drivers\AtihdXP3.sys --> E:\WINDOWS\system32\drivers\AtihdXP3.sys [?] S3 e4usbaw;USB ADSL2 WAN Adapter;E:\WINDOWS\system32\DRIVERS\e4usbaw.sys --> E:\WINDOWS\system32\DRIVERS\e4usbaw.sys [?] S3 ggflt;SEMC USB Flash Driver Filter;E:\WINDOWS\system32\drivers\ggflt.sys [2010-10-10 20:51:06 13224] S3 Lavasoft Kernexplorer;Lavasoft helper driver;E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys [2010-12-03 10:05:33 15232] S3 LgBttPort;LGE Bluetooth TransPort;E:\WINDOWS\system32\DRIVERS\lgbtport.sys --> E:\WINDOWS\system32\DRIVERS\lgbtport.sys [?] S3 lgbusenum;LG Bluetooth Bus Enumerator;E:\WINDOWS\system32\DRIVERS\lgbtbus.sys --> E:\WINDOWS\system32\DRIVERS\lgbtbus.sys [?] S3 lgmdbus;LG Mobile driver (WDM);E:\WINDOWS\system32\DRIVERS\lgmdbus.sys --> E:\WINDOWS\system32\DRIVERS\lgmdbus.sys [?] S3 lgmdmdfl;LG Mobile USB WMC Modem Filter;E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys [?] S3 lgmdmdm;LG Mobile USB WMC Modem Driver;E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys [?] S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM);E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys [?] S3 lgmdobex;LG Mobile USB WMC OBEX Interface;E:\WINDOWS\system32\DRIVERS\lgmdobex.sys --> E:\WINDOWS\system32\DRIVERS\lgmdobex.sys [?] S3 LGVMODEM;LGE Virtual Modem;E:\WINDOWS\system32\DRIVERS\lgvmodem.sys --> E:\WINDOWS\system32\DRIVERS\lgvmodem.sys [?] S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-10 20:41:39 155344] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc Zawartość folderu 'Zaplanowane zadania' 2011-03-18 E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job - E:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2010-12-03 09:05:33 . 2011-03-07 22:49:49] 2011-03-18 E:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job - E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46] 2011-03-18 E:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job - E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46] 2011-03-13 E:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job - E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46] ------- Skan uzupełniający ------- uStart Page = hxxp://www.optimus.pl FF - ProfilePath - E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\ FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/ FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q= FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - E:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF - Ext: Java Quick Starter: jqs@sun.com - E:\Program Files\Java\jre6\lib\deploy\jqs\ff FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b} - - - - USUNIĘTO PUSTE WPISY - - - - BHO-{DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file) HKCU-Run-ALLUpdate - E:\Program Files\ALLPlayer\ALLUpdate.exe AddRemove-{1ecb9828-38a7-424f-9280-730f11ebbb96} - E:\Program Files\InstallShield Installation Information\{1ECB9828-38A7-424F-9280-730F11EBBB96}\setup.exe[/log]
Tomek01 komentarz 18 marca 2011 komentarz 18 marca 2011 Większość wykrytych zagrożeń w Mbam to cracki. Usuń to zbędne. Nie dopatrywałbym się przyczyn w wirusach. Zabezpiecz się przed atakiem robaków. Użyj [url="http://www.dobreprogramy.pl/Windows-Worms-Doors-Cleaner,Program,Windows,11744.html"][b][color="#0000FF"]WWDC[/color][/b][/url], pozamykaj robaczywe porty. Tak aby znaczki były na zielono (dopuszczalny jest jeden żółty).
domin46 komentarz 18 marca 2011 Autor komentarz 18 marca 2011 To w takim razie poproszę o pomoc z działu system xp. Bardzo dziękuję za pomoc w oczyszczeniu mojego pc z wirusów. Pozdrawiam. Dominik.
Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!
Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.