Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- OTL logfile created on: 2015-08-15 07:57:28 - Run 1
- OTL by OldTimer - Version 3.2.69.0 Folder = E:\
- Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
- Internet Explorer (Version = 8.0.6001.18702)
- Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
- 2,00 Gb Total Physical Memory | 1,02 Gb Available Physical Memory | 51,12% Memory free
- 3,35 Gb Paging File | 2,53 Gb Available in Paging File | 75,54% Paging File free
- Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
- %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
- Drive C: | 19,53 Gb Total Space | 3,60 Gb Free Space | 18,41% Space Free | Partition Type: NTFS
- Drive E: | 106,45 Gb Total Space | 34,11 Gb Free Space | 32,04% Space Free | Partition Type: NTFS
- Drive F: | 106,89 Gb Total Space | 34,48 Gb Free Space | 32,26% Space Free | Partition Type: NTFS
- Computer Name: KOMP | User Name: admin | Logged in as Administrator.
- Boot Mode: Normal | Scan Mode: All users
- Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
- [color=#E56717]========== Processes (SafeList) ==========[/color]
- PRC - [2015-08-15 07:56:17 | 000,602,112 | ---- | M] (OldTimer Tools) -- E:\OTL.exe
- PRC - [2015-08-15 00:09:51 | 000,377,000 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
- PRC - [2015-07-28 23:21:29 | 006,109,776 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
- PRC - [2015-07-28 23:21:27 | 000,146,600 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
- PRC - [2014-01-21 04:00:39 | 011,897,048 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\SoftwareDistribution\Download\Install\ndp40-kb2898855-v2-x86.exe
- PRC - [2014-01-08 05:28:12 | 000,078,992 | ---- | M] (Microsoft Corporation) -- f:\393e3cc83be2feb6e526\Setup.exe
- PRC - [2008-04-14 19:21:49 | 000,196,608 | ---- | M] () -- \\?\C:\WINDOWS\System32\WBEM\WMIADAP.EXE
- PRC - [2008-04-14 19:21:16 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
- PRC - [2006-10-10 14:11:08 | 000,827,392 | ---- | M] () -- C:\WINDOWS\vsnp325.exe
- [color=#E56717]========== Modules (No Company Name) ==========[/color]
- MOD - [2015-08-14 20:55:18 | 002,962,432 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\defs\15081406\algo.dll
- MOD - [2015-07-28 23:21:28 | 000,102,864 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\log.dll
- MOD - [2015-07-28 23:21:27 | 000,123,976 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
- MOD - [2015-04-30 22:18:59 | 040,540,672 | ---- | M] () -- C:\Program Files\AVAST Software\Avast\libcef.dll
- MOD - [2014-03-10 23:01:16 | 011,906,048 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\f0b0625c2db624ba9c97ad1b12490d79\System.Web.ni.dll
- MOD - [2014-03-10 22:16:52 | 000,978,944 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\4b6e70acd99dc22e29b7fc8f9ac340c4\System.Configuration.ni.dll
- MOD - [2014-03-10 22:13:09 | 000,303,104 | ---- | M] () -- C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- MOD - [2014-03-10 22:09:39 | 005,462,016 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\7faf645dc46781225cb722edf9e1e738\System.Xml.ni.dll
- MOD - [2014-03-10 22:09:33 | 012,434,432 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1cdfe1998ad6794db3237006906c6fa2\System.Windows.Forms.ni.dll
- MOD - [2014-03-10 22:09:19 | 001,593,344 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\424bff3295c6e7539cc6df62b9425bd0\System.Drawing.ni.dll
- MOD - [2014-03-10 22:07:33 | 007,977,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\4b0455ae94e3cecca4bb3ba8c96828c9\System.ni.dll
- MOD - [2014-03-10 22:07:24 | 011,497,984 | ---- | M] () -- C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\dae02331a443fb52216ca83292cb2f21\mscorlib.ni.dll
- MOD - [2014-01-07 11:28:22 | 000,016,384 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Branding\Branding.dll
- MOD - [2013-12-23 03:15:00 | 000,270,336 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
- MOD - [2010-03-16 12:22:12 | 000,014,848 | ---- | M] () -- C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\AxInterop.WBOCXLib.dll
- MOD - [2008-04-14 19:21:49 | 000,196,608 | ---- | M] () -- \\?\C:\WINDOWS\System32\WBEM\WMIADAP.EXE
- MOD - [2008-04-14 19:20:57 | 000,214,528 | ---- | M] () -- \\?\C:\WINDOWS\System32\WBEM\wbemcomn.dll
- MOD - [2006-10-10 14:11:08 | 000,827,392 | ---- | M] () -- C:\WINDOWS\vsnp325.exe
- [color=#E56717]========== Services (SafeList) ==========[/color]
- SRV - File not found [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)
- SRV - File not found [On_Demand | Stopped] -- %SystemRoot%\System32\appmgmts.dll -- (AppMgmt)
- SRV - [2015-08-15 00:09:49 | 000,149,160 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
- SRV - [2015-07-28 23:21:27 | 000,146,600 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
- SRV - [2011-06-08 13:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
- SRV - [2010-03-16 21:13:56 | 000,072,704 | ---- | M] (Macrovision ) [On_Demand | Stopped] -- C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe -- (InstallShield Licensing Service)
- [color=#E56717]========== Driver Services (SafeList) ==========[/color]
- DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
- DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\wanatw4.sys -- (wanatw)
- DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
- DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
- DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
- DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
- DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
- DRV - File not found [Kernel | On_Demand | Stopped] -- D:\CDriver.sys -- (MSICDSetup)
- DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\mbamswissarmy.sys -- (MBAMSwissArmy)
- DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
- DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
- DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\admin\USTAWI~1\Temp\ddxgb.sys -- (ddxgb)
- DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
- DRV - File not found [Kernel | On_Demand | Stopped] -- C:\DOCUME~1\admin\USTAWI~1\Temp\ASFWHide -- (ASFWHide)
- DRV - File not found [Kernel | On_Demand | Unknown] -- -- (as1xw6ls)
- DRV - [2015-07-28 23:21:31 | 000,433,264 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswSP.sys -- (aswSP)
- DRV - [2015-07-28 23:21:31 | 000,208,664 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswVmm.sys -- (aswVmm)
- DRV - [2015-07-28 23:21:31 | 000,161,472 | ---- | M] (AVAST Software) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\aswStmXP.sys -- (aswStmXP)
- DRV - [2015-07-28 23:21:31 | 000,076,000 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\aswMonFlt.sys -- (aswMonFlt)
- DRV - [2015-07-28 23:21:31 | 000,057,888 | ---- | M] (AVAST Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\aswTdi.sys -- (aswTdi)
- DRV - [2015-07-28 23:21:31 | 000,055,200 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\aswRdr.sys -- (aswRdr)
- DRV - [2015-07-28 23:21:31 | 000,049,776 | ---- | M] (AVAST Software) [Kernel | Boot | Running] -- C:\WINDOWS\System32\drivers\aswRvrt.sys -- (aswRvrt)
- DRV - [2015-07-28 23:21:31 | 000,024,016 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\aswHwid.sys -- (aswHwid)
- DRV - [2015-07-28 23:21:23 | 000,788,784 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\aswSnx.sys -- (aswSnx)
- DRV - [2015-03-27 20:16:23 | 000,279,712 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\atksgt.sys -- (atksgt)
- DRV - [2015-03-27 20:16:23 | 000,025,888 | ---- | M] () [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\lirsgt.sys -- (lirsgt)
- DRV - [2013-12-23 10:33:54 | 006,852,096 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
- DRV - [2012-05-14 08:12:12 | 000,103,040 | R--- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AtihdXP3.sys -- (AtiHDAudioService)
- DRV - [2011-05-18 10:12:32 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmbo.sys -- (nmwcdc)
- DRV - [2011-05-18 10:12:28 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ccdcmb.sys -- (nmwcd)
- DRV - [2010-09-28 17:07:06 | 000,027,632 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\seehcri.sys -- (seehcri)
- DRV - [2010-09-28 17:06:37 | 000,025,512 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggsemc.sys -- (ggsemc)
- DRV - [2010-09-28 17:06:37 | 000,013,224 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ggflt.sys -- (ggflt)
- DRV - [2010-07-09 13:18:54 | 000,020,328 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\cpuz134_x32.sys -- (cpuz134)
- DRV - [2010-07-06 04:13:10 | 000,234,392 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtenicxp.sys -- (RTLE8023xp)
- DRV - [2010-06-11 13:11:22 | 000,029,720 | ---- | M] (http://libusb-win32.sourceforge.net) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\libusb0.sys -- (libusb0)
- DRV - [2008-08-26 10:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\pccsmcfd.sys -- (pccsmcfd)
- DRV - [2008-04-13 20:53:09 | 000,040,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\nmnt.sys -- (nm)
- DRV - [2007-12-28 15:07:19 | 000,025,280 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
- DRV - [2007-08-16 21:55:45 | 000,682,232 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sptd.sys -- (sptd)
- DRV - [2007-07-12 13:58:06 | 000,004,716 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\gdrv.sys -- (gdrv)
- DRV - [2007-03-07 16:58:30 | 010,260,864 | ---- | M] (Sonix Co. Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\snp325.sys -- (SNP325)
- DRV - [2007-02-10 23:55:50 | 000,013,824 | ---- | M] (A4Tech Co.,Ltd.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Amusbprt.sys -- (Amusbprt)
- DRV - [2007-01-24 17:46:48 | 000,008,704 | ---- | M] (A4Tech Co.,Ltd.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Amfilter.sys -- (Amfilter)
- DRV - [2006-11-15 08:34:00 | 004,225,920 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.Sys -- (IntcAzAudAddService)
- DRV - [2006-11-02 07:00:08 | 000,039,368 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\winusb.sys -- (winusb)
- DRV - [2006-09-24 15:28:46 | 000,005,248 | ---- | M] (Windows (R) 2000 DDK provider) [Kernel | Boot | Running] -- C:\WINDOWS\system32\speedfan.sys -- (speedfan)
- DRV - [2006-09-18 15:59:08 | 000,090,800 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27unic.sys -- (se27unic)
- DRV - [2006-09-18 15:59:02 | 000,086,560 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27obex.sys -- (SE27obex)
- DRV - [2006-09-18 15:59:00 | 000,018,704 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27nd5.sys -- (se27nd5)
- DRV - [2006-09-18 15:58:58 | 000,088,688 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mgmt.sys -- (SE27mgmt)
- DRV - [2006-09-18 15:58:54 | 000,097,184 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdm.sys -- (SE27mdm)
- DRV - [2006-09-18 15:58:52 | 000,009,360 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdfl.sys -- (SE27mdfl)
- DRV - [2006-09-18 15:58:48 | 000,061,600 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27bus.sys -- (SE27bus)
- DRV - [2005-11-03 16:40:07 | 000,063,488 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfvfs02.sys -- (sfvfs02)
- DRV - [2005-08-10 14:44:04 | 000,050,688 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfdrv01.sys -- (sfdrv01)
- DRV - [2005-05-16 15:20:39 | 000,006,656 | ---- | M] (Protection Technology) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\sfhlp02.sys -- (sfhlp02)
- DRV - [2002-05-07 11:44:04 | 000,081,700 | ---- | M] (FUJI PHOTO FILM CO.,LTD.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\V4CB012D.SYS -- (FINEPIX_PCC)
- DRV - [1996-04-03 21:33:26 | 000,005,248 | ---- | M] () [Kernel | Boot | Running] -- C:\WINDOWS\system32\giveio.sys -- (giveio)
- [color=#E56717]========== Standard Registry (SafeList) ==========[/color]
- [color=#E56717]========== Internet Explorer ==========[/color]
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idd&from=idd&uid=5RY037BJ_ST3250310AS&ts=1346235712
- IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.v9.com/?utm_source=b&utm_medium=idd&from=idd&uid=5RY037BJ_ST3250310AS&ts=1346235712
- IE - HKLM\..\SearchScopes,DefaultScope = {6A1806CD-94D4-4689-BA73-E35EA1EA9990}
- IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
- IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.v9.com/?utm_source=b&utm_medium=idd&from=idd&uid=5RY037BJ_ST3250310AS&ts=1346235712
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\..\SearchScopes,DefaultScope = {5FFAC8DD-C610-4A53-B524-425CDDD99B75}
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = http://search.v9.com/web/?q={searchTerms}
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\..\SearchScopes\{5FFAC8DD-C610-4A53-B524-425CDDD99B75}: "URL" = http://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}&rlz=1I7VASE_plPL513
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
- IE - HKU\S-1-5-21-854245398-602162358-839522115-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyServer" = 12.12.12.12:1
- [color=#E56717]========== FireFox ==========[/color]
- FF - prefs.js..browser.search.countryCode: "PL"
- FF - prefs.js..browser.search.hiddenOneOffs: "DuckDuckGo"
- FF - prefs.js..browser.search.isUS: false
- FF - prefs.js..browser.search.region: "PL"
- FF - prefs.js..browser.search.useDBForOrder: true
- FF - prefs.js..browser.startup.homepage: "pajacyk.pl | pustamiska.pl"
- FF - prefs.js..extensions.enabledAddons: %7B5384767E-00D9-40E9-B72F-9CC39D655D6F%7D:1.5.0.6.1-signed
- FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:40.0.2
- FF - user.js - File not found
- FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll ()
- FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.)
- FF - HKLM\Software\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf: E:\Foxit Reader\plugins\npFoxitReaderPlugin.dll File not found
- FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
- FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.55.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
- FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
- FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
- FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll (Google Inc.)
- FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
- FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
- FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\smartwebprinting@hp.com: C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-03-09 21:00:30 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-07-28 23:21:25 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2015-08-15 00:09:38 | 000,000,000 | ---D | M]
- FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 40.0.2\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2015-08-15 00:09:40 | 000,000,000 | ---D | M]
- [2009-11-02 22:38:54 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Extensions
- [2015-07-28 23:53:26 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\extensions
- [2015-05-29 20:46:49 | 000,000,000 | ---D | M] (EPUBReader) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}
- [2015-07-02 21:53:23 | 000,000,000 | ---D | M] (ADB Helper) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\extensions\adbhelper@mozilla.org
- [2015-07-28 23:53:26 | 000,963,213 | ---- | M] () (No name found) -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
- [2014-12-03 00:18:32 | 000,002,299 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\searchplugins\tibiawiki-en.xml
- [2014-08-26 09:21:21 | 000,002,096 | ---- | M] () -- C:\Documents and Settings\admin\Dane aplikacji\Mozilla\Firefox\Profiles\i9e9y8hv.default-1409036703921\searchplugins\wyszukiwarka-filmw-w-youtube.xml
- [2015-08-15 00:09:38 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\browser\extensions
- [2015-08-15 00:09:51 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- [2015-08-15 00:09:41 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\Vista-Black 1.0\Extensions
- [color=#E56717]========== Chrome ==========[/color]
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.33_0\
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\10.2.0.190_0\
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\
- CHR - Extension: No name found = C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\
- O1 HOSTS File: ([2012-04-08 19:56:58 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
- O1 - Hosts: 127.0.0.1 localhost
- O2 - BHO: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
- O3 - HKLM\..\Toolbar: (avast! Online Security) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
- O3 - HKU\S-1-5-21-854245398-602162358-839522115-1004\..\Toolbar\WebBrowser: (no name) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No CLSID value found.
- O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software)
- O4 - HKLM..\Run: [snp325] C:\WINDOWS\vsnp325.exe ()
- O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
- O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: LinkResolveIgnoreLinkInfo = 0
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoResolveSearch = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
- O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1
- O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
- O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
- O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
- O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
- O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
- O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
- O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
- O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
- O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
- O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
- O7 - HKU\S-1-5-21-854245398-602162358-839522115-1004\Software\Policies\Microsoft\Internet Explorer\Control Panel present
- O7 - HKU\S-1-5-21-854245398-602162358-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
- O7 - HKU\S-1-5-21-854245398-602162358-839522115-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
- O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
- O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
- O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B80D1F6-0F43-44EE-AF3C-B3159F0EFD83}: NameServer = 10.1.1.1,192.168.12.1
- O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
- O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
- O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
- O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
- O24 - Desktop WallPaper: E:\Moje dokumenty\Moje obrazy\space.bmp
- O24 - Desktop BackupWallPaper: E:\Moje dokumenty\Moje obrazy\space.bmp
- O32 - HKLM CDRom: AutoRun - 1
- O32 - AutoRun File - [2007-07-12 11:27:29 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
- O32 - AutoRun File - [2010-04-22 22:09:06 | 000,000,000 | RH-D | M] - C:\autorun.inf -- [ NTFS ]
- O32 - AutoRun File - [2010-04-22 22:09:06 | 000,000,000 | RH-D | M] - E:\autorun.inf -- [ NTFS ]
- O32 - AutoRun File - [2010-04-22 22:09:06 | 000,000,000 | R--D | M] - F:\autorun.inf -- [ NTFS ]
- O34 - HKLM BootExecute: (autocheck autochk *)
- O35 - HKLM\..comfile [open] -- "%1" %*
- O35 - HKLM\..exefile [open] -- "%1" %*
- O37 - HKLM\...com [@ = comfile] -- "%1" %*
- O37 - HKLM\...exe [@ = exefile] -- "%1" %*
- O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
- O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
- [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
- [2015-08-15 08:00:15 | 000,000,000 | -HSD | C] -- C:\Config.Msi
- [2015-08-15 00:09:38 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
- [2015-08-14 22:52:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\HD Tune Pro
- [2015-08-14 22:52:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\HD Tune Pro
- [2015-08-14 22:52:37 | 000,000,000 | ---D | C] -- C:\Program Files\HD Tune Pro
- [2015-08-13 00:02:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\CPUID
- [2015-08-12 23:56:50 | 000,000,000 | ---D | C] -- C:\Program Files\CrystalDiskInfo
- [2015-08-12 00:15:49 | 000,000,000 | ---D | C] -- C:\Program Files\Recuva
- [2015-08-05 10:54:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Menu Start\Programy\Rockstar Games
- [2015-08-05 10:54:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\InstallShield Installation Information
- [2015-08-05 10:54:02 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
- [2015-08-04 23:25:35 | 000,000,000 | ---D | C] -- E:\Moje dokumenty\GTA Undr Ground___ Files
- [2015-08-02 17:56:31 | 000,000,000 | ---D | C] -- E:\Moje dokumenty\GTA Vice City User Files
- [2015-07-31 13:06:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\tibianic
- [2015-07-31 13:05:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache
- [2015-07-28 23:21:39 | 000,161,472 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswStmXP.sys
- [2015-07-28 23:21:32 | 000,313,472 | ---- | C] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
- [2015-07-28 23:21:28 | 000,043,112 | ---- | C] (AVAST Software) -- C:\WINDOWS\avastSS.scr
- [2015-07-24 20:12:08 | 000,000,000 | ---D | C] -- C:\Program Files\Digital Image Recovery
- [2015-07-24 20:12:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Digital Image Recovery
- [2015-07-18 23:35:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\admin\Dane aplikacji\No Company Name
- [2015-07-17 22:19:13 | 000,000,000 | ---D | C] -- E:\Moje dokumenty\NewBlueFX
- [2015-07-17 22:17:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe
- [2015-07-17 22:17:20 | 000,000,000 | ---D | C] -- E:\Moje dokumenty\Adobe
- [1 C:\Documents and Settings\admin\Pulpit\*.tmp files -> C:\Documents and Settings\admin\Pulpit\*.tmp -> ]
- [color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
- [2015-08-15 08:04:52 | 000,568,646 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
- [2015-08-15 08:04:52 | 000,505,372 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
- [2015-08-15 08:04:52 | 000,111,772 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
- [2015-08-15 08:04:52 | 000,089,218 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
- [2015-08-15 08:01:28 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
- [2015-08-15 07:47:28 | 000,000,364 | -H-- | M] () -- C:\WINDOWS\tasks\avast! Emergency Update.job
- [2015-08-15 07:47:16 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
- [2015-08-15 07:47:15 | 000,000,222 | ---- | M] () -- C:\WINDOWS\tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job
- [2015-08-15 07:47:12 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
- [2015-08-15 07:47:09 | 2147,012,608 | -HS- | M] () -- C:\hiberfil.sys
- [2015-08-14 23:12:37 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
- [2015-08-14 20:56:29 | 000,778,440 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerApp.exe
- [2015-08-14 20:56:29 | 000,142,536 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
- [2015-08-14 19:16:00 | 000,161,280 | ---- | M] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [2015-08-14 19:11:05 | 000,065,685 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\1k.jpg
- [2015-08-14 18:55:27 | 000,017,408 | -H-- | M] () -- C:\Documents and Settings\admin\Pulpit\photothumb.db
- [2015-08-14 18:50:52 | 000,033,487 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\IMG_151.PNG
- [2015-08-14 18:50:02 | 000,023,271 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\IMG_151.jpg
- [2015-08-14 18:49:43 | 000,013,273 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Facebook_logo_thumbs_up_like_transparent.jpg
- [2015-08-14 18:47:18 | 000,105,369 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Facebook_like_thumb.png
- [2015-08-14 18:42:50 | 000,239,781 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\tło.png
- [2015-08-14 18:17:31 | 000,094,490 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\1000fans_es-2200x800.jpg
- [2015-08-14 17:50:14 | 000,602,294 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\bez tytułu.PNG
- [2015-08-14 07:57:35 | 000,001,984 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
- [2015-08-14 00:13:23 | 000,000,327 | RHS- | M] () -- C:\boot.ini
- [2015-08-13 12:09:55 | 000,029,157 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Potwierdzenie R.Dębczyński.pdf
- [2015-08-12 17:18:18 | 000,045,798 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\07-2015.pdf
- [2015-08-12 17:08:41 | 000,013,646 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
- [2015-08-12 09:52:51 | 001,413,713 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\5427691534_d2eeab1207_o_d.jpg
- [2015-08-06 11:02:59 | 000,268,397 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Rachunek_Idea_Money_Nr_8.pdf
- [2015-08-05 11:00:00 | 000,000,642 | ---- | M] () -- C:\Documents and Settings\admin\Pulpit\Skrót do gta-vc.exe.lnk
- [2015-07-28 23:21:31 | 000,433,264 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSP.sys
- [2015-07-28 23:21:31 | 000,208,664 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswVmm.sys
- [2015-07-28 23:21:31 | 000,161,472 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswStmXP.sys
- [2015-07-28 23:21:31 | 000,076,000 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys
- [2015-07-28 23:21:31 | 000,057,888 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys
- [2015-07-28 23:21:31 | 000,055,200 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys
- [2015-07-28 23:21:31 | 000,049,776 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswRvrt.sys
- [2015-07-28 23:21:31 | 000,024,016 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswHwid.sys
- [2015-07-28 23:21:28 | 000,313,472 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\aswBoot.exe
- [2015-07-28 23:21:28 | 000,043,112 | ---- | M] (AVAST Software) -- C:\WINDOWS\avastSS.scr
- [2015-07-28 23:21:23 | 000,788,784 | ---- | M] (AVAST Software) -- C:\WINDOWS\System32\drivers\aswSnx.sys
- [2015-07-19 17:23:02 | 002,612,400 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
- [1 C:\Documents and Settings\admin\Pulpit\*.tmp files -> C:\Documents and Settings\admin\Pulpit\*.tmp -> ]
- [color=#E56717]========== Files Created - No Company Name ==========[/color]
- [2015-08-14 19:11:05 | 000,065,685 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\1k.jpg
- [2015-08-14 18:50:52 | 000,033,487 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\IMG_151.PNG
- [2015-08-14 18:50:21 | 000,017,408 | -H-- | C] () -- C:\Documents and Settings\admin\Pulpit\photothumb.db
- [2015-08-14 18:49:47 | 000,023,271 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\IMG_151.jpg
- [2015-08-14 18:48:49 | 000,013,273 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Facebook_logo_thumbs_up_like_transparent.jpg
- [2015-08-14 18:47:18 | 000,105,369 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Facebook_like_thumb.png
- [2015-08-14 18:42:41 | 000,239,781 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\tło.png
- [2015-08-14 18:17:12 | 000,094,490 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\1000fans_es-2200x800.jpg
- [2015-08-14 17:50:14 | 000,602,294 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\bez tytułu.PNG
- [2015-08-13 12:09:55 | 000,029,157 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Potwierdzenie R.Dębczyński.pdf
- [2015-08-12 17:18:18 | 000,045,798 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\07-2015.pdf
- [2015-08-12 09:52:49 | 001,413,713 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\5427691534_d2eeab1207_o_d.jpg
- [2015-08-06 11:02:59 | 000,268,397 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Rachunek_Idea_Money_Nr_8.pdf
- [2015-08-05 11:00:00 | 000,000,642 | ---- | C] () -- C:\Documents and Settings\admin\Pulpit\Skrót do gta-vc.exe.lnk
- [2015-05-23 22:36:20 | 000,016,126 | ---- | C] () -- C:\WINDOWS\DIIUnin.dat
- [2015-04-10 17:31:24 | 000,000,142 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LaunchURL.bat
- [2014-06-03 19:22:26 | 000,000,026 | ---- | C] () -- C:\WINDOWS\Viewer.INI
- [2014-05-15 16:46:14 | 000,139,048 | ---- | C] () -- C:\WINDOWS\System32\drivers\PnkBstrK.sys
- [2014-05-15 16:46:08 | 000,282,296 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrB.exe
- [2014-05-15 16:46:00 | 000,076,888 | ---- | C] () -- C:\WINDOWS\System32\PnkBstrA.exe
- [2014-04-18 15:35:16 | 000,138,056 | ---- | C] () -- C:\Documents and Settings\admin\Dane aplikacji\PnkBstrK.sys
- [2013-10-15 11:56:38 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin
- [2013-10-15 11:56:31 | 000,710,269 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat
- [2012-03-04 12:24:32 | 000,000,130 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\fusioncache.dat
- [2010-12-03 14:01:36 | 000,013,842 | ---- | C] () -- C:\Documents and Settings\admin\.recently-used.xbel
- [2009-11-06 22:25:05 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\admin\mm.cfg
- [2008-02-02 15:16:41 | 000,299,008 | ---- | C] () -- C:\Program Files\bestplayer1.0.exe
- [2007-12-30 14:25:19 | 000,000,032 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\ezsid.dat
- [2007-11-02 12:14:03 | 000,000,600 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\PUTTY.RND
- [2007-07-15 20:33:22 | 000,161,280 | ---- | C] () -- C:\Documents and Settings\admin\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- [color=#E56717]========== ZeroAccess Check ==========[/color]
- [2007-08-31 17:04:03 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini
- [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
- "" = %SystemRoot%\system32\shdocvw.dll -- [2008-04-14 19:20:47 | 001,499,136 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Apartment
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
- "" = C:\WINDOWS\system32\wbem\fastprox.dll -- [2009-02-09 12:53:44 | 000,473,600 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Free
- [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
- "" = C:\WINDOWS\system32\wbem\wbemess.dll -- [2008-04-14 19:20:57 | 000,273,920 | ---- | M] (Microsoft Corporation)
- "ThreadingModel" = Both
- [color=#E56717]========== LOP Check ==========[/color]
- [2011-08-10 00:29:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\AnvSoft
- [2010-08-31 10:49:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Any Video Converter
- [2013-10-03 19:50:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Audacity
- [2014-06-19 11:37:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\AVAST Software
- [2013-10-03 19:50:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Cool Record Edit Pro
- [2011-04-03 19:53:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Fit3DLive
- [2013-09-29 20:14:19 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Foxit Software
- [2007-08-31 16:57:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Gadu-Gadu
- [2009-11-29 11:26:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\GHISLER
- [2013-07-03 23:55:52 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Grupa IMAGE
- [2010-12-02 15:54:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\gtk-2.0
- [2010-09-27 20:05:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Hardcore
- [2015-08-14 22:52:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\HD Tune Pro
- [2010-04-25 13:31:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\id Software
- [2007-08-06 20:45:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\IrfanView
- [2012-05-11 14:45:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\LolClient
- [2012-05-29 13:38:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\LolClient2
- [2009-01-14 20:30:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\MyPhoneExplorer
- [2015-07-18 23:35:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\No Company Name
- [2011-07-30 16:01:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Nokia
- [2015-05-03 08:27:22 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Notepad++
- [2007-10-22 21:59:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\OpenOffice.ux.pl2
- [2011-04-22 10:44:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Opera
- [2012-07-05 21:17:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Oracle
- [2014-05-29 08:16:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Origin
- [2007-08-12 16:11:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\PC Suite
- [2015-07-06 09:23:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\PhotoScape
- [2009-07-04 12:57:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\play2p
- [2007-11-20 20:48:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Teleca
- [2013-09-05 20:01:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Tibia
- [2010-03-21 14:45:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Tibiacast
- [2009-05-11 09:57:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Tlen.pl
- [2013-03-08 18:23:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\Unity
- [2015-08-14 22:56:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\uTorrent
- [2009-03-17 18:48:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\VitySoft
- [2013-10-03 20:13:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\WAV To MP3
- [2007-09-10 21:38:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\admin\Dane aplikacji\WNR
- [2011-01-01 19:38:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AlawarWrapper
- [2015-04-30 22:50:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Auslogics
- [2014-06-04 08:58:38 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\AVAST Software
- [2011-07-13 17:16:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\BVRP Software
- [2014-05-29 08:20:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Core
- [2014-05-29 08:20:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\EA Logs
- [2015-03-27 16:08:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Electronic Arts
- [2009-10-25 09:36:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Fugazo
- [2010-05-18 17:01:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Hagel Technologies
- [2011-07-30 16:41:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Installations
- [2008-02-05 13:56:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MailFrontier
- [2015-03-27 16:08:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Origin
- [2015-08-10 10:30:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Package Cache
- [2007-07-25 18:32:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PC Suite
- [2013-10-20 00:08:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PMB Files
- [2015-07-17 22:17:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\regid.1986-12.com.adobe
- [2014-11-01 12:19:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TEMP
- [2010-09-12 22:35:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Tlen.pl
- [2014-10-12 20:35:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\tmp
- [2013-09-19 14:57:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Foxit Software
- [color=#E56717]========== Purity Check ==========[/color]
- [color=#E56717]========== Alternate Data Streams ==========[/color]
- @Alternate Data Stream - 229 bytes -> C:\Documents and Settings\All Users\Dane aplikacji\TEMP:8FF81EB0
- < End of report >
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement