x-kom hosting

Problem z XP

domin46
utworzono
utworzono (edytowane)

Witam. Od jakiegoś czasu na pasku zadań bardzo szybko miga ikonka setup mimo że nic nie instaluje. Gdy zainstalowałem Battlefield 2 i chciałem sobie pograć w sieci gra została zrzucana na pasek. Działo się to bardzo często.
Skanowałem system AVG nic nie znalazł. Później zainstalowałem COMODO i wywalił dwa trojany. Na koniec w trybie awaryjnym przeskanowałem Ad-aware i wywalił robaka.
Niestety problem dale jest.
Nie wiem czy to jakiś wirus, czy może nieświadomie wywaliłem coś z rejestru.

[log]OTL logfile created on: 2011-03-14 22:08:41 - Run 3
OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 72,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 645,21 Gb Total Space | 246,72 Gb Free Space | 38,24% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 208,76 Gb Free Space | 89,64% Space Free | Partition Type: NTFS
Drive E: | 100,00 Gb Total Space | 51,34 Gb Free Space | 51,34% Space Free | Partition Type: NTFS

Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2011-03-12 22:17:27 | 000,399,224 | ---- | M] (BitTorrent, Inc.) -- E:\Program Files\uTorrent\uTorrent.exe
PRC - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2011-03-07 23:49:22 | 000,939,848 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2011-03-06 21:44:57 | 000,016,856 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2011-03-06 21:44:56 | 000,912,344 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
PRC - [2011-03-02 14:31:04 | 000,997,032 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe
PRC - [2011-02-02 21:40:41 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2011-01-24 11:42:42 | 000,427,008 | ---- | M] (Sony Ericsson) -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
PRC - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
PRC - [2011-01-17 23:30:16 | 002,548,552 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cfp.exe
PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
PRC - [2010-11-06 00:05:49 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- E:\Program Files\Real\RealPlayer\Update\realsched.exe
PRC - [2010-10-29 14:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Common Files\Java\Java Update\jusched.exe
PRC - [2010-10-16 00:30:14 | 000,075,064 | ---- | M] () -- E:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-08-26 02:37:00 | 000,606,208 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe
PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\spoolsv.exe
PRC - [2009-07-01 19:23:52 | 001,435,136 | ---- | M] () -- E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
PRC - [2009-04-22 17:38:50 | 000,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
PRC - [2009-04-22 17:37:16 | 000,065,536 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
PRC - [2009-04-09 09:29:34 | 002,304,552 | ---- | M] (Gainward Co.) -- E:\Program Files\EXPERTool ATI\TBPANEL.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\services.exe
PRC - [2009-02-06 11:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [mi]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HTTPFILTER]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPDEVMGMT]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 18:21:42 | 000,050,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 18:21:38 | 000,035,328 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 18:21:22 | 000,013,312 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 18:21:16 | 001,542,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\explorer.exe
PRC - [2008-04-14 18:21:10 | 000,040,448 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 18:21:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\csrss.exe
PRC - [2008-04-14 18:21:02 | 000,044,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\alg.exe
PRC - [2008-01-15 23:54:54 | 000,037,376 | ---- | M] () -- E:\Program Files\Winamp\winampa.exe
PRC - [2007-03-11 20:34:40 | 000,049,152 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\HP Software Update\hpwuSchd2.exe
PRC - [2007-03-11 20:32:42 | 000,151,552 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
PRC - [2007-03-11 20:26:24 | 000,210,520 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
PRC - [2006-01-20 10:20:00 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- E:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2005-10-31 09:51:52 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
PRC - [2004-08-04 13:00:00 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\unsecapp.exe
PRC - [2004-06-16 06:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
PRC - [2004-03-04 13:47:30 | 000,266,240 | ---- | M] () -- E:\Program Files\NetMeter\NetMeter.exe
PRC - [1999-12-13 02:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTSVCCDA.EXE


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2011-01-21 15:44:11 | 008,491,008 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shell32.dll
MOD - [2010-12-29 01:42:04 | 000,285,480 | ---- | M] (COMODO) -- E:\WINDOWS\system32\guard32.dll
MOD - [2010-12-09 16:15:25 | 000,726,528 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdll.dll
MOD - [2010-11-06 00:06:07 | 000,040,448 | ---- | M] (RealNetworks, Inc.) -- E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rpcrt4.dll
MOD - [2010-08-08 17:15:06 | 000,219,648 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\uxtheme.dll
MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ole32.dll
MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shlwapi.dll
MOD - [2009-07-12 00:02:02 | 000,653,120 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
MOD - [2009-07-12 00:02:00 | 000,569,664 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\secur32.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\advapi32.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\gdi32.dll
MOD - [2008-04-14 21:50:48 | 002,572,288 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 18:21:56 | 000,146,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 18:20:57 | 000,172,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 18:20:57 | 000,018,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\version.dll
MOD - [2008-04-14 18:20:56 | 000,757,248 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 18:20:56 | 000,580,096 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 18:20:56 | 000,078,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 18:20:45 | 000,064,000 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 18:20:44 | 000,551,936 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 18:20:44 | 000,084,992 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 18:20:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 18:20:41 | 000,119,808 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 18:20:39 | 000,343,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 18:20:36 | 000,297,984 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 18:20:31 | 000,185,344 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 18:20:31 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\fltlib.dll
MOD - [2008-04-14 18:20:14 | 001,524,224 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 18:20:13 | 000,333,824 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 18:20:11 | 000,498,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 18:16:32 | 000,110,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msscript.ocx


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) [Auto | Running] -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe -- (CLPSLS)
SRV - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent)
SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2011-03-07 23:52:40 | 000,015,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys -- (Lavasoft Kernexplorer)
DRV - [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd)
DRV - [2011-01-06 17:37:02 | 000,239,368 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard)
DRV - [2011-01-06 17:37:02 | 000,015,592 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd)
DRV - [2010-11-05 21:53:08 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2010-10-10 20:51:05 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2010-10-10 20:51:05 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2010-08-26 04:33:38 | 005,386,752 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2010-08-08 16:28:25 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-03-10 16:25:58 | 000,020,968 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- E:\WINDOWS\system32\drivers\cpuz133_x32.sys -- (cpuz133)
DRV - [2010-02-16 05:38:12 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5)
DRV - [2009-12-06 18:48:49 | 000,012,400 | ---- | M] () [Kernel | System | Running] -- E:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2008-10-21 03:03:13 | 000,089,600 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV - [2006-11-02 06:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2006-09-24 14:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- E:\WINDOWS\system32\speedfan.sys -- (speedfan)
DRV - [2006-07-26 07:56:00 | 000,248,832 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005-07-07 09:14:30 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\P17.sys -- (P17)
DRV - [2005-01-10 11:15:30 | 000,106,496 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2005-01-10 11:15:24 | 000,138,752 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004-04-14 11:08:00 | 000,044,064 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [2004-04-14 11:08:00 | 000,021,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2004-04-14 11:08:00 | 000,014,432 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo)
DRV - [2004-04-14 11:08:00 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2004-04-14 11:08:00 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\system32\giveio.sys -- (giveio)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl
IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..extensions.enabledItems: BSToolbar@toolbarnet.com:1.0.0.5
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..keyword.URL: "http://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-06 00:06:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2011-03-13 22:22:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2011-03-06 21:44:59 | 000,000,000 | ---D | M]

[2010-08-08 12:13:03 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Extensions
[2011-03-13 18:30:13 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions
[2010-08-12 16:01:31 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-08-15 17:07:19 | 000,002,447 | ---- | M] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\searchplugins\bsplayer-search.xml
[2011-03-13 18:30:13 | 000,000,000 | ---D | M] (No name found) -- E:\Program Files\Mozilla Firefox\extensions
[2010-09-01 21:23:04 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-11-03 21:58:21 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-02-05 21:47:27 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011-03-13 17:59:01 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2010-11-06 00:06:07 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- E:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2010-08-15 17:07:16 | 000,000,000 | ---D | M] (BS.Player ControlBar) -- E:\PROGRAM FILES\BS.PLAYER CONTROLBAR\FIREFOXDTT
[2010-09-01 21:22:50 | 000,000,000 | ---D | M] (Java Quick Starter) -- E:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011-02-02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-10-06 22:29:51 | 000,002,767 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-10-06 22:29:51 | 000,001,406 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-10-06 22:29:51 | 000,000,917 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-10-06 22:29:51 | 000,000,858 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-10-06 22:29:51 | 000,001,183 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-10-06 22:29:51 | 000,001,683 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2011-03-14 01:06:27 | 000,000,742 | ---- | M]) - E:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O3 - HKLM\..\Toolbar: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll ()
O4 - HKLM..\Run: [Ai Nap] E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe ()
O4 - HKLM..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe (COMODO)
O4 - HKLM..\Run: [COMODO Internet Security] E:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO)
O4 - HKLM..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe (Corel Corporation)
O4 - HKLM..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe ()
O4 - HKLM..\Run: [Cpu Level Up help] E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe ()
O4 - HKLM..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [P17Helper] E:\WINDOWS\System32\P17.dll ()
O4 - HKLM..\Run: [QFan Help] E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe ()
O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] E:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UpdReg] E:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
O4 - HKLM..\Run: [WinampAgent] E:\Program Files\Winamp\winampa.exe ()
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [ALLUpdate] E:\Program Files\ALLPlayer\ALLUpdate.exe ()
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe (Gainward Co.)
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Sony Ericsson PC Companion] E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson)
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [uTorrent] E:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecycleFiles = 1
O9 - Extra Button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O9 - Extra Button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O20 - AppInit_DLLs: (E:\WINDOWS\system32\guard32.dll) - E:\WINDOWS\system32\guard32.dll (COMODO)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2010-08-07 22:52:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell - "" = AutoRun
O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell\AutoRun\command - "" = I:\Startme.exe
O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell - "" = AutoRun
O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\AutoRun\command - "" = nqdymj.exe
O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\open\Command - "" = nqdymj.exe
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - E:\WINDOWS\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-03-14 01:40:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO
[2011-03-14 01:36:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens
[2011-03-14 01:36:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\SymbolLibrary
[2011-03-14 00:21:06 | 000,000,000 | R--D | C] -- E:\32788R22FWJFW
[2011-03-14 00:18:08 | 000,000,000 | RH-D | C] -- E:\Documents and Settings\Dominik\Recent
[2011-03-14 00:01:54 | 000,000,000 | ---D | C] -- E:\WINDOWS\ERDNT
[2011-03-14 00:00:50 | 000,000,000 | ---D | C] -- E:\Qoobox
[2011-03-13 21:19:37 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Battlejield 2 Łatki
[2011-03-13 20:42:47 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\GameSpy Arcade
[2011-03-13 20:42:23 | 000,000,000 | ---D | C] -- E:\Program Files\GameSpy Arcade
[2011-03-13 20:42:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Battlefield 2
[2011-03-13 20:37:38 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\EA GAMES
[2011-03-13 17:59:16 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Java
[2011-03-13 00:16:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\VRX 1
[2011-03-12 22:35:58 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Downloads
[2011-03-12 22:17:27 | 000,000,000 | ---D | C] -- E:\Program Files\uTorrent
[2011-03-12 22:16:52 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
[2011-03-12 13:06:27 | 000,049,904 | R--- | C] (Avanquest Software) -- E:\WINDOWS\System32\drivers\BVRPMPR5.SYS
[2011-03-12 13:05:04 | 000,000,000 | ---D | C] -- E:\Netgear
[2011-03-12 13:00:25 | 000,000,000 | -H-D | C] -- E:\VritualRoot
[2011-03-12 11:30:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dokumenty\COMODO
[2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\COMODO
[2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Comodo
[2011-03-12 11:27:25 | 000,000,000 | ---D | C] -- E:\Program Files\COMODO
[2011-03-09 22:49:48 | 000,032,768 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\WooDial2000.dll
[2011-03-09 22:49:06 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\AlertModule
[2011-03-09 22:49:05 | 000,040,960 | ---- | C] (France Telecom) -- E:\WINDOWS\System32\FTRTSVC.exe
[2011-03-09 22:49:05 | 000,036,864 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\IfHelper.dll
[2011-03-09 22:47:16 | 000,000,000 | -HSD | C] -- E:\WINDOWS\ftpcache
[2011-03-07 23:54:17 | 000,000,000 | ---D | C] -- E:\Program Files\THQ
[2011-03-07 23:53:03 | 000,064,512 | ---- | C] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys
[2011-03-07 23:52:54 | 000,098,392 | ---- | C] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys
[2011-03-07 23:27:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software
[2011-03-07 23:11:38 | 000,000,000 | -H-D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Program Files\Lavasoft
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Lavasoft
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
[2011-03-06 00:00:01 | 000,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- E:\WINDOWS\uninst.exe
[2011-03-05 23:59:48 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\WINDOWS
[2011-03-05 23:48:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\RealFlight G4
[2011-03-05 23:45:32 | 000,000,000 | ---D | C] -- E:\Program Files\RealFlightG4
[2011-03-05 23:45:30 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\KnifeEdge
[2011-03-05 16:12:11 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\AeroFly Professional Deluxe
[2011-03-04 22:56:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\Flying Model Simulator
[2011-03-04 22:56:17 | 000,000,000 | ---D | C] -- E:\Program Files\FMS
[2011-02-27 21:22:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Titan Quest
[2011-02-22 22:50:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Codemasters
[2011-02-22 22:49:18 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Codemasters
[2011-02-22 22:23:18 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Logitech
[2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Program Files\Logitech
[2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Logitech
[2011-02-19 12:58:25 | 022,383,954 | ---- | C] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe
[2011-02-07 19:46:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\kuna
[2011-02-03 22:45:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Corel User Files
[2011-02-03 18:17:24 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\CorelDRAW Graphics Suite 12
[2011-02-03 18:17:17 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Corel
[2011-02-03 18:17:15 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Designer
[2011-02-03 18:16:41 | 000,000,000 | ---D | C] -- E:\Program Files\Corel
[2011-02-03 14:40:00 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Corel
[2011-02-03 14:35:12 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2011-02-02 21:37:35 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Solid Edge 2D Drafting ST3
[2011-02-02 21:29:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape
[2011-02-02 21:18:25 | 000,000,000 | ---D | C] -- E:\Program Files\Inkscape
[2011-02-02 21:16:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions
[2011-02-02 21:14:18 | 000,000,000 | R--D | C] -- E:\Documents and Settings\Dominik\Pulpit\CNC
[2011-02-02 21:12:19 | 000,389,632 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XXUN.EXE
[2011-02-02 21:12:19 | 000,057,344 | ---- | C] (FTDI Ltd) -- E:\WINDOWS\FTD2XX.DLL
[2011-02-02 21:12:19 | 000,023,750 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XX.SYS
[2011-02-02 21:10:25 | 000,000,000 | ---D | C] -- E:\Program Files\Solid Edge 2D Drafting ST3
[2011-02-02 20:55:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Nowy folder
[2011-02-01 21:11:51 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\ATI
[2011-02-01 21:09:36 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center
[2011-02-01 21:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\ATI
[2011-02-01 21:08:18 | 000,000,000 | ---D | C] -- E:\Program Files\ATI Technologies
[2011-01-30 23:20:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\1C
[2011-01-30 23:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\Adobe
[2011-01-25 23:42:37 | 000,000,000 | ---D | C] -- E:\WINDOWS\Cache
[2002-04-11 02:41:06 | 000,065,536 | R--- | C] ( ) -- E:\WINDOWS\System32\A3d.dll
[9 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ]
[6 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ]

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-03-14 22:08:19 | 001,474,832 | ---- | M] () -- E:\WINDOWS\System32\drivers\sfi.dat
[2011-03-14 11:34:22 | 000,000,290 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job
[2011-03-14 11:34:22 | 000,000,282 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job
[2011-03-14 01:39:41 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011-03-14 01:38:45 | 000,000,294 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-14 01:38:42 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2011-03-14 01:06:32 | 000,004,630 | ---- | M] () -- E:\WINDOWS\System32\tmp.reg
[2011-03-13 22:36:03 | 000,000,302 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-13 20:47:58 | 000,000,652 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2011-03-13 20:47:58 | 000,000,630 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2011-03-13 20:43:02 | 000,000,707 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk
[2011-03-13 19:39:16 | 000,000,499 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk
[2011-03-12 23:54:14 | 000,000,529 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk
[2011-03-12 22:17:28 | 000,000,636 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk
[2011-03-12 20:55:14 | 000,000,490 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk
[2011-03-12 14:14:55 | 000,006,440 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html
[2011-03-12 12:59:54 | 000,000,046 | ---- | M] () -- E:\WINDOWS\adiras.ini
[2011-03-12 12:57:27 | 000,000,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk
[2011-03-12 11:28:22 | 000,001,653 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk
[2011-03-11 12:36:49 | 000,013,646 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2011-03-07 23:58:04 | 000,001,787 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk
[2011-03-07 23:52:49 | 000,098,392 | ---- | M] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys
[2011-03-07 23:52:44 | 000,016,432 | ---- | M] () -- E:\WINDOWS\System32\lsdelete.exe
[2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys
[2011-03-07 23:11:36 | 000,000,873 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk
[2011-03-06 00:24:33 | 000,000,141 | ---- | M] () -- E:\WINDOWS\RealFlight.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\PROTOCOL.INI
[2011-03-06 00:00:19 | 000,000,000 | ---- | M] () -- E:\WINDOWS\PROTOCOL.INI
[2011-03-04 22:56:19 | 000,000,616 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk
[2011-02-27 21:25:09 | 000,001,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Sony Ericsson PC Companion 2.0.lnk
[2011-02-24 23:20:01 | 000,004,096 | ---- | M] () -- E:\WINDOWS\System32\crash
[2011-02-22 23:19:01 | 000,445,016 | ---- | M] (Creative Labs) -- E:\WINDOWS\System32\wrap_oal.dll
[2011-02-22 22:49:18 | 000,000,522 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk
[2011-02-22 22:42:21 | 000,000,412 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk
[2011-02-19 13:00:43 | 000,000,730 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Napi-projekt.lnk
[2011-02-19 13:00:42 | 000,000,700 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk
[2011-02-19 12:59:37 | 022,383,954 | ---- | M] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe
[2011-02-11 22:21:29 | 000,001,735 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk
[2011-02-09 22:58:13 | 000,036,864 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-02-09 22:51:52 | 002,067,174 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp
[2011-02-09 22:49:16 | 000,007,279 | ---- | M] () -- E:\Documents and Settings\Dominik\.recently-used.xbel
[2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\dllcache\sbe.dll
[2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\dllcache\encdec.dll
[2011-02-08 22:14:45 | 000,130,888 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2011-02-02 22:55:47 | 000,066,077 | ---- | M] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg
[2011-01-22 23:17:03 | 000,000,664 | ---- | M] () -- E:\WINDOWS\System32\d3d9caps.dat
[2011-01-20 22:10:37 | 000,000,069 | ---- | M] () -- E:\WINDOWS\NeroDigital.ini
[9 E:\WINDOWS\System32\*.tmp files -> E:\WINDOWS\System32\*.tmp -> ]
[6 E:\WINDOWS\*.tmp files -> E:\WINDOWS\*.tmp -> ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-03-14 01:06:32 | 000,004,630 | ---- | C] () -- E:\WINDOWS\System32\tmp.reg
[2011-03-13 22:30:21 | 000,016,432 | ---- | C] () -- E:\WINDOWS\System32\lsdelete.exe
[2011-03-13 22:23:35 | 000,000,302 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-13 22:23:35 | 000,000,294 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-13 20:47:58 | 000,000,652 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2011-03-13 20:47:58 | 000,000,630 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2011-03-13 20:43:02 | 000,000,707 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk
[2011-03-13 19:39:15 | 000,000,499 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk
[2011-03-12 22:17:28 | 000,000,636 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk
[2011-03-12 20:55:14 | 000,000,490 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk
[2011-03-12 14:14:55 | 000,006,440 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html
[2011-03-12 11:29:54 | 001,474,832 | ---- | C] () -- E:\WINDOWS\System32\drivers\sfi.dat
[2011-03-12 11:28:22 | 000,001,653 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk
[2011-03-12 11:27:29 | 000,000,913 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk
[2011-03-11 12:00:52 | 000,000,046 | ---- | C] () -- E:\WINDOWS\adiras.ini
[2011-03-07 23:58:45 | 011,157,504 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Titan_Quest.exe
[2011-03-07 23:58:04 | 000,001,787 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk
[2011-03-07 23:56:39 | 000,040,960 | R--- | C] () -- E:\WINDOWS\System32\psfind.dll
[2011-03-07 23:53:20 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011-03-07 23:11:36 | 000,000,873 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk
[2011-03-06 00:17:34 | 000,000,141 | ---- | C] () -- E:\WINDOWS\RealFlight.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\PROTOCOL.INI
[2011-03-06 00:00:19 | 000,000,000 | ---- | C] () -- E:\WINDOWS\PROTOCOL.INI
[2011-03-04 22:52:54 | 000,000,616 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk
[2011-02-22 23:18:31 | 000,000,529 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk
[2011-02-22 22:49:18 | 000,000,522 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk
[2011-02-22 22:42:21 | 000,000,412 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk
[2011-02-19 13:00:42 | 000,000,700 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk
[2011-02-09 22:51:52 | 002,067,174 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp
[2011-02-09 22:49:16 | 000,007,279 | ---- | C] () -- E:\Documents and Settings\Dominik\.recently-used.xbel
[2011-02-09 14:53:59 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\dllcache\sbe.dll
[2011-02-09 14:53:59 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\dllcache\encdec.dll
[2011-02-02 22:55:47 | 000,066,077 | ---- | C] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg
[2011-02-02 21:21:39 | 000,000,726 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Inkscape.lnk
[2011-02-02 21:12:19 | 000,014,960 | ---- | C] () -- E:\WINDOWS\FTD2XX.LIB
[2011-02-02 21:12:19 | 000,014,042 | ---- | C] () -- E:\WINDOWS\FTD2XX.H
[2011-02-02 21:12:19 | 000,002,391 | ---- | C] () -- E:\WINDOWS\FTD2XX.INF
[2011-02-01 21:08:55 | 000,887,724 | ---- | C] () -- E:\WINDOWS\System32\ativva6x.dat
[2011-02-01 21:08:54 | 000,219,348 | ---- | C] () -- E:\WINDOWS\System32\atiicdxx.dat
[2011-02-01 21:08:54 | 000,076,216 | ---- | C] () -- E:\WINDOWS\System32\atiapfxx.blb
[2011-02-01 21:08:54 | 000,021,866 | ---- | C] () -- E:\WINDOWS\atiogl.xml
[2011-02-01 21:08:54 | 000,000,003 | ---- | C] () -- E:\WINDOWS\System32\ativva5x.dat
[2011-01-30 23:08:58 | 000,002,377 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader 9.lnk
[2011-01-30 23:08:58 | 000,001,735 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk
[2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Sys6925.Config Collection.sys
[2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\WINDOWS\Sys3390 SettingsCollection.bin
[2010-11-18 00:38:54 | 000,423,832 | ---- | C] () -- E:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-11-17 22:06:55 | 000,810,496 | ---- | C] () -- E:\WINDOWS\System32\xvidcore.dll
[2010-11-17 22:06:55 | 000,258,048 | ---- | C] () -- E:\WINDOWS\System32\libFLAC.dll
[2010-10-23 23:25:12 | 000,000,001 | ---- | C] () -- E:\WINDOWS\System32\SI.bin
[2010-10-16 00:30:15 | 000,189,248 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrB.exe
[2010-10-16 00:30:14 | 002,601,752 | ---- | C] () -- E:\WINDOWS\System32\pbsvc_moh.exe
[2010-10-16 00:30:14 | 000,075,064 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrA.exe
[2010-09-14 18:29:08 | 000,000,069 | ---- | C] () -- E:\WINDOWS\NeroDigital.ini
[2010-09-05 17:27:59 | 000,000,664 | ---- | C] () -- E:\WINDOWS\System32\d3d9caps.dat
[2010-08-13 22:38:12 | 000,053,248 | ---- | C] () -- E:\WINDOWS\System32\CommonDL.dll
[2010-08-13 22:38:12 | 000,002,413 | ---- | C] () -- E:\WINDOWS\System32\lgAxconfig.ini
[2010-08-08 17:50:15 | 000,032,215 | ---- | C] () -- E:\WINDOWS\Ascd_tmp.ini
[2010-08-08 16:02:00 | 000,001,769 | ---- | C] () -- E:\WINDOWS\Language_trs.ini
[2010-08-08 14:57:22 | 000,153,583 | ---- | C] () -- E:\WINDOWS\hpoins14.dat
[2010-08-08 14:57:22 | 000,002,000 | ---- | C] () -- E:\WINDOWS\hpomdl14.dat
[2010-08-08 13:14:52 | 000,036,864 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-08-08 12:39:44 | 000,000,000 | ---- | C] () -- E:\WINDOWS\ativpsrm.bin
[2010-08-08 12:39:36 | 000,294,912 | ---- | C] () -- E:\WINDOWS\System32\ATIODE.exe
[2010-08-08 12:39:36 | 000,045,056 | ---- | C] () -- E:\WINDOWS\System32\ATIODCLI.exe
[2010-08-08 12:21:45 | 000,005,627 | R--- | C] () -- E:\WINDOWS\System32\Ludap17.ini
[2010-08-08 12:21:45 | 000,000,039 | R--- | C] () -- E:\WINDOWS\System32\ctzapxx.ini
[2010-08-08 12:12:59 | 000,000,000 | ---- | C] () -- E:\WINDOWS\nsreg.dat
[2010-08-08 12:00:06 | 000,024,576 | ---- | C] () -- E:\WINDOWS\System32\AsIO.dll
[2010-08-08 12:00:06 | 000,012,400 | ---- | C] () -- E:\WINDOWS\System32\drivers\AsIO.sys
[2010-08-08 11:55:37 | 000,005,810 | R--- | C] () -- E:\WINDOWS\System32\drivers\ASACPI.sys
[2010-08-08 11:55:22 | 000,010,288 | ---- | C] () -- E:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010-08-08 11:45:34 | 000,002,048 | --S- | C] () -- E:\WINDOWS\bootstat.dat
[2010-08-08 11:41:22 | 000,021,856 | ---- | C] () -- E:\WINDOWS\System32\emptyregdb.dat
[2010-08-08 02:51:26 | 000,004,293 | ---- | C] () -- E:\WINDOWS\ODBCINST.INI
[2010-08-08 02:48:36 | 000,130,888 | ---- | C] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2010-01-11 08:24:40 | 000,001,683 | ---- | C] () -- E:\WINDOWS\System32\oeminfo.ini
[2009-11-06 09:58:04 | 000,178,975 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat
[2005-05-25 21:06:26 | 000,119,296 | ---- | C] () -- E:\WINDOWS\System32\WnASPI32.dll
[2005-05-03 12:38:42 | 000,064,512 | R--- | C] () -- E:\WINDOWS\System32\P17.dll
[2004-10-03 19:28:58 | 000,032,768 | ---- | C] () -- E:\WINDOWS\System32\chckshll.dll
[2004-08-04 13:00:00 | 000,673,088 | ---- | C] () -- E:\WINDOWS\System32\mlang.dat
[2004-08-04 13:00:00 | 000,490,628 | ---- | C] () -- E:\WINDOWS\System32\perfh015.dat
[2004-08-04 13:00:00 | 000,432,492 | ---- | C] () -- E:\WINDOWS\System32\perfh009.dat
[2004-08-04 13:00:00 | 000,313,828 | ---- | C] () -- E:\WINDOWS\System32\perfi015.dat
[2004-08-04 13:00:00 | 000,272,128 | ---- | C] () -- E:\WINDOWS\System32\perfi009.dat
[2004-08-04 13:00:00 | 000,218,003 | ---- | C] () -- E:\WINDOWS\System32\dssec.dat
[2004-08-04 13:00:00 | 000,083,880 | ---- | C] () -- E:\WINDOWS\System32\perfc015.dat
[2004-08-04 13:00:00 | 000,067,448 | ---- | C] () -- E:\WINDOWS\System32\perfc009.dat
[2004-08-04 13:00:00 | 000,046,258 | ---- | C] () -- E:\WINDOWS\System32\mib.bin
[2004-08-04 13:00:00 | 000,034,990 | ---- | C] () -- E:\WINDOWS\System32\perfd015.dat
[2004-08-04 13:00:00 | 000,028,626 | ---- | C] () -- E:\WINDOWS\System32\perfd009.dat
[2004-08-04 13:00:00 | 000,004,569 | ---- | C] () -- E:\WINDOWS\System32\secupd.dat
[2004-08-04 13:00:00 | 000,001,804 | ---- | C] () -- E:\WINDOWS\System32\dcache.bin
[2004-08-04 13:00:00 | 000,000,741 | ---- | C] () -- E:\WINDOWS\System32\noise.dat
[2003-10-02 11:48:18 | 000,053,248 | R--- | C] () -- E:\WINDOWS\System32\P17CPI.dll
[2002-01-04 10:58:52 | 013,107,200 | ---- | C] () -- E:\WINDOWS\System32\oembios.bin
[2002-01-04 10:57:56 | 000,004,514 | ---- | C] () -- E:\WINDOWS\System32\oembios.dat
[1996-04-03 20:33:26 | 000,005,248 | ---- | C] () -- E:\WINDOWS\System32\giveio.sys

[color=#E56717]========== LOP Check ==========[/color]

[2010-09-16 20:21:48 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Administrator\Dane aplikacji\Simply Super Software
[2011-03-12 11:16:59 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\AVG10
[2010-08-25 10:01:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\BearShare
[2011-02-22 22:50:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters
[2010-12-08 16:14:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Common Files
[2010-10-16 00:31:30 | 000,000,000 | -HSD | M] -- E:\Documents and Settings\All Users\Dane aplikacji\DSS
[2010-08-15 11:46:29 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-09-15 20:51:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Grisoft
[2010-12-05 00:37:25 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-08-15 12:04:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-08-13 22:38:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\LGMOBILEAX
[2010-12-08 16:12:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2010-09-29 08:52:52 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2010-12-05 00:40:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-11-10 22:22:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-08-08 18:01:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Ubisoft
[2011-03-07 23:11:39 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2010-08-25 10:57:08 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}
[2010-09-07 23:54:38 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Auslogics
[2010-12-08 16:15:13 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\AVG10
[2010-10-09 08:26:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer
[2010-08-15 17:07:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer Pro
[2010-08-08 16:28:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\DAEMON Tools
[2010-08-15 12:08:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Gadu-Gadu 10
[2011-02-02 21:29:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape
[2010-08-15 12:04:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\ipla
[2010-08-13 22:32:26 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\LG Electronics
[2010-11-17 22:07:08 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenCandy
[2010-09-29 08:52:50 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenFM
[2010-12-05 00:40:24 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\PC Suite
[2010-12-05 00:39:03 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Samsung
[2010-12-08 19:02:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Smart Recorder
[2010-10-31 18:36:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Sony
[2010-08-08 18:01:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Ubisoft
[2011-02-02 21:16:19 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions
[2011-03-14 22:12:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
[2010-08-13 22:32:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\{D94BA408-F110-488B-A65E-3AE7945F79E6}
[2011-03-14 01:39:41 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 136 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:B755D674
@Alternate Data Stream - 116 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9

< End of report >[/log]


[log]OTL Extras logfile created on: 2011-03-14 22:37:52 - Run 3
OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 72,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 81,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 645,21 Gb Total Space | 246,72 Gb Free Space | 38,24% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 208,76 Gb Free Space | 89,64% Space Free | Partition Type: NTFS
Drive E: | 100,00 Gb Total Space | 51,37 Gb Free Space | 51,37% Space Free | Partition Type: NTFS

Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hta [@ = htafile] -- Reg Error: Key error. File not found
.url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htafile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "E:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "E:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "E:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft)
"C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- ()
"C:\Gry\Assasin Creed 2\AssassinsCreedII.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft)
"C:\Gry\Assasin Creed 2\UPlayBrowser.exe" = C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment)
"C:\Gry\StarCraft II\StarCraft II.exe" = C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
"E:\Program Files\Gadu-Gadu\gg.exe" = E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny
"E:\Program Files\Gadu-Gadu 10\gg.exe" = E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.)
"C:\Gry\StarCraft II\Versions\Base15405\SC2.exe" = C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.)
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC)
"C:\Gry\Medal of Honor\Binaries\moh.exe" = C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer) -- (Electronic Arts Inc.)
"C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe" = C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater) -- (EA Digital Illusions CE AB)
"C:\Gry\Medal of Honor\MP\mohmpgame.exe" = C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer) -- (EA Digital Illusions CE AB)
"C:\Gry\Medal of Honor\MP\mohmpupdater.exe" = C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater) -- (EA Digital Illusions CE AB)
"E:\Program Files\Sony Ericsson\Update Service\Update Service.exe" = E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- ()
"C:\Gry\Call of Duty - Black Ops\BlackOps.exe" = C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps
"E:\Program Files\AVG\AVG10\avgmfapx.exe" = E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG
"C:\Gry\Grid\GRID.exe" = C:\Gry\Grid\GRID.exe:*:Enabled:GRID -- (Codemasters)
"C:\Gry\F1 2010\f1_2010.exe" = C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010
"C:\Gry\F1 2010\F1_2010_game.exe" = C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable -- (Codemasters)
"E:\Program Files\uTorrent\uTorrent.exe" = E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Gry\Battelfield 2\BF2.exe" = C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"E:\Program Files\GameSpy Arcade\Aphex.exe" = E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (GameSpy Industries, Inc.)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable
"{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store
"{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp
"{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch
"{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy
"{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{22A647A1-E442-7302-3905-DA8C5FDFCAFB}" = Catalyst Control Center Graphics Previews Common
"{23768150-5EFE-14A4-CECE-914D03FF18B4}" = CCC Help English
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 24
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{292899E7-6B8F-8099-0ACD-71D5F448106D}" = ccc-utility
"{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg
"{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE
"{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan
"{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{415CDA53-9100-476F-A7B2-476691E117C7}" = HP Smart Web Printing
"{41B8A39C-E97D-FDE5-3A4A-8E6FA961E94E}" = ccc-core-static
"{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840
"{505AFDC0-5E72-4928-8368-5DEA385E3647}" = CorelDRAW Graphics Suite 12
"{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport
"{5A0B7BA5-4682-4273-81C2-69B17E649103}" = GRID
"{5A274D69-F9BB-4AA9-85C9-440FA947DF04}_is1" = Medal of Honor
"{5C318BD3-BA72-43E4-9D16-A18210B4A5A5}" = Media Go
"{5CA1C102-CFB3-9C8E-2DEF-E98A4B57C8CF}" = Catalyst Control Center InstallProxy
"{5F624839-947D-46EA-BD63-FD847C1AC6F1}" = BearShare
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{706BB40A-4102-4c89-8107-DC68C4EBD19B}" = HP Deskjet All-In-One Software 9.0
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{78B771A0-6883-44FB-A830-B138EA89278E}" = Solid Edge 2D Drafting ST3
"{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK
"{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}" = AeroFly Professional Deluxe
"{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update
"{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime
"{93F54611-2701-454e-94AB-623F458D9E6B}" = DeviceDiscovery
"{97A39919-9FEA-48B7-AB2B-4F99212D1E98}" = HDD Regenerator
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A9C365A3-06C0-43b4-A2DB-EDF0A6079AA9}" = DJ_AIO_Software
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish
"{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant
"{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan
"{B4B1F18B-5CED-4f8f-8A8F-1BD0503C222E}" = DJ_AIO_ProductContext
"{B5924CA6-24A7-48F5-BC9C-8BFA94ED4564}" = LightScribe 1.4.67.1
"{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}" = Titan Quest Immortal Throne
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader
"{B9242864-2841-4ADE-86E0-8F90F91B04DD}" = Logitech Gaming Software
"{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter
"{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component
"{D94BA408-F110-488B-A65E-3AE7945F79E6}_is1" = Odinstalowuj LG PC Suite III
"{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag
"{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm
"{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.123
"{F0C5CF53-FE88-B20E-CE8C-2B5CAA3ECFD0}" = ATI Catalyst Install Manager
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F56D6F46-1D62-4734-BF12-6457A1ED17BD}" = DJ_AIO_Software_min
"{F68563C0-2CCD-4799-A014-017A370D627B}" = Edycja kolekcjonerska Heroes of Might and Magic V
"{F72E2DDC-3DB8-4190-A21D-63883D955FE7}" = PSSWCORE
"{F7338FA3-DAB5-49B2-900D-0AFB5760C166}" = PC Probe II
"{FD8D8B04-BEAD-4A55-AA1D-62D2373E7DEA}" = Status
"{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security
"Ad-Aware" = Ad-Aware
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"ALLPlayer_is1" = ALLPlayer V4.X
"BearShare" = BearShare
"BS.Player ControlBar" = BS.Player ControlBar
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2007-07-22
"COMODO GeekBuddy" = COMODO GeekBuddy
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.54
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Disk Checker" = Disk Checker
"EXPERTool ATI_is1" = EXPERTool ATI 4.2
"F1 2010_is1" = F1 2010
"FMS" = FMS
"Fraps" = Fraps
"Gadu-Gadu 10" = Gadu-Gadu 10
"GameSpy Arcade" = GameSpy Arcade
"HP Imaging Device Functions" = HP Imaging Device Functions 9.0
"HP Photosmart Essential" = HP Photosmart Essential 2.01
"HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0
"HPExtendedCapabilities" = HP Customer Participation Program 9.0
"Inkscape" = Inkscape 0.48.0
"Mafia II_is1" = Mafia II
"Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15)
"NeroMultiInstaller!UninstallKey" = Nero Suite
"NetMeter_is1" = NetMeter 0.9.9.9 (beta 2)
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"RealAlt_is1" = Real Alternative 1.60
"RealPlayer 12.0" = RealPlayer
"Seven Remix XP" = Seven Remix XP 2.4
"SpeedFan" = SpeedFan (remove only)
"StarCraft II" = StarCraft II
"Unlocker" = Unlocker 1.8.5
"Update Service" = Sony Ericsson Update Service
"uTorrent" = µTorrent
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = Archiwizator WinRAR
"winusb0100" = Microsoft WinUsb 1.0
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"I-Doser v4" = I-Doser v4

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2011-02-22 18:40:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca F1_2010_game.exe, wersja 1.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:37:22 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:38:10 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:38:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1001
Description = Pakiet błędów 288306601.

Error - 2011-03-05 18:52:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca setup2.exe, wersja 1.0.0.177, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-07 18:26:53 | Computer Name = DOMINIK-BFC9604 | Source = Lavasoft Ad-Aware Service | ID = 0
Description =

Error - 2011-03-12 19:22:52 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:53 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:55 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

[ System Events ]
Error - 2011-03-13 20:04:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7026
Description = Nie można załadować następujących sterowników startu rozruchowego
lub systemowego: AFD AsIO cmdGuard Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip

Error - 2011-03-13 20:04:59 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-03-13 20:05:03 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 2011-03-13 20:05:39 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
StiSvc z argumentami „” w celu uruchomienia serwera: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

Error - 2011-03-13 20:10:44 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 2011-03-13 20:11:50 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
netman z argumentami „” w celu uruchomienia serwera: {BA126AE5-2166-11D1-B1D0-00805FC1270E}

Error - 2011-03-13 20:11:54 | Computer Name = DOMINIK-BFC9604 | Source = DCOM | ID = 10005
Description = Model DCOM odebrał błąd „%1084” podczas próby uruchomienia usługi
EventSystem z argumentami „” w celu uruchomienia serwera: {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 2011-03-13 20:13:11 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2

Error - 2011-03-13 20:34:42 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2

Error - 2011-03-13 20:39:01 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2


< End of report >[/log]



[log]Logfile of random's system information tool 1.08 (written by random/random)
Run by Dominik at 2011-03-14 22:33:26
Microsoft Windows XP Home Edition Dodatek Service Pack 3
System drive E: has 53 GB (51%) free of 102 GB
Total RAM: 3071 MB (71% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:33:34, on 2011-03-14
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\system32\CTsvcCDA.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\Common Files\LightScribe\LSSrvc.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\PnkBstrA.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
E:\WINDOWS\system32\Rundll32.exe
E:\Program Files\Winamp\winampa.exe
E:\Program Files\HP\HP Software Update\HPWuSchd2.exe
E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
E:\Program Files\Real\RealPlayer\update\realsched.exe
E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
E:\Program Files\COMODO\COMODO Internet Security\cfp.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe
E:\Program Files\EXPERTool ATI\TBPanel.exe
E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
E:\WINDOWS\System32\svchost.exe
E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
E:\Program Files\uTorrent\uTorrent.exe
E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
E:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
E:\Program Files\NetMeter\NetMeter.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe
E:\WINDOWS\notepad.exe
E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\RSIT.exe
E:\Program Files\trend micro\Dominik.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: BS.Player ControlBar - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll
O4 - HKLM\..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [UpdReg] E:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [WinampAgent] "E:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] E:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Ai Nap] "E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe"
O4 - HKLM\..\Run: [QFan Help] "E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ISUSPM Startup] E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=032011 serial=DR12WNB-6417934-NRC lang=PL
O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe
O4 - HKLM\..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe /A
O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [ALLUpdate] "E:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep"
O4 - HKCU\..\Run: [uTorrent] "E:\Program Files\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.optimus.pl
O20 - AppInit_DLLs: E:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - E:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - E:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe

--
End of file - 9071 bytes

======Scheduled tasks folder======

E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-11-06 382720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}]
IplexToALLPlayer - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll [2011-02-09 400384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{2C688203-7EB3-4327-9995-1CB417BA23F9} - BS.Player ControlBar - E:\Program Files\BS.Player ControlBar\BSToolbar.dll [2008-10-08 859592]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"CTSysVol"=E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe [2005-10-31 57344]
"P17Helper"=Rundll32 P17.dll,P17Helper []
"UpdReg"=E:\WINDOWS\UpdReg.EXE [2000-05-11 90112]
"WinampAgent"=E:\Program Files\Winamp\winampa.exe [2008-01-15 37376]
"HP Software Update"=E:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"Ai Nap"=E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe [2009-07-01 1435136]
"QFan Help"=E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088]
"Cpu Level Up help"=E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152]
"NeroFilterCheck"=E:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"QuickTime Task"=E:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696]
"TkBellExe"=E:\Program Files\Real\RealPlayer\update\realsched.exe [2010-11-06 274608]
"Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"StartCCC"=E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-25 98304]
"ISUSPM Startup"=E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe [2004-06-16 221184]
"ISUSScheduler"=E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"CorelDRAW Graphics Suite 11b"=E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe [2004-06-23 733184]
"COMODO Internet Security"=E:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-17 2548552]
"COMODO"=E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [2011-03-02 210648]
"CPA"=E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [2011-03-02 184344]
"SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 40448]
"Gainward"=E:\Program Files\EXPERTool ATI\TBPanel.exe [2009-04-09 2304552]
"Sony Ericsson PC Companion"=E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-24 427008]
"ALLUpdate"=E:\Program Files\ALLPlayer\ALLUpdate.exe [2011-02-08 1362944]
"uTorrent"=E:\Program Files\uTorrent\uTorrent.exe [2011-03-12 399224]

E:\Documents and Settings\All Users\Menu Start\Programy\Autostart
HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" E:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
E:\WINDOWS\system32\Ati2evxx.dll [2010-08-26 159744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\PEVSystemStart]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\procexp90.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0x95000000
"NoFavoritesMenu"=1
"NoRecycleFiles"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II"
"C:\Gry\Assasin Creed 2\AssassinsCreedII.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update"
"C:\Gry\Assasin Creed 2\UPlayBrowser.exe"="C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay"
"C:\Gry\StarCraft II\StarCraft II.exe"="C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher"
"E:\Program Files\Gadu-Gadu\gg.exe"="E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny"
"E:\Program Files\Gadu-Gadu 10\gg.exe"="E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10"
"C:\Gry\StarCraft II\Versions\Base15405\SC2.exe"="C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II"
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB.exe"
"C:\Gry\Medal of Honor\Binaries\moh.exe"="C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer)"
"C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe"="C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater)"
"C:\Gry\Medal of Honor\MP\mohmpgame.exe"="C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer)"
"C:\Gry\Medal of Honor\MP\mohmpupdater.exe"="C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater)"
"E:\Program Files\Sony Ericsson\Update Service\Update Service.exe"="E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service"
"C:\Gry\Call of Duty - Black Ops\BlackOps.exe"="C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps"
"E:\Program Files\AVG\AVG10\avgmfapx.exe"="E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG"
"C:\Gry\Grid\GRID.exe"="C:\Gry\Grid\GRID.exe:*:Enabled:GRID"
"C:\Gry\F1 2010\f1_2010.exe"="C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010"
"C:\Gry\F1 2010\F1_2010_game.exe"="C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable"
"E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Gry\Battelfield 2\BF2.exe"="C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2"
"E:\Program Files\GameSpy Arcade\Aphex.exe"="E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"

======List of files/folders created in the last 1 months======

2011-03-14 22:33:27 ----D---- E:\Program Files\trend micro
2011-03-14 22:33:26 ----D---- E:\rsit
2011-03-14 01:06:32 ----A---- E:\WINDOWS\system32\tmp.txt
2011-03-14 01:04:17 ----A---- E:\WINDOWS\ntbtlog.txt
2011-03-14 00:58:55 ----A---- E:\rapport.txt
2011-03-14 00:21:06 ----RD---- E:\32788R22FWJFW
2011-03-14 00:01:54 ----D---- E:\WINDOWS\ERDNT
2011-03-14 00:00:50 ----D---- E:\Qoobox
2011-03-13 22:30:21 ----A---- E:\WINDOWS\system32\lsdelete.exe
2011-03-13 20:42:23 ----D---- E:\Program Files\GameSpy Arcade
2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files\Java
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaws.exe
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaw.exe
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\java.exe
2011-03-12 22:17:27 ----D---- E:\Program Files\uTorrent
2011-03-12 22:16:52 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
2011-03-12 13:06:27 ----RA---- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS
2011-03-12 13:05:04 ----D---- E:\Netgear
2011-03-12 13:00:25 ----HD---- E:\VritualRoot
2011-03-12 11:27:29 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Comodo
2011-03-12 11:27:25 ----D---- E:\Program Files\COMODO
2011-03-11 12:00:52 ----A---- E:\WINDOWS\adiras.ini
2011-03-11 00:00:24 ----HDC---- E:\WINDOWS\$NtUninstallKB2479943$
2011-03-10 23:58:50 ----HDC---- E:\WINDOWS\$NtUninstallKB2481109$
2011-03-09 22:49:48 ----A---- E:\WINDOWS\system32\WooDial2000.dll
2011-03-09 22:49:06 ----D---- E:\WINDOWS\system32\AlertModule
2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\IfHelper.dll
2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\FTRTSVC.exe
2011-03-09 22:47:16 ----SHD---- E:\WINDOWS\ftpcache
2011-03-07 23:56:39 ----RA---- E:\WINDOWS\system32\psfind.dll
2011-03-07 23:54:17 ----D---- E:\Program Files\THQ
2011-03-07 23:53:03 ----A---- E:\WINDOWS\system32\drivers\Lbd.sys
2011-03-07 23:52:54 ----A---- E:\WINDOWS\system32\drivers\SBREDrv.sys
2011-03-07 23:11:38 ----HDC---- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
2011-03-07 23:11:22 ----D---- E:\Program Files\Lavasoft
2011-03-07 23:11:22 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
2011-03-06 23:32:26 ----HDC---- E:\WINDOWS\$NtUninstallKB971029$
2011-03-06 00:17:34 ----A---- E:\WINDOWS\RealFlight.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\WIN.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\SYSTEM.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\PROTOCOL.INI
2011-03-06 00:00:19 ----A---- E:\WINDOWS\PROTOCOL.INI
2011-03-06 00:00:01 ----A---- E:\WINDOWS\uninst.exe
2011-03-05 23:45:32 ----D---- E:\Program Files\RealFlightG4
2011-03-05 23:45:30 ----D---- E:\Program Files\Common Files\KnifeEdge
2011-03-04 22:56:17 ----D---- E:\Program Files\FMS
2011-02-22 23:19:01 ----RA---- E:\WINDOWS\system32\tmp121.tmp
2011-02-22 23:19:01 ----RA---- E:\WINDOWS\system32\tmp120.tmp
2011-02-22 22:49:12 ----RA---- E:\WINDOWS\system32\tmp113.tmp
2011-02-22 22:49:12 ----RA---- E:\WINDOWS\system32\tmp112.tmp
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmVirHid.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmHidLo.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmFilter.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmBEnum.sys
2011-02-22 22:23:19 ----A---- E:\WINDOWS\system32\drivers\WmXlCore.sys
2011-02-22 22:23:18 ----D---- E:\Program Files\Common Files\Logitech
2011-02-22 22:23:18 ----A---- E:\WINDOWS\system32\WmJoyFrc.dll
2011-02-22 22:23:08 ----D---- E:\Program Files\Logitech

======List of files/folders modified in the last 1 months======

2011-03-14 22:33:28 ----D---- E:\WINDOWS\Prefetch
2011-03-14 22:33:27 ----D---- E:\Program Files
2011-03-14 17:22:12 ----D---- E:\WINDOWS\system32\CatRoot2
2011-03-14 11:34:22 ----SD---- E:\WINDOWS\Tasks
2011-03-14 01:39:40 ----D---- E:\WINDOWS\Temp
2011-03-14 01:37:01 ----A---- E:\WINDOWS\SchedLgU.Txt
2011-03-14 01:34:28 ----D---- E:\WINDOWS\system32
2011-03-14 01:13:11 ----D---- E:\WINDOWS
2011-03-14 01:09:46 ----SHD---- E:\RECYCLER
2011-03-14 00:57:05 ----D---- E:\Program Files\Mozilla Firefox
2011-03-14 00:18:12 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\Winamp
2011-03-14 00:01:13 ----D---- E:\WINDOWS\system32\drivers
2011-03-13 20:55:03 ----D---- E:\WINDOWS\system32\config
2011-03-13 20:47:50 ----D---- E:\WINDOWS\system32\DirectX
2011-03-13 20:47:49 ----RSD---- E:\WINDOWS\assembly
2011-03-13 20:37:32 ----HD---- E:\Program Files\InstallShield Installation Information
2011-03-13 17:59:16 ----SHD---- E:\WINDOWS\Installer
2011-03-13 17:59:16 ----HD---- E:\Config.Msi
2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files
2011-03-13 17:58:56 ----D---- E:\Program Files\Java
2011-03-12 23:38:51 ----HD---- E:\WINDOWS\inf
2011-03-12 23:38:51 ----DC---- E:\WINDOWS\system32\DRVSTORE
2011-03-12 13:51:56 ----D---- E:\WINDOWS\system32\LogFiles
2011-03-12 11:26:38 ----D---- E:\WINDOWS\Minidump
2011-03-12 11:26:38 ----D---- E:\WINDOWS\Debug
2011-03-12 11:16:59 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\AVG10
2011-03-12 11:16:18 ----RSHDC---- E:\WINDOWS\system32\dllcache
2011-03-11 21:35:05 ----D---- E:\WINDOWS\system32\CatRoot
2011-03-10 23:58:57 ----A---- E:\WINDOWS\system32\MRT.exe
2011-03-10 21:40:59 ----HD---- E:\WINDOWS\$hf_mig$
2011-03-07 23:11:18 ----D---- E:\WINDOWS\WinSxS
2011-02-26 16:48:27 ----D---- E:\Program Files\Sony Ericsson
2011-02-25 22:00:23 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson
2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\wrap_oal.dll
2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\OpenAL32.dll
2011-02-22 22:50:40 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters
2011-02-22 22:49:12 ----D---- E:\Program Files\OpenAL
2011-02-22 22:23:54 ----D---- E:\WINDOWS\system32\ReinstallBackups
2011-02-19 13:00:42 ----D---- E:\Program Files\ALLPlayer
2011-02-19 13:00:39 ----D---- E:\Program Files\NAPI-PROJEKT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; E:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 Lbd;Lbd; E:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-03-07 64512]
R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; E:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 speedfan;speedfan; E:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 sptd;sptd; E:\WINDOWS\System32\Drivers\sptd.sys [2010-08-08 717296]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-15 76544]
R1 AsIO;AsIO; E:\WINDOWS\system32\drivers\AsIO.sys [2009-12-06 12400]
R1 cmderd;COMODO Internet Security Eradication Driver; E:\WINDOWS\System32\DRIVERS\cmderd.sys [2011-01-06 15592]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; E:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-01-06 239368]
R1 intelppm;Sterownik procesora Intel; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448]
R1 kbdhid;Sterownik klawiatury HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R2 cpuz133;cpuz133; \??\E:\WINDOWS\system32\drivers\cpuz133_x32.sys []
R3 Arp1394;Protokół klienta 1394 ARP; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-08-26 5386752]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; E:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-10-21 89600]
R3 ctsfm2k;Creative SoundFont Management Device Driver; E:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752]
R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Sterownik Microsoft klasy HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Sterownik myszy HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; E:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;Sterownik sieci 1394; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 ossrv;Creative OS Services Driver; E:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496]
R3 P17;Sound Blaster Audigy; E:\WINDOWS\system32\drivers\P17.sys [2005-07-07 1389056]
R3 seehcri;Sony Ericsson seehcri Device Driver; E:\WINDOWS\system32\DRIVERS\seehcri.sys [2010-11-05 27632]
R3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; E:\WINDOWS\system32\drivers\WmBEnum.sys [2004-04-14 10144]
R3 WmXlCore;Logitech WingMan Translation Layer Driver; E:\WINDOWS\system32\drivers\WmXlCore.sys [2004-04-14 44064]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; E:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-07-26 248832]
S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); E:\WINDOWS\System32\Drivers\e4ldr.sys []
S3 a8rsxzwr;a8rsxzwr; E:\WINDOWS\system32\drivers\a8rsxzwr.sys []
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys []
S3 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\E:\WINDOWS\system32\drivers\BVRPMPR5.SYS []
S3 e4usbaw;USB ADSL2 WAN Adapter; E:\WINDOWS\system32\DRIVERS\e4usbaw.sys []
S3 ggflt;SEMC USB Flash Driver Filter; E:\WINDOWS\system32\DRIVERS\ggflt.sys [2010-10-10 13224]
S3 ggsemc;SEMC USB Flash Driver; E:\WINDOWS\system32\DRIVERS\ggsemc.sys [2010-10-10 25512]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; E:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; E:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; E:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\E:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys []
S3 LgBttPort;LGE Bluetooth TransPort; E:\WINDOWS\system32\DRIVERS\lgbtport.sys []
S3 lgbusenum;LG Bluetooth Bus Enumerator; E:\WINDOWS\system32\DRIVERS\lgbtbus.sys []
S3 lgmdbus;LG Mobile driver (WDM); E:\WINDOWS\system32\DRIVERS\lgmdbus.sys []
S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys []
S3 lgmdmdm;LG Mobile USB WMC Modem Driver; E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys []
S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys []
S3 lgmdobex;LG Mobile USB WMC OBEX Interface; E:\WINDOWS\system32\DRIVERS\lgmdobex.sys []
S3 LGVMODEM;LGE Virtual Modem; E:\WINDOWS\system32\DRIVERS\lgvmodem.sys []
S3 usbprint;Klasa PRINTER USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Sterownik skanera USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Sterownik magazynu masowego USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WinUSB;Sony Ericsson USB Device sa0101 Driver; E:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]
S3 WmFilter;Logitech WingMan HID Filter Driver; E:\WINDOWS\system32\drivers\WmFilter.sys [2004-04-14 21280]
S3 WmHidLo;Logitech WingMan USB Filter Driver; E:\WINDOWS\system32\drivers\WmHidLo.sys [2004-04-14 14432]
S3 WmVirHid;Logitech Virtual Hid Device Driver; E:\WINDOWS\system32\drivers\WmVirHid.sys [2004-04-14 5600]
S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2010-08-26 606208]
R2 CLPSLS;COMODO livePCsupport Service; E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 156576]
R2 cmdAgent;COMODO Internet Security Helper Service; E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-17 1803224]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; E:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032]
R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2011-03-08 1405384]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; E:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-01-20 73728]
R2 Net Driver HPZ12;Net Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2010-10-16 75064]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;Usuga stanu ASP.NET; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------[/log]


[log]info.txt logfile of random's system information tool 1.08 2011-03-14 22:33:36

======Uninstall list======

-->"E:\Program Files\Creative Installation Information\CREATIVE_MEDIASOURCE_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\CTCMSGO\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\E-CENTER_NET_CONTENT_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_CDBURNER_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_MINIDISC_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\E-CENTER_PLUGIN_ONLINESTORE_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative Installation Information\MEDIASOURCE_PLAYER_SKINPACK_U\Setup.exe" /remove /l0x0009
-->"E:\Program Files\Creative\SBAudigy\Program\Setup.exe" /S /U /W
-->E:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
-->E:\Program Files\InstallShield Installation Information\{1ECB9828-38A7-424F-9280-730F11EBBB96}\setup.exe
-->MsiExec /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{2670895A-4E6C-4450-B868-7B7DB80A3357}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{32B4B536-4443-42F0-9676-98373BE9114F}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{32B4B536-4443-42F0-9676-98373BE9114F}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{34EBD418-B8E6-4E86-89C4-33B72CF5663F}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{34EBD418-B8E6-4E86-89C4-33B72CF5663F}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{52338F65-A1C3-4CDC-B733-50051682B297}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{52338F65-A1C3-4CDC-B733-50051682B297}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{700932B3-A964-4878-82A2-96054622A1F7}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{73919E2B-725C-4FAA-8473-45E063A3575F}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{84F573D3-0F71-4768-978A-D35310E3FBA6}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{9194237B-7B58-40B4-A739-184AD59531A2}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{9194237B-7B58-40B4-A739-184AD59531A2}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BD6928A2-9F8F-4AA7-9A3A-FD4A271712EE}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{C64409FA-42A7-49C6-837A-D2E5D813BD57}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{C64409FA-42A7-49C6-837A-D2E5D813BD57}\setup.exe" -l0x9 /remove
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{DE4A4C48-2232-4CCB-AD61-490ACD29BA85}\setup.exe" -l0x9
-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{DE4A4C48-2232-4CCB-AD61-490ACD29BA85}\setup.exe" -l0x9 /remove
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 E:\WINDOWS\INF\PCHealth.inf
µTorrent-->"E:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
32 Bit HP CIO Components Installer-->MsiExec.exe /I{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}
Ad-Aware-->"E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}\Ad-Aware90Install.exe" REMOVE=TRUE MODIFY=FALSE
Ad-Aware-->E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}\Ad-Aware90Install.exe
Adobe Flash Player 10 ActiveX-->E:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->E:\WINDOWS\system32\Macromed\Flash\FlashUtil10n_Plugin.exe -maintain plugin
Adobe Reader 9.4.2 - Polish-->MsiExec.exe /I{AC76BA86-7AD7-1045-7B44-A94000000001}
AeroFly Professional Deluxe-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}\setup.exe" -l0x9
AI Suite-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{310BC5E2-31AF-49BB-904D-E71EB93645DC}\Setup.exe" -l0x9
Aktualizacja dla systemu Windows XP (KB2141007)-->"E:\WINDOWS\$NtUninstallKB2141007$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB2345886)-->"E:\WINDOWS\$NtUninstallKB2345886$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB2467659)-->"E:\WINDOWS\$NtUninstallKB2467659$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB951978)-->"E:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB955759)-->"E:\WINDOWS\$NtUninstallKB955759$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB967715)-->"E:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB968389)-->"E:\WINDOWS\$NtUninstallKB968389$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB971029)-->"E:\WINDOWS\$NtUninstallKB971029$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB971737)-->"E:\WINDOWS\$NtUninstallKB971737$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB973687)-->"E:\WINDOWS\$NtUninstallKB973687$\spuninst\spuninst.exe"
Aktualizacja dla systemu Windows XP (KB973815)-->"E:\WINDOWS\$NtUninstallKB973815$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB2378111)-->"E:\WINDOWS\$NtUninstallKB2378111_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB952069)-->"E:\WINDOWS\$NtUninstallKB952069_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB954155)-->"E:\WINDOWS\$NtUninstallKB954155_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"E:\WINDOWS\$NtUninstallKB973540_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB973540)-->"E:\WINDOWS\$NtUninstallKB973540_WM9L$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB975558)-->"E:\WINDOWS\$NtUninstallKB975558_WM8$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB978695)-->"E:\WINDOWS\$NtUninstallKB978695_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"E:\WINDOWS\$NtUninstallKB979402_WM9$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla programu Windows Media Player (KB979402)-->"E:\WINDOWS\$NtUninstallKB979402_WM9L$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2079403)-->"E:\WINDOWS\$NtUninstallKB2079403$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2115168)-->"E:\WINDOWS\$NtUninstallKB2115168$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2121546)-->"E:\WINDOWS\$NtUninstallKB2121546$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2160329)-->"E:\WINDOWS\$NtUninstallKB2160329$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2183461)-->"E:\WINDOWS\$NtUninstallKB2183461$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2229593)-->"E:\WINDOWS\$NtUninstallKB2229593$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2259922)-->"E:\WINDOWS\$NtUninstallKB2259922$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2279986)-->"E:\WINDOWS\$NtUninstallKB2279986$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2286198)-->"E:\WINDOWS\$NtUninstallKB2286198$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2296011)-->"E:\WINDOWS\$NtUninstallKB2296011$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2296199)-->"E:\WINDOWS\$NtUninstallKB2296199$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2347290)-->"E:\WINDOWS\$NtUninstallKB2347290$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2360131)-->"E:\WINDOWS\$NtUninstallKB2360131$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2360937)-->"E:\WINDOWS\$NtUninstallKB2360937$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2387149)-->"E:\WINDOWS\$NtUninstallKB2387149$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2393802)-->"E:\WINDOWS\$NtUninstallKB2393802$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2416400)-->"E:\WINDOWS\$NtUninstallKB2416400$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2419632)-->"E:\WINDOWS\$NtUninstallKB2419632$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2423089)-->"E:\WINDOWS\$NtUninstallKB2423089$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2436673)-->"E:\WINDOWS\$NtUninstallKB2436673$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2440591)-->"E:\WINDOWS\$NtUninstallKB2440591$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2443105)-->"E:\WINDOWS\$NtUninstallKB2443105$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2476687)-->"E:\WINDOWS\$NtUninstallKB2476687$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2478960)-->"E:\WINDOWS\$NtUninstallKB2478960$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2478971)-->"E:\WINDOWS\$NtUninstallKB2478971$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2479628)-->"E:\WINDOWS\$NtUninstallKB2479628$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2479943)-->"E:\WINDOWS\$NtUninstallKB2479943$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2481109)-->"E:\WINDOWS\$NtUninstallKB2481109$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2482017)-->"E:\WINDOWS\$NtUninstallKB2482017$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2483185)-->"E:\WINDOWS\$NtUninstallKB2483185$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB2485376)-->"E:\WINDOWS\$NtUninstallKB2485376$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB923561)-->"E:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB923789)-->E:\WINDOWS\system32\MacroMed\Flash\genuinst.exe E:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Aktualizacja zabezpieczeń dla systemu Windows XP (KB946648)-->"E:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950760)-->"E:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950762)-->"E:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB950974)-->"E:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB951376-v2)-->"E:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB951748)-->"E:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB952004)-->"E:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB952954)-->"E:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB955069)-->"E:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956572)-->"E:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956744)-->"E:\WINDOWS\$NtUninstallKB956744$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956802)-->"E:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956803)-->"E:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB956844)-->"E:\WINDOWS\$NtUninstallKB956844$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB958644)-->"E:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB958869)-->"E:\WINDOWS\$NtUninstallKB958869$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB959426)-->"E:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960225)-->"E:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960803)-->"E:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB960859)-->"E:\WINDOWS\$NtUninstallKB960859$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB961501)-->"E:\WINDOWS\$NtUninstallKB961501$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB969059)-->"E:\WINDOWS\$NtUninstallKB969059$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB970238)-->"E:\WINDOWS\$NtUninstallKB970238$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB970430)-->"E:\WINDOWS\$NtUninstallKB970430$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971468)-->"E:\WINDOWS\$NtUninstallKB971468$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971657)-->"E:\WINDOWS\$NtUninstallKB971657$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB971961)-->"E:\WINDOWS\$NtUninstallKB971961$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB972270)-->"E:\WINDOWS\$NtUninstallKB972270$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973507)-->"E:\WINDOWS\$NtUninstallKB973507$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973869)-->"E:\WINDOWS\$NtUninstallKB973869$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB973904)-->"E:\WINDOWS\$NtUninstallKB973904$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974112)-->"E:\WINDOWS\$NtUninstallKB974112$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974318)-->"E:\WINDOWS\$NtUninstallKB974318$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974392)-->"E:\WINDOWS\$NtUninstallKB974392$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB974571)-->"E:\WINDOWS\$NtUninstallKB974571$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975025)-->"E:\WINDOWS\$NtUninstallKB975025$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975467)-->"E:\WINDOWS\$NtUninstallKB975467$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975560)-->"E:\WINDOWS\$NtUninstallKB975560$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975561)-->"E:\WINDOWS\$NtUninstallKB975561$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975562)-->"E:\WINDOWS\$NtUninstallKB975562$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB975713)-->"E:\WINDOWS\$NtUninstallKB975713$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB977816)-->"E:\WINDOWS\$NtUninstallKB977816$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB977914)-->"E:\WINDOWS\$NtUninstallKB977914$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978037)-->"E:\WINDOWS\$NtUninstallKB978037$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978338)-->"E:\WINDOWS\$NtUninstallKB978338$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978542)-->"E:\WINDOWS\$NtUninstallKB978542$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978601)-->"E:\WINDOWS\$NtUninstallKB978601$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB978706)-->"E:\WINDOWS\$NtUninstallKB978706$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979309)-->"E:\WINDOWS\$NtUninstallKB979309$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979482)-->"E:\WINDOWS\$NtUninstallKB979482$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979559)-->"E:\WINDOWS\$NtUninstallKB979559$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979683)-->"E:\WINDOWS\$NtUninstallKB979683$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB979687)-->"E:\WINDOWS\$NtUninstallKB979687$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980195)-->"E:\WINDOWS\$NtUninstallKB980195$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980218)-->"E:\WINDOWS\$NtUninstallKB980218$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980232)-->"E:\WINDOWS\$NtUninstallKB980232$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB980436)-->"E:\WINDOWS\$NtUninstallKB980436$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981322)-->"E:\WINDOWS\$NtUninstallKB981322$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981349)-->"E:\WINDOWS\$NtUninstallKB981349$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981852)-->"E:\WINDOWS\$NtUninstallKB981852$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981957)-->"E:\WINDOWS\$NtUninstallKB981957$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB981997)-->"E:\WINDOWS\$NtUninstallKB981997$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982132)-->"E:\WINDOWS\$NtUninstallKB982132$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982214)-->"E:\WINDOWS\$NtUninstallKB982214$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982381)-->"E:\WINDOWS\$NtUninstallKB982381$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982665)-->"E:\WINDOWS\$NtUninstallKB982665$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla systemu Windows XP (KB982802)-->"E:\WINDOWS\$NtUninstallKB982802$\spuninst\spuninst.exe"
Aktualizacja zabezpieczeń dla Windows XP (KB941569)-->"E:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
ALLPlayer V4.X-->"E:\Program Files\ALLPlayer\unins000.exe"
Archiwizator WinRAR-->E:\Program Files\WinRAR\uninstall.exe
Assassin's Creed II-->"E:\Program Files\InstallShield Installation Information\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}\setup.exe" -runfromtemp -l0x0015 -removeonly
Auslogics Disk Defrag-->"E:\Program Files\Auslogics\Auslogics Disk Defrag\unins000.exe"
Battlefield 2(TM)-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}\setup.exe" -l0x15 -removeonly
BearShare-->"E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}\BearShare_V9_pl_Setup.exe" REMOVE=TRUE MODIFY=FALSE
BearShare-->E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}\BearShare_V9_pl_Setup.exe
BS.Player ControlBar-->E:\Program Files\BS.Player ControlBar\uninst.exe
BS.Player FREE-->"E:\Program Files\Webteh\BSplayer\uninstall.exe"
Catalyst Control Center - Branding-->MsiExec.exe /I{DDA34038-89BD-4804-B0B8-DC48D5DFB463}
CCleaner-->"E:\Program Files\CCleaner\uninst.exe"
Combined Community Codec Pack 2007-07-22-->"E:\Program Files\Combined Community Codec Pack\unins001.exe"
COMODO GeekBuddy-->E:\Program Files\COMODO\COMODO GeekBuddy\uninstall.exe
COMODO Internet Security-->MsiExec.exe /I{FD8E178D-8B4E-42DA-B434-EFF270329B1C}
CorelDRAW Graphics Suite 12-->MsiExec.exe /I{505AFDC0-5E72-4928-8368-5DEA385E3647}
CPUID CPU-Z 1.54-->"E:\Program Files\CPUID\CPU-Z\unins000.exe"
Creative MediaSource 5-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\SETUP.EXE" -l0x9 /remove
Creative Software AutoUpdate-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{88B1984E-36F0-47B8-B8DC-728966807A9C}\SETUP.EXE" -l0x9 /remove
Disk Checker-->"E:\Program Files\Disk Checker\uninstall.exe"
Edycja kolekcjonerska Heroes of Might and Magic V-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{F68563C0-2CCD-4799-A014-017A370D627B}\setup.exe" -l0x15
EXPERTool ATI 4.2-->"E:\Program Files\EXPERTool ATI\unins000.exe"
F1 2010-->"C:\Gry\F1 2010\unins000.exe"
FMS-->E:\Program Files\FMS\Uninstall.exe
Fraps-->"E:\Fraps\uninstall.exe"
Gadu-Gadu 10-->E:\Program Files\Gadu-Gadu 10\Uninstall.exe
GameSpy Arcade-->E:\PROGRA~1\GameSpy Arcade\UNWISE.EXE E:\PROGRA~1\GameSpy Arcade\INSTALL.LOG
GRID-->"E:\Program Files\InstallShield Installation Information\{5A0B7BA5-4682-4273-81C2-69B17E649103}\setup.exe" -runfromtemp -l0x0009 -removeonly
HDD Regenerator-->MsiExec.exe /X{97A39919-9FEA-48B7-AB2B-4F99212D1E98}
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
Hotfix for Windows Media Format 11 SDK (KB929399)-->"E:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
HP Customer Participation Program 9.0-->E:\Program Files\HP\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
HP Deskjet All-In-One Software 9.0-->E:\Program Files\HP\Digital Imaging\{706BB40A-4102-4c89-8107-DC68C4EBD19B}\setup\hpzscr01.exe -datfile hposcr14.dat
HP Imaging Device Functions 9.0-->E:\Program Files\HP\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
HP Photosmart Essential 2.01-->E:\Program Files\HP\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
HP Solution Center 9.0-->E:\Program Files\HP\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
HP Update-->MsiExec.exe /X{8C6027FD-53DC-446D-BB75-CACD7028A134}
HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
Inkscape 0.48.0-->E:\Program Files\Inkscape\Uninstall.exe
Java(TM) 6 Update 24-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216021FF}
Logitech Gaming Software-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{B9242864-2841-4ADE-86E0-8F90F91B04DD}\setup.exe" -l0x9
Mafia II-->"C:\Gry\Mafia II\unins000.exe"
Marvell Miniport Driver-->MsiExec.exe /X{C950420B-4182-49EA-850A-A6A2ABF06C6B}
Medal of Honor-->"C:\Gry\Medal of Honor\Uninstall\unins000.exe"
Media Go-->MsiExec.exe /X{5C318BD3-BA72-43E4-9D16-A18210B4A5A5}
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK-->MsiExec.exe /I{036FD544-AED6-3F33-856D-A2292D0CF471}
Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK-->MsiExec.exe /I{7C77393F-8237-3825-A88A-AFAF3C69C072}
Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
Microsoft .NET Framework 3.5 Language Pack - plk-->MsiExec.exe /I{F31E509D-3597-324E-83CF-0C160B2320F0}
Microsoft .NET Framework 3.5 SP1-->E:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}
Microsoft Games for Windows - LIVE-->MsiExec.exe /X{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7-->"E:\WINDOWS\$NtUninstallWdf01007$\spuninst\spuninst.exe"
Microsoft User-Mode Driver Framework Feature Pack 1.5-->"E:\WINDOWS\$NtUninstallWudf01005$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft WinUsb 1.0-->"E:\WINDOWS\$NtUninstallwinusb0100$\spuninst\spuninst.exe"
Mozilla Firefox (3.6.15)-->E:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVC80_x86-->MsiExec.exe /I{212748BB-0DA5-46DE-82A1-403736DC9F27}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 (KB973688)-->MsiExec.exe /I{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}
Nero Suite-->E:\Program Files\Common Files\Nero\Uninstall\setupx.exe /uninstall ExtraUninstallID=""
NetMeter 0.9.9.9 (beta 2)-->"E:\Program Files\NetMeter\unins000.exe"
NVIDIA PhysX-->MsiExec.exe /X{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}
Odinstalowuj LG PC Suite III-->"E:\Program Files\LG Electronics\LG PC Suite III\unins000.exe"
OpenAL-->"E:\Program Files\OpenAL\OpenALwEAX.exe" /U
Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK-->E:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 Language Pack - plk\setup.exe
PC Probe II-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{F7338FA3-DAB5-49B2-900D-0AFB5760C166}\setup.exe" -l0x9
PlayStation(R)Network Downloader-->MsiExec.exe /X{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}
PlayStation(R)Store-->MsiExec.exe /X{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}
Poprawka dla systemu Windows XP (KB2158563)-->"E:\WINDOWS\$NtUninstallKB2158563$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB2443685)-->"E:\WINDOWS\$NtUninstallKB2443685$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB942288-v3)-->"E:\WINDOWS\$NtUninstallKB942288-v3$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB952287)-->"E:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB961118)-->"E:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
Poprawka dla systemu Windows XP (KB981793)-->"E:\WINDOWS\$NtUninstallKB981793$\spuninst\spuninst.exe"
PunkBuster Services-->E:\WINDOWS\system32\pbsvc_moh.exe -u --language=
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
Real Alternative 1.60-->"E:\Program Files\Real Alternative\unins000.exe"
RealNetworks - Microsoft Visual C++ 2008 Runtime-->MsiExec.exe /X{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}
RealPlayer-->E:\Program Files\Real\RealPlayer\Update\r1puninst.exe RealNetworks|RealPlayer|12.0
RealUpgrade 1.1-->MsiExec.exe /I{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A8894F19-59C8-38D2-8A75-36C0CCE56A5B} /qb+ REBOOTPROMPT=""
Seven Remix XP 2.4-->E:\WINDOWS\NiwradSoft Shell Pack\uninst.exe
Solid Edge 2D Drafting ST3-->MsiExec.exe /X{78B771A0-6883-44FB-A830-B138EA89278E}
Sony Ericsson PC Companion 2.01.123-->"E:\Program Files\InstallShield Installation Information\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}\setup.exe" -runfromtemp -l0x0009 -removeonly
Sony Ericsson Update Service-->E:\Program Files\Sony Ericsson\Update Service\uninst.exe
Sound Blaster Audigy-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}\SETUP.EXE" -l0x9 /remove
SpeedFan (remove only)-->"E:\Program Files\SpeedFan\uninstall.exe"
StarCraft II-->E:\Program Files\Common Files\Blizzard Entertainment\StarCraft II\Uninstall.exe
Titan Quest Immortal Throne-->RunDll32 E:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "E:\Program Files\InstallShield Installation Information\{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}\setup.exe" -l0x15 -removeonly
Ubisoft Game Launcher-->"E:\Program Files\InstallShield Installation Information\{888F1505-C2B3-4FDE-835D-36353EBD4754}\setup.exe" -runfromtemp -l0x0409 -removeonly
Unlocker 1.8.5-->E:\Program Files\Unlocker\uninst.exe
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->E:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
Visual C++ 2008 x86 Runtime - (v9.0.30729)-->MsiExec.exe /X{F333A33D-125C-32A2-8DCE-5C5D14231E27}
Visual C++ 2008 x86 Runtime - v9.0.30729.01-->E:\WINDOWS\system32\msiexec.exe /x {F333A33D-125C-32A2-8DCE-5C5D14231E27} /qb+ REBOOTPROMPT=""
Winamp-->"E:\Program Files\Winamp\UninstWA.exe"
Windows Media Format 11 runtime-->"E:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"E:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"E:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
XML Paper Specification Shared Components Language Pack 1.0-->"E:\WINDOWS\$NtUninstallXPSEPSCLP$\spuninst\spuninst.exe"

======System event log======

Computer Name: DOMINIK-BFC9604
Event Code: 7036
Message: Usługa Menedżer połączeń usługi Dostęp zdalny weszła w stan uruchomienia.

Record Number: 14692
Source Name: Service Control Manager
Time Written: 20110224213549.000000+060
Event Type: informacje
User:

Computer Name: DOMINIK-BFC9604
Event Code: 7036
Message: Usługa Usługa COM nagrywania dysków CD IMAPI weszła w stan zatrzymania.

Record Number: 14691
Source Name: Service Control Manager
Time Written: 20110224213547.000000+060
Event Type: informacje
User:

Computer Name: DOMINIK-BFC9604
Event Code: 7036
Message: Usługa Usługa bramy warstwy aplikacji weszła w stan uruchomienia.

Record Number: 14690
Source Name: Service Control Manager
Time Written: 20110224213547.000000+060
Event Type: informacje
User:

Computer Name: DOMINIK-BFC9604
Event Code: 7035
Message: Do usługi Usługa bramy warstwy aplikacji został pomyślnie wysłany kod sterowania uruchom.

Record Number: 14689
Source Name: Service Control Manager
Time Written: 20110224213547.000000+060
Event Type: informacje
User: ZARZĄDZANIE NT\SYSTEM

Computer Name: DOMINIK-BFC9604
Event Code: 7036
Message: Usługa Usługa odnajdywania SSDP weszła w stan uruchomienia.

Record Number: 14688
Source Name: Service Control Manager
Time Written: 20110224213546.000000+060
Event Type: informacje
User:

=====Application event log=====

Computer Name: DOMINIK-BFC9604
Event Code: 105
Message: The service was started.

Record Number: 2195
Source Name: Creative Service for CDROM Access
Time Written: 20101204152352.000000+060
Event Type: informacje
User:

Computer Name: DOMINIK-BFC9604
Event Code: 1000
Message: Aplikacja powodująca błąd drwtsn32.exe, wersja 5.1.2600.0, moduł powodujący błąd dbghelp.dll, wersja 5.1.2600.5512, adres błędu 0x0001295d.

Record Number: 2194
Source Name: Application Error
Time Written: 20101202234537.000000+060
Event Type: błąd
User:

Computer Name: DOMINIK-BFC9604
Event Code: 1000
Message: Aplikacja powodująca błąd explorer.exe, wersja 6.0.2900.5512, moduł powodujący błąd unknown, wersja 0.0.0.0, adres błędu 0x03cb29f0.

Record Number: 2193
Source Name: Application Error
Time Written: 20101202234519.000000+060
Event Type: błąd
User:

Computer Name: DOMINIK-BFC9604
Event Code: 4097
Message: Aplikacja E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\gde_miromind_android.rar.exe wygenerowała błąd aplikacji.
Błąd wystąpił na 12/02/2010 @ 22:55:09.705.
Wygenerowany wyjątek to c0000005 pod adresem 00A9FFA8 (gde_miromind_android.rar).

Record Number: 2192
Source Name: DrWatson
Time Written: 20101202225509.000000+060
Event Type: informacje
User:

Computer Name: DOMINIK-BFC9604
Event Code: 1000
Message: Aplikacja powodująca błąd gde_miromind_android.rar.exe, wersja 0.0.0.0, moduł powodujący błąd gde_miromind_android.rar.exe, wersja 0.0.0.0, adres błędu 0x0069ffa8.

Record Number: 2191
Source Name: Application Error
Time Written: 20101202225508.000000+060
Event Type: błąd
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=E:\Program Files\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;E:\Program Files\ATI Technologies\ATI.ACE\Core-Static;E:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 23 Stepping 6, GenuineIntel
"PROCESSOR_REVISION"=1706
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;E:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=E:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------[/log]


Bardzo proszę o pamoc.

Zwróciłem uwagę że ikonka pojawia się znacznie częściej gdy ściągam plik z dużą prędkością.

Tomek01
komentarz
komentarz

Pokaż log z Combofix'a, który powstał po jego użyciu. Tak na przyszłość, odradzam samowolne stosowanie.

Zastosuj [b][color=#0000CD][url=http://download.bleepingcomputer.com//sUBs/Flash_Disinfector.exe]Flash Disinfector[/url][/color][/b], najlepiej z podpiętym pendrive'm czy innymi pamięciami USB.

W OTL, w oknie Custom scan/fixes wklej:
[code]
:OTL
O3 - HKLM\..\Toolbar: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll ()
O3 - HKLM\..\Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (BS.Player ControlBar) - {2C688203-7EB3-4327-9995-1CB417BA23F9} - E:\Program Files\BS.Player ControlBar\BSToolbar.dll ()
O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell - "" = AutoRun
O33 - MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\Shell\AutoRun\command - "" = I:\Startme.exe
O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell - "" = AutoRun
O33 - MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\Shell\AutoRun\command - "" = H:\LaunchU3.exe -a
O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\AutoRun\command - "" = nqdymj.exe
O33 - MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\Shell\open\Command - "" = nqdymj.exe
[2011-03-14 01:06:32 | 000,004,630 | ---- | C] () -- E:\WINDOWS\System32\tmp.reg

:Files
E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
E:\WINDOWS\system32\tmp121.tmp
E:\WINDOWS\system32\tmp120.tmp
E:\WINDOWS\system32\tmp113.tmp
E:\WINDOWS\system32\tmp112.tmp

:Commands
[emptytemp][/code]

Klikasz run fix, komputer uruchamia się ponownie.
Wrzuć log z usuwania oraz nowe logi: OTL i RSIT

domin46
komentarz
komentarz

Wcześniej nie udało mi się uruchomić combofix-a. Jak go uruchomiałem to wyskakiwał błąd więc nie mam z niego loga. Flash Disinfector też nie odpaliłem z tego samego powodu.
Po dodaniu skryptu nic się nie zmieniło.

[log]All processes killed
========== OTL ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{2C688203-7EB3-4327-9995-1CB417BA23F9} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C688203-7EB3-4327-9995-1CB417BA23F9}\ deleted successfully.
E:\Program Files\BS.Player ControlBar\BSToolbar.dll moved successfully.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{CCC7A320-B3CA-4199-B1A6-9F516DD69829} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CCC7A320-B3CA-4199-B1A6-9F516DD69829}\ not found.
Registry value HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2C688203-7EB3-4327-9995-1CB417BA23F9} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{2C688203-7EB3-4327-9995-1CB417BA23F9}\ not found.
File E:\Program Files\BS.Player ControlBar\BSToolbar.dll not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6071a9f1-d43b-11df-b4e0-00221553899f}\ not found.
File I:\Startme.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9221c022-a2c7-11df-b44b-00221553899f}\ not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9221c022-a2c7-11df-b44b-00221553899f}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{9221c022-a2c7-11df-b44b-00221553899f}\ not found.
File H:\LaunchU3.exe -a not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found.
File nqdymj.exe not found.
Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{bf1d2630-2f07-11e0-b594-00221553899f}\ not found.
File nqdymj.exe not found.
E:\WINDOWS\system32\tmp.reg moved successfully.
========== FILES ==========
E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job moved successfully.
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job moved successfully.
E:\WINDOWS\tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-500.job moved successfully.
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job moved successfully.
File\Folder E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job E:\WINDOWS\system32\tmp121.tmp not found.
E:\WINDOWS\system32\tmp120.tmp moved successfully.
E:\WINDOWS\system32\tmp113.tmp moved successfully.
E:\WINDOWS\system32\tmp112.tmp moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 37812 bytes
->FireFox cache emptied: 3985503 bytes

User: All Users

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

User: Dominik
->Temp folder emptied: 1163701684 bytes
->Temporary Internet Files folder emptied: 95913 bytes
->Java cache emptied: 0 bytes
->FireFox cache emptied: 92942577 bytes
->Flash cache emptied: 1481 bytes

User: LocalService
->Temp folder emptied: 65984 bytes
->Temporary Internet Files folder emptied: 44760 bytes
->FireFox cache emptied: 3425881 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 33170 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 2344639 bytes
%systemroot%\System32 .tmp files removed: 5104428 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 29135 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 1 213,00 mb


OTL by OldTimer - Version 3.2.22.3 log created on 03162011_213637

Files\Folders moved on Reboot...
File move failed. E:\Documents and Settings\Dominik\Ustawienia lokalne\Temp\nircmd.exe scheduled to be moved on reboot.

Registry entries deleted on Reboot...[/log]

[log]OTL logfile created on: 2011-03-16 21:56:30 - Run 4
OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 70,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 645,21 Gb Total Space | 246,74 Gb Free Space | 38,24% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 208,01 Gb Free Space | 89,32% Space Free | Partition Type: NTFS
Drive E: | 100,00 Gb Total Space | 51,54 Gb Free Space | 51,54% Space Free | Partition Type: NTFS

Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Processes (All) ==========[/color]

PRC - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe
PRC - [2011-03-12 22:17:27 | 000,399,224 | ---- | M] (BitTorrent, Inc.) -- E:\Program Files\uTorrent\uTorrent.exe
PRC - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
PRC - [2011-03-07 23:49:22 | 000,939,848 | ---- | M] (Lavasoft Limited) -- E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
PRC - [2011-03-06 21:44:57 | 000,016,856 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\plugin-container.exe
PRC - [2011-03-06 21:44:56 | 000,912,344 | ---- | M] (Mozilla Corporation) -- E:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
PRC - [2011-03-02 14:31:04 | 000,997,032 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe
PRC - [2011-02-02 21:40:41 | 000,153,376 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Java\jre6\bin\jqs.exe
PRC - [2011-01-24 11:42:42 | 000,427,008 | ---- | M] (Sony Ericsson) -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
PRC - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
PRC - [2011-01-17 23:30:16 | 002,548,552 | ---- | M] (COMODO) -- E:\Program Files\COMODO\COMODO Internet Security\cfp.exe
PRC - [2010-12-13 13:52:46 | 000,074,960 | ---- | M] () -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
PRC - [2010-11-06 00:05:49 | 000,274,608 | ---- | M] (RealNetworks, Inc.) -- E:\Program Files\Real\RealPlayer\Update\realsched.exe
PRC - [2010-10-29 14:49:28 | 000,249,064 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Common Files\Java\Java Update\jusched.exe
PRC - [2010-10-16 00:30:14 | 000,075,064 | ---- | M] () -- E:\WINDOWS\system32\PnkBstrA.exe
PRC - [2010-08-26 02:37:00 | 000,606,208 | ---- | M] (ATI Technologies Inc.) -- E:\WINDOWS\system32\ati2evxx.exe
PRC - [2010-08-17 14:17:06 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\spoolsv.exe
PRC - [2009-07-01 19:23:52 | 001,435,136 | ---- | M] () -- E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
PRC - [2009-04-22 17:38:50 | 000,065,536 | ---- | M] (Advanced Micro Devices Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
PRC - [2009-04-22 17:37:16 | 000,065,536 | ---- | M] (ATI Technologies Inc.) -- E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
PRC - [2009-04-09 09:29:34 | 002,304,552 | ---- | M] (Gainward Co.) -- E:\Program Files\EXPERTool ATI\TBPANEL.exe
PRC - [2009-02-09 12:25:57 | 000,111,104 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\services.exe
PRC - [2009-02-06 11:10:02 | 000,227,840 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\wmiprvse.exe
PRC - [2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winlogon.exe
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [RPCSS]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETWORKSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [NETSVCS]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [mi]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [LOCALSERVICE]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [IMGSVC]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HTTPFILTER]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPZ12]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [HPDEVMGMT]
PRC - [2008-04-14 18:21:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\svchost.exe [DCOMLAUNCH]
PRC - [2008-04-14 18:21:42 | 000,050,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\smss.exe
PRC - [2008-04-14 18:21:38 | 000,035,328 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rundll32.exe
PRC - [2008-04-14 18:21:22 | 000,013,312 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\lsass.exe
PRC - [2008-04-14 18:21:16 | 001,542,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\explorer.exe
PRC - [2008-04-14 18:21:10 | 000,040,448 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ctfmon.exe
PRC - [2008-04-14 18:21:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\csrss.exe
PRC - [2008-04-14 18:21:02 | 000,044,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\alg.exe
PRC - [2008-01-15 23:54:54 | 000,037,376 | ---- | M] () -- E:\Program Files\Winamp\winampa.exe
PRC - [2007-03-11 20:34:40 | 000,049,152 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\HP Software Update\hpwuSchd2.exe
PRC - [2007-03-11 20:32:42 | 000,151,552 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
PRC - [2007-03-11 20:26:24 | 000,210,520 | ---- | M] (Hewlett-Packard Co.) -- E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
PRC - [2006-01-20 10:20:00 | 000,073,728 | ---- | M] (Hewlett-Packard Company) -- E:\Program Files\Common Files\LightScribe\LSSrvc.exe
PRC - [2005-10-31 09:51:52 | 000,057,344 | ---- | M] (Creative Technology Ltd) -- E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
PRC - [2004-08-04 13:00:00 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\unsecapp.exe
PRC - [2004-06-16 06:03:04 | 000,081,920 | ---- | M] (InstallShield Software Corporation) -- E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
PRC - [1999-12-13 02:01:00 | 000,044,032 | ---- | M] (Creative Technology Ltd) -- E:\WINDOWS\system32\CTSVCCDA.EXE


[color=#E56717]========== Modules (All) ==========[/color]

MOD - [2011-03-13 21:42:13 | 000,580,608 | ---- | M] (OldTimer Tools) -- E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\OTL.exe
MOD - [2011-01-21 15:44:11 | 008,491,008 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shell32.dll
MOD - [2010-12-29 01:42:04 | 000,285,480 | ---- | M] (COMODO) -- E:\WINDOWS\system32\guard32.dll
MOD - [2010-12-20 23:14:34 | 001,510,400 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shdocvw.dll
MOD - [2010-12-20 23:14:34 | 000,669,696 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wininet.dll
MOD - [2010-12-20 23:14:34 | 000,627,712 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\urlmon.dll
MOD - [2010-12-09 16:15:25 | 000,726,528 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdll.dll
MOD - [2010-11-06 00:06:07 | 000,040,448 | ---- | M] (RealNetworks, Inc.) -- E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Chrome\Hook\rpchromebrowserrecordhelper.dll
MOD - [2010-08-23 17:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2010-08-16 09:45:09 | 000,590,848 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\rpcrt4.dll
MOD - [2010-08-08 17:15:06 | 000,219,648 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\uxtheme.dll
MOD - [2010-07-16 13:00:50 | 001,287,680 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ole32.dll
MOD - [2009-12-24 08:04:53 | 000,187,392 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wintrust.dll
MOD - [2009-12-08 10:25:45 | 000,474,112 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\shlwapi.dll
MOD - [2009-09-04 22:05:35 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msasn1.dll
MOD - [2009-07-17 20:04:02 | 000,058,880 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\atl.dll
MOD - [2009-07-12 00:02:02 | 000,653,120 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcr90.dll
MOD - [2009-07-12 00:02:00 | 000,569,664 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_d495ac4e\msvcp90.dll
MOD - [2009-06-25 09:27:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\secur32.dll
MOD - [2009-03-21 15:08:59 | 001,018,368 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\kernel32.dll
MOD - [2009-02-09 11:53:44 | 000,686,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\advapi32.dll
MOD - [2008-10-23 13:42:41 | 000,286,720 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\gdi32.dll
MOD - [2008-10-15 17:36:55 | 000,337,408 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\netapi32.dll
MOD - [2008-06-20 18:48:53 | 000,147,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\dnsapi.dll
MOD - [2008-04-14 21:50:48 | 002,572,288 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\setupapi.dll
MOD - [2008-04-14 18:21:56 | 000,146,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\winspool.drv
MOD - [2008-04-14 18:20:58 | 000,082,432 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ws2_32.dll
MOD - [2008-04-14 18:20:58 | 000,019,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ws2help.dll
MOD - [2008-04-14 18:20:57 | 000,172,544 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wldap32.dll
MOD - [2008-04-14 18:20:57 | 000,018,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\version.dll
MOD - [2008-04-14 18:20:56 | 000,757,248 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\userenv.dll
MOD - [2008-04-14 18:20:56 | 000,580,096 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\user32.dll
MOD - [2008-04-14 18:20:56 | 000,078,336 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\srclient.dll
MOD - [2008-04-14 18:20:45 | 000,064,000 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\samlib.dll
MOD - [2008-04-14 18:20:44 | 000,551,936 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\oleaut32.dll
MOD - [2008-04-14 18:20:44 | 000,084,992 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\olepro32.dll
MOD - [2008-04-14 18:20:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\psapi.dll
MOD - [2008-04-14 18:20:42 | 000,146,944 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntshrui.dll
MOD - [2008-04-14 18:20:41 | 000,119,808 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntmarta.dll
MOD - [2008-04-14 18:20:41 | 000,067,072 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\ntdsapi.dll
MOD - [2008-04-14 18:20:39 | 000,381,952 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\mstask.dll
MOD - [2008-04-14 18:20:39 | 000,343,040 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msvcrt.dll
MOD - [2008-04-14 18:20:36 | 000,297,984 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msctf.dll
MOD - [2008-04-14 18:20:35 | 000,059,904 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\mpr.dll
MOD - [2008-04-14 18:20:34 | 000,019,968 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\linkinfo.dll
MOD - [2008-04-14 18:20:32 | 000,144,384 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\imagehlp.dll
MOD - [2008-04-14 18:20:31 | 000,185,344 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\wbem\framedyn.dll
MOD - [2008-04-14 18:20:31 | 000,016,896 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\fltlib.dll
MOD - [2008-04-14 18:20:17 | 001,070,080 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\cryptui.dll
MOD - [2008-04-14 18:20:16 | 000,602,624 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\crypt32.dll
MOD - [2008-04-14 18:20:14 | 001,524,224 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comres.dll
MOD - [2008-04-14 18:20:13 | 000,333,824 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\comdlg32.dll
MOD - [2008-04-14 18:20:11 | 000,498,688 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\clbcatq.dll
MOD - [2008-04-14 18:20:06 | 000,060,416 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\cabinet.dll
MOD - [2008-04-14 18:19:59 | 000,125,952 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\apphelp.dll
MOD - [2008-04-14 18:16:32 | 000,110,592 | ---- | M] (Microsoft Corporation) -- E:\WINDOWS\system32\msscript.ocx


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011-03-08 17:25:04 | 001,405,384 | ---- | M] (Lavasoft Limited) [Auto | Running] -- E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe -- (Lavasoft Ad-Aware Service)
SRV - [2011-03-02 14:31:06 | 000,156,576 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe -- (CLPSLS)
SRV - [2011-01-17 23:30:46 | 001,803,224 | ---- | M] (COMODO) [Auto | Running] -- E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe -- (cmdAgent)
SRV - [2010-10-26 16:05:24 | 000,155,344 | ---- | M] (Avanquest Software) [On_Demand | Stopped] -- E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe -- (Sony Ericsson PCCompanion)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2011-03-07 23:52:40 | 000,015,232 | ---- | M] () [Kernel | On_Demand | Stopped] -- E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys -- (Lavasoft Kernexplorer)
DRV - [2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) [File_System | Boot | Running] -- E:\WINDOWS\system32\DRIVERS\Lbd.sys -- (Lbd)
DRV - [2011-01-06 17:37:02 | 000,239,368 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmdGuard.sys -- (cmdGuard)
DRV - [2011-01-06 17:37:02 | 000,015,592 | ---- | M] (COMODO) [File_System | System | Running] -- E:\WINDOWS\system32\drivers\cmderd.sys -- (cmderd)
DRV - [2010-11-05 21:53:08 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
DRV - [2010-10-10 20:51:05 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
DRV - [2010-10-10 20:51:05 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
DRV - [2010-08-26 04:33:38 | 005,386,752 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2010-08-08 16:28:25 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - [2010-03-10 16:25:58 | 000,020,968 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- E:\WINDOWS\system32\drivers\cpuz133_x32.sys -- (cpuz133)
DRV - [2010-02-16 05:38:12 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS -- (BVRPMPR5)
DRV - [2009-12-06 18:48:49 | 000,012,400 | ---- | M] () [Kernel | System | Running] -- E:\WINDOWS\system32\drivers\AsIO.sys -- (AsIO)
DRV - [2008-10-21 03:03:13 | 000,089,600 | R--- | M] (ATI Research Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\AtiHdmi.sys -- (AtiHdmiService)
DRV - [2006-11-02 06:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\winusb.sys -- (WinUSB)
DRV - [2006-09-24 14:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- E:\WINDOWS\system32\speedfan.sys -- (speedfan)
DRV - [2006-07-26 07:56:00 | 000,248,832 | ---- | M] (Marvell) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\yk51x86.sys -- (yukonwxp)
DRV - [2005-07-07 09:14:30 | 001,389,056 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\P17.sys -- (P17)
DRV - [2005-01-10 11:15:30 | 000,106,496 | R--- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctoss2k.sys -- (ossrv)
DRV - [2005-01-10 11:15:24 | 000,138,752 | R--- | M] (Creative Technology Ltd) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ctsfm2k.sys -- (ctsfm2k)
DRV - [2004-08-13 03:56:20 | 000,005,810 | R--- | M] () [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2004-04-14 11:08:00 | 000,044,064 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmXlCore.sys -- (WmXlCore)
DRV - [2004-04-14 11:08:00 | 000,021,280 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmFilter.sys -- (WmFilter)
DRV - [2004-04-14 11:08:00 | 000,014,432 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmHidLo.sys -- (WmHidLo)
DRV - [2004-04-14 11:08:00 | 000,010,144 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- E:\WINDOWS\system32\drivers\WmBEnum.sys -- (WmBEnum)
DRV - [2004-04-14 11:08:00 | 000,005,600 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- E:\WINDOWS\system32\drivers\WmVirHid.sys -- (WmVirHid)
DRV - [1996-04-03 20:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- E:\WINDOWS\system32\giveio.sys -- (giveio)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]



IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl
IE - HKU\S-1-5-21-796845957-527237240-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.defaultenginename: "Yahoo! Search"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "http://www.google.pl/"
FF - prefs.js..extensions.enabledItems: BSToolbar@toolbarnet.com:1.0.0.5
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}:6.0.21
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}:6.0.22
FF - prefs.js..extensions.enabledItems: {ABDE892B-13A8-4d1b-88E6-365A6E755758}:14.0.0
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}:6.0.24
FF - prefs.js..keyword.URL: "http://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q="

FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext [2010-11-06 00:06:07 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Components: E:\Program Files\Mozilla Firefox\components [2011-03-13 22:22:56 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.15\extensions\\Plugins: E:\Program Files\Mozilla Firefox\plugins [2011-03-06 21:44:59 | 000,000,000 | ---D | M]

[2010-08-08 12:13:03 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Extensions
[2011-03-14 23:34:04 | 000,000,000 | ---D | M] (No name found) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions
[2010-08-12 16:01:31 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010-08-15 17:07:19 | 000,002,447 | ---- | M] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\searchplugins\bsplayer-search.xml
[2011-03-14 23:34:04 | 000,000,000 | ---D | M] (No name found) -- E:\Program Files\Mozilla Firefox\extensions
[2010-09-01 21:23:04 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
[2010-11-03 21:58:21 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
[2011-02-05 21:47:27 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
[2011-03-13 17:59:01 | 000,000,000 | ---D | M] (Java Console) -- E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
[2010-11-06 00:06:07 | 000,000,000 | ---D | M] (RealPlayer Browser Record Plugin) -- E:\DOCUMENTS AND SETTINGS\ALL USERS\DANE APLIKACJI\REAL\REALPLAYER\BROWSERRECORDPLUGIN\FIREFOX\EXT
[2010-08-15 17:07:16 | 000,000,000 | ---D | M] (BS.Player ControlBar) -- E:\PROGRAM FILES\BS.PLAYER CONTROLBAR\FIREFOXDTT
[2010-09-01 21:22:50 | 000,000,000 | ---D | M] (Java Quick Starter) -- E:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011-02-02 21:40:24 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- E:\Program Files\Mozilla Firefox\plugins\npdeployJava1.dll
[2010-10-06 22:29:51 | 000,002,767 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\allegro-pl.xml
[2010-10-06 22:29:51 | 000,001,406 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\fbc-pl.xml
[2010-10-06 22:29:51 | 000,000,917 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\merlin-pl.xml
[2010-10-06 22:29:51 | 000,000,858 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\pwn-pl.xml
[2010-10-06 22:29:51 | 000,001,183 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wikipedia-pl.xml
[2010-10-06 22:29:51 | 000,001,683 | ---- | M] () -- E:\Program Files\Mozilla Firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2011-03-14 01:06:27 | 000,000,742 | ---- | M]) - E:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (HP Print Clips) - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll (Hewlett-Packard Co.)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O3 - HKU\S-1-5-21-796845957-527237240-839522115-1004\..\Toolbar\WebBrowser: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No CLSID value found.
O4 - HKLM..\Run: [Ai Nap] E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe ()
O4 - HKLM..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe (COMODO)
O4 - HKLM..\Run: [COMODO Internet Security] E:\Program Files\COMODO\COMODO Internet Security\cfp.exe (COMODO)
O4 - HKLM..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe (Corel Corporation)
O4 - HKLM..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe ()
O4 - HKLM..\Run: [Cpu Level Up help] E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe ()
O4 - HKLM..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe (Creative Technology Ltd)
O4 - HKLM..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe (Ahead Software Gmbh)
O4 - HKLM..\Run: [P17Helper] E:\WINDOWS\System32\P17.dll ()
O4 - HKLM..\Run: [QFan Help] E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe ()
O4 - HKLM..\Run: [StartCCC] E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\Run: [TkBellExe] E:\Program Files\Real\RealPlayer\update\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [UpdReg] E:\WINDOWS\Updreg.EXE (Creative Technology Ltd.)
O4 - HKLM..\Run: [WinampAgent] E:\Program Files\Winamp\winampa.exe ()
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [ALLUpdate] E:\Program Files\ALLPlayer\ALLUpdate.exe ()
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe (Gainward Co.)
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [Sony Ericsson PC Companion] E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe (Sony Ericsson)
O4 - HKU\S-1-5-21-796845957-527237240-839522115-1004..\Run: [uTorrent] E:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 95 00 00 00 [binary data]
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoFavoritesMenu = 1
O7 - HKU\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoRecycleFiles = 1
O9 - Extra Button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O9 - Extra Button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll (Hewlett-Packard Co.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab (Java Plug-in 1.6.0_24)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O20 - AppInit_DLLs: (E:\WINDOWS\system32\guard32.dll) - E:\WINDOWS\system32\guard32.dll (COMODO)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - E:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - E:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2010-08-07 22:52:01 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (lsdelete) - E:\WINDOWS\System32\lsdelete.exe ()
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

NetSvcs: 6to4 - File not found
NetSvcs: AppMgmt - File not found
NetSvcs: Ias - File not found
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: WmdmPmSp - File not found


SafeBootMin: AppMgmt - File not found
SafeBootMin: Base - Driver Group
SafeBootMin: Boot Bus Extender - Driver Group
SafeBootMin: Boot file system - Driver Group
SafeBootMin: CLPSLS - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe (COMODO)
SafeBootMin: File system - Driver Group
SafeBootMin: Filter - Driver Group
SafeBootMin: Lavasoft Ad-Aware Service - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SafeBootMin: PCI Configuration - Driver Group
SafeBootMin: PNP Filter - Driver Group
SafeBootMin: Primary disk - Driver Group
SafeBootMin: SCSI Class - Driver Group
SafeBootMin: sermouse.sys - Driver
SafeBootMin: System Bus Extender - Driver Group
SafeBootMin: vds - Service
SafeBootMin: vga.sys - Driver
SafeBootMin: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootMin: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootMin: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootMin: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootMin: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootMin: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootMin: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootMin: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootMin: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootMin: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootMin: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootMin: {533C5B84-EC70-11D2-9505-00C04F79DEAF} - Volume shadow copy
SafeBootMin: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootMin: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

SafeBootNet: AppMgmt - File not found
SafeBootNet: Base - Driver Group
SafeBootNet: Boot Bus Extender - Driver Group
SafeBootNet: Boot file system - Driver Group
SafeBootNet: CLPSLS - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe (COMODO)
SafeBootNet: File system - Driver Group
SafeBootNet: Filter - Driver Group
SafeBootNet: Lavasoft Ad-Aware Service - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe (Lavasoft Limited)
SafeBootNet: NDIS Wrapper - Driver Group
SafeBootNet: NetBIOSGroup - Driver Group
SafeBootNet: NetDDEGroup - Driver Group
SafeBootNet: Network - Driver Group
SafeBootNet: NetworkProvider - Driver Group
SafeBootNet: PCI Configuration - Driver Group
SafeBootNet: PNP Filter - Driver Group
SafeBootNet: PNP_TDI - Driver Group
SafeBootNet: Primary disk - Driver Group
SafeBootNet: SCSI Class - Driver Group
SafeBootNet: sermouse.sys - Driver
SafeBootNet: Streams Drivers - Driver Group
SafeBootNet: System Bus Extender - Driver Group
SafeBootNet: TDI - Driver Group
SafeBootNet: vga.sys - Driver
SafeBootNet: {36FC9E60-C465-11CF-8056-444553540000} - Universal Serial Bus controllers
SafeBootNet: {4D36E965-E325-11CE-BFC1-08002BE10318} - CD-ROM Drive
SafeBootNet: {4D36E967-E325-11CE-BFC1-08002BE10318} - DiskDrive
SafeBootNet: {4D36E969-E325-11CE-BFC1-08002BE10318} - Standard floppy disk controller
SafeBootNet: {4D36E96A-E325-11CE-BFC1-08002BE10318} - Hdc
SafeBootNet: {4D36E96B-E325-11CE-BFC1-08002BE10318} - Keyboard
SafeBootNet: {4D36E96F-E325-11CE-BFC1-08002BE10318} - Mouse
SafeBootNet: {4D36E972-E325-11CE-BFC1-08002BE10318} - Net
SafeBootNet: {4D36E973-E325-11CE-BFC1-08002BE10318} - NetClient
SafeBootNet: {4D36E974-E325-11CE-BFC1-08002BE10318} - NetService
SafeBootNet: {4D36E975-E325-11CE-BFC1-08002BE10318} - NetTrans
SafeBootNet: {4D36E977-E325-11CE-BFC1-08002BE10318} - PCMCIA Adapters
SafeBootNet: {4D36E97B-E325-11CE-BFC1-08002BE10318} - SCSIAdapter
SafeBootNet: {4D36E97D-E325-11CE-BFC1-08002BE10318} - System
SafeBootNet: {4D36E980-E325-11CE-BFC1-08002BE10318} - Floppy disk drive
SafeBootNet: {71A27CDD-812A-11D0-BEC7-08002BE2092F} - Volume
SafeBootNet: {745A17A0-74D3-11D0-B6FE-00A0C90F57DA} - Human Interface Devices

[color=#E56717]========== Files/Folders - Created Within 60 Days ==========[/color]

[2011-03-16 21:36:37 | 000,000,000 | ---D | C] -- E:\_OTL
[2011-03-16 21:23:34 | 000,000,000 | --SD | C] -- E:\ComboFix
[2011-03-14 22:33:27 | 000,000,000 | ---D | C] -- E:\Program Files\trend micro
[2011-03-14 22:33:26 | 000,000,000 | ---D | C] -- E:\rsit
[2011-03-14 01:40:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO
[2011-03-14 01:36:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens
[2011-03-14 01:36:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\SymbolLibrary
[2011-03-14 00:18:08 | 000,000,000 | RH-D | C] -- E:\Documents and Settings\Dominik\Recent
[2011-03-14 00:01:54 | 000,000,000 | ---D | C] -- E:\WINDOWS\ERDNT
[2011-03-14 00:00:50 | 000,000,000 | ---D | C] -- E:\Qoobox
[2011-03-13 21:19:37 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Battlejield 2 Łatki
[2011-03-13 20:42:47 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\GameSpy Arcade
[2011-03-13 20:42:23 | 000,000,000 | ---D | C] -- E:\Program Files\GameSpy Arcade
[2011-03-13 20:42:09 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Battlefield 2
[2011-03-13 20:37:38 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\EA GAMES
[2011-03-13 17:59:16 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Java
[2011-03-13 00:16:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\VRX 1
[2011-03-12 22:35:58 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Downloads
[2011-03-12 22:17:27 | 000,000,000 | ---D | C] -- E:\Program Files\uTorrent
[2011-03-12 22:16:52 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
[2011-03-12 13:06:27 | 000,049,904 | R--- | C] (Avanquest Software) -- E:\WINDOWS\System32\drivers\BVRPMPR5.SYS
[2011-03-12 13:05:04 | 000,000,000 | ---D | C] -- E:\Netgear
[2011-03-12 13:00:25 | 000,000,000 | -H-D | C] -- E:\VritualRoot
[2011-03-12 11:30:15 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dokumenty\COMODO
[2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\COMODO
[2011-03-12 11:27:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Comodo
[2011-03-12 11:27:25 | 000,000,000 | ---D | C] -- E:\Program Files\COMODO
[2011-03-09 22:49:48 | 000,032,768 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\WooDial2000.dll
[2011-03-09 22:49:06 | 000,000,000 | ---D | C] -- E:\WINDOWS\System32\AlertModule
[2011-03-09 22:49:05 | 000,040,960 | ---- | C] (France Telecom) -- E:\WINDOWS\System32\FTRTSVC.exe
[2011-03-09 22:49:05 | 000,036,864 | ---- | C] (France Télécom R&D) -- E:\WINDOWS\System32\IfHelper.dll
[2011-03-09 22:47:16 | 000,000,000 | -HSD | C] -- E:\WINDOWS\ftpcache
[2011-03-07 23:54:17 | 000,000,000 | ---D | C] -- E:\Program Files\THQ
[2011-03-07 23:53:03 | 000,064,512 | ---- | C] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys
[2011-03-07 23:52:54 | 000,098,392 | ---- | C] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys
[2011-03-07 23:27:05 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software
[2011-03-07 23:11:38 | 000,000,000 | -H-D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Program Files\Lavasoft
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Lavasoft
[2011-03-07 23:11:22 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
[2011-03-06 00:00:01 | 000,299,520 | ---- | C] (InstallShield Corporation, Inc.) -- E:\WINDOWS\uninst.exe
[2011-03-05 23:59:48 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\WINDOWS
[2011-03-05 23:48:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\RealFlight G4
[2011-03-05 23:45:32 | 000,000,000 | ---D | C] -- E:\Program Files\RealFlightG4
[2011-03-05 23:45:30 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\KnifeEdge
[2011-03-05 16:12:11 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\AeroFly Professional Deluxe
[2011-03-04 22:56:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Menu Start\Programy\Flying Model Simulator
[2011-03-04 22:56:17 | 000,000,000 | ---D | C] -- E:\Program Files\FMS
[2011-02-27 21:22:03 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Titan Quest
[2011-02-22 22:50:40 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Codemasters
[2011-02-22 22:49:18 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Codemasters
[2011-02-22 22:23:18 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Logitech
[2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Program Files\Logitech
[2011-02-22 22:23:08 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Logitech
[2011-02-19 12:58:25 | 022,383,954 | ---- | C] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe
[2011-02-07 19:46:20 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\kuna
[2011-02-03 22:45:44 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Moje dokumenty\Corel User Files
[2011-02-03 18:17:24 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\CorelDRAW Graphics Suite 12
[2011-02-03 18:17:17 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Corel
[2011-02-03 18:17:15 | 000,000,000 | ---D | C] -- E:\Program Files\Common Files\Designer
[2011-02-03 18:16:41 | 000,000,000 | ---D | C] -- E:\Program Files\Corel
[2011-02-03 14:40:00 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Corel
[2011-02-03 14:35:12 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\InstallShield
[2011-02-02 21:37:35 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Solid Edge 2D Drafting ST3
[2011-02-02 21:29:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape
[2011-02-02 21:18:25 | 000,000,000 | ---D | C] -- E:\Program Files\Inkscape
[2011-02-02 21:16:19 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions
[2011-02-02 21:14:18 | 000,000,000 | R--D | C] -- E:\Documents and Settings\Dominik\Pulpit\CNC
[2011-02-02 21:12:19 | 000,389,632 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XXUN.EXE
[2011-02-02 21:12:19 | 000,057,344 | ---- | C] (FTDI Ltd) -- E:\WINDOWS\FTD2XX.DLL
[2011-02-02 21:12:19 | 000,023,750 | ---- | C] (FTDI Ltd.) -- E:\WINDOWS\FTD2XX.SYS
[2011-02-02 21:10:25 | 000,000,000 | ---D | C] -- E:\Program Files\Solid Edge 2D Drafting ST3
[2011-02-02 20:55:29 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Pulpit\Nowy folder
[2011-02-01 21:11:51 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Dane aplikacji\ATI
[2011-02-01 21:09:36 | 000,000,000 | ---D | C] -- E:\Documents and Settings\All Users\Menu Start\Programy\Catalyst Control Center
[2011-02-01 21:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\ATI
[2011-02-01 21:08:18 | 000,000,000 | ---D | C] -- E:\Program Files\ATI Technologies
[2011-01-30 23:20:26 | 000,000,000 | ---D | C] -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\1C
[2011-01-30 23:08:46 | 000,000,000 | ---D | C] -- E:\Program Files\Adobe
[2011-01-25 23:42:37 | 000,000,000 | ---D | C] -- E:\WINDOWS\Cache
[2002-04-11 02:41:06 | 000,065,536 | R--- | C] ( ) -- E:\WINDOWS\System32\A3d.dll

[color=#E56717]========== Files - Modified Within 60 Days ==========[/color]

[2011-03-16 21:48:22 | 001,474,832 | ---- | M] () -- E:\WINDOWS\System32\drivers\sfi.dat
[2011-03-16 21:40:39 | 000,153,583 | ---- | M] () -- E:\WINDOWS\hpoins14.dat
[2011-03-16 21:39:48 | 000,000,472 | ---- | M] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011-03-16 21:38:59 | 000,000,512 | ---- | M] () -- E:\WINDOWS\win.ini
[2011-03-16 21:38:30 | 000,000,006 | -H-- | M] () -- E:\WINDOWS\tasks\SA.DAT
[2011-03-16 21:38:27 | 000,002,048 | --S- | M] () -- E:\WINDOWS\bootstat.dat
[2011-03-16 21:37:09 | 006,029,312 | -H-- | M] () -- E:\Documents and Settings\Dominik\NTUSER.DAT
[2011-03-16 21:37:09 | 000,000,188 | -HS- | M] () -- E:\Documents and Settings\Dominik\ntuser.ini
[2011-03-16 21:24:42 | 000,132,597 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Flash_Disinfector.exe
[2011-03-16 09:53:42 | 000,013,646 | ---- | M] () -- E:\WINDOWS\System32\wpa.dbl
[2011-03-13 22:36:03 | 000,000,302 | ---- | M] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-13 20:47:58 | 000,000,652 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2011-03-13 20:47:58 | 000,000,630 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2011-03-13 20:43:02 | 000,000,707 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk
[2011-03-13 19:39:16 | 000,000,499 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk
[2011-03-12 23:54:14 | 000,000,529 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk
[2011-03-12 22:17:28 | 000,000,636 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk
[2011-03-12 20:55:14 | 000,000,490 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk
[2011-03-12 14:14:55 | 000,006,440 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html
[2011-03-12 12:59:54 | 000,000,046 | ---- | M] () -- E:\WINDOWS\adiras.ini
[2011-03-12 12:57:27 | 000,000,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk
[2011-03-12 11:28:22 | 000,001,653 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk
[2011-03-07 23:58:04 | 000,001,787 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk
[2011-03-07 23:52:49 | 000,098,392 | ---- | M] (Sunbelt Software) -- E:\WINDOWS\System32\drivers\SBREDrv.sys
[2011-03-07 23:52:44 | 000,016,432 | ---- | M] () -- E:\WINDOWS\System32\lsdelete.exe
[2011-03-07 23:50:28 | 000,064,512 | ---- | M] (Lavasoft AB) -- E:\WINDOWS\System32\drivers\Lbd.sys
[2011-03-07 23:11:36 | 000,000,873 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk
[2011-03-06 23:31:44 | 002,116,262 | -H-- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2011-03-06 00:24:33 | 000,000,141 | ---- | M] () -- E:\WINDOWS\RealFlight.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\WIN.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\SYSTEM.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | M] () -- E:\WINDOWS\System32\PROTOCOL.INI
[2011-03-06 00:00:19 | 000,000,000 | ---- | M] () -- E:\WINDOWS\PROTOCOL.INI
[2011-03-04 22:56:19 | 000,000,616 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk
[2011-02-27 21:25:09 | 000,001,913 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Sony Ericsson PC Companion 2.0.lnk
[2011-02-24 23:20:01 | 000,004,096 | ---- | M] () -- E:\WINDOWS\System32\crash
[2011-02-22 23:19:01 | 000,445,016 | ---- | M] (Creative Labs) -- E:\WINDOWS\System32\wrap_oal.dll
[2011-02-22 22:49:18 | 000,000,522 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk
[2011-02-22 22:42:21 | 000,000,412 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk
[2011-02-19 13:00:43 | 000,000,730 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Napi-projekt.lnk
[2011-02-19 13:00:42 | 000,000,700 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk
[2011-02-19 12:59:37 | 022,383,954 | ---- | M] (ALLPlayer ) -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayerPL.exe
[2011-02-11 22:21:29 | 000,001,735 | ---- | M] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk
[2011-02-09 22:58:13 | 000,036,864 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-02-09 22:51:52 | 002,067,174 | ---- | M] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp
[2011-02-09 22:49:16 | 000,007,279 | ---- | M] () -- E:\Documents and Settings\Dominik\.recently-used.xbel
[2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\sbe.dll
[2011-02-09 14:53:59 | 000,270,848 | ---- | M] () -- E:\WINDOWS\System32\dllcache\sbe.dll
[2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\encdec.dll
[2011-02-09 14:53:59 | 000,186,880 | ---- | M] () -- E:\WINDOWS\System32\dllcache\encdec.dll
[2011-02-08 22:14:45 | 000,130,888 | ---- | M] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2011-02-03 18:21:02 | 000,026,160 | ---- | M] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2011-02-02 22:55:47 | 000,066,077 | ---- | M] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg
[2011-01-22 23:17:03 | 000,000,664 | ---- | M] () -- E:\WINDOWS\System32\d3d9caps.dat
[2011-01-20 22:10:37 | 000,000,069 | ---- | M] () -- E:\WINDOWS\NeroDigital.ini

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-03-16 21:39:48 | 000,000,472 | ---- | C] () -- E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
[2011-03-16 21:34:23 | 000,132,597 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Flash_Disinfector.exe
[2011-03-13 22:30:21 | 000,016,432 | ---- | C] () -- E:\WINDOWS\System32\lsdelete.exe
[2011-03-13 22:23:35 | 000,000,302 | ---- | C] () -- E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
[2011-03-13 20:47:58 | 000,000,652 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Graj w Battlefield 2 w sieci!.lnk
[2011-03-13 20:47:58 | 000,000,630 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Battlefield 2.lnk
[2011-03-13 20:43:02 | 000,000,707 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\GameSpy Arcade.lnk
[2011-03-13 19:39:15 | 000,000,499 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Downloads.lnk
[2011-03-12 22:17:28 | 000,000,636 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\µTorrent.lnk
[2011-03-12 20:55:14 | 000,000,490 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do afprod.lnk
[2011-03-12 14:14:55 | 000,006,440 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Router_Setup.html
[2011-03-12 11:29:54 | 001,474,832 | ---- | C] () -- E:\WINDOWS\System32\drivers\sfi.dat
[2011-03-12 11:28:22 | 000,001,653 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO Antivirus.lnk
[2011-03-12 11:27:29 | 000,000,913 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\COMODO GeekBuddy.lnk
[2011-03-11 12:00:52 | 000,000,046 | ---- | C] () -- E:\WINDOWS\adiras.ini
[2011-03-07 23:58:45 | 011,157,504 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Titan_Quest.exe
[2011-03-07 23:58:04 | 000,001,787 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Titan Quest - Immortal Throne.lnk
[2011-03-07 23:56:39 | 000,040,960 | R--- | C] () -- E:\WINDOWS\System32\psfind.dll
[2011-03-07 23:11:36 | 000,000,873 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Ad-Aware.lnk
[2011-03-06 00:17:34 | 000,000,141 | ---- | C] () -- E:\WINDOWS\RealFlight.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\WIN.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\SYSTEM.INI
[2011-03-06 00:05:21 | 000,000,008 | ---- | C] () -- E:\WINDOWS\System32\PROTOCOL.INI
[2011-03-06 00:00:19 | 000,000,000 | ---- | C] () -- E:\WINDOWS\PROTOCOL.INI
[2011-03-04 22:52:54 | 000,000,616 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\FMS.lnk
[2011-02-22 23:18:31 | 000,000,529 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Launch F1 2010.lnk
[2011-02-22 22:49:18 | 000,000,522 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\GRID.lnk
[2011-02-22 22:42:21 | 000,000,412 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Skrót do Kontrolery gier.lnk
[2011-02-19 13:00:42 | 000,000,700 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\ALLPlayer V4.6.lnk
[2011-02-09 22:51:52 | 002,067,174 | ---- | C] () -- E:\Documents and Settings\Dominik\Pulpit\Perfekt.bmp
[2011-02-09 22:49:16 | 000,007,279 | ---- | C] () -- E:\Documents and Settings\Dominik\.recently-used.xbel
[2011-02-09 14:53:59 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\dllcache\sbe.dll
[2011-02-09 14:53:59 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\dllcache\encdec.dll
[2011-02-02 22:55:47 | 000,066,077 | ---- | C] () -- E:\Documents and Settings\Dominik\Nowy dokument 1.2011_02_02_22_55_47.0.svg
[2011-02-02 21:21:39 | 000,000,726 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Inkscape.lnk
[2011-02-02 21:12:19 | 000,014,960 | ---- | C] () -- E:\WINDOWS\FTD2XX.LIB
[2011-02-02 21:12:19 | 000,014,042 | ---- | C] () -- E:\WINDOWS\FTD2XX.H
[2011-02-02 21:12:19 | 000,002,391 | ---- | C] () -- E:\WINDOWS\FTD2XX.INF
[2011-02-01 21:08:55 | 000,887,724 | ---- | C] () -- E:\WINDOWS\System32\ativva6x.dat
[2011-02-01 21:08:54 | 000,219,348 | ---- | C] () -- E:\WINDOWS\System32\atiicdxx.dat
[2011-02-01 21:08:54 | 000,076,216 | ---- | C] () -- E:\WINDOWS\System32\atiapfxx.blb
[2011-02-01 21:08:54 | 000,021,866 | ---- | C] () -- E:\WINDOWS\atiogl.xml
[2011-02-01 21:08:54 | 000,000,003 | ---- | C] () -- E:\WINDOWS\System32\ativva5x.dat
[2011-01-30 23:08:58 | 000,002,377 | ---- | C] () -- E:\Documents and Settings\All Users\Menu Start\Programy\Adobe Reader 9.lnk
[2011-01-30 23:08:58 | 000,001,735 | ---- | C] () -- E:\Documents and Settings\All Users\Pulpit\Adobe Reader 9.lnk
[2010-11-20 00:50:10 | 002,116,262 | -H-- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\IconCache.db
[2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\Documents and Settings\Dominik\Dane aplikacji\Sys6925.Config Collection.sys
[2010-11-18 16:03:00 | 000,000,022 | -HS- | C] () -- E:\WINDOWS\Sys3390 SettingsCollection.bin
[2010-11-18 00:38:54 | 000,423,832 | ---- | C] () -- E:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
[2010-11-17 22:06:55 | 000,810,496 | ---- | C] () -- E:\WINDOWS\System32\xvidcore.dll
[2010-11-17 22:06:55 | 000,258,048 | ---- | C] () -- E:\WINDOWS\System32\libFLAC.dll
[2010-10-23 23:25:12 | 000,000,001 | ---- | C] () -- E:\WINDOWS\System32\SI.bin
[2010-10-16 00:30:15 | 000,189,248 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrB.exe
[2010-10-16 00:30:14 | 002,601,752 | ---- | C] () -- E:\WINDOWS\System32\pbsvc_moh.exe
[2010-10-16 00:30:14 | 000,075,064 | ---- | C] () -- E:\WINDOWS\System32\PnkBstrA.exe
[2010-09-14 18:29:08 | 000,000,069 | ---- | C] () -- E:\WINDOWS\NeroDigital.ini
[2010-09-05 17:27:59 | 000,000,664 | ---- | C] () -- E:\WINDOWS\System32\d3d9caps.dat
[2010-08-13 22:38:12 | 000,053,248 | ---- | C] () -- E:\WINDOWS\System32\CommonDL.dll
[2010-08-13 22:38:12 | 000,002,413 | ---- | C] () -- E:\WINDOWS\System32\lgAxconfig.ini
[2010-08-08 17:50:15 | 000,032,215 | ---- | C] () -- E:\WINDOWS\Ascd_tmp.ini
[2010-08-08 16:28:25 | 000,717,296 | ---- | C] () -- E:\WINDOWS\System32\drivers\sptd.sys
[2010-08-08 16:02:00 | 000,001,769 | ---- | C] () -- E:\WINDOWS\Language_trs.ini
[2010-08-08 14:57:22 | 000,153,583 | ---- | C] () -- E:\WINDOWS\hpoins14.dat
[2010-08-08 14:57:22 | 000,002,000 | ---- | C] () -- E:\WINDOWS\hpomdl14.dat
[2010-08-08 13:14:52 | 000,036,864 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-08-08 12:39:44 | 000,000,000 | ---- | C] () -- E:\WINDOWS\ativpsrm.bin
[2010-08-08 12:39:36 | 000,294,912 | ---- | C] () -- E:\WINDOWS\System32\ATIODE.exe
[2010-08-08 12:39:36 | 000,045,056 | ---- | C] () -- E:\WINDOWS\System32\ATIODCLI.exe
[2010-08-08 12:21:45 | 000,005,627 | R--- | C] () -- E:\WINDOWS\System32\Ludap17.ini
[2010-08-08 12:21:45 | 000,000,039 | R--- | C] () -- E:\WINDOWS\System32\ctzapxx.ini
[2010-08-08 12:12:59 | 000,000,000 | ---- | C] () -- E:\WINDOWS\nsreg.dat
[2010-08-08 12:12:31 | 000,026,160 | ---- | C] () -- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
[2010-08-08 12:00:06 | 000,024,576 | ---- | C] () -- E:\WINDOWS\System32\AsIO.dll
[2010-08-08 12:00:06 | 000,012,400 | ---- | C] () -- E:\WINDOWS\System32\drivers\AsIO.sys
[2010-08-08 11:55:37 | 000,005,810 | R--- | C] () -- E:\WINDOWS\System32\drivers\ASACPI.sys
[2010-08-08 11:55:22 | 000,010,288 | ---- | C] () -- E:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2010-08-08 11:45:34 | 000,002,048 | --S- | C] () -- E:\WINDOWS\bootstat.dat
[2010-08-08 11:43:57 | 000,000,000 | ---- | C] () -- E:\WINDOWS\control.ini
[2010-08-08 11:43:00 | 000,000,488 | RH-- | C] () -- E:\WINDOWS\System32\logonui.exe.manifest
[2010-08-08 11:42:56 | 000,000,749 | RH-- | C] () -- E:\WINDOWS\System32\cdplayer.exe.manifest
[2010-08-08 11:41:22 | 000,021,856 | ---- | C] () -- E:\WINDOWS\System32\emptyregdb.dat
[2010-08-08 11:41:03 | 000,000,037 | ---- | C] () -- E:\WINDOWS\vbaddin.ini
[2010-08-08 11:41:03 | 000,000,036 | ---- | C] () -- E:\WINDOWS\vb.ini
[2010-08-08 11:40:04 | 000,026,717 | ---- | C] () -- E:\WINDOWS\System32\tslabels.ini
[2010-08-08 11:40:04 | 000,003,813 | ---- | C] () -- E:\WINDOWS\System32\msdtcprf.ini
[2010-08-08 02:51:28 | 001,087,700 | ---- | C] () -- E:\WINDOWS\System32\PerfStringBackup.INI
[2010-08-08 02:51:26 | 000,004,293 | ---- | C] () -- E:\WINDOWS\ODBCINST.INI
[2010-08-08 02:48:36 | 000,130,888 | ---- | C] () -- E:\WINDOWS\System32\FNTCACHE.DAT
[2010-01-11 08:24:40 | 000,001,683 | ---- | C] () -- E:\WINDOWS\System32\oeminfo.ini
[2009-11-06 09:58:04 | 000,178,975 | ---- | C] () -- E:\WINDOWS\System32\xlive.dll.cat
[2005-05-25 21:06:26 | 000,119,296 | ---- | C] () -- E:\WINDOWS\System32\WnASPI32.dll
[2005-05-03 12:38:42 | 000,064,512 | R--- | C] () -- E:\WINDOWS\System32\P17.dll
[2004-10-03 19:28:58 | 000,032,768 | ---- | C] () -- E:\WINDOWS\System32\chckshll.dll
[2004-08-04 13:00:00 | 001,015,477 | ---- | C] () -- E:\WINDOWS\System32\esentprf.ini
[2004-08-04 13:00:00 | 000,733,696 | ---- | C] () -- E:\WINDOWS\System32\qedwipes.dll
[2004-08-04 13:00:00 | 000,673,088 | ---- | C] () -- E:\WINDOWS\System32\mlang.dat
[2004-08-04 13:00:00 | 000,490,628 | ---- | C] () -- E:\WINDOWS\System32\perfh015.dat
[2004-08-04 13:00:00 | 000,432,492 | ---- | C] () -- E:\WINDOWS\System32\perfh009.dat
[2004-08-04 13:00:00 | 000,407,552 | ---- | C] () -- E:\WINDOWS\System32\compatUI.dll
[2004-08-04 13:00:00 | 000,355,112 | ---- | C] () -- E:\WINDOWS\System32\msjetoledb40.dll
[2004-08-04 13:00:00 | 000,313,828 | ---- | C] () -- E:\WINDOWS\System32\perfi015.dat
[2004-08-04 13:00:00 | 000,272,128 | ---- | C] () -- E:\WINDOWS\System32\perfi009.dat
[2004-08-04 13:00:00 | 000,270,848 | ---- | C] () -- E:\WINDOWS\System32\sbe.dll
[2004-08-04 13:00:00 | 000,218,003 | ---- | C] () -- E:\WINDOWS\System32\dssec.dat
[2004-08-04 13:00:00 | 000,199,168 | ---- | C] () -- E:\WINDOWS\System32\ir32_32.dll
[2004-08-04 13:00:00 | 000,186,880 | ---- | C] () -- E:\WINDOWS\System32\encdec.dll
[2004-08-04 13:00:00 | 000,094,282 | ---- | C] () -- E:\WINDOWS\System32\msencode.dll
[2004-08-04 13:00:00 | 000,083,880 | ---- | C] () -- E:\WINDOWS\System32\perfc015.dat
[2004-08-04 13:00:00 | 000,070,656 | ---- | C] () -- E:\WINDOWS\System32\amstream.dll
[2004-08-04 13:00:00 | 000,070,622 | ---- | C] () -- E:\WINDOWS\System32\edit.com
[2004-08-04 13:00:00 | 000,067,448 | ---- | C] () -- E:\WINDOWS\System32\perfc009.dat
[2004-08-04 13:00:00 | 000,053,920 | ---- | C] () -- E:\WINDOWS\System32\dosx.exe
[2004-08-04 13:00:00 | 000,053,478 | ---- | C] () -- E:\WINDOWS\System32\tcpmon.ini
[2004-08-04 13:00:00 | 000,051,823 | ---- | C] () -- E:\WINDOWS\System32\command.com
[2004-08-04 13:00:00 | 000,046,258 | ---- | C] () -- E:\WINDOWS\System32\mib.bin
[2004-08-04 13:00:00 | 000,042,809 | ---- | C] () -- E:\WINDOWS\System32\key01.sys
[2004-08-04 13:00:00 | 000,042,537 | ---- | C] () -- E:\WINDOWS\System32\keyboard.sys
[2004-08-04 13:00:00 | 000,039,434 | ---- | C] () -- E:\WINDOWS\System32\mem.exe
[2004-08-04 13:00:00 | 000,035,648 | ---- | C] () -- E:\WINDOWS\System32\ntio411.sys
[2004-08-04 13:00:00 | 000,035,424 | ---- | C] () -- E:\WINDOWS\System32\ntio412.sys
[2004-08-04 13:00:00 | 000,034,990 | ---- | C] () -- E:\WINDOWS\System32\perfd015.dat
[2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- E:\WINDOWS\System32\ntio804.sys
[2004-08-04 13:00:00 | 000,034,560 | ---- | C] () -- E:\WINDOWS\System32\ntio404.sys
[2004-08-04 13:00:00 | 000,033,936 | ---- | C] () -- E:\WINDOWS\System32\ntio.sys
[2004-08-04 13:00:00 | 000,029,370 | ---- | C] () -- E:\WINDOWS\System32\ntdos411.sys
[2004-08-04 13:00:00 | 000,029,274 | ---- | C] () -- E:\WINDOWS\System32\ntdos412.sys
[2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- E:\WINDOWS\System32\ntdos804.sys
[2004-08-04 13:00:00 | 000,029,146 | ---- | C] () -- E:\WINDOWS\System32\ntdos404.sys
[2004-08-04 13:00:00 | 000,028,626 | ---- | C] () -- E:\WINDOWS\System32\perfd009.dat
[2004-08-04 13:00:00 | 000,027,898 | ---- | C] () -- E:\WINDOWS\System32\ntdos.sys
[2004-08-04 13:00:00 | 000,027,097 | ---- | C] () -- E:\WINDOWS\System32\country.sys
[2004-08-04 13:00:00 | 000,020,986 | ---- | C] () -- E:\WINDOWS\System32\debug.exe
[2004-08-04 13:00:00 | 000,019,806 | ---- | C] () -- E:\WINDOWS\System32\graphics.com
[2004-08-04 13:00:00 | 000,016,024 | ---- | C] () -- E:\WINDOWS\System32\rsvp.ini
[2004-08-04 13:00:00 | 000,015,360 | ---- | C] () -- E:\WINDOWS\System32\tsd32.dll
[2004-08-04 13:00:00 | 000,014,913 | ---- | C] () -- E:\WINDOWS\System32\kb16.com
[2004-08-04 13:00:00 | 000,014,336 | ---- | C] () -- E:\WINDOWS\System32\msdmo.dll
[2004-08-04 13:00:00 | 000,013,819 | ---- | C] () -- E:\WINDOWS\System32\pschdprf.ini
[2004-08-04 13:00:00 | 000,013,312 | ---- | C] () -- E:\WINDOWS\System32\win87em.dll
[2004-08-04 13:00:00 | 000,012,866 | ---- | C] () -- E:\WINDOWS\System32\edlin.exe
[2004-08-04 13:00:00 | 000,012,594 | ---- | C] () -- E:\WINDOWS\System32\append.exe
[2004-08-04 13:00:00 | 000,011,859 | ---- | C] () -- E:\WINDOWS\System32\setver.exe
[2004-08-04 13:00:00 | 000,009,043 | ---- | C] () -- E:\WINDOWS\System32\ansi.sys
[2004-08-04 13:00:00 | 000,008,520 | ---- | C] () -- E:\WINDOWS\System32\exe2bin.exe
[2004-08-04 13:00:00 | 000,007,116 | ---- | C] () -- E:\WINDOWS\System32\nlsfunc.exe
[2004-08-04 13:00:00 | 000,006,074 | ---- | C] () -- E:\WINDOWS\System32\rasctrs.ini
[2004-08-04 13:00:00 | 000,004,976 | ---- | C] () -- E:\WINDOWS\System32\himem.sys
[2004-08-04 13:00:00 | 000,004,569 | ---- | C] () -- E:\WINDOWS\System32\secupd.dat
[2004-08-04 13:00:00 | 000,003,346 | ---- | C] () -- E:\WINDOWS\System32\redir.exe
[2004-08-04 13:00:00 | 000,002,992 | ---- | C] () -- E:\WINDOWS\System32\perfci.ini
[2004-08-04 13:00:00 | 000,002,890 | ---- | C] () -- E:\WINDOWS\System32\perfwci.ini
[2004-08-04 13:00:00 | 000,001,804 | ---- | C] () -- E:\WINDOWS\System32\dcache.bin
[2004-08-04 13:00:00 | 000,001,405 | ---- | C] () -- E:\WINDOWS\msdfmap.ini
[2004-08-04 13:00:00 | 000,001,295 | ---- | C] () -- E:\WINDOWS\System32\perffilt.ini
[2004-08-04 13:00:00 | 000,001,168 | ---- | C] () -- E:\WINDOWS\System32\loadfix.com
[2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- E:\WINDOWS\System32\share.exe
[2004-08-04 13:00:00 | 000,000,882 | ---- | C] () -- E:\WINDOWS\System32\fastopen.exe
[2004-08-04 13:00:00 | 000,000,817 | ---- | C] () -- E:\WINDOWS\System32\mscdexnt.exe
[2004-08-04 13:00:00 | 000,000,741 | ---- | C] () -- E:\WINDOWS\System32\noise.dat
[2004-08-04 13:00:00 | 000,000,512 | ---- | C] () -- E:\WINDOWS\win.ini
[2004-08-04 13:00:00 | 000,000,359 | ---- | C] () -- E:\WINDOWS\System32\prodspec.ini
[2004-08-04 13:00:00 | 000,000,231 | ---- | C] () -- E:\WINDOWS\system.ini
[2003-10-02 11:48:18 | 000,053,248 | R--- | C] () -- E:\WINDOWS\System32\P17CPI.dll
[2002-01-04 10:58:52 | 013,107,200 | ---- | C] () -- E:\WINDOWS\System32\oembios.bin
[2002-01-04 10:57:56 | 000,004,514 | ---- | C] () -- E:\WINDOWS\System32\oembios.dat
[2001-10-26 18:29:54 | 000,082,432 | ---- | C] () -- E:\WINDOWS\System32\dvdplay.exe
[2001-10-26 18:29:42 | 000,157,696 | ---- | C] () -- E:\WINDOWS\System32\paqsp.dll
[1996-04-03 20:33:26 | 000,005,248 | ---- | C] () -- E:\WINDOWS\System32\giveio.sys

[color=#E56717]========== LOP Check ==========[/color]

[2010-09-16 20:21:48 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Administrator\Dane aplikacji\Simply Super Software
[2011-03-12 11:16:59 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\AVG10
[2010-08-25 10:01:02 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\BearShare
[2011-02-22 22:50:40 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters
[2010-12-08 16:14:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Common Files
[2010-10-16 00:31:30 | 000,000,000 | -HSD | M] -- E:\Documents and Settings\All Users\Dane aplikacji\DSS
[2010-08-15 11:46:29 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Gadu-Gadu 10
[2010-09-15 20:51:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Grisoft
[2010-12-05 00:37:25 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Installations
[2010-08-15 12:04:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\ipla
[2010-08-13 22:38:44 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\LGMOBILEAX
[2010-12-08 16:12:58 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\MFAData
[2010-09-29 08:52:52 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\OpenFM
[2010-12-05 00:40:09 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\PC Suite
[2010-11-10 22:22:35 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\TEMP
[2010-08-08 18:01:31 | 000,000,000 | ---D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\Ubisoft
[2011-03-07 23:11:39 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
[2010-08-25 10:57:08 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\All Users\Dane aplikacji\{37490DE3-F7B0-4FFB-ACAD-E9674CA2AD24}
[2010-09-07 23:54:38 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Auslogics
[2010-12-08 16:15:13 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\AVG10
[2010-10-09 08:26:57 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer
[2010-08-15 17:07:01 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\BSplayer Pro
[2010-08-08 16:28:23 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\DAEMON Tools
[2010-08-15 12:08:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Gadu-Gadu 10
[2011-02-02 21:29:28 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\inkscape
[2010-08-15 12:04:41 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\ipla
[2010-08-13 22:32:26 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\LG Electronics
[2010-11-17 22:07:08 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenCandy
[2010-09-29 08:52:50 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\OpenFM
[2010-12-05 00:40:24 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\PC Suite
[2010-12-05 00:39:03 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Samsung
[2010-12-08 19:02:17 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Smart Recorder
[2010-10-31 18:36:46 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Sony
[2010-08-08 18:01:32 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Ubisoft
[2011-02-02 21:16:19 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\Unigraphics Solutions
[2011-03-16 21:49:54 | 000,000,000 | ---D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
[2010-08-13 22:32:25 | 000,000,000 | -H-D | M] -- E:\Documents and Settings\Dominik\Dane aplikacji\{D94BA408-F110-488B-A65E-3AE7945F79E6}
[2011-03-16 21:39:48 | 000,000,472 | ---- | M] () -- E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job

[color=#E56717]========== Purity Check ==========[/color]



[color=#E56717]========== Custom Scans ==========[/color]


[color=#A23BEC]< %systemdrive%\*.* >[/color]
[2011-03-16 21:38:23 | 2145,386,496 | -HS- | M] () -- E:\pagefile.sys
[2011-03-14 01:10:31 | 000,002,261 | ---- | M] () -- E:\rapport.txt


[color=#A23BEC]< MD5 for: AGP440.SYS >[/color]
[2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:agp440.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:agp440.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:agp440.sys
[2008-04-13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008-04-13 19:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- E:\WINDOWS\system32\drivers\agp440.sys

[color=#A23BEC]< MD5 for: ATAPI.SYS >[/color]
[2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008-04-13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008-04-13 19:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- E:\WINDOWS\system32\drivers\atapi.sys
[2004-08-03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004-08-04 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\drivers\system32\DRIVERS\atapi.sys
[2004-08-04 13:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0008\DriverFiles\i386\atapi.sys
[2004-08-03 21:59:44 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- E:\WINDOWS\system32\ReinstallBackups\0009\DriverFiles\i386\atapi.sys

[color=#A23BEC]< MD5 for: BEEP.SYS >[/color]
[2004-08-04 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- E:\WINDOWS\system32\dllcache\beep.sys
[2004-08-04 13:00:00 | 000,004,224 | ---- | M] (Microsoft Corporation) MD5=DA1F27D85E0D1525F6621372E7B685E9 -- E:\WINDOWS\system32\drivers\beep.sys

[color=#A23BEC]< MD5 for: CDROM.SYS >[/color]
[2004-08-04 13:00:00 | 018,789,127 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp2.cab:cdrom.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\Driver Cache\i386\sp3.cab:cdrom.sys
[2010-08-08 15:09:42 | 023,908,281 | ---- | M] () .cab file -- E:\WINDOWS\ServicePackFiles\i386\sp3.cab:cdrom.sys
[2008-04-13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- E:\WINDOWS\ServicePackFiles\i386\cdrom.sys
[2008-04-13 19:40:46 | 000,062,976 | ---- | M] (Microsoft Corporation) MD5=1F4260CC5B42272D71F79E570A27A4FE -- E:\WINDOWS\system32\drivers\cdrom.sys
[2004-08-04 13:00:00 | 000,049,536 | ---- | M] (Microsoft Corporation) MD5=AF9C19B3100FE010496B1A27181FBF72 -- E:\WINDOWS\$NtServicePackUninstall$\cdrom.sys

[color=#A23BEC]< MD5 for: EVENTLOG.DLL >[/color]
[2004-08-04 13:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=05684DE2DA55A04C8AAAB5911AFE7643 -- E:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
[2008-04-14 18:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- E:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008-04-14 18:20:31 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=35FCCFD093582FA9098762E6F84EE119 -- E:\WINDOWS\system32\eventlog.dll

[color=#A23BEC]< MD5 for: NDIS.SYS >[/color]
[2008-04-13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- E:\WINDOWS\ServicePackFiles\i386\ndis.sys
[2008-04-13 20:20:37 | 000,182,656 | ---- | M] (Microsoft Corporation) MD5=1DF7F42665C94B825322FAE71721130D -- E:\WINDOWS\system32\drivers\ndis.sys
[2004-08-04 13:00:00 | 000,182,912 | ---- | M] (Microsoft Corporation) MD5=558635D3AF1C7546D26067D5D9B6959E -- E:\WINDOWS\$NtServicePackUninstall$\ndis.sys

[color=#A23BEC]< MD5 for: WINLOGON.EXE >[/color]
[2004-08-04 13:00:00 | 000,504,832 | ---- | M] (Microsoft Corporation) MD5=0344407089B08548D4FEBA62BB0F32D0 -- E:\WINDOWS\$NtServicePackUninstall$\winlogon.exe
[2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) MD5=335813EACD16E84F3047A3326F6E5473 -- E:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[2008-04-14 18:21:48 | 000,549,888 | ---- | M] (Microsoft Corporation) MD5=335813EACD16E84F3047A3326F6E5473 -- E:\WINDOWS\system32\winlogon.exe
[2008-04-14 18:21:48 | 000,510,464 | ---- | M] (Microsoft Corporation) MD5=51FD2E13D723857B9CA239AE77150F48 -- E:\WINDOWS\NiwradSoft Shell Pack\Backup\winlogon.exe

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 136 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:B755D674
@Alternate Data Stream - 116 bytes -> E:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9

< End of report >[/log]

[log]OTL Extras logfile created on: 2011-03-16 21:56:30 - Run 4
OTL by OldTimer - Version 3.2.22.3 Folder = E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

3,00 Gb Total Physical Memory | 2,00 Gb Available Physical Memory | 70,00% Memory free
5,00 Gb Paging File | 4,00 Gb Available in Paging File | 79,00% Paging File free
Paging file location(s): E:\pagefile.sys 2046 4092 [binary data]

%SystemDrive% = E: | %SystemRoot% = E:\WINDOWS | %ProgramFiles% = E:\Program Files
Drive C: | 645,21 Gb Total Space | 246,74 Gb Free Space | 38,24% Space Free | Partition Type: NTFS
Drive D: | 232,88 Gb Total Space | 208,01 Gb Free Space | 89,32% Space Free | Partition Type: NTFS
Drive E: | 100,00 Gb Total Space | 51,54 Gb Free Space | 51,54% Space Free | Partition Type: NTFS

Computer Name: DOMINIK-BFC9604 | User Name: Dominik | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: Off | File Age = 60 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.hta [@ = htafile] -- Reg Error: Key error. File not found
.url [@ = InternetShortcut] -- rundll32.exe shdocvw.dll,OpenURL %l

[HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- E:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htafile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
InternetShortcut [open] -- rundll32.exe shdocvw.dll,OpenURL %l
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Winamp.Bookmark] -- "E:\Program Files\Winamp\winamp.exe" /BOOKMARK "%1" (Nullsoft)
Directory [Winamp.Enqueue] -- "E:\Program Files\Winamp\winamp.exe" /ADD "%1" (Nullsoft)
Directory [Winamp.Play] -- "E:\Program Files\Winamp\winamp.exe" "%1" (Nullsoft)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

[color=#E56717]========== System Restore Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP" = 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22007
"2869:TCP" = 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22008
"139:TCP" = 139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002

[color=#E56717]========== Authorized Applications List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe" = E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher -- (Ubisoft)
"C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II -- ()
"C:\Gry\Assasin Creed 2\AssassinsCreedII.exe" = C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update -- (Ubisoft)
"C:\Gry\Assasin Creed 2\UPlayBrowser.exe" = C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay -- (Ubisoft Entertainment)
"C:\Gry\StarCraft II\StarCraft II.exe" = C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher -- (Blizzard Entertainment)
"E:\Program Files\Gadu-Gadu\gg.exe" = E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny
"E:\Program Files\Gadu-Gadu 10\gg.exe" = E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10 -- (GG Network S.A.)
"C:\Gry\StarCraft II\Versions\Base15405\SC2.exe" = C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II -- (Blizzard Entertainment, Inc.)
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe" = E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare -- (MusicLab, LLC)
"C:\Gry\Medal of Honor\Binaries\moh.exe" = C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer) -- (Electronic Arts Inc.)
"C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe" = C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater) -- (EA Digital Illusions CE AB)
"C:\Gry\Medal of Honor\MP\mohmpgame.exe" = C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer) -- (EA Digital Illusions CE AB)
"C:\Gry\Medal of Honor\MP\mohmpupdater.exe" = C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater) -- (EA Digital Illusions CE AB)
"E:\Program Files\Sony Ericsson\Update Service\Update Service.exe" = E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service -- ()
"C:\Gry\Call of Duty - Black Ops\BlackOps.exe" = C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps
"E:\Program Files\AVG\AVG10\avgmfapx.exe" = E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG
"C:\Gry\Grid\GRID.exe" = C:\Gry\Grid\GRID.exe:*:Enabled:GRID -- (Codemasters)
"C:\Gry\F1 2010\f1_2010.exe" = C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010
"C:\Gry\F1 2010\F1_2010_game.exe" = C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable -- (Codemasters)
"E:\Program Files\uTorrent\uTorrent.exe" = E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent -- (BitTorrent, Inc.)
"C:\Gry\Battelfield 2\BF2.exe" = C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2 -- ()
"E:\Program Files\GameSpy Arcade\Aphex.exe" = E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade -- (GameSpy Industries, Inc.)


[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}" = Microsoft Games for Windows - LIVE Redistributable
"{036FD544-AED6-3F33-856D-A2292D0CF471}" = Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - PLK
"{04858915-9F49-4B2A-AED4-DC49A7DE6A7B}" = Battlefield 2(TM)
"{0E532C84-4275-41B3-9D81-D4A1A20D8EE7}" = PlayStation(R)Store
"{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp
"{13F00518-807A-4B3A-83B0-A7CD90F3A398}" = MarketResearch
"{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy
"{1B1DDAD2-C704-49F8-8FC2-18DAAD9A87C5}" = Sound Blaster Audigy
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{212748BB-0DA5-46DE-82A1-403736DC9F27}" = MSVC80_x86
"{22A647A1-E442-7302-3905-DA8C5FDFCAFB}" = Catalyst Control Center Graphics Previews Common
"{23768150-5EFE-14A4-CECE-914D03FF18B4}" = CCC Help English
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java(TM) 6 Update 24
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{292899E7-6B8F-8099-0ACD-71D5F448106D}" = ccc-utility
"{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg
"{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}" = Microsoft Games for Windows - LIVE
"{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan
"{310BC5E2-31AF-49BB-904D-E71EB93645DC}" = AI Suite
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}" = NVIDIA PhysX
"{415CDA53-9100-476F-A7B2-476691E117C7}" = HP Smart Web Printing
"{41B8A39C-E97D-FDE5-3A4A-8E6FA961E94E}" = ccc-core-static
"{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840
"{505AFDC0-5E72-4928-8368-5DEA385E3647}" = CorelDRAW Graphics Suite 12
"{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport
"{5A0B7BA5-4682-4273-81C2-69B17E649103}" = GRID
"{5A274D69-F9BB-4AA9-85C9-440FA947DF04}_is1" = Medal of Honor
"{5C318BD3-BA72-43E4-9D16-A18210B4A5A5}" = Media Go
"{5CA1C102-CFB3-9C8E-2DEF-E98A4B57C8CF}" = Catalyst Control Center InstallProxy
"{5F624839-947D-46EA-BD63-FD847C1AC6F1}" = BearShare
"{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder
"{6F5E2F4A-377D-4700-B0E3-8F7F7507EA15}" = CustomerResearchQFolder
"{706BB40A-4102-4c89-8107-DC68C4EBD19B}" = HP Deskjet All-In-One Software 9.0
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{78B771A0-6883-44FB-A830-B138EA89278E}" = Solid Edge 2D Drafting ST3
"{7C77393F-8237-3825-A88A-AFAF3C69C072}" = Microsoft .NET Framework 3.0 Service Pack 1 Language Pack - PLK
"{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01
"{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}" = Assassin's Creed II
"{888F1505-C2B3-4FDE-835D-36353EBD4754}" = Ubisoft Game Launcher
"{8B3E5A90-1F6E-4FAF-B84F-C306C8A80809}" = AeroFly Professional Deluxe
"{8C6027FD-53DC-446D-BB75-CACD7028A134}" = HP Update
"{8DC42D05-680B-41B0-8878-6C14D24602DB}" = QuickTime
"{93F54611-2701-454e-94AB-623F458D9E6B}" = DeviceDiscovery
"{97A39919-9FEA-48B7-AB2B-4F99212D1E98}" = HDD Regenerator
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A9C365A3-06C0-43b4-A2DB-EDF0A6079AA9}" = DJ_AIO_Software
"{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder
"{AC76BA86-7AD7-1045-7B44-A94000000001}" = Adobe Reader 9.4.2 - Polish
"{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant
"{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan
"{B4B1F18B-5CED-4f8f-8A8F-1BD0503C222E}" = DJ_AIO_ProductContext
"{B5924CA6-24A7-48F5-BC9C-8BFA94ED4564}" = LightScribe 1.4.67.1
"{B5C5C17E-FEF6-4062-8151-A427AE8AF9D7}" = Titan Quest Immortal Throne
"{B6659DD8-00A7-4A24-BBFB-C1F6982E5D66}" = PlayStation(R)Network Downloader
"{B9242864-2841-4ADE-86E0-8F90F91B04DD}" = Logitech Gaming Software
"{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter
"{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}" = Creative MediaSource 5
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C950420B-4182-49EA-850A-A6A2ABF06C6B}" = Marvell Miniport Driver
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component
"{D94BA408-F110-488B-A65E-3AE7945F79E6}_is1" = Odinstalowuj LG PC Suite III
"{DDA34038-89BD-4804-B0B8-DC48D5DFB463}" = Catalyst Control Center - Branding
"{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}" = Ad-Aware
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = Auslogics Disk Defrag
"{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm
"{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox
"{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}" = Sony Ericsson PC Companion 2.01.123
"{F0C5CF53-FE88-B20E-CE8C-2B5CAA3ECFD0}" = ATI Catalyst Install Manager
"{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer
"{F31E509D-3597-324E-83CF-0C160B2320F0}" = Microsoft .NET Framework 3.5 Language Pack - plk
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}" = Visual C++ 2008 x86 Runtime - (v9.0.30729)
"{F333A33D-125C-32A2-8DCE-5C5D14231E27}.vc_x86runtime_30729_01" = Visual C++ 2008 x86 Runtime - v9.0.30729.01
"{F56D6F46-1D62-4734-BF12-6457A1ED17BD}" = DJ_AIO_Software_min
"{F68563C0-2CCD-4799-A014-017A370D627B}" = Edycja kolekcjonerska Heroes of Might and Magic V
"{F72E2DDC-3DB8-4190-A21D-63883D955FE7}" = PSSWCORE
"{F7338FA3-DAB5-49B2-900D-0AFB5760C166}" = PC Probe II
"{FD8D8B04-BEAD-4A55-AA1D-62D2373E7DEA}" = Status
"{FD8E178D-8B4E-42DA-B434-EFF270329B1C}" = COMODO Internet Security
"Ad-Aware" = Ad-Aware
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"ALLPlayer_is1" = ALLPlayer V4.X
"BearShare" = BearShare
"BS.Player ControlBar" = BS.Player ControlBar
"BSPlayerf" = BS.Player FREE
"CCleaner" = CCleaner
"Combined Community Codec Pack_is1" = Combined Community Codec Pack 2007-07-22
"COMODO GeekBuddy" = COMODO GeekBuddy
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.54
"Creative Software AutoUpdate" = Creative Software AutoUpdate
"Disk Checker" = Disk Checker
"EXPERTool ATI_is1" = EXPERTool ATI 4.2
"F1 2010_is1" = F1 2010
"FMS" = FMS
"Fraps" = Fraps
"Gadu-Gadu 10" = Gadu-Gadu 10
"GameSpy Arcade" = GameSpy Arcade
"HP Imaging Device Functions" = HP Imaging Device Functions 9.0
"HP Photosmart Essential" = HP Photosmart Essential 2.01
"HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0
"HPExtendedCapabilities" = HP Customer Participation Program 9.0
"Inkscape" = Inkscape 0.48.0
"Mafia II_is1" = Mafia II
"Microsoft .NET Framework 3.5 Language Pack - plk" = Pakiet językowy programu Microsoft .NET Framework 3.5 — PLK
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.15)" = Mozilla Firefox (3.6.15)
"NeroMultiInstaller!UninstallKey" = Nero Suite
"NetMeter_is1" = NetMeter 0.9.9.9 (beta 2)
"OpenAL" = OpenAL
"PunkBusterSvc" = PunkBuster Services
"RealAlt_is1" = Real Alternative 1.60
"RealPlayer 12.0" = RealPlayer
"Seven Remix XP" = Seven Remix XP 2.4
"SpeedFan" = SpeedFan (remove only)
"StarCraft II" = StarCraft II
"Unlocker" = Unlocker 1.8.5
"Update Service" = Sony Ericsson Update Service
"uTorrent" = µTorrent
"Wdf01007" = Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
"Winamp" = Winamp
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = Archiwizator WinRAR
"winusb0100" = Microsoft WinUsb 1.0
"WMFDist11" = Windows Media Format 11 runtime
"Wudf01005" = Microsoft User-Mode Driver Framework Feature Pack 1.5
"XpsEPSC" = XML Paper Specification Shared Components Pack 1.0
"XPSEPSCLP" = XML Paper Specification Shared Components Language Pack 1.0

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-796845957-527237240-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"I-Doser v4" = I-Doser v4

[color=#E56717]========== Last 10 Event Log Errors ==========[/color]

[ Application Events ]
Error - 2011-02-22 18:40:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca F1_2010_game.exe, wersja 1.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:37:22 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:38:10 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca BlackOps.exe, wersja 0.0.0.0, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-05 11:38:14 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1001
Description = Pakiet błędów 288306601.

Error - 2011-03-05 18:52:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca setup2.exe, wersja 1.0.0.177, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-07 18:26:53 | Computer Name = DOMINIK-BFC9604 | Source = Lavasoft Ad-Aware Service | ID = 0
Description =

Error - 2011-03-12 19:22:52 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:00 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:53 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

Error - 2011-03-12 19:23:55 | Computer Name = DOMINIK-BFC9604 | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca rundll32.exe, wersja 5.1.2600.5512, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.

[ System Events ]
Error - 2011-03-13 20:39:01 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2

Error - 2011-03-16 04:53:58 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2

Error - 2011-03-16 16:32:31 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2

Error - 2011-03-16 16:36:37 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa COMODO livePCsupport Service niespodziewanie zakończyła pracę.
Wystąpiło to razy: 1.

Error - 2011-03-16 16:36:37 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa Ati HotKey Poller niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa Creative Service for CDROM Access niespodziewanie zakończyła
pracę. Wystąpiło to razy: 1.

Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa Java Quick Starter niespodziewanie zakończyła pracę. Wystąpiło
to razy: 1.

Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa LightScribeService Direct Disc Labeling Service niespodziewanie
zakończyła pracę. Wystąpiło to razy: 1.

Error - 2011-03-16 16:36:38 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7034
Description = Usługa PnkBstrA niespodziewanie zakończyła pracę. Wystąpiło to razy:
1.

Error - 2011-03-16 16:38:43 | Computer Name = DOMINIK-BFC9604 | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (e4ldr.sys)
z powodu następującego błędu: %%2


< End of report >[/log]

Nie wiem dlaczego ale z RSIT mam tylko jednego loga.

[log]Logfile of random's system information tool 1.08 (written by random/random)
Run by Dominik at 2011-03-16 22:02:40
Microsoft Windows XP Home Edition Dodatek Service Pack 3
System drive E: has 53 GB (52%) free of 102 GB
Total RAM: 3071 MB (70% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:02:42, on 2011-03-16
Platform: Windows XP Dodatek SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
E:\WINDOWS\System32\smss.exe
E:\WINDOWS\system32\winlogon.exe
E:\WINDOWS\system32\services.exe
E:\WINDOWS\system32\lsass.exe
E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\system32\svchost.exe
E:\WINDOWS\system32\Ati2evxx.exe
E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
E:\WINDOWS\system32\spoolsv.exe
E:\WINDOWS\Explorer.EXE
E:\WINDOWS\system32\CTsvcCDA.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Java\jre6\bin\jqs.exe
E:\Program Files\Common Files\LightScribe\LSSrvc.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\System32\svchost.exe
E:\WINDOWS\system32\PnkBstrA.exe
E:\WINDOWS\system32\svchost.exe
E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
E:\WINDOWS\system32\Rundll32.exe
E:\Program Files\Winamp\winampa.exe
E:\Program Files\HP\HP Software Update\HPWuSchd2.exe
E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe
E:\WINDOWS\System32\svchost.exe
E:\Program Files\Real\RealPlayer\update\realsched.exe
E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
E:\Program Files\COMODO\COMODO Internet Security\cfp.exe
E:\Program Files\Common Files\Java\Java Update\jusched.exe
E:\WINDOWS\system32\ctfmon.exe
E:\Program Files\COMODO\COMODO GeekBuddy\CLPS.exe
E:\Program Files\EXPERTool ATI\TBPanel.exe
E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe
E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanionInfo.exe
E:\Program Files\uTorrent\uTorrent.exe
E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
E:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
E:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
E:\Program Files\Mozilla Firefox\firefox.exe
E:\Program Files\Mozilla Firefox\plugin-container.exe
E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\RSIT.exe
E:\Program Files\trend micro\Dominik.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.optimus.pl
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Łącza
O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - E:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: IplexToALLPlayer - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [CTSysVol] E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [P17Helper] Rundll32 P17.dll,P17Helper
O4 - HKLM\..\Run: [UpdReg] E:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [WinampAgent] "E:\Program Files\Winamp\winampa.exe"
O4 - HKLM\..\Run: [HP Software Update] E:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Ai Nap] "E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe"
O4 - HKLM\..\Run: [QFan Help] "E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe"
O4 - HKLM\..\Run: [Cpu Level Up help] "E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] E:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "E:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "E:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [StartCCC] "E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ISUSPM Startup] E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [CorelDRAW Graphics Suite 11b] E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe /title="CorelDRAW Graphics Suite 12" /date=032011 serial=DR12WNB-6417934-NRC lang=PL
O4 - HKLM\..\Run: [COMODO Internet Security] "E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKLM\..\Run: [COMODO] E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe
O4 - HKLM\..\Run: [CPA] E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "E:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Gainward] E:\Program Files\EXPERTool ATI\TBPanel.exe /A
O4 - HKCU\..\Run: [Sony Ericsson PC Companion] "E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" /Background
O4 - HKCU\..\Run: [ALLUpdate] "E:\Program Files\ALLPlayer\ALLUpdate.exe" "sleep"
O4 - HKCU\..\Run: [uTorrent] "E:\Program Files\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'USŁUGA SIECIOWA')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] E:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: HP Digital Imaging Monitor.lnk = E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: Kolekcja wycinków HP - {58ECB495-38F0-49cb-A538-10282ABF65E7} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Zaznaczanie HP Smart - {700259D7-1666-479a-93B1-3250410481E8} - E:\Program Files\HP\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - E:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - E:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.optimus.pl
O20 - AppInit_DLLs: E:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Moduł wstępnego ładowania interfejsu Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - E:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Demon buforu kategorii składników - {8C7461EF-2B13-11d2-BE35-3078302C2030} - E:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - E:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: COMODO livePCsupport Service (CLPSLS) - COMODO - E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - E:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - E:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft Limited - E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - E:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PnkBstrA - Unknown owner - E:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Sony Ericsson PCCompanion - Avanquest Software - E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe

--
End of file - 8729 bytes

======Scheduled tasks folder======

E:\WINDOWS\tasks\Ad-Aware Update (Weekly).job
E:\WINDOWS\tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0347C33E-8762-4905-BF09-768834316C61}]
HP Print Enhancer - E:\Program Files\HP\Smart Web Printing\hpswp_printenhancer.dll [2007-03-02 1298024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
HP Print Clips - E:\Program Files\HP\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - E:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-09-22 75200]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll [2010-11-06 382720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - E:\Program Files\Java\jre6\bin\jp2ssv.dll [2011-02-09 41760]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF925EF3-7A87-44E4-9CAF-8D7B280BF616}]
IplexToALLPlayer - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll [2011-02-09 400384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - E:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2011-02-09 79648]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"CTSysVol"=E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe [2005-10-31 57344]
"P17Helper"=Rundll32 P17.dll,P17Helper []
"UpdReg"=E:\WINDOWS\UpdReg.EXE [2000-05-11 90112]
"WinampAgent"=E:\Program Files\Winamp\winampa.exe [2008-01-15 37376]
"HP Software Update"=E:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-03-11 49152]
"Ai Nap"=E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe [2009-07-01 1435136]
"QFan Help"=E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe [2009-07-01 601088]
"Cpu Level Up help"=E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe [2007-11-30 881152]
"NeroFilterCheck"=E:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]
"QuickTime Task"=E:\Program Files\QuickTime\QTTask.exe [2008-09-06 413696]
"TkBellExe"=E:\Program Files\Real\RealPlayer\update\realsched.exe [2010-11-06 274608]
"Adobe Reader Speed Launcher"=E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2011-01-31 35760]
"Adobe ARM"=E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-09-20 932288]
"StartCCC"=E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-08-25 98304]
"ISUSPM Startup"=E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe [2004-06-16 221184]
"ISUSScheduler"=E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-06-16 81920]
"CorelDRAW Graphics Suite 11b"=E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe [2004-06-23 733184]
"COMODO Internet Security"=E:\Program Files\COMODO\COMODO Internet Security\cfp.exe [2011-01-17 2548552]
"COMODO"=E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe [2011-03-02 210648]
"CPA"=E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe [2011-03-02 184344]
"SunJavaUpdateSched"=E:\Program Files\Common Files\Java\Java Update\jusched.exe [2010-10-29 249064]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=E:\WINDOWS\system32\ctfmon.exe [2008-04-14 40448]
"Gainward"=E:\Program Files\EXPERTool ATI\TBPanel.exe [2009-04-09 2304552]
"Sony Ericsson PC Companion"=E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe [2011-01-24 427008]
"ALLUpdate"=E:\Program Files\ALLPlayer\ALLUpdate.exe [2011-02-08 1362944]
"uTorrent"=E:\Program Files\uTorrent\uTorrent.exe [2011-03-12 399224]

E:\Documents and Settings\All Users\Menu Start\Programy\Autostart
HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=" E:\WINDOWS\system32\guard32.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
E:\WINDOWS\system32\Ati2evxx.dll [2010-08-26 159744]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - E:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CLPSLS]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=0x95000000
"NoFavoritesMenu"=1
"NoRecycleFiles"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"HonorAutoRunSetting"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe"="E:\Program Files\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe:*:Enabled:Ubisoft Game Launcher"
"C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedIIGame.exe:*:Enabled:Assassin's Creed II"
"C:\Gry\Assasin Creed 2\AssassinsCreedII.exe"="C:\Gry\Assasin Creed 2\AssassinsCreedII.exe:*:Enabled:Assassin's Creed II Update"
"C:\Gry\Assasin Creed 2\UPlayBrowser.exe"="C:\Gry\Assasin Creed 2\UPlayBrowser.exe:*:Enabled:Assassin's Creed II Uplay"
"C:\Gry\StarCraft II\StarCraft II.exe"="C:\Gry\StarCraft II\StarCraft II.exe:*:Enabled:Blizzard Launcher"
"E:\Program Files\Gadu-Gadu\gg.exe"="E:\Program Files\Gadu-Gadu\gg.exe:*:Enabled:Gadu-Gadu - program główny"
"E:\Program Files\Gadu-Gadu 10\gg.exe"="E:\Program Files\Gadu-Gadu 10\gg.exe:*:Enabled:Gadu-Gadu 10"
"C:\Gry\StarCraft II\Versions\Base15405\SC2.exe"="C:\Gry\StarCraft II\Versions\Base15405\SC2.exe:*:Enabled:StarCraft II"
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"
"E:\WINDOWS\system32\PnkBstrA.exe"="E:\WINDOWS\system32\PnkBstrA.exe:*:Enabled:PnkBstrA"
"E:\WINDOWS\system32\PnkBstrB.exe"="E:\WINDOWS\system32\PnkBstrB.exe:*:Enabled:PnkBstrB.exe"
"C:\Gry\Medal of Honor\Binaries\moh.exe"="C:\Gry\Medal of Honor\Binaries\moh.exe:*:Enabled:Medal of Honor (Singleplayer)"
"C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe"="C:\Gry\Medal of Honor\Binaries\MoHUpdater.exe:*:Enabled:Medal of Honor (Singleplayer. Autoupdater)"
"C:\Gry\Medal of Honor\MP\mohmpgame.exe"="C:\Gry\Medal of Honor\MP\mohmpgame.exe:*:Enabled:Medal of Honor (Multiplayer)"
"C:\Gry\Medal of Honor\MP\mohmpupdater.exe"="C:\Gry\Medal of Honor\MP\mohmpupdater.exe:*:Enabled:Medal of Honor (Multiplayer. Autoupdater)"
"E:\Program Files\Sony Ericsson\Update Service\Update Service.exe"="E:\Program Files\Sony Ericsson\Update Service\Update Service.exe:*:Enabled:Update Service"
"C:\Gry\Call of Duty - Black Ops\BlackOps.exe"="C:\Gry\Call of Duty - Black Ops\BlackOps.exe:*:Enabled:BlackOps"
"E:\Program Files\AVG\AVG10\avgmfapx.exe"="E:\Program Files\AVG\AVG10\avgmfapx.exe:*:Enabled:Instalator AVG"
"C:\Gry\Grid\GRID.exe"="C:\Gry\Grid\GRID.exe:*:Enabled:GRID"
"C:\Gry\F1 2010\f1_2010.exe"="C:\Gry\F1 2010\f1_2010.exe:*:Enabled:F1 2010"
"C:\Gry\F1 2010\F1_2010_game.exe"="C:\Gry\F1 2010\F1_2010_game.exe:*:Disabled:F1 2010 Executable"
"E:\Program Files\uTorrent\uTorrent.exe"="E:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Gry\Battelfield 2\BF2.exe"="C:\Gry\Battelfield 2\BF2.exe:*:Enabled:Battlefield 2"
"E:\Program Files\GameSpy Arcade\Aphex.exe"="E:\Program Files\GameSpy Arcade\Aphex.exe:*:Enabled:GameSpy Arcade"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"E:\Program Files\BearShare Applications\BearShare\BearShare.exe"="E:\Program Files\BearShare Applications\BearShare\BearShare.exe:*:Enabled:BearShare"

======List of files/folders created in the last 1 months======

2011-03-16 21:36:37 ----D---- E:\_OTL
2011-03-16 21:23:34 ----SD---- E:\ComboFix
2011-03-14 22:33:27 ----D---- E:\Program Files\trend micro
2011-03-14 22:33:26 ----D---- E:\rsit
2011-03-14 01:06:32 ----A---- E:\WINDOWS\system32\tmp.txt
2011-03-14 01:04:17 ----A---- E:\WINDOWS\ntbtlog.txt
2011-03-14 00:58:55 ----A---- E:\rapport.txt
2011-03-14 00:01:54 ----D---- E:\WINDOWS\ERDNT
2011-03-14 00:00:50 ----D---- E:\Qoobox
2011-03-13 22:30:21 ----A---- E:\WINDOWS\system32\lsdelete.exe
2011-03-13 20:42:23 ----D---- E:\Program Files\GameSpy Arcade
2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files\Java
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaws.exe
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\javaw.exe
2011-03-13 17:58:59 ----A---- E:\WINDOWS\system32\java.exe
2011-03-12 22:17:27 ----D---- E:\Program Files\uTorrent
2011-03-12 22:16:52 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
2011-03-12 13:06:27 ----RA---- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS
2011-03-12 13:05:04 ----D---- E:\Netgear
2011-03-12 13:00:25 ----HD---- E:\VritualRoot
2011-03-12 11:27:29 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Comodo
2011-03-12 11:27:25 ----D---- E:\Program Files\COMODO
2011-03-11 12:00:52 ----A---- E:\WINDOWS\adiras.ini
2011-03-11 00:00:24 ----HDC---- E:\WINDOWS\$NtUninstallKB2479943$
2011-03-10 23:58:50 ----HDC---- E:\WINDOWS\$NtUninstallKB2481109$
2011-03-09 22:49:48 ----A---- E:\WINDOWS\system32\WooDial2000.dll
2011-03-09 22:49:06 ----D---- E:\WINDOWS\system32\AlertModule
2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\IfHelper.dll
2011-03-09 22:49:05 ----A---- E:\WINDOWS\system32\FTRTSVC.exe
2011-03-09 22:47:16 ----SHD---- E:\WINDOWS\ftpcache
2011-03-07 23:56:39 ----RA---- E:\WINDOWS\system32\psfind.dll
2011-03-07 23:54:17 ----D---- E:\Program Files\THQ
2011-03-07 23:53:03 ----A---- E:\WINDOWS\system32\drivers\Lbd.sys
2011-03-07 23:52:54 ----A---- E:\WINDOWS\system32\drivers\SBREDrv.sys
2011-03-07 23:11:38 ----HDC---- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
2011-03-07 23:11:22 ----D---- E:\Program Files\Lavasoft
2011-03-07 23:11:22 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
2011-03-06 23:32:26 ----HDC---- E:\WINDOWS\$NtUninstallKB971029$
2011-03-06 00:17:34 ----A---- E:\WINDOWS\RealFlight.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\WIN.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\SYSTEM.INI
2011-03-06 00:05:21 ----A---- E:\WINDOWS\system32\PROTOCOL.INI
2011-03-06 00:00:19 ----A---- E:\WINDOWS\PROTOCOL.INI
2011-03-06 00:00:01 ----A---- E:\WINDOWS\uninst.exe
2011-03-05 23:45:32 ----D---- E:\Program Files\RealFlightG4
2011-03-05 23:45:30 ----D---- E:\Program Files\Common Files\KnifeEdge
2011-03-04 22:56:17 ----D---- E:\Program Files\FMS
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmVirHid.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmHidLo.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmFilter.sys
2011-02-22 22:23:20 ----A---- E:\WINDOWS\system32\drivers\WmBEnum.sys
2011-02-22 22:23:19 ----A---- E:\WINDOWS\system32\drivers\WmXlCore.sys
2011-02-22 22:23:18 ----D---- E:\Program Files\Common Files\Logitech
2011-02-22 22:23:18 ----A---- E:\WINDOWS\system32\WmJoyFrc.dll
2011-02-22 22:23:08 ----D---- E:\Program Files\Logitech

======List of files/folders modified in the last 1 months======

2011-03-16 21:40:40 ----D---- E:\WINDOWS\Prefetch
2011-03-16 21:39:48 ----SD---- E:\WINDOWS\Tasks
2011-03-16 21:39:47 ----D---- E:\WINDOWS\Temp
2011-03-16 21:39:13 ----D---- E:\WINDOWS\system32
2011-03-16 21:38:59 ----A---- E:\WINDOWS\win.ini
2011-03-16 21:38:58 ----SHD---- E:\WINDOWS\Installer
2011-03-16 21:38:58 ----HD---- E:\Config.Msi
2011-03-16 21:38:46 ----D---- E:\WINDOWS\system32\CatRoot2
2011-03-16 21:37:11 ----A---- E:\WINDOWS\SchedLgU.Txt
2011-03-16 21:37:01 ----D---- E:\WINDOWS
2011-03-16 21:36:44 ----D---- E:\Program Files\BS.Player ControlBar
2011-03-16 21:22:37 ----D---- E:\WINDOWS\system32\drivers
2011-03-14 22:33:27 ----D---- E:\Program Files
2011-03-14 01:09:46 ----SHD---- E:\RECYCLER
2011-03-14 00:57:05 ----D---- E:\Program Files\Mozilla Firefox
2011-03-14 00:18:12 ----D---- E:\Documents and Settings\Dominik\Dane aplikacji\Winamp
2011-03-13 20:55:03 ----D---- E:\WINDOWS\system32\config
2011-03-13 20:47:50 ----D---- E:\WINDOWS\system32\DirectX
2011-03-13 20:47:49 ----RSD---- E:\WINDOWS\assembly
2011-03-13 20:37:32 ----HD---- E:\Program Files\InstallShield Installation Information
2011-03-13 17:59:16 ----D---- E:\Program Files\Common Files
2011-03-13 17:58:56 ----D---- E:\Program Files\Java
2011-03-12 23:38:51 ----HD---- E:\WINDOWS\inf
2011-03-12 23:38:51 ----DC---- E:\WINDOWS\system32\DRVSTORE
2011-03-12 13:51:56 ----D---- E:\WINDOWS\system32\LogFiles
2011-03-12 11:26:38 ----D---- E:\WINDOWS\Minidump
2011-03-12 11:26:38 ----D---- E:\WINDOWS\Debug
2011-03-12 11:16:59 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\AVG10
2011-03-12 11:16:18 ----RSHDC---- E:\WINDOWS\system32\dllcache
2011-03-11 21:35:05 ----D---- E:\WINDOWS\system32\CatRoot
2011-03-10 23:58:57 ----A---- E:\WINDOWS\system32\MRT.exe
2011-03-10 21:40:59 ----HD---- E:\WINDOWS\$hf_mig$
2011-03-07 23:11:18 ----D---- E:\WINDOWS\WinSxS
2011-02-26 16:48:27 ----D---- E:\Program Files\Sony Ericsson
2011-02-25 22:00:23 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Sony Ericsson
2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\wrap_oal.dll
2011-02-22 23:19:01 ----A---- E:\WINDOWS\system32\OpenAL32.dll
2011-02-22 22:50:40 ----D---- E:\Documents and Settings\All Users\Dane aplikacji\Codemasters
2011-02-22 22:49:12 ----D---- E:\Program Files\OpenAL
2011-02-22 22:23:54 ----D---- E:\WINDOWS\system32\ReinstallBackups
2011-02-19 13:00:42 ----D---- E:\Program Files\ALLPlayer
2011-02-19 13:00:39 ----D---- E:\Program Files\NAPI-PROJEKT

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 giveio;giveio; E:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R0 Lbd;Lbd; E:\WINDOWS\system32\DRIVERS\Lbd.sys [2011-03-07 64512]
R0 ohci1394;Kontroler hosta Texas Instruments IEEE 1394 zgodny z OHCI; E:\WINDOWS\system32\DRIVERS\ohci1394.sys [2008-04-13 61696]
R0 PxHelp20;PxHelp20; E:\WINDOWS\System32\Drivers\PxHelp20.sys [2007-03-08 43528]
R0 speedfan;speedfan; E:\WINDOWS\system32\speedfan.sys [2006-09-24 5248]
R0 sptd;sptd; E:\WINDOWS\System32\Drivers\sptd.sys [2010-08-08 717296]
R0 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; E:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-15 76544]
R1 AsIO;AsIO; E:\WINDOWS\system32\drivers\AsIO.sys [2009-12-06 12400]
R1 cmderd;COMODO Internet Security Eradication Driver; E:\WINDOWS\System32\DRIVERS\cmderd.sys [2011-01-06 15592]
R1 cmdGuard;COMODO Internet Security Sandbox Driver; E:\WINDOWS\System32\DRIVERS\cmdguard.sys [2011-01-06 239368]
R1 intelppm;Sterownik procesora Intel; E:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40448]
R1 kbdhid;Sterownik klawiatury HID; E:\WINDOWS\system32\DRIVERS\kbdhid.sys [2008-04-14 14720]
R2 cpuz133;cpuz133; \??\E:\WINDOWS\system32\drivers\cpuz133_x32.sys []
R3 Arp1394;Protokół klienta 1394 ARP; E:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
R3 ati2mtag;ati2mtag; E:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2010-08-26 5386752]
R3 AtiHdmiService;ATI Function Driver for HDMI Service; E:\WINDOWS\system32\drivers\AtiHdmi.sys [2008-10-21 89600]
R3 ctsfm2k;Creative SoundFont Management Device Driver; E:\WINDOWS\system32\DRIVERS\ctsfm2k.sys [2005-01-10 138752]
R3 HDAudBus;Sterownik magistrali Microsoft UAA dla High Definition Audio; E:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-13 144384]
R3 hidusb;Sterownik Microsoft klasy HID; E:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 mouhid;Sterownik myszy HID; E:\WINDOWS\system32\DRIVERS\mouhid.sys [2004-08-04 12160]
R3 MTsensor;ATK0110 ACPI UTILITY; E:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NIC1394;Sterownik sieci 1394; E:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
R3 ossrv;Creative OS Services Driver; E:\WINDOWS\system32\DRIVERS\ctoss2k.sys [2005-01-10 106496]
R3 P17;Sound Blaster Audigy; E:\WINDOWS\system32\drivers\P17.sys [2005-07-07 1389056]
R3 seehcri;Sony Ericsson seehcri Device Driver; E:\WINDOWS\system32\DRIVERS\seehcri.sys [2010-11-05 27632]
R3 usbccgp;Rodzajowy sterownik nadrzędny USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbuhci;Sterownik Miniport uniwersalnego kontrolera hosta USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
R3 WmBEnum;Logitech Virtual Bus Enumerator Driver; E:\WINDOWS\system32\drivers\WmBEnum.sys [2004-04-14 10144]
R3 WmXlCore;Logitech WingMan Translation Layer Driver; E:\WINDOWS\system32\drivers\WmXlCore.sys [2004-04-14 44064]
R3 yukonwxp;NDIS5.1 Miniport Driver for Marvell Yukon Ethernet Controller; E:\WINDOWS\system32\DRIVERS\yk51x86.sys [2006-07-26 248832]
S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys); E:\WINDOWS\System32\Drivers\e4ldr.sys []
S3 aisit5gf;aisit5gf; E:\WINDOWS\system32\drivers\aisit5gf.sys []
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service; E:\WINDOWS\system32\drivers\AtihdXP3.sys []
S3 BVRPMPR5;BVRPMPR5 NDIS Protocol Driver; \??\E:\WINDOWS\system32\drivers\BVRPMPR5.SYS []
S3 e4usbaw;USB ADSL2 WAN Adapter; E:\WINDOWS\system32\DRIVERS\e4usbaw.sys []
S3 ggflt;SEMC USB Flash Driver Filter; E:\WINDOWS\system32\DRIVERS\ggflt.sys [2010-10-10 13224]
S3 ggsemc;SEMC USB Flash Driver; E:\WINDOWS\system32\DRIVERS\ggsemc.sys [2010-10-10 25512]
S3 HPZid412;IEEE-1284.4 Driver HPZid412; E:\WINDOWS\system32\DRIVERS\HPZid412.sys [2007-03-08 49920]
S3 HPZipr12;Print Class Driver for IEEE-1284.4 HPZipr12; E:\WINDOWS\system32\DRIVERS\HPZipr12.sys [2007-03-08 16496]
S3 HPZius12;USB to IEEE-1284.4 Translation Driver HPZius12; E:\WINDOWS\system32\DRIVERS\HPZius12.sys [2007-03-08 21568]
S3 Lavasoft Kernexplorer;Lavasoft helper driver; \??\E:\Program Files\Lavasoft\Ad-Aware\KernExplorer.sys []
S3 LgBttPort;LGE Bluetooth TransPort; E:\WINDOWS\system32\DRIVERS\lgbtport.sys []
S3 lgbusenum;LG Bluetooth Bus Enumerator; E:\WINDOWS\system32\DRIVERS\lgbtbus.sys []
S3 lgmdbus;LG Mobile driver (WDM); E:\WINDOWS\system32\DRIVERS\lgmdbus.sys []
S3 lgmdmdfl;LG Mobile USB WMC Modem Filter; E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys []
S3 lgmdmdm;LG Mobile USB WMC Modem Driver; E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys []
S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM); E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys []
S3 lgmdobex;LG Mobile USB WMC OBEX Interface; E:\WINDOWS\system32\DRIVERS\lgmdobex.sys []
S3 LGVMODEM;LGE Virtual Modem; E:\WINDOWS\system32\DRIVERS\lgvmodem.sys []
S3 usbprint;Klasa PRINTER USB Microsoft; E:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
S3 usbscan;Sterownik skanera USB; E:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
S3 USBSTOR;Sterownik magazynu masowego USB; E:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S3 Wdf01000;Kernel Mode Driver Frameworks service; E:\WINDOWS\System32\Drivers\wdf01000.sys [2008-03-27 503008]
S3 WinUSB;Sony Ericsson USB Device sa0101 Driver; E:\WINDOWS\system32\DRIVERS\WinUSB.sys [2006-11-02 39368]
S3 WmFilter;Logitech WingMan HID Filter Driver; E:\WINDOWS\system32\drivers\WmFilter.sys [2004-04-14 21280]
S3 WmHidLo;Logitech WingMan USB Filter Driver; E:\WINDOWS\system32\drivers\WmHidLo.sys [2004-04-14 14432]
S3 WmVirHid;Logitech Virtual Hid Device Driver; E:\WINDOWS\system32\drivers\WmVirHid.sys [2004-04-14 5600]
S3 WpdUsb;WpdUsb; E:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; E:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-15 82688]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; E:\WINDOWS\system32\Ati2evxx.exe [2010-08-26 606208]
R2 CLPSLS;COMODO livePCsupport Service; E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 156576]
R2 cmdAgent;COMODO Internet Security Helper Service; E:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [2011-01-17 1803224]
R2 Creative Service for CDROM Access;Creative Service for CDROM Access; E:\WINDOWS\system32\CTsvcCDA.exe [1999-12-13 44032]
R2 hpqddsvc;Usługa HP CUE DeviceDiscovery; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R2 JavaQuickStarterService;Java Quick Starter; E:\Program Files\Java\jre6\bin\jqs.exe [2011-02-02 153376]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2011-03-08 1405384]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; E:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-01-20 73728]
R2 Net Driver HPZ12;Net Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 Pml Driver HPZ12;Pml Driver HPZ12; E:\WINDOWS\System32\svchost.exe [2008-04-14 14336]
R2 PnkBstrA;PnkBstrA; E:\WINDOWS\system32\PnkBstrA.exe [2010-10-16 75064]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
R3 hpqcxs08;hpqcxs08; E:\WINDOWS\system32\svchost.exe [2008-04-14 14336]
S3 aspnet_state;Usuga stanu ASP.NET; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2008-07-25 34312]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; E:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2008-07-25 69632]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; E:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe [2008-07-29 46104]
S3 idsvc;Windows CardSpace; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2008-07-29 881664]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion; E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-26 155344]
S4 NetTcpPortSharing;Usługa udostępniania portów Net.Tcp; E:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2008-07-29 132096]

-----------------EOF-----------------[/log]

Tomek01
komentarz
komentarz

Wyłącz a następnie włącz przywracanie systemu na wszystkich partycjach.
Użyj ATF Cleaner, zaznacz trzy pierwsze fajki i empty selected.

Wykonaj pełny skan [url=http://www.instalki.pl/programy/download_c/14/155.html][color=#0000CD][b]DrWebCureIt[/b][/color][/url] oraz [url=http://www.instalki.pl/programy/download_c/13/96.html][color=#0000CD][b]Malwarebytes Anti-Malware[/b][/color][/url] i jakby coś wykryły raporty pokaż na forum.

domin46
komentarz
komentarz

Zrobiłem to co napisałeś. Dodatkowo przeskanowałem jeszcze ComboFix-em. Niestety problem nie zniknął.

[log]Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Wersja bazy: 6088

Windows 5.1.2600 Dodatek Service Pack 3
Internet Explorer 6.0.2900.5512

2011-03-17 17:14:21
mbam-log-2011-03-17 (17-13-36).txt

Typ skanowania: Pełne skanowanie (C:\|D:\|E:\|)
Przeskanowano obiektów: 283124
Upłynęło: 49 minut(y), 50 sekund(y)

Zainfekowanych procesów w pamięci: 0
Zainfekowanych modułów w pamięci: 0
Zainfekowanych kluczy rejestru: 0
Zainfekowanych wartości rejestru: 0
Zainfekowane informacje rejestru systemowego: 1
Zainfekowanych folderów: 0
Zainfekowanych plików: 7

Zainfekowanych procesów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych modułów w pamięci:
(Nie znaleziono zagrożeń)

Zainfekowanych kluczy rejestru:
(Nie znaleziono zagrożeń)

Zainfekowanych wartości rejestru:
(Nie znaleziono zagrożeń)

Zainfekowane informacje rejestru systemowego:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoRecycleFiles (PUM.Disable.Recycle) -> Bad: (1) Good: (0) -> No action taken.

Zainfekowanych folderów:
(Nie znaleziono zagrożeń)

Zainfekowanych plików:
c:\gry instal\assassins.creed 2\crack ac@\SKIDROW\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
c:\gry instal\call of duty 4 - modern warfare\#readme#\rzr-cod4-keygen.exe (Trojan.Agent.CK) -> No action taken.
c:\potrzebne\crack ac@\SKIDROW\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
c:\Save\assasin creeed 2 (pruby)\ubisoft game launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
c:\spolszczenia, cracki , serie\call of duty4-razor1911+keygen and crack\rzr-cod4.exe (Trojan.Agent.CK) -> No action taken.
e:\program files\Ubisoft\ubisoft game launcher\ubiorbitapi_r2.dll (Trojan.Agent.CK) -> No action taken.
e:\WINDOWS\system32\calc.exe (Trojan.Agent.Gen) -> No action taken.[/log]

[log]ComboFix 11-03-18.01 - Dominik 2011-03-18 21:55:42.1.2 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1250.48.1045.18.3071.2267 [GMT 1:00]
Uruchomiony z: E:\Documents and Settings\Dominik\Moje dokumenty\Pobieranie\ComboFix.exe
AV: COMODO Antivirus *Enabled/Updated* {043803A5-4F86-4ef7-AFC5-F6E02A79969B}
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {A1C4F2E0-7FDE-4917-AFAE-013EFC3EDE33}

UWAGA - TEN KOMPUTER NIE MA ZAINSTALOWANEJ KONSOLI ODZYSKIWANIA !!


((((((((((((((((((((((((((((((((((((((( Usunięto )))))))))))))))))))))))))))))))))))))))))))))))))


E:\WINDOWS\settings.reg
E:\WINDOWS\system32\AutoRun.inf
E:\WINDOWS\system32\Data
E:\WINDOWS\system32\win.ini

Zainfekowana kopia E:\WINDOWS\regedit.exe została znaleziona. Problem naprawiono
Plik odzyskano z - E:\WINDOWS\NiwradSoft Shell Pack\Backup\regedit.exe

Zainfekowana kopia E:\WINDOWS\system32\midimap.dll została znaleziona. Problem naprawiono
Plik odzyskano z - E:\WINDOWS\NiwradSoft Shell Pack\Backup\midimap.dll


((((((((((((((((((((((((((((((((((((((( Sterowniki/Usługi )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_NPF


((((((((((((((((((((((((( Pliki utworzone od 2011-02-18 do 2011-03-18 )))))))))))))))))))))))))))))))


2011-03-17 16:16:40 . 2011-03-17 16:16:40 -------- d-----w- E:\Documents and Settings\Dominik\DoctorWeb
2011-03-17 15:14:05 . 2011-03-17 15:14:05 -------- d-----w- E:\Documents and Settings\Dominik\Dane aplikacji\Malwarebytes
2011-03-17 15:14:00 . 2010-12-20 17:09:00 38224 ----a-w- E:\WINDOWS\system32\drivers\mbamswissarmy.sys
2011-03-17 15:13:59 . 2011-03-17 15:13:59 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Malwarebytes
2011-03-17 15:13:56 . 2011-03-17 15:14:00 -------- d-----w- E:\Program Files\Malwarebytes' Anti-Malware
2011-03-17 15:13:56 . 2010-12-20 17:08:40 20952 ----a-w- E:\WINDOWS\system32\drivers\mbam.sys
2011-03-16 23:01:10 . 1998-01-23 11:22:40 304128 ----a-w- E:\WINDOWS\IsUninst.exe
2011-03-16 20:36:37 . 2011-03-16 20:36:37 -------- d-----w- E:\_OTL
2011-03-14 21:33:27 . 2011-03-16 22:33:36 -------- d-----w- E:\Program Files\trend micro
2011-03-14 21:33:26 . 2011-03-14 21:33:36 -------- d-----w- E:\rsit
2011-03-14 00:40:26 . 2011-03-14 00:40:26 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\COMODO
2011-03-14 00:36:26 . 2011-03-14 00:36:26 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Siemens
2011-03-13 21:30:21 . 2011-03-07 22:52:44 16432 ----a-w- E:\WINDOWS\system32\lsdelete.exe
2011-03-13 21:22:55 . 2011-03-13 21:22:55 -------- d-----w- E:\Documents and Settings\Administrator\Ustawienia lokalne\Dane aplikacji\Mozilla
2011-03-13 19:42:23 . 2011-03-13 19:43:04 -------- d-----w- E:\Program Files\GameSpy Arcade
2011-03-13 19:33:26 . 2004-10-22 01:18:12 749568 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2011-03-13 19:33:26 . 2004-10-22 01:17:48 69715 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2011-03-13 19:33:26 . 2004-10-22 01:17:04 274432 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2011-03-13 19:33:26 . 2004-10-22 01:16:28 180224 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2011-03-13 19:33:26 . 2004-10-22 01:16:10 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2011-03-13 19:33:19 . 2011-03-13 19:33:19 192644 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2011-03-13 19:33:18 . 2011-03-13 19:33:18 323716 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2011-03-13 16:59:16 . 2011-03-13 16:59:16 -------- d-----w- E:\Program Files\Common Files\Java
2011-03-12 21:17:27 . 2011-03-12 21:17:27 -------- d-----w- E:\Program Files\uTorrent
2011-03-12 21:16:52 . 2011-03-18 21:05:31 -------- d-----w- E:\Documents and Settings\Dominik\Dane aplikacji\uTorrent
2011-03-12 12:06:27 . 2010-02-16 04:38:12 49904 ----a-r- E:\WINDOWS\system32\drivers\BVRPMPR5.SYS
2011-03-12 12:05:04 . 2011-03-12 13:16:35 -------- d-----w- E:\Netgear
2011-03-12 12:00:25 . 2011-03-12 12:00:25 -------- d-----w- E:\VritualRoot
2011-03-12 10:29:54 . 2011-03-18 21:03:54 1474832 ----a-w- E:\WINDOWS\system32\drivers\sfi.dat
2011-03-12 10:27:29 . 2011-03-13 18:31:32 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Comodo
2011-03-12 10:27:25 . 2011-03-12 10:28:11 -------- d-----w- E:\Program Files\COMODO
2011-03-10 22:52:11 . 2011-03-10 22:52:11 -------- d-----w- E:\WINDOWS\system32\config\systemprofile\Ustawienia lokalne\Dane aplikacji\Sunbelt Software
2011-03-09 21:49:48 . 2004-08-23 12:50:02 32768 ----a-w- E:\WINDOWS\system32\WooDial2000.dll
2011-03-09 21:49:06 . 2011-03-09 21:49:06 -------- d-----w- E:\WINDOWS\system32\AlertModule
2011-03-09 21:49:05 . 2005-10-06 13:55:22 36864 ----a-w- E:\WINDOWS\system32\IfHelper.dll
2011-03-09 21:49:05 . 2004-08-23 12:49:56 40960 ----a-w- E:\WINDOWS\system32\FTRTSVC.exe
2011-03-09 21:47:16 . 2011-03-09 21:47:16 -------- d-sh--w- E:\WINDOWS\ftpcache
2011-03-07 22:56:39 . 2007-01-01 19:03:08 40960 ----a-r- E:\WINDOWS\system32\psfind.dll
2011-03-07 22:54:17 . 2011-03-07 22:54:17 -------- d-----w- E:\Program Files\THQ
2011-03-07 22:53:03 . 2011-03-07 22:50:28 64512 ----a-w- E:\WINDOWS\system32\drivers\Lbd.sys
2011-03-07 22:52:54 . 2011-03-07 22:52:49 98392 ----a-w- E:\WINDOWS\system32\drivers\SBREDrv.sys
2011-03-07 22:52:06 . 2006-02-07 14:40:38 204800 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iuser.dll
2011-03-07 22:52:06 . 2006-02-07 14:40:30 69715 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\ctor.dll
2011-03-07 22:52:06 . 2006-02-07 14:40:22 274432 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iscript.dll
2011-03-07 22:52:06 . 2005-11-13 22:19:18 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\DotNetInstaller.exe
2011-03-07 22:52:05 . 2011-03-07 22:52:05 331908 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\setup.dll
2011-03-07 22:52:05 . 2011-03-07 22:52:05 200836 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iGdi.dll
2011-03-07 22:52:05 . 2006-02-07 14:45:54 757760 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\11\50\Intel32\iKernel.dll
2011-03-07 22:27:05 . 2011-03-07 22:27:05 -------- d-----w- E:\Documents and Settings\Dominik\Ustawienia lokalne\Dane aplikacji\Sunbelt Software
2011-03-07 22:11:38 . 2011-03-07 22:11:39 -------- dc-h--w- E:\Documents and Settings\All Users\Dane aplikacji\{2162CCC0-3A5F-4887-B51F-CE5F195B3620}
2011-03-07 22:11:22 . 2011-03-07 22:52:57 -------- d-----w- E:\Documents and Settings\All Users\Dane aplikacji\Lavasoft
2011-03-07 22:11:22 . 2011-03-07 22:11:22 -------- d-----w- E:\Program Files\Lavasoft
2011-03-05 23:00:01 . 1999-03-23 09:12:34 299520 ----a-w- E:\WINDOWS\uninst.exe
2011-03-05 22:59:48 . 2011-03-05 22:59:48 -------- d-----w- E:\Documents and Settings\Dominik\WINDOWS
2011-03-05 22:45:32 . 2011-03-05 23:24:03 -------- d-----w- E:\Program Files\RealFlightG4
2011-03-05 22:45:30 . 2011-03-07 22:47:44 -------- d-----w- E:\Program Files\Common Files\KnifeEdge
2011-03-04 21:56:17 . 2011-03-04 21:56:26 -------- d-----w- E:\Program Files\FMS
2011-02-22 21:23:20 . 2004-04-14 10:08:00 5600 ----a-w- E:\WINDOWS\system32\drivers\WmVirHid.sys
2011-02-22 21:23:20 . 2004-04-14 10:08:00 21280 ----a-w- E:\WINDOWS\system32\drivers\WmFilter.sys
2011-02-22 21:23:20 . 2004-04-14 10:08:00 14432 ----a-w- E:\WINDOWS\system32\drivers\WmHidLo.sys
2011-02-22 21:23:20 . 2004-04-14 10:08:00 10144 ----a-w- E:\WINDOWS\system32\drivers\WmBEnum.sys
2011-02-22 21:23:19 . 2004-04-14 10:08:00 44064 ----a-w- E:\WINDOWS\system32\drivers\WmXlCore.sys
2011-02-22 21:23:18 . 2011-02-22 21:23:20 -------- d-----w- E:\Program Files\Common Files\Logitech
2011-02-22 21:23:18 . 2004-04-14 09:54:00 163840 ----a-w- E:\WINDOWS\system32\WmJoyFrc.dll
2011-02-22 21:23:08 . 2011-02-22 21:23:08 -------- d-----w- E:\Program Files\Logitech
2011-02-22 21:22:54 . 2003-02-27 15:12:48 696320 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iKernel.dll
2011-02-22 21:22:54 . 2002-12-05 13:10:32 155648 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iuser.dll
2011-02-22 21:22:54 . 2002-12-02 14:22:44 5632 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2011-02-22 21:22:54 . 2002-12-02 12:33:04 57344 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\ctor.dll
2011-02-22 21:22:54 . 2002-12-02 12:33:04 237568 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iscript.dll
2011-02-22 21:22:30 . 2011-02-22 21:22:30 282756 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\setup.dll
2011-02-22 21:22:30 . 2011-02-22 21:22:30 163972 ----a-w- E:\Program Files\Common Files\InstallShield\Professional\RunTime\0701\Intel32\iGdi.dll


(((((((((((((((((((((((((((((((((((((((( Sekcja Find3M ))))))))))))))))))))))))))))))))))))))))))))))))))))

2011-02-22 22:19:01 . 2010-09-28 20:36:22 445016 ----a-w- E:\WINDOWS\system32\wrap_oal.dll
2011-02-22 22:19:01 . 2003-03-28 03:24:48 109144 ----a-w- E:\WINDOWS\system32\OpenAL32.dll
2011-02-09 13:53:59 . 2004-08-04 12:00:00 270848 ----a-w- E:\WINDOWS\system32\sbe.dll
2011-02-09 13:53:59 . 2004-08-04 12:00:00 186880 ----a-w- E:\WINDOWS\system32\encdec.dll
2011-02-02 20:40:23 . 2010-09-01 20:23:01 472808 ----a-w- E:\WINDOWS\system32\deployJava1.dll
2011-02-02 18:19:39 . 2010-09-01 20:23:01 73728 ----a-w- E:\WINDOWS\system32\javacpl.cpl
2011-02-02 07:58:35 . 2010-08-08 10:39:56 2067456 ----a-w- E:\WINDOWS\system32\mstscax.dll
2011-01-27 11:57:06 . 2010-08-08 10:39:56 677888 ----a-w- E:\WINDOWS\system32\mstsc.exe
2011-01-21 14:44:11 . 2004-08-04 12:00:00 440832 ----a-w- E:\WINDOWS\system32\shimgvw.dll
2011-01-07 14:09:02 . 2004-08-04 12:00:00 290048 ----a-w- E:\WINDOWS\system32\atmfd.dll
2011-01-06 16:37:04 . 2011-01-06 16:37:04 94784 ----a-w- E:\WINDOWS\system32\drivers\inspect.sys
2011-01-06 16:37:04 . 2011-01-06 16:37:04 27576 ----a-w- E:\WINDOWS\system32\drivers\cmdhlp.sys
2011-01-06 16:37:02 . 2011-01-06 16:37:02 239368 ----a-w- E:\WINDOWS\system32\drivers\cmdGuard.sys
2011-01-06 16:37:02 . 2011-01-06 16:37:02 15592 ----a-w- E:\WINDOWS\system32\drivers\cmderd.sys
2011-01-05 02:46:12 . 2011-01-31 21:15:02 1112576 ----a-w- E:\WINDOWS\system32\ativvamv.dll
2010-12-31 14:04:12 . 2004-08-04 12:00:00 1855232 ----a-w- E:\WINDOWS\system32\win32k.sys
2010-12-29 00:42:04 . 2010-12-29 00:42:04 285480 ----a-w- E:\WINDOWS\system32\guard32.dll
2010-12-22 12:34:22 . 2004-08-04 12:00:00 301568 ----a-w- E:\WINDOWS\system32\kerberos.dll
2010-12-20 22:14:34 . 2004-08-04 12:00:00 669696 ----a-w- E:\WINDOWS\system32\wininet.dll
2010-12-20 22:14:34 . 2004-08-04 12:00:00 61952 ----a-w- E:\WINDOWS\system32\tdc.ocx
2010-12-20 22:14:32 . 2004-08-04 12:00:00 81920 ----a-w- E:\WINDOWS\system32\ieencode.dll
2010-12-20 22:13:08 . 2004-08-04 12:00:00 370688 ----a-w- E:\WINDOWS\system32\html.iec
2010-12-20 17:25:52 . 2004-08-04 12:00:00 732160 ----a-w- E:\WINDOWS\system32\lsasrv.dll


------- Sigcheck -------

[7] 2008-04-14 17:20:14 . 8A7426E69FFA30EE4DC76CA3E3999121 . 822272 . . [2001.12.4414.700] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\comres.dll
[-] 2008-04-14 17:20:14 . 9FDCD266057ABC7F07CC8E04978945C4 . 1524224 . . [2001.12.4414.700] . . E:\WINDOWS\ServicePackFiles\i386\comres.dll
[-] 2008-04-14 17:20:14 . 9FDCD266057ABC7F07CC8E04978945C4 . 1524224 . . [2001.12.4414.700] . . E:\WINDOWS\system32\comres.dll
[7] 2004-08-04 12:00:00 . 8797D059EEBD5101CC6257EE2D6B900A . 822272 . . [2001.12.4414.258] . . E:\WINDOWS\$NtServicePackUninstall$\comres.dll

[7] 2008-04-14 17:21:48 . 51FD2E13D723857B9CA239AE77150F48 . 510464 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\winlogon.exe
[-] 2008-04-14 17:21:48 . 335813EACD16E84F3047A3326F6E5473 . 549888 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\ServicePackFiles\i386\winlogon.exe
[-] 2008-04-14 17:21:48 . 335813EACD16E84F3047A3326F6E5473 . 549888 . . [5.1.2600.5512 (xpsp.080413-2113)] . . E:\WINDOWS\system32\winlogon.exe
[7] 2004-08-04 12:00:00 . 0344407089B08548D4FEBA62BB0F32D0 . 504832 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\winlogon.exe

[7] 2008-04-14 17:20:56 . A435C5C069AFD901751AC323AD238793 . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\user32.dll
[-] 2008-04-14 17:20:56 . 3AA91200D0D08A3B69B036C15A340E5C . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\user32.dll
[-] 2008-04-14 17:20:56 . 3AA91200D0D08A3B69B036C15A340E5C . 580096 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\system32\user32.dll
[7] 2004-08-04 12:00:00 . 0C81764F50F32D376E6E4B9E9F4B01A0 . 578560 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\user32.dll

[-] 2008-04-14 17:21:16 . 866FD92C15462CB18786EF091FA187AB . 1542144 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\explorer.exe
[7] 2008-04-14 17:21:16 . C791ED9EAC5E76D9525E157B1D7A599A . 1035264 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\explorer.exe
[-] 2008-04-14 17:21:16 . 866FD92C15462CB18786EF091FA187AB . 1542144 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\explorer.exe
[7] 2004-08-04 12:00:00 . 379098A96E6C165B659DE7E4328010EA . 1033728 . . [6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\explorer.exe

[7] 2008-04-14 17:21:10 . 1BD41EDA5B869AFC99895C39A8DE36E1 . 15360 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\ctfmon.exe
[-] 2008-04-14 17:21:10 . 0277E1A3E8B337555A45943808451981 . 40448 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\ctfmon.exe
[-] 2008-04-14 17:21:10 . 0277E1A3E8B337555A45943808451981 . 40448 . . [5.1.2600.5512 (xpsp.080413-2105)] . . E:\WINDOWS\system32\ctfmon.exe
[7] 2004-08-04 12:00:00 . CBFA30492D70CE3938D8A7783D0C0436 . 15360 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\ctfmon.exe

[7] 2008-04-14 17:20:32 . 2DEE3DC6EB17D7BB774CE05695BA26D6 . 346112 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\hnetcfg.dll
[-] 2008-04-14 17:20:32 . 572B0A653990AFE6B71D38D7DD2F202D . 370688 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\ServicePackFiles\i386\hnetcfg.dll
[-] 2008-04-14 17:20:32 . 572B0A653990AFE6B71D38D7DD2F202D . 370688 . . [5.1.2600.5512 (xpsp.080413-0852)] . . E:\WINDOWS\system32\hnetcfg.dll
[7] 2004-08-04 12:00:00 . E2012CF69E88C83118472DE4945A27E5 . 346624 . . [5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\hnetcfg.dll

[7] 2008-04-14 17:21:19 . AF3C3F051675CF688EAD4065FE11542D . 93184 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\NiwradSoft Shell Pack\Backup\iexplore.exe
[-] 2008-04-14 17:21:19 . EA912EC6E6D51EAB7D36507B4DD8DFA5 . 102912 . . [6.00.2900.5512 (xpsp.080413-2105)] . . E:\WINDOWS\ServicePackFiles\i386\iexplore.exe
[7] 2004-08-04 12:00:00 . 94E790CB14279FF3EA244DAF0864B8A6 . 93184 . . [6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)] . . E:\WINDOWS\$NtServicePackUninstall$\iexplore.exe

((((((((((((((((((((((((((((((((((((( Wpisy startowe rejestru ))))))))))))))))))))))))))))))))))))))))))))))))))


*Uwaga* puste wpisy oraz domyślne, prawidłowe wpisy nie są pokazane
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Gainward"="E:\Program Files\EXPERTool ATI\TBPanel.exe" [2009-04-09 08:29:34 2304552]
"Sony Ericsson PC Companion"="E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCompanion.exe" [2011-01-24 10:42:42 427008]
"uTorrent"="E:\Program Files\uTorrent\uTorrent.exe" [2011-03-12 21:17:27 399224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTSysVol"="E:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe" [2005-10-31 08:51:52 57344]
"P17Helper"="P17.dll" [2005-05-03 11:38:42 64512]
"UpdReg"="E:\WINDOWS\UpdReg.EXE" [2000-05-10 23:00:00 90112]
"WinampAgent"="E:\Program Files\Winamp\winampa.exe" [2008-01-15 22:54:54 37376]
"HP Software Update"="E:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-03-11 19:34:40 49152]
"Ai Nap"="E:\Program Files\ASUS\AI Suite\AiNap\AiNap.exe" [2009-07-01 18:23:52 1435136]
"QFan Help"="E:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe" [2009-07-01 18:19:18 601088]
"Cpu Level Up help"="E:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe" [2007-11-30 18:03:28 881152]
"NeroFilterCheck"="E:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 08:50:42 155648]
"QuickTime Task"="E:\Program Files\QuickTime\QTTask.exe" [2008-09-06 14:09:14 413696]
"TkBellExe"="E:\Program Files\Real\RealPlayer\update\realsched.exe" [2010-11-05 23:05:49 274608]
"Adobe Reader Speed Launcher"="E:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2011-01-31 08:44:43 35760]
"Adobe ARM"="E:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2010-09-20 22:07:44 932288]
"StartCCC"="E:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-08-25 20:37:00 98304]
"ISUSPM Startup"="E:\PROGRA~1\COMMON~1\INSTAL~1\UpdateService\ISUSPM.exe" [2004-06-16 05:03:26 221184]
"ISUSScheduler"="E:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" [2004-06-16 05:03:04 81920]
"CorelDRAW Graphics Suite 11b"="E:\Program Files\Corel\Corel Graphics 12\Languages\PL\Programs\Registration.exe" [2004-06-22 23:20:26 733184]
"COMODO Internet Security"="E:\Program Files\COMODO\COMODO Internet Security\cfp.exe" [2011-01-17 22:30:16 2548552]
"COMODO"="E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLA.exe" [2011-03-02 13:31:04 210648]
"CPA"="E:\Program Files\COMODO\COMODO GeekBuddy\VALA.exe" [2011-03-02 13:31:08 184344]
"SunJavaUpdateSched"="E:\Program Files\Common Files\Java\Java Update\jusched.exe" [2010-10-29 13:49:28 249064]
"UnlockerAssistant"="E:\Program Files\Unlocker\UnlockerAssistant.exe" [2006-09-07 17:19:27 15872]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="E:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 17:21:10 40448]

E:\Documents and Settings\All Users\Menu Start\Programy\Autostart\
HP Digital Imaging Monitor.lnk - E:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2007-3-11 210520]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoFavoritesMenu"= 1 (0x1)

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=E:\WINDOWS\system32\guard32.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CLPSLS]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
@="Driver"

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"E:\\Program Files\\Ubisoft\\Ubisoft Game Launcher\\UbisoftGameLauncher.exe"=
"C:\\Gry\\Assasin Creed 2\\AssassinsCreedIIGame.exe"=
"C:\\Gry\\Assasin Creed 2\\AssassinsCreedII.exe"=
"C:\\Gry\\Assasin Creed 2\\UPlayBrowser.exe"=
"C:\\Gry\\StarCraft II\\StarCraft II.exe"=
"E:\\Program Files\\Gadu-Gadu\\gg.exe"=
"E:\\Program Files\\Gadu-Gadu 10\\gg.exe"=
"C:\\Gry\\StarCraft II\\Versions\\Base15405\\SC2.exe"=
"E:\\Program Files\\BearShare Applications\\BearShare\\BearShare.exe"=
"E:\\WINDOWS\\system32\\PnkBstrA.exe"=
"E:\\WINDOWS\\system32\\PnkBstrB.exe"=
"C:\\Gry\\Medal of Honor\\Binaries\\moh.exe"=
"C:\\Gry\\Medal of Honor\\Binaries\\MoHUpdater.exe"=
"C:\\Gry\\Medal of Honor\\MP\\mohmpgame.exe"=
"C:\\Gry\\Medal of Honor\\MP\\mohmpupdater.exe"=
"E:\\Program Files\\Sony Ericsson\\Update Service\\Update Service.exe"=
"C:\\Gry\\Call of Duty - Black Ops\\BlackOps.exe"=
"E:\\Program Files\\AVG\\AVG10\\avgmfapx.exe"=
"C:\\Gry\\Grid\\GRID.exe"=
"C:\\Gry\\F1 2010\\f1_2010.exe"=
"C:\\Gry\\F1 2010\\F1_2010_game.exe"=
"E:\\Program Files\\uTorrent\\uTorrent.exe"=
"C:\\Gry\\Battelfield 2\\BF2.exe"=
"E:\\Program Files\\GameSpy Arcade\\Aphex.exe"=

R0 Lbd;Lbd;E:\WINDOWS\system32\drivers\Lbd.sys [2011-03-07 23:53:03 64512]
R0 sptd;sptd;E:\WINDOWS\system32\drivers\sptd.sys [2010-08-08 16:28:25 717296]
R1 cmderd;COMODO Internet Security Eradication Driver;E:\WINDOWS\system32\drivers\cmderd.sys [2011-01-06 17:37:02 15592]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;E:\WINDOWS\system32\drivers\cmdGuard.sys [2011-01-06 17:37:02 239368]
R2 CLPSLS;COMODO livePCsupport Service;E:\Program Files\COMODO\COMODO GeekBuddy\CLPSLS.exe [2011-03-02 14:31:06 156576]
R2 cpuz133;cpuz133;E:\WINDOWS\system32\drivers\cpuz133_x32.sys [2010-08-20 14:50:30 20968]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;E:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2010-12-03 10:05:32 1405384]
R3 seehcri;Sony Ericsson seehcri Device Driver;E:\WINDOWS\system32\drivers\seehcri.sys [2010-11-05 21:53:08 27632]
S2 IKANLOADER2;General Purpose USB Driver (e4ldr.sys);E:\WINDOWS\system32\Drivers\e4ldr.sys --> E:\WINDOWS\system32\Drivers\e4ldr.sys [?]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;E:\WINDOWS\system32\drivers\AtihdXP3.sys --> E:\WINDOWS\system32\drivers\AtihdXP3.sys [?]
S3 e4usbaw;USB ADSL2 WAN Adapter;E:\WINDOWS\system32\DRIVERS\e4usbaw.sys --> E:\WINDOWS\system32\DRIVERS\e4usbaw.sys [?]
S3 ggflt;SEMC USB Flash Driver Filter;E:\WINDOWS\system32\drivers\ggflt.sys [2010-10-10 20:51:06 13224]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;E:\Program Files\Lavasoft\Ad-Aware\kernexplorer.sys [2010-12-03 10:05:33 15232]
S3 LgBttPort;LGE Bluetooth TransPort;E:\WINDOWS\system32\DRIVERS\lgbtport.sys --> E:\WINDOWS\system32\DRIVERS\lgbtport.sys [?]
S3 lgbusenum;LG Bluetooth Bus Enumerator;E:\WINDOWS\system32\DRIVERS\lgbtbus.sys --> E:\WINDOWS\system32\DRIVERS\lgbtbus.sys [?]
S3 lgmdbus;LG Mobile driver (WDM);E:\WINDOWS\system32\DRIVERS\lgmdbus.sys --> E:\WINDOWS\system32\DRIVERS\lgmdbus.sys [?]
S3 lgmdmdfl;LG Mobile USB WMC Modem Filter;E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmdfl.sys [?]
S3 lgmdmdm;LG Mobile USB WMC Modem Driver;E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmdm.sys [?]
S3 lgmdmgmt;LG Mobile USB WMC Device Management Drivers (WDM);E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys --> E:\WINDOWS\system32\DRIVERS\lgmdmgmt.sys [?]
S3 lgmdobex;LG Mobile USB WMC OBEX Interface;E:\WINDOWS\system32\DRIVERS\lgmdobex.sys --> E:\WINDOWS\system32\DRIVERS\lgmdobex.sys [?]
S3 LGVMODEM;LGE Virtual Modem;E:\WINDOWS\system32\DRIVERS\lgvmodem.sys --> E:\WINDOWS\system32\DRIVERS\lgvmodem.sys [?]
S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;E:\Program Files\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-10 20:41:39 155344]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc

Zawartość folderu 'Zaplanowane zadania'

2011-03-18 E:\WINDOWS\Tasks\Ad-Aware Update (Weekly).job
- E:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2010-12-03 09:05:33 . 2011-03-07 22:49:49]

2011-03-18 E:\WINDOWS\Tasks\RealUpgradeLogonTaskS-1-5-21-796845957-527237240-839522115-1004.job
- E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46]

2011-03-18 E:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-1004.job
- E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46]

2011-03-13 E:\WINDOWS\Tasks\RealUpgradeScheduledTaskS-1-5-21-796845957-527237240-839522115-500.job
- E:\Program Files\Real\RealUpgrade\realupgrade.exe [2010-10-20 17:32:46 . 2010-10-20 17:32:46]


------- Skan uzupełniający -------

uStart Page = hxxp://www.optimus.pl
FF - ProfilePath - E:\Documents and Settings\Dominik\Dane aplikacji\Mozilla\Firefox\Profiles\lwlelv6k.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.google.pl/
FF - prefs.js: keyword.URL - hxxp://search.avg.com/route/?d=4c5e9a68&v=6.010.006.004&i=23&tp=ab&iy=&ychte=us&lng=pl&q=
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - E:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - E:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - E:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
FF - Ext: Java Quick Starter: jqs@sun.com - E:\Program Files\Java\jre6\lib\deploy\jqs\ff
FF - Ext: RealPlayer Browser Record Plugin: {ABDE892B-13A8-4d1b-88E6-365A6E755758} - E:\Documents and Settings\All Users\Dane aplikacji\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}

- - - - USUNIĘTO PUSTE WPISY - - - -

BHO-{DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - E:\PROGRA~1\ALLPLA~1\Iplex\IplexToALLPlayer.dll
WebBrowser-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
HKCU-Run-ALLUpdate - E:\Program Files\ALLPlayer\ALLUpdate.exe
AddRemove-{1ecb9828-38a7-424f-9280-730f11ebbb96} - E:\Program Files\InstallShield Installation Information\{1ECB9828-38A7-424F-9280-730F11EBBB96}\setup.exe[/log]

Tomek01
komentarz
komentarz

Większość wykrytych zagrożeń w Mbam to cracki. Usuń to zbędne.
Nie dopatrywałbym się przyczyn w wirusach.

Zabezpiecz się przed atakiem robaków. Użyj [url="http://www.dobreprogramy.pl/Windows-Worms-Doors-Cleaner,Program,Windows,11744.html"][b][color="#0000FF"]WWDC[/color][/b][/url], pozamykaj robaczywe porty. Tak aby znaczki były na zielono (dopuszczalny jest jeden żółty).

domin46
komentarz
komentarz

To w takim razie poproszę o pomoc z działu system xp.
Bardzo dziękuję za pomoc w oczyszczeniu mojego pc z wirusów.
Pozdrawiam. Dominik.

Wciąż szukasz rozwiązania problemu? Napisz teraz na forum!

Możesz zadać pytanie bez konieczności rejestracji - wystarczy, że wypełnisz formularz.

×
×
  • Dodaj nową pozycję...

Powiadomienie o plikach cookie

Strona wykorzystuje pliki cookies w celu prawidłowego świadczenia usług i wygody użytkowników. Warunki przechowywania i dostępu do plików cookies możesz zmienić w ustawieniach przeglądarki.