Advertisement
Guest User

Untitled

a guest
Jul 19th, 2012
109
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 50.48 KB | None | 0 0
  1. OTL logfile created on: 2012-07-19 11:01:14 - Run 1
  2. OTL by OldTimer - Version 3.2.54.0 Folder = C:\Documents and Settings\Przemek\Moje dokumenty\Pobieranie
  3. Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
  4. Internet Explorer (Version = 7.0.5730.13)
  5. Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
  6.  
  7. 1023,48 Mb Total Physical Memory | 253,54 Mb Available Physical Memory | 24,77% Memory free
  8. 2,40 Gb Paging File | 1,66 Gb Available in Paging File | 69,18% Paging File free
  9. Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
  10.  
  11. %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
  12. Drive C: | 29,29 Gb Total Space | 8,01 Gb Free Space | 27,35% Space Free | Partition Type: NTFS
  13. Drive D: | 1,84 Gb Total Space | 0,34 Gb Free Space | 18,55% Space Free | Partition Type: NTFS
  14. Drive E: | 97,65 Gb Total Space | 15,06 Gb Free Space | 15,42% Space Free | Partition Type: NTFS
  15. Drive F: | 17,69 Gb Total Space | 5,14 Gb Free Space | 29,08% Space Free | Partition Type: FAT32
  16. Drive G: | 86,33 Gb Total Space | 5,39 Gb Free Space | 6,25% Space Free | Partition Type: NTFS
  17.  
  18. Computer Name: SPECIAL-XP | User Name: Przemek | Logged in as Administrator.
  19. Boot Mode: Normal | Scan Mode: Current user
  20. Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: Off | File Age = 7 Days
  21.  
  22. [color=#E56717]========== Processes (SafeList) ==========[/color]
  23.  
  24. PRC - [2012-07-19 11:00:13 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Przemek\Moje dokumenty\Pobieranie\OTL.exe
  25. PRC - [2012-07-19 09:22:15 | 000,913,888 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
  26. PRC - [2012-07-03 18:21:30 | 004,273,976 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
  27. PRC - [2012-07-03 18:21:29 | 000,044,808 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
  28. PRC - [2012-06-27 12:29:26 | 001,996,200 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe
  29. PRC - [2012-06-27 12:29:22 | 001,385,896 | ---- | M] (LogMeIn Inc.) -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe
  30. PRC - [2012-06-10 18:42:16 | 001,242,448 | ---- | M] (Valve Corporation) -- G:\Program Files\Steam\Steam.exe
  31. PRC - [2012-06-06 21:33:42 | 001,564,872 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
  32. PRC - [2012-05-20 15:22:13 | 000,880,496 | ---- | M] (BitTorrent, Inc.) -- C:\Program Files\uTorrent\uTorrent.exe
  33. PRC - [2012-04-04 18:47:32 | 000,161,664 | ---- | M] (Oracle Corporation) -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
  34. PRC - [2012-03-15 04:05:14 | 003,090,056 | ---- | M] (Trend Media Corporation Limited) -- C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe
  35. PRC - [2012-03-08 21:54:13 | 000,092,320 | ---- | M] (Speedbit Ltd.) -- C:\Program Files\Common Files\SpeedBit\SBUpdate\SBUpdate.exe
  36. PRC - [2012-01-01 16:20:07 | 000,126,976 | ---- | M] () -- C:\WINDOWS\system32\UAService7.exe
  37. PRC - [2011-10-25 16:59:16 | 000,244,960 | ---- | M] () -- C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
  38. PRC - [2011-06-02 14:10:09 | 003,509,248 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe
  39. PRC - [2010-12-13 15:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
  40. PRC - [2008-04-14 22:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
  41. PRC - [2007-09-04 20:25:44 | 000,131,072 | ---- | M] (NVIDIA) -- C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
  42. PRC - [2007-08-09 09:27:52 | 000,073,728 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe
  43. PRC - [2007-03-06 11:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe
  44. PRC - [2007-03-03 14:48:28 | 000,067,056 | ---- | M] (Ulead Systems, Inc.) -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
  45.  
  46.  
  47. [color=#E56717]========== Modules (No Company Name) ==========[/color]
  48.  
  49. MOD - [2012-07-19 09:54:38 | 000,200,704 | ---- | M] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Temp\toip0_tmp.exe
  50. MOD - [2012-07-19 09:22:15 | 002,003,424 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
  51. MOD - [2012-07-19 09:06:41 | 001,784,320 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\12071901\algo.dll
  52. MOD - [2012-07-12 14:26:19 | 009,465,032 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll
  53. MOD - [2012-06-26 11:18:55 | 020,313,384 | ---- | M] () -- G:\Program Files\Steam\bin\libcef.dll
  54. MOD - [2012-06-26 11:18:49 | 001,099,576 | ---- | M] () -- G:\Program Files\Steam\bin\avcodec-53.dll
  55. MOD - [2012-06-26 11:18:49 | 000,895,312 | ---- | M] () -- G:\Program Files\Steam\bin\chromehtml.dll
  56. MOD - [2012-06-26 11:18:49 | 000,190,776 | ---- | M] () -- G:\Program Files\Steam\bin\avformat-53.dll
  57. MOD - [2012-06-26 11:18:49 | 000,123,192 | ---- | M] () -- G:\Program Files\Steam\bin\avutil-51.dll
  58. MOD - [2012-03-15 04:06:50 | 000,059,016 | ---- | M] () -- C:\Program Files\FlashGet Network\FlashGet 3\zlib.dll
  59. MOD - [2012-03-15 04:00:08 | 000,262,144 | ---- | M] () -- C:\Program Files\FlashGet Network\FlashGet 3\ckcore.dll
  60. MOD - [2012-03-15 04:00:08 | 000,249,856 | ---- | M] () -- C:\Program Files\FlashGet Network\FlashGet 3\BugReport.dll
  61. MOD - [2012-03-08 21:54:14 | 000,084,480 | ---- | M] () -- C:\WINDOWS\system32\EasyHook32.dll
  62. MOD - [2012-01-08 15:41:12 | 000,093,696 | ---- | M] () -- C:\Program Files\FileZilla FTP Client\fzshellext.dll
  63. MOD - [2012-01-01 16:20:07 | 000,126,976 | ---- | M] () -- C:\WINDOWS\system32\UAService7.exe
  64. MOD - [2011-10-25 16:59:16 | 000,244,960 | ---- | M] () -- C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe
  65. MOD - [2011-08-18 14:23:40 | 000,026,112 | ---- | M] () -- C:\WINDOWS\system32\VNCpm.dll
  66. MOD - [2011-06-02 14:10:09 | 003,509,248 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe
  67. MOD - [2011-05-20 16:52:09 | 000,901,632 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ProfileHint\ProfileHint.dll
  68. MOD - [2011-04-12 15:14:04 | 000,063,488 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_AnalyzeGesturesInRight.dll
  69. MOD - [2011-03-29 15:09:54 | 000,117,760 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_Wheel4D.dll
  70. MOD - [2011-03-21 19:33:17 | 000,999,424 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\TrayIconWebAdvertisement\TrayIconWebAdvertisement.dll
  71. MOD - [2011-03-17 10:11:23 | 002,327,040 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\ScreenCapture\ScreenCapture.dll
  72. MOD - [2011-01-09 20:45:55 | 000,088,064 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_MouseDeviceManager.dll
  73. MOD - [2010-12-03 14:43:54 | 000,943,104 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\KeySettingRemind\KeySettingRemind.dll
  74. MOD - [2010-12-02 17:56:52 | 000,815,104 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\Data\X7_5Mode\Forms\OSD_Text\OSD_Text.dll
  75. MOD - [2010-11-01 20:16:00 | 000,062,976 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_AnalyzeGesturesInOne.dll
  76. MOD - [2010-09-20 14:18:57 | 000,085,504 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_ZoomControl.dll
  77. MOD - [2010-09-20 14:18:54 | 000,054,272 | ---- | M] () -- C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\dll\DLL_ScrollbarControl.dll
  78. MOD - [2008-04-14 22:50:38 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
  79.  
  80.  
  81. [color=#E56717]========== Win32 Services (SafeList) ==========[/color]
  82.  
  83. SRV - [2012-07-19 09:22:15 | 000,113,120 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
  84. SRV - [2012-07-12 14:26:19 | 000,250,056 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
  85. SRV - [2012-07-03 18:21:29 | 000,044,808 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
  86. SRV - [2012-06-27 12:29:22 | 001,385,896 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
  87. SRV - [2012-06-07 19:12:14 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
  88. SRV - [2012-04-04 18:47:32 | 000,161,664 | ---- | M] (Oracle Corporation) [Auto | Running] -- C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe -- (JavaQuickStarterService)
  89. SRV - [2012-01-01 16:20:07 | 000,126,976 | ---- | M] () [Auto | Running] -- C:\WINDOWS\system32\UAService7.exe -- (UserAccess7) SecuROM User Access Service (V7)
  90. SRV - [2011-10-25 16:59:16 | 000,244,960 | ---- | M] () [Auto | Running] -- C:\Program Files\StartNow Toolbar\ToolbarUpdaterService.exe -- (Updater Service for StartNow Toolbar)
  91. SRV - [2011-08-18 14:37:42 | 001,696,496 | ---- | M] (RealVNC Ltd) [Auto | Stopped] -- C:\Program Files\RealVNC\VNC4\winvnc4.exe -- (WinVNC4)
  92. SRV - [2011-03-21 17:14:38 | 001,126,400 | ---- | M] (Locktime Software) [Auto | Stopped] -- C:\Program Files\NetLimiter 3\nlsvc.exe -- (nlsvc)
  93. SRV - [2011-03-16 11:42:06 | 000,407,336 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
  94. SRV - [2010-12-13 15:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
  95. SRV - [2007-09-04 20:25:44 | 000,131,072 | ---- | M] (NVIDIA) [Auto | Running] -- C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe -- (nTuneService)
  96. SRV - [2007-08-09 09:27:52 | 000,073,728 | ---- | M] (HP) [Auto | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
  97. SRV - [2007-03-06 11:35:02 | 000,198,168 | ---- | M] (InterVideo Inc.) [Auto | Running] -- C:\Program Files\Common Files\InterVideo\DeviceService\DevSvc.exe -- (Capture Device Service)
  98. SRV - [2007-03-03 14:48:28 | 000,067,056 | ---- | M] (Ulead Systems, Inc.) [Auto | Running] -- C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe -- (UleadBurningHelper)
  99. SRV - [2005-10-03 12:31:32 | 000,058,096 | ---- | M] (3am Labs, Inc.) [Disabled | Stopped] -- C:\Program Files\LogMeIn\ramaint.exe -- (LMIMaint)
  100. SRV - [2005-10-03 12:31:04 | 001,565,424 | ---- | M] (3am Labs, Inc.) [Disabled | Stopped] -- C:\Program Files\LogMeIn\LogMeIn.exe -- (LogMeIn)
  101.  
  102.  
  103. [color=#E56717]========== Driver Services (SafeList) ==========[/color]
  104.  
  105. DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
  106. DRV - File not found [Kernel | On_Demand | Stopped] -- L:\NTGLM7X.sys -- (SetupNTGLM7X)
  107. DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
  108. DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
  109. DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
  110. DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
  111. DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
  112. DRV - File not found [Kernel | On_Demand | Stopped] -- C:\Documents and Settings\Bee!\Dane aplikacji\NVIDIA\HWAccess.sys -- (NVIDIAHWAccess)
  113. DRV - File not found [Kernel | On_Demand | Stopped] -- L:\NTACCESS.sys -- (NTACCESS)
  114. DRV - File not found [Kernel | On_Demand | Stopped] -- L:\install4\MSICPL.sys -- (MSICPL)
  115. DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
  116. DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
  117. DRV - File not found [Kernel | On_Demand | Stopped] -- L:\INSTALL\GMSIPCI.SYS -- (GMSIPCI)
  118. DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\EagleNT.sys -- (EagleNT)
  119. DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
  120. DRV - [2012-07-03 18:21:54 | 000,054,232 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswTdi.sys -- (aswTdi)
  121. DRV - [2012-07-03 18:21:53 | 000,721,000 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\System32\drivers\aswSnx.sys -- (aswSnx)
  122. DRV - [2012-07-03 18:21:53 | 000,353,688 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswSP.sys -- (aswSP)
  123. DRV - [2012-07-03 18:21:53 | 000,097,608 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswmon2.sys -- (aswMon2)
  124. DRV - [2012-07-03 18:21:53 | 000,035,928 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aswRdr.sys -- (aswRdr)
  125. DRV - [2012-07-03 18:21:53 | 000,021,256 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
  126. DRV - [2012-07-03 18:21:52 | 000,025,256 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\System32\drivers\aavmker4.sys -- (Aavmker4)
  127. DRV - [2012-06-19 16:54:20 | 006,141,584 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM)
  128. DRV - [2011-11-07 18:05:23 | 000,232,512 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
  129. DRV - [2011-10-08 12:06:48 | 000,014,656 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
  130. DRV - [2011-08-18 14:23:40 | 000,004,608 | ---- | M] (RealVNC Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vncmirror.sys -- (vncmirror)
  131. DRV - [2011-03-21 17:44:26 | 005,230,088 | ---- | M] (Locktime Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nlndis.sys -- (NLNdisPT)
  132. DRV - [2011-03-21 17:44:26 | 005,230,088 | ---- | M] (Locktime Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nlndis.sys -- (NLNdisMP)
  133. DRV - [2011-03-21 17:44:24 | 005,281,672 | ---- | M] (Locktime Software) [Kernel | System | Running] -- C:\Program Files\NetLimiter 3\nltdi.sys -- (nltdi)
  134. DRV - [2011-03-18 18:08:54 | 000,025,240 | ---- | M] (Almico Software) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan)
  135. DRV - [2010-12-13 15:37:46 | 000,030,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nx6000.sys -- (MSHUSBVideo)
  136. DRV - [2010-11-09 16:35:30 | 000,021,992 | ---- | M] (CPUID) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz135_x32.sys -- (cpuz135)
  137. DRV - [2009-11-18 07:17:00 | 001,395,800 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Monfilt.sys -- (Monfilt)
  138. DRV - [2009-11-18 07:16:00 | 001,691,480 | ---- | M] (Creative) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Ambfilt.sys -- (Ambfilt)
  139. DRV - [2009-03-18 17:35:40 | 000,026,176 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
  140. DRV - [2008-05-02 08:48:55 | 000,062,208 | ---- | M] (Silicon Image, Inc.) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\si3112.sys -- (Si3112)
  141. DRV - [2008-05-02 08:48:37 | 000,105,344 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\nvatabus.sys -- (nvatabus)
  142. DRV - [2007-09-04 20:26:32 | 000,029,696 | ---- | M] (NVidia Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\nvoclock.sys -- (NVR0Dev)
  143. DRV - [2006-11-27 16:33:54 | 000,019,968 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
  144. DRV - [2006-11-27 16:33:50 | 000,058,368 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
  145. DRV - [2006-10-18 16:31:38 | 000,105,472 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvata.sys -- (nvata)
  146. DRV - [2006-07-02 00:32:26 | 000,043,520 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
  147. DRV - [2006-06-27 14:24:16 | 000,031,744 | ---- | M] (AMD, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AmdTools.sys -- (AmdTools)
  148. DRV - [2005-10-03 12:31:40 | 000,011,112 | ---- | M] (3am Labs Ltd.) [Kernel | Auto | Running] -- C:\Program Files\LogMeIn\rainfo.sys -- (LMIInfo)
  149. DRV - [1996-04-03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)
  150.  
  151.  
  152. [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
  153.  
  154.  
  155. [color=#E56717]========== Internet Explorer ==========[/color]
  156.  
  157. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
  158. IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.facemoods.com/?a=ddr&s={searchTerms}&f=4
  159. IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
  160. IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
  161. IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
  162.  
  163. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.v9.com/fft/fft_1325876216_641586
  164. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://search.speedbit.com/?aff=svd_VA
  165. IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = http://www.ask.com/?l=dis&o=14597
  166. IE - HKCU\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
  167. IE - HKCU\..\SearchScopes\{0388404D-6072-4CEB-B521-8F090FEAEE57}: "URL" = http://klit.startnow.com/s/?q={searchTerms}&src=defsearch&provider=&provider_name=yahoo&provider_code=&partner_id=693&product_id=741&affiliate_id=&channel=&toolbar_id=200&toolbar_version=2.4.0&install_country=PL&install_date=20111211&user_guid=283EDA3F935B478D90862DA2D9B45D6A&machine_id=793b33a845c2bb1d809602c98252d60c&browser=IE&os=win&os_version=5.1-x86-SP3&iesrc={referrer:source}
  168. IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
  169. IE - HKCU\..\SearchScopes\{0D7562AE-8EF6-416d-A838-AB665251703A}: "URL" = http://start.facemoods.com/?a=ddr&s={searchTerms}&f=4
  170. IE - HKCU\..\SearchScopes\{171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=FF&o=14594&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=FV&apn_dtid=YYYYYYYYPL&apn_uid=9b5251e5-8890-44c0-93e4-347aa6dc8184&apn_sauid=819496A9-C99A-467A-AF3F-728EF9987371
  171. IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://www.google.com.br/cse?q={searchTerms}&cx=partner-pub-2489206448026482%3A8691855295&tbm=&ie=UTF-8#gsc.tab=0&gsc.q={searchTerms}
  172. IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7PRFB_plPL452
  173. IE - HKCU\..\SearchScopes\{7F4EFF06-7032-458e-AE16-1C1D8255C28A}: "URL" = http://search.speedbit.com/search.aspx?aff=svd_VA&q={searchTerms}
  174. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
  175. IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
  176.  
  177. [color=#E56717]========== FireFox ==========[/color]
  178.  
  179. FF - prefs.js..browser.search.defaultenginename: "Speedbit Search"
  180. FF - prefs.js..browser.search.defaulturl: "http://search.speedbit.com/search.aspx?aff=svd_VA&q="
  181. FF - prefs.js..browser.search.order.1: "Speedbit Search"
  182. FF - prefs.js..browser.search.selectedEngine: "Speedbit Search"
  183. FF - prefs.js..browser.startup.homepage: "http://search.speedbit.com/?aff=svd_VA"
  184. FF - prefs.js..keyword.URL: "http://search.speedbit.com/search.aspx?aff=svd_VA&q="
  185. FF - user.js - File not found
  186.  
  187. FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_3_300_265.dll ()
  188. FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
  189. FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: E:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
  190. FF - HKLM\Software\MozillaPlugins\@idsoftware.com/QuakeLive: C:\Documents and Settings\All Users\Dane aplikacji\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
  191. FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.4.1: C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
  192. FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.4.1: C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
  193. FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll ( Microsoft Corporation)
  194. FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
  195. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
  196. FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
  197. FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
  198. FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
  199.  
  200. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2012-07-19 10:42:07 | 000,000,000 | ---D | M]
  201. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\[email protected]: C:\Program Files\SearchPredict\PRFireFox [2012-03-08 21:54:22 | 000,000,000 | ---D | M]
  202. FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{0329E7D6-6F54-462D-93F6-F5C3118BADF2}: C:\Program Files\SPEEDbit Video Downloader\SPFireFox [2012-03-08 21:54:35 | 000,000,000 | ---D | M]
  203. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-07-19 09:22:16 | 000,000,000 | ---D | M]
  204. FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 14.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-05-19 13:32:53 | 000,000,000 | ---D | M]
  205. FF - HKEY_LOCAL_MACHINE\software\mozilla\Netscape Navigator 9.0.0.6\extensions\\Components: C:\Program Files\Netscape\Navigator 9\components [2012-03-09 20:37:48 | 000,000,000 | ---D | M]
  206. FF - HKEY_LOCAL_MACHINE\software\mozilla\Netscape Navigator 9.0.0.6\extensions\\Plugins: C:\Program Files\Netscape\Navigator 9\plugins [2012-03-09 20:36:47 | 000,000,000 | ---D | M]
  207.  
  208. [2011-10-08 21:30:07 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Extensions
  209. [2012-07-19 10:17:38 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions
  210. [2012-07-15 12:23:15 | 000,000,000 | ---D | M] (InnoGames Polska Community Toolbar) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\{14f6a182-4c6f-45ae-9f5a-aa3ccbb1cfa3}
  211. [2011-12-11 11:50:45 | 000,000,000 | ---D | M] (StartNow Toolbar) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\{5911488E-9D1E-40ec-8CBB-06B231CC153F}
  212. [2012-05-12 10:10:33 | 000,000,000 | ---D | M] (Battlefield Heroes Updater) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\[email protected]
  213. [2011-11-21 20:34:16 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\[email protected]
  214. [2011-11-01 10:06:00 | 000,000,000 | ---D | M] (cacaoweb) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\[email protected]
  215. [2012-07-19 10:17:44 | 000,000,000 | ---D | M] (Ask Toolbar) -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\extensions\[email protected]
  216. [2012-06-06 21:31:06 | 000,002,333 | ---- | M] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\searchplugins\askcom.xml
  217. [2012-05-30 08:47:04 | 000,000,935 | ---- | M] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\searchplugins\conduit.xml
  218. [2012-03-08 21:54:20 | 000,002,538 | ---- | M] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\searchplugins\speedbit.xml
  219. [2011-12-11 11:50:44 | 000,001,390 | ---- | M] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Mozilla\Firefox\Profiles\jw8hwin4.default\searchplugins\yahoo-zugo.xml
  220. [2012-03-18 10:26:17 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
  221. [2011-11-09 20:33:09 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
  222. [2011-11-13 10:59:34 | 000,013,509 | ---- | M] () (No name found) -- C:\DOCUMENTS AND SETTINGS\PRZEMEK\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\JW8HWIN4.DEFAULT\EXTENSIONS\[email protected]
  223. [2012-07-19 09:22:16 | 000,136,672 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
  224. [2011-07-11 23:48:12 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
  225. [2012-06-19 14:59:03 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
  226. [2012-06-19 14:59:03 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
  227. [2010-12-13 14:36:54 | 000,002,035 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fcmdSrchddr.xml
  228. [2012-06-19 14:59:03 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
  229. [2012-06-19 14:59:03 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
  230. [2012-01-06 20:56:56 | 000,002,424 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
  231. [2012-06-19 14:59:03 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
  232. [2012-06-19 14:59:03 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
  233.  
  234. [color=#E56717]========== Chrome ==========[/color]
  235.  
  236. CHR - homepage: http://www.google.com
  237. CHR - default_search_provider: Google (Enabled)
  238. CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
  239. CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
  240. CHR - homepage: http://www.google.com
  241. CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.56\gcswf32.dll
  242. CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
  243. CHR - plugin: Java Deployment Toolkit 6.0.290.11 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npdeployJava1.dll
  244. CHR - plugin: Java(TM) Platform SE 6 U29 (Enabled) = C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
  245. CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
  246. CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.60831.0\npctrl.dll
  247. CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
  248. CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
  249. CHR - plugin: Native Client (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.56\ppGoogleNaClPluginChrome.dll
  250. CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files\Google\Chrome\Application\19.0.1084.56\pdf.dll
  251. CHR - plugin: Winamp Application Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npwachk.dll
  252. CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
  253. CHR - plugin: Microsoft DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
  254. CHR - plugin: Google Update (Enabled) = C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll
  255. CHR - plugin: Default Plug-in (Enabled) = default_plugin
  256. CHR - Extension: YouTube = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
  257. CHR - Extension: Szukaj w Google = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
  258. CHR - Extension: SpeedBit Video Downloader = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\djcpfkccckpeeghiklnhienllljccglb\2.0.5_0\
  259. CHR - Extension: Battlefield Play4Free = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\dkejhbcdagodjdndmfnhaibnealjonei\1.0.66.2_0\
  260. CHR - Extension: avast! WebRep = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\icmlaeflemplmjndnaapfdbbnpncnbda\6.0.1289_0\
  261. CHR - Extension: Facemoods = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ihflimipbcaljfnojhhknppphnnciiif\1.6.0_0\
  262. CHR - Extension: Facemoods = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ihflimipbcaljfnojhhknppphnnciiif\1.6.0_0\facemoods\
  263. CHR - Extension: SpeedBit Search Predict = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\ledcpigomgblcmofccnacobhmcdkpiea\2.0.2_0\
  264. CHR - Extension: Gmail = C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
  265.  
  266. O1 HOSTS File: ([2012-04-02 21:36:32 | 000,000,744 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
  267. O1 - Hosts: 127.0.0.1 localhost
  268. O2 - BHO: (SearchPredictObj Class) - {389943B0-C3A2-4E69-82CB-8596A84CB3DC} - C:\Program Files\SearchPredict\SearchPredict.dll (SpeedBit Ltd.)
  269. O2 - BHO: (CescrtHlpr Object) - {64182481-4F71-486b-A045-B233BD0DA8FC} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\bh\facemoods.dll (facemoods.com BHO)
  270. O2 - BHO: (StartNow Toolbar Helper) - {6E13D095-45C3-4271-9475-F3B48227DD9F} - C:\Program Files\StartNow Toolbar\Toolbar32.dll ()
  271. O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll (Oracle Corporation)
  272. O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
  273. O2 - BHO: (SBCONVERT Class) - {92A9ACF4-9333-43AE-9698-DB283326F87F} - C:\Program Files\SPEEDbit Video Downloader\Toolbar\tbcore3.dll ()
  274. O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.7.7227.1100\swg.dll (Google Inc.)
  275. O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Documents and Settings\Przemek\Dane aplikacji\FlashGetBHO\FlashGetBHO.dll (Trend Media Group)
  276. O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  277. O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll (Oracle Corporation)
  278. O2 - BHO: (FlashFXP Helper for Internet Explorer) - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\Program Files\FlashFXP\IEFlash.dll (IniCom Networks, Inc.)
  279. O2 - BHO: (GrabberObj Class) - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\Program Files\SPEEDbit Video Downloader\Toolbar\Grabber.dll (SpeedBit)
  280. O3 - HKLM\..\Toolbar: (SpeedBit Video Downloader) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SPEEDbit Video Downloader\Toolbar\tbcore3.dll ()
  281. O3 - HKLM\..\Toolbar: (StartNow Toolbar) - {5911488E-9D1E-40ec-8CBB-06B231CC153F} - C:\Program Files\StartNow Toolbar\Toolbar32.dll ()
  282. O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
  283. O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  284. O3 - HKLM\..\Toolbar: (facemoods Toolbar) - {DB4E9724-F518-4dfd-9C7C-78B52103CAB9} - C:\Program Files\facemoods.com\facemoods\1.4.17.3\facemoodsTlbr.dll (facemoods.com)
  285. O3 - HKCU\..\Toolbar\WebBrowser: (SpeedBit Video Downloader) - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SPEEDbit Video Downloader\Toolbar\tbcore3.dll ()
  286. O3 - HKCU\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
  287. O4 - HKLM..\Run: [] File not found
  288. O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files\AMD\amd_dc_opt\amd_dc_opt.exe ()
  289. O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
  290. O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
  291. O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
  292. O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
  293. O4 - HKCU..\Run: [FlashGet 3] C:\Program Files\FlashGet Network\FlashGet 3\Flashget3.exe (Trend Media Corporation Limited)
  294. O4 - HKCU..\Run: [NVIDIA nTune] C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe (NVIDIA)
  295. O4 - HKCU..\Run: [OscarX7Mouse5Mode] C:\Program Files\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe ()
  296. O4 - HKCU..\Run: [Steam] G:\Program Files\Steam\steam.exe (Valve Corporation)
  297. O4 - HKCU..\Run: [uTorrent] C:\Program Files\uTorrent\uTorrent.exe (BitTorrent, Inc.)
  298. O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
  299. O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
  300. O8 - Extra context menu item: Download all links by FlashGet3 - C:\Program Files\FlashGet Network\FlashGet 3\BHO\fdgetallurl.htm ()
  301. O8 - Extra context menu item: Download by FlashGet3 - C:\Program Files\FlashGet Network\FlashGet 3\BHO\fdgeturl.htm ()
  302. O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
  303. O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
  304. O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
  305. O16 - DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
  306. O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab (Java Plug-in 1.6.0_30)
  307. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{35A0D376-30FF-4687-B4B4-EBE624F966C4}: DhcpNameServer = 192.168.1.1
  308. O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{35A0D376-30FF-4687-B4B4-EBE624F966C4}: NameServer = 194.204.152.34,194.204.159.1
  309. O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
  310. O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
  311. O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
  312. O20 - Winlogon\Notify\LMIinit: DllName - (LMIinit.dll) - C:\WINDOWS\System32\LMIinit.dll (3am Labs, Inc.)
  313. O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
  314. O24 - Desktop WallPaper: C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
  315. O24 - Desktop BackupWallPaper: C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
  316. O32 - HKLM CDRom: AutoRun - 1
  317. O32 - AutoRun File - [2011-10-08 11:54:46 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
  318. O34 - HKLM BootExecute: (autocheck autochk *)
  319. O35 - HKLM\..comfile [open] -- "%1" %*
  320. O35 - HKLM\..exefile [open] -- "%1" %*
  321. O37 - HKLM\...com [@ = comfile] -- "%1" %*
  322. O37 - HKLM\...exe [@ = exefile] -- "%1" %*
  323. O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
  324. O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
  325.  
  326. [color=#E56717]========== Files/Folders - Created Within 7 Days ==========[/color]
  327.  
  328. [2012-07-16 14:24:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Przemek\Pulpit\EC
  329. [2012-07-15 12:43:24 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Przemek\Recent
  330. [2012-07-14 17:35:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Przemek\Moje dokumenty\Pobieranie
  331. [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  332. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
  333.  
  334. [color=#E56717]========== Files - Modified Within 7 Days ==========[/color]
  335.  
  336. [2012-07-19 11:07:03 | 000,000,238 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
  337. [2012-07-19 10:55:01 | 000,000,746 | ---- | M] () -- C:\WINDOWS\tasks\SBWUpdateTask_Logon_fc982d9d-001A4D80FDB9.job
  338. [2012-07-19 10:55:00 | 000,000,746 | ---- | M] () -- C:\WINDOWS\tasks\SBWUpdateTask_Time_fc982d9d-001A4D80FDB9.job
  339. [2012-07-19 10:53:00 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cc8d90f722e7ee.job
  340. [2012-07-19 10:49:27 | 000,000,316 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
  341. [2012-07-19 10:45:59 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore1cc8d90f7123778.job
  342. [2012-07-19 10:45:56 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
  343. [2012-07-19 10:45:54 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
  344. [2012-07-19 10:44:51 | 004,503,728 | ---- | M] () -- C:\Documents and Settings\All Users\Dane aplikacji\pmt_0piot.pad
  345. [2012-07-19 10:42:21 | 008,126,464 | -H-- | M] () -- C:\Documents and Settings\Przemek\NTUSER.DAT
  346. [2012-07-19 10:42:21 | 000,000,188 | -HS- | M] () -- C:\Documents and Settings\Przemek\ntuser.ini
  347. [2012-07-19 10:42:09 | 000,002,644 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
  348. [2012-07-19 10:26:17 | 000,000,930 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job
  349. [2012-07-19 10:22:00 | 000,001,128 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-1060284298-682003330-1003UA.job
  350. [2012-07-19 10:15:48 | 000,000,292 | ---- | M] () -- C:\WINDOWS\System32\secustat.dat
  351. [2012-07-19 09:54:39 | 000,001,616 | ---- | M] () -- C:\Documents and Settings\Przemek\Menu Start\Programy\Autostart\ctfmon.lnk
  352. [2012-07-18 22:53:50 | 000,009,229 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\GetImage.ashx.jpg
  353. [2012-07-18 19:59:31 | 001,274,949 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\a4308188cc6192f3a49ad953321389a6.jpg
  354. [2012-07-18 19:27:50 | 000,096,768 | ---- | M] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
  355. [2012-07-18 16:19:35 | 000,002,267 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Skype.lnk
  356. [2012-07-18 12:22:00 | 000,001,076 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-1844237615-1060284298-682003330-1003Core.job
  357. [2012-07-15 11:37:11 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
  358. [2012-07-14 17:35:53 | 000,126,048 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\350px-Human_skeleton_front_pl.svg.png
  359. [2012-07-14 12:52:16 | 000,216,242 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\samochod.jpg
  360. [2012-07-14 12:51:06 | 000,385,323 | ---- | M] () -- C:\Documents and Settings\Przemek\Pulpit\bmw_345-1280x800.jpg
  361. [2012-07-12 14:26:19 | 000,426,184 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
  362. [2012-07-12 14:26:19 | 000,070,344 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
  363. [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
  364. [1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
  365.  
  366. [color=#E56717]========== Files Created - No Company Name ==========[/color]
  367.  
  368. [2012-07-19 10:42:09 | 000,000,316 | -H-- | C] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
  369. [2012-07-19 09:54:39 | 004,503,728 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\pmt_0piot.pad
  370. [2012-07-19 09:54:39 | 000,001,616 | ---- | C] () -- C:\Documents and Settings\Przemek\Menu Start\Programy\Autostart\ctfmon.lnk
  371. [2012-07-18 22:53:48 | 000,009,229 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\GetImage.ashx.jpg
  372. [2012-07-18 19:59:30 | 001,274,949 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\a4308188cc6192f3a49ad953321389a6.jpg
  373. [2012-07-18 19:34:00 | 009,346,207 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\Wsz & Cne - Ganksterka.mp3
  374. [2012-07-14 17:35:46 | 000,126,048 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\350px-Human_skeleton_front_pl.svg.png
  375. [2012-07-14 12:52:15 | 000,216,242 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\samochod.jpg
  376. [2012-07-14 12:51:06 | 000,385,323 | ---- | C] () -- C:\Documents and Settings\Przemek\Pulpit\bmw_345-1280x800.jpg
  377. [2012-05-06 16:53:38 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\fusioncache.dat
  378. [2012-05-03 17:16:38 | 000,000,598 | ---- | C] () -- C:\WINDOWS\System32\secushr.dat
  379. [2012-05-03 16:22:50 | 000,000,292 | ---- | C] () -- C:\WINDOWS\System32\secustat.dat
  380. [2012-05-03 16:21:06 | 000,000,025 | ---- | C] () -- C:\WINDOWS\libem.INI
  381. [2012-04-26 18:54:34 | 000,043,520 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt03.dll
  382. [2012-04-05 22:46:17 | 000,026,112 | ---- | C] () -- C:\WINDOWS\System32\VNCpm.dll
  383. [2012-03-31 19:25:22 | 000,182,272 | ---- | C] () -- C:\WINDOWS\patchw32.dll
  384. [2012-03-31 19:12:16 | 000,004,096 | ---- | C] () -- C:\WINDOWS\d3dx.dat
  385. [2012-03-16 20:30:35 | 000,082,676 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
  386. [2012-03-09 20:37:49 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
  387. [2012-03-08 21:54:13 | 000,102,912 | ---- | C] () -- C:\WINDOWS\System32\EasyHook64.dll
  388. [2012-03-08 21:54:13 | 000,084,480 | ---- | C] () -- C:\WINDOWS\System32\EasyHook32.dll
  389. [2012-02-26 23:58:51 | 000,268,321 | ---- | C] () -- C:\WINDOWS\counhterstrike16.exe
  390. [2012-01-21 20:53:47 | 000,487,770 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Fallen Earth_2.54.2.0_2012-01-21-18-53.dmp
  391. [2012-01-20 22:45:42 | 000,146,081 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\icarus-dxdiag.xml
  392. [2012-01-18 19:17:01 | 000,000,008 | RHS- | C] () -- C:\Documents and Settings\All Users\ntuser.pol
  393. [2012-01-01 16:20:07 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\UAService7.exe
  394. [2012-01-01 16:20:07 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\CmdLineExt.dll
  395. [2011-12-25 10:55:37 | 003,360,624 | ---- | C] () -- C:\WINDOWS\System32\pbsvc.exe
  396. [2011-12-19 17:18:13 | 000,025,548 | ---- | C] () -- C:\WINDOWS\System32\drivers\RTAIODAT.DAT
  397. [2011-12-11 11:50:32 | 000,650,752 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
  398. [2011-12-11 11:50:32 | 000,243,200 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
  399. [2011-12-11 11:50:32 | 000,074,752 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
  400. [2011-12-11 11:50:32 | 000,000,714 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll.manifest
  401. [2011-12-04 20:08:23 | 000,000,042 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\TheHunterSettings_local.cfg
  402. [2011-11-29 18:12:18 | 000,580,536 | ---- | C] () -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\FontCache3.0.0.0.dat
  403. [2011-11-21 21:15:01 | 000,138,056 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
  404. [2011-11-21 21:15:01 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\PnkBstrK.sys
  405. [2011-11-21 21:14:38 | 000,189,248 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
  406. [2011-11-21 21:14:34 | 000,075,136 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
  407. [2011-11-09 17:04:37 | 000,000,132 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\Preferencje Adobe CS5 dla formatu PNG
  408. [2011-11-06 14:41:35 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
  409. [2011-11-05 19:29:50 | 000,001,016 | ---- | C] () -- C:\WINDOWS\unins000.dat
  410. [2011-11-01 11:22:19 | 000,210,456 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
  411. [2011-11-01 11:22:19 | 000,206,360 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
  412. [2011-11-01 11:22:19 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
  413. [2011-11-01 11:22:19 | 000,198,168 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
  414. [2011-11-01 11:22:19 | 000,194,072 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
  415. [2011-11-01 11:22:19 | 000,026,136 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
  416. [2011-10-27 14:24:53 | 000,000,042 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\TheHunterSettings_live.cfg
  417. [2011-10-15 15:23:14 | 000,214,016 | ---- | C] () -- C:\Documents and Settings\Przemek\Dane aplikacji\SharedSettings.ccs
  418. [2011-10-14 20:15:11 | 000,077,824 | R--- | C] () -- C:\WINDOWS\System32\HPZIDS01.dll
  419. [2011-10-14 20:12:15 | 000,120,253 | ---- | C] () -- C:\WINDOWS\hpoins11.dat
  420. [2011-10-13 15:42:33 | 000,131,648 | ---- | C] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT
  421. [2011-10-12 15:36:34 | 000,096,768 | ---- | C] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
  422. [2011-10-10 22:19:04 | 000,000,178 | ---- | C] () -- C:\Documents and Settings\Przemek\.jupload.properties
  423. [2011-10-08 21:28:10 | 004,832,912 | -H-- | C] () -- C:\Documents and Settings\Przemek\Ustawienia lokalne\Dane aplikacji\IconCache.db
  424. [2011-10-08 21:26:34 | 000,000,188 | -HS- | C] () -- C:\Documents and Settings\Przemek\ntuser.ini
  425. [2011-10-08 21:26:33 | 008,126,464 | -H-- | C] () -- C:\Documents and Settings\Przemek\NTUSER.DAT
  426. [2011-10-08 20:45:04 | 001,703,936 | ---- | C] () -- C:\WINDOWS\System32\nvwdmcpl.dll
  427. [2011-10-08 20:45:04 | 001,626,112 | ---- | C] () -- C:\WINDOWS\System32\nwiz.exe
  428. [2011-10-08 20:45:04 | 001,474,560 | ---- | C] () -- C:\WINDOWS\System32\nview.dll
  429. [2011-10-08 20:45:04 | 001,339,392 | ---- | C] () -- C:\WINDOWS\System32\nvdspsch.exe
  430. [2011-10-08 20:45:04 | 001,019,904 | ---- | C] () -- C:\WINDOWS\System32\nvwimg.dll
  431. [2011-10-08 20:45:04 | 000,466,944 | ---- | C] () -- C:\WINDOWS\System32\nvshell.dll
  432. [2011-10-08 20:45:04 | 000,442,368 | ---- | C] () -- C:\WINDOWS\System32\nvappbar.exe
  433. [2011-10-08 20:45:04 | 000,425,984 | ---- | C] () -- C:\WINDOWS\System32\keystone.exe
  434. [2011-10-08 20:44:47 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll
  435. [2011-10-08 20:36:04 | 000,472,576 | ---- | C] () -- C:\WINDOWS\Nvidia Omega Drivers v2.169.21 Uninstall.exe
  436. [2011-10-08 16:45:52 | 000,280,276 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
  437. [2011-10-08 16:45:52 | 000,280,276 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
  438. [2011-10-08 16:45:52 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
  439. [2011-10-08 16:45:21 | 002,128,778 | ---- | C] () -- C:\WINDOWS\System32\nvdata.data
  440. [2011-10-08 13:50:08 | 001,312,830 | ---- | C] () -- C:\WINDOWS\System32\PerfStringBackup.INI
  441. [2011-10-08 13:50:07 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
  442. [2011-10-08 13:47:54 | 003,719,896 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
  443. [2011-10-08 13:31:30 | 000,001,324 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
  444. [2011-10-08 12:10:32 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\ChCfg.exe
  445. [2011-10-08 12:07:31 | 000,001,732 | ---- | C] () -- C:\WINDOWS\System32\drivers\nvphy.bin
  446. [2011-10-08 12:04:53 | 000,000,000 | ---- | C] () -- C:\WINDOWS\msicpl.ini
  447. [2011-10-08 12:03:33 | 000,131,072 | R--- | C] () -- C:\WINDOWS\System32\smdll.dll
  448. [2011-10-08 12:03:31 | 000,262,144 | R--- | C] () -- C:\WINDOWS\System32\HookMAp.dll
  449. [2011-10-08 12:03:31 | 000,032,768 | R--- | C] () -- C:\WINDOWS\System32\Auxiliary.dll
  450. [2011-10-08 12:03:30 | 000,266,240 | R--- | C] () -- C:\WINDOWS\System32\HookShield.dll
  451. [2011-10-08 12:03:30 | 000,208,896 | R--- | C] () -- C:\WINDOWS\System32\WinSys2.exe
  452. [2011-10-08 12:03:30 | 000,208,896 | R--- | C] () -- C:\WINDOWS\System32\sw20.exe
  453. [2011-10-08 12:03:30 | 000,200,704 | R--- | C] () -- C:\WINDOWS\System32\WinSys.exe
  454. [2011-10-08 12:03:30 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\sw24.exe
  455. [2011-10-08 12:03:30 | 000,009,728 | R--- | C] () -- C:\WINDOWS\System32\sysinfoX64.sys
  456. [2011-10-08 12:03:30 | 000,008,192 | R--- | C] () -- C:\WINDOWS\System32\sysinfo.sys
  457. [2011-10-08 11:55:32 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
  458. [2011-10-08 11:54:47 | 000,050,105 | ---- | C] () -- C:\WINDOWS\activ.exe
  459. [2011-10-08 11:54:46 | 000,000,000 | ---- | C] () -- C:\WINDOWS\control.ini
  460. [2011-10-08 11:54:02 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest
  461. [2011-10-08 11:53:59 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest
  462. [2011-10-08 11:52:31 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
  463. [2011-10-08 11:52:30 | 000,000,037 | ---- | C] () -- C:\WINDOWS\vbaddin.ini
  464. [2011-10-08 11:52:30 | 000,000,036 | ---- | C] () -- C:\WINDOWS\vb.ini
  465. [2011-10-08 11:52:05 | 000,026,717 | ---- | C] () -- C:\WINDOWS\System32\tslabels.ini
  466. [2011-10-08 11:52:05 | 000,003,813 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.ini
  467.  
  468. [color=#E56717]========== Alternate Data Streams ==========[/color]
  469.  
  470. @Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:63238B95
  471.  
  472. < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement