
- Kod: Zaznacz wszystko
OTL logfile created on: 2012-05-30 14:48:27 - Run 3
OTL by OldTimer - Version 3.2.44.0 Folder = C:\Documents and Settings\Rafal\Pulpit
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
511,23 Mb Total Physical Memory | 177,57 Mb Available Physical Memory | 34,73% Memory free
1,22 Gb Paging File | 0,84 Gb Available in Paging File | 68,60% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 14,65 Gb Total Space | 0,92 Gb Free Space | 6,29% Space Free | Partition Type: NTFS
Drive E: | 33,61 Gb Total Space | 2,45 Gb Free Space | 7,28% Space Free | Partition Type: NTFS
Drive G: | 34,05 Gb Total Space | 0,75 Gb Free Space | 2,19% Space Free | Partition Type: NTFS
Drive H: | 32,69 Gb Total Space | 4,18 Gb Free Space | 12,79% Space Free | Partition Type: NTFS
Drive I: | 34,06 Gb Total Space | 1,27 Gb Free Space | 3,74% Space Free | Partition Type: NTFS
Drive J: | 3,00 Gb Total Space | 0,81 Gb Free Space | 26,81% Space Free | Partition Type: NTFS
Drive K: | 6,50 Gb Total Space | 1,01 Gb Free Space | 15,51% Space Free | Partition Type: NTFS
Computer Name: LECH | User Name: Rafal | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2012-05-30 10:28:20 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rafal\Pulpit\OTL.exe
PRC - [2012-04-09 17:43:42 | 001,557,160 | ---- | M] (Ask) -- C:\Program Files\Ask.com\Updater\Updater.exe
PRC - [2011-09-27 02:02:42 | 000,269,480 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
PRC - [2011-05-01 22:54:53 | 000,136,360 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\sched.exe
PRC - [2011-01-10 15:23:29 | 000,281,768 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
PRC - [2010-08-04 14:55:36 | 000,692,317 | ---- | M] ( ) -- C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe
PRC - [2010-02-09 16:43:16 | 002,621,440 | R--- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\Brother\BrStMonW.exe
PRC - [2010-01-25 08:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) -- C:\Program Files\Browny02\BrYNSvc.exe
PRC - [2010-01-14 22:11:00 | 000,076,968 | ---- | M] (Avira GmbH) -- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
PRC - [2008-04-14 23:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007-12-06 22:03:41 | 000,660,768 | ---- | M] (ABBYY (BIT Software)) -- C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe
PRC - [2006-12-03 01:14:03 | 000,310,784 | ---- | M] (http://autoconnect.prv.pl) -- C:\Program Files\AutoConnect\AutoConnect.exe
PRC - [2006-10-14 16:46:21 | 000,180,269 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2006-03-01 10:22:04 | 000,577,536 | R--- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
PRC - [2005-12-09 16:54:56 | 000,966,756 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
PRC - [2004-12-13 01:05:20 | 001,527,893 | ---- | M] (The Firebird Project) -- C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe
PRC - [2004-12-13 01:05:20 | 000,065,536 | ---- | M] (The Firebird Project) -- C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe
PRC - [2004-09-29 13:14:36 | 000,069,632 | ---- | M] (HP) -- C:\WINDOWS\system32\HPZipm12.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2010-08-04 14:55:20 | 003,235,840 | ---- | M] () -- C:\Program Files\SAMSUNG\FW LiveUpdate\LiveUpdate.dat
MOD - [2010-06-17 15:27:22 | 000,355,688 | ---- | M] () -- C:\Program Files\Avira\AntiVir Desktop\sqlite3.dll
MOD - [2009-02-27 16:38:20 | 000,139,264 | R--- | M] () -- C:\Program Files\Brother\BrUtilities\BrLogAPI.dll
MOD - [2005-12-09 16:54:56 | 000,966,756 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
MOD - [2003-06-06 10:59:18 | 000,081,920 | ---- | M] () -- C:\Program Files\SAGEM\SAGEM F@st 800-840\languages\english.dll
[color=#E56717]========== Win32 Services (SafeList) ==========[/color]
SRV - File not found [Auto | Stopped] -- C:\WINDOWS\System32\wmplayer.exe -- (wmplayer)
SRV - File not found [Disabled | Stopped] -- %SystemRoot%\System32\hidserv.dll -- (HidServ)
SRV - [2012-05-25 13:14:41 | 000,129,976 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2011-09-27 02:02:42 | 000,269,480 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2011-05-01 22:54:53 | 000,136,360 | ---- | M] (Avira GmbH) [Auto | Running] -- C:\Program Files\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2010-12-10 19:29:30 | 000,044,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe -- (MSSQLServerADHelper)
SRV - [2010-01-25 08:22:56 | 000,245,760 | ---- | M] (Brother Industries, Ltd.) [On_Demand | Running] -- C:\Program Files\Browny02\BrYNSvc.exe -- (BrYNSvc)
SRV - [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Stopped] -- C:\Program Files\Alcohol Soft\Alcohol 52\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2008-04-14 23:51:46 | 000,075,264 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\tlntsvr.exe -- (TlntSvr)
SRV - [2008-04-14 23:51:32 | 000,114,688 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\netdde.exe -- (NetDDEdsdm)
SRV - [2008-04-14 23:51:32 | 000,114,688 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\netdde.exe -- (NetDDE)
SRV - [2008-04-14 23:50:58 | 000,186,880 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\upnphost.dll -- (upnphost)
SRV - [2008-04-14 23:50:58 | 000,071,680 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\ssdpsrv.dll -- (SSDPSRV)
SRV - [2008-04-14 23:50:40 | 000,033,792 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\msgsvc.dll -- (Messenger)
SRV - [2008-04-14 23:50:36 | 000,053,248 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\mprdim.dll -- (RemoteAccess)
SRV - [2008-04-14 23:50:00 | 000,017,408 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\WINDOWS\system32\alrsvc.dll -- (Alerter)
SRV - [2007-12-06 22:03:41 | 000,660,768 | ---- | M] (ABBYY (BIT Software)) [Auto | Running] -- C:\Program Files\Common Files\ABBYY\FineReader\9.00\Licensing\PE\NetworkLicenseServer.exe -- (ABBYY.Licensing.FineReader.Professional.9.0)
SRV - [2007-03-26 13:06:24 | 000,292,864 | ---- | M] (Nokia.) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2004-12-13 01:05:20 | 001,527,893 | ---- | M] (The Firebird Project) [On_Demand | Running] -- C:\Program Files\Firebird\Firebird_1_5\bin\fbserver.exe -- (FirebirdServerDefaultInstance)
SRV - [2004-12-13 01:05:20 | 000,065,536 | ---- | M] (The Firebird Project) [Auto | Running] -- C:\Program Files\Firebird\Firebird_1_5\bin\fbguard.exe -- (FirebirdGuardianDefaultInstance)
SRV - [2004-09-29 13:14:36 | 000,069,632 | ---- | M] (HP) [Auto | Running] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (WDICA)
DRV - File not found [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\Drivers\sptd.sys -- (sptd)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDRELI)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDFRAME)
DRV - File not found [Kernel | On_Demand | Stopped] -- -- (PDCOMP)
DRV - File not found [Kernel | System | Stopped] -- -- (PCIDump)
DRV - File not found [Kernel | System | Stopped] -- -- (lbrtfdc)
DRV - File not found [Kernel | System | Stopped] -- -- (i2omgmt)
DRV - File not found [Kernel | Boot | Stopped] -- System32\drivers\ecob.sys -- (hogbhac)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\DRIVERS\ENTECH.sys -- (ENTECH)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\WINDOWS\System32\drivers\EagleNT.sys -- (EagleNT)
DRV - File not found [Kernel | System | Stopped] -- -- (Changer)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\Drivers\btwusb.sys -- (BTWUSB)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\DRIVERS\btwdndis.sys -- (BTWDNDIS)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\DRIVERS\btkrnl.sys -- (BTKRNL)
DRV - File not found [Kernel | On_Demand | Stopped] -- System32\DRIVERS\btport.sys -- (BTDriver)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\drivers\btaudio.sys -- (btaudio)
DRV - File not found [File_System | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\av5flt.sys -- (AvFlt)
DRV - File not found [File_System | On_Demand | Stopped] -- C:\Program Files\Anti Trojan Elite\ATEPMon.sys -- (ATE_PROCMON)
DRV - [2011-09-27 02:02:56 | 000,138,192 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avipbb.sys -- (avipbb)
DRV - [2011-09-27 02:02:55 | 000,066,616 | ---- | M] (Avira GmbH) [File_System | Auto | Running] -- C:\WINDOWS\system32\drivers\avgntflt.sys -- (avgntflt)
DRV - [2010-06-17 15:27:22 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2010-06-17 15:27:12 | 000,011,608 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Program Files\Avira\AntiVir Desktop\avgio.sys -- (avgio)
DRV - [2008-04-14 23:03:30 | 000,120,320 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\pcmcia.sys -- (Pcmcia)
DRV - [2008-04-14 22:52:42 | 000,800,000 | ---- | M] (Microsoft Corp., Veritas Software) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\dmboot.sys -- (dmboot)
DRV - [2008-04-14 01:51:02 | 000,162,816 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\netbt.sys -- (NetBT)
DRV - [2008-04-14 01:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008-04-14 01:10:52 | 000,149,376 | ---- | M] (M-Systems) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\tffsport.sys -- (tffsport)
DRV - [2008-04-14 01:02:38 | 000,066,048 | ---- | M] (Microsoft Corporation) [File_System | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\udfs.sys -- (Udfs)
DRV - [2007-07-11 15:51:48 | 000,019,840 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2007-07-11 10:45:00 | 000,021,632 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2007-07-11 10:40:18 | 000,012,416 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2007-01-30 23:16:13 | 000,017,480 | ---- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\hamachi.sys -- (hamachi)
DRV - [2006-09-18 15:59:08 | 000,090,800 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27unic.sys -- (se27unic) Sony Ericsson Device 039 USB Ethernet Emulation SEMC39 (WDM)
DRV - [2006-09-18 15:59:02 | 000,086,560 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27obex.sys -- (SE27obex)
DRV - [2006-09-18 15:59:00 | 000,018,704 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\se27nd5.sys -- (se27nd5) Sony Ericsson Device 039 USB Ethernet Emulation SEMC39 (NDIS)
DRV - [2006-09-18 15:58:58 | 000,088,688 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mgmt.sys -- (SE27mgmt) Sony Ericsson Device 039 USB WMC Device Management Drivers (WDM)
DRV - [2006-09-18 15:58:54 | 000,097,184 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdm.sys -- (SE27mdm)
DRV - [2006-09-18 15:58:52 | 000,009,360 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27mdfl.sys -- (SE27mdfl)
DRV - [2006-09-18 15:58:48 | 000,061,600 | R--- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\SE27bus.sys -- (SE27bus) Sony Ericsson Device 039 Driver driver (WDM)
DRV - [2006-04-21 05:16:44 | 003,964,352 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\alcxwdm.sys -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2005-09-30 06:52:22 | 000,013,056 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2005-09-30 06:52:20 | 000,034,048 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2005-01-24 15:38:04 | 000,084,512 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdm.sys -- (ss_mdm)
DRV - [2005-01-24 15:38:04 | 000,006,064 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_mdfl.sys -- (ss_mdfl)
DRV - [2005-01-24 15:38:00 | 000,052,384 | ---- | M] (MCCI) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ss_bus.sys -- (ss_bus) Samsung Mobile USB Device 1.0 driver (WDM)
DRV - [2004-08-22 16:31:48 | 000,005,248 | ---- | M] ( ) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\d347prt.sys -- (d347prt)
DRV - [2004-08-22 16:31:10 | 000,155,136 | ---- | M] ( ) [Kernel | Disabled | Stopped] -- C:\WINDOWS\system32\drivers\d347bus.sys -- (d347bus)
DRV - [2004-06-03 04:40:46 | 000,079,360 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nvatabus.sys -- (nvatabus)
DRV - [2004-03-02 10:26:58 | 000,050,007 | ---- | M] (Analog Deivces) [Kernel | Auto | Stopped] -- C:\WINDOWS\system32\drivers\adildr.sys -- (ADILOADER) General Purpose USB Driver (adildr.sys)
DRV - [2004-03-02 10:24:16 | 000,127,065 | ---- | M] (Analog Devices Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\adiusbaw.sys -- (adiusbaw)
DRV - [2004-02-24 05:08:52 | 000,400,384 | ---- | M] (Sensaura) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\ALCXSENS.SYS -- (ALCXSENS)
DRV - [2003-10-29 07:02:00 | 000,021,120 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\nv_agp.SYS -- (nv_agp)
DRV - [2002-08-28 23:16:22 | 000,020,864 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LwAdiHid.sys -- (LwAdiHid) Urządzenia cyfrowe Logitech WingMan (autowykrywanie)
DRV - [2001-10-26 18:46:18 | 000,012,032 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\acpiec.sys -- (ACPIEC)
DRV - [2001-08-17 23:52:06 | 000,013,952 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\WINDOWS\System32\drivers\cbidf2k.sys -- (cbidf2k)
DRV - [2001-08-17 23:00:04 | 000,002,944 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\msmpu401.sys -- (ms_mpu401)
DRV - [2001-08-17 22:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\URLSearchHook: {08C06D61-F1F3-4799-86F8-BE1A89362C85} - SOFTWARE\Classes\CLSID\{08C06D61-F1F3-4799-86F8-BE1A89362C85}\InprocServer32 File not found
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\URLSearchHook: {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\prxtbIso0.dll (Conduit Ltd.)
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\SearchScopes\{2F09180C-509D-4D5A-B237-F112E507668C}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=crm&q={searchTerms}&locale=en_US&apn_ptnrs=U3&apn_dtid=OSJ000YYPL&apn_uid=1C8BC22E-8371-488B-A468-CDA7AD901EC4&apn_sauid=5FFB2B7F-1A80-481B-AC58-74155155FE07
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\SearchScopes\{59BC28B3-02FB-4C46-A87C-C5790F4F6D79}: "URL" = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}: "URL" = http://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT1700389
IE - HKU\S-1-5-21-842925246-616249376-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..extensions.enabledItems: {e4a8a97b-f2ed-450b-b12d-ee082ba24781}:0.9.18
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..extensions.enabledItems: engine@conduit.com:3.3.3.2
FF - prefs.js..extensions.enabledItems: {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6}:3.3.3.2
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}:6.0.31
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}:6.0.32
FF - prefs.js..keyword.URL: "http://websearch.ask.com/redirect?client=ff&src=kw&tb=ORJ&o=100000027&locale=en_US&apn_uid=1C8BC22E-8371-488B-A468-CDA7AD901EC4&apn_ptnrs=U3&apn_sauid=5FFB2B7F-1A80-481B-AC58-74155155FE07&apn_dtid=OSJ000YYPL&&q="
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\System32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa2,version=2.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=1.6.0_32: C:\WINDOWS\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.11.2321: C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.2.2379: C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.1483: C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2012-05-25 13:14:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 12.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2012-05-25 13:14:45 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\{857610fe-b36c-47f2-b4fa-6b7affe0cf5a}: I:\Kamila\mobileMASTER\ext\1\ [2011-12-28 17:53:55 | 000,000,000 | ---D | M]
[2010-06-09 23:33:45 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Extensions
[2012-05-26 10:37:39 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\extensions
[2012-05-26 10:37:30 | 000,000,000 | ---D | M] (IsoBuster Community Toolbar) -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\extensions\{266fcdca-7bb3-4da7-b3bf-f845dea2ebd6}
[2012-05-26 10:37:39 | 000,000,000 | ---D | M] (Greasemonkey) -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}
[2011-05-15 20:06:59 | 000,000,000 | ---D | M] (Conduit Engine) -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\extensions\engine@conduit.com
[2012-05-02 13:30:11 | 000,002,580 | ---- | M] () -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\searchplugins\askcom.xml
[2011-04-27 15:38:56 | 000,000,921 | ---- | M] () -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\searchplugins\conduit.xml
[2008-12-19 22:49:06 | 000,000,414 | ---- | M] () -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\searchplugins\kamila.xml
[2008-08-05 17:41:39 | 000,001,994 | ---- | M] () -- C:\Documents and Settings\Rafal\Dane aplikacji\Mozilla\Firefox\Profiles\2anx56k0.default\searchplugins\wrzuta.xml
[2012-05-25 13:15:01 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2012-04-30 22:57:37 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2012-05-25 13:14:43 | 000,097,208 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2008-06-24 19:31:00 | 000,925,696 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPBOARDS.dll
[2008-06-24 19:35:00 | 000,868,352 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPCARDS.dll
[2008-09-30 15:03:24 | 000,120,296 | ---- | M] ( ) -- C:\Program Files\mozilla firefox\plugins\npganymedenet.dll
[2008-06-24 19:34:00 | 000,679,936 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPMAKAOV2.dll
[2008-06-24 19:28:00 | 000,598,016 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPPOKER.dll
[2008-06-24 17:45:00 | 000,593,920 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPROULETTE.dll
[2008-06-24 18:45:00 | 000,557,056 | ---- | M] (Ganymede Technologies) -- C:\Program Files\mozilla firefox\plugins\NPSLOTS70.dll
[2012-05-25 13:14:36 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2012-05-25 13:14:36 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2012-05-25 13:14:36 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2012-05-25 13:14:36 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2012-03-01 01:39:56 | 000,002,415 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\v9.xml
[2012-05-25 13:14:36 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2012-05-25 13:14:36 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}sourceid=chrome&ie={inputEncoding}&q={searchTerms}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}{google:instantFieldTrialGroupParameter}client=chrome&hl={language}&q={searchTerms}
CHR - plugin: Remoting Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\19.0.1084.52\pdf.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\Application\19.0.1084.52\gcswf32.dll
CHR - plugin: Shockwave Flash (Disabled) = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\PepperFlash\11.2.31.144\pepflashplayer.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Adobe Acrobat (Disabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPBOARDS.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPCARDS.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPMAKAOV2.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPPOKER.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPROULETTE.dll
CHR - plugin: Ganymede Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPSLOTS70.dll
CHR - plugin: GanymedeNet.Detector (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npganymedenet.dll
CHR - plugin: Microsoft Office 2003 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\NPOFFICE.DLL
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npdrmv2.dll
CHR - plugin: Microsoft\u00AE DRM (Enabled) = C:\Program Files\Windows Media Player\npwmsdrm.dll
CHR - plugin: Windows Media Player Plug-in Dynamic Link Library (Enabled) = C:\Program Files\Windows Media Player\npdsplay.dll
CHR - plugin: Google Update (Enabled) = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Update\1.3.21.111\npGoogleUpdate3.dll
CHR - plugin: Google Earth Plugin (Enabled) = C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
CHR - plugin: Java(TM) Platform SE 6 U32 (Enabled) = C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll
CHR - plugin: Java Deployment Toolkit 6.0.320.5 (Enabled) = C:\WINDOWS\system32\npdeployJava1.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files\Microsoft Silverlight\4.0.50917.0\npctrl.dll
CHR - plugin: RealPlayer(tm) G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
CHR - plugin: Picasa (Enabled) = H:\Picasa2\npPicasa2.dll
CHR - plugin: Picasa (Enabled) = H:\Picasa2\npPicasa3.dll
CHR - Extension: YouTube = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0\
CHR - Extension: Szukaj w Google = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0\
CHR - Extension: Gmail = C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2012-05-30 12:27:22 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (IsoBuster Toolbar) - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\prxtbIso0.dll (Conduit Ltd.)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - E:\Program Files\BitComet\tools\BitCometBHO_1.1.2.7.dll (BitComet)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKLM\..\Toolbar: (IsoBuster Toolbar) - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\prxtbIso0.dll (Conduit Ltd.)
O3 - HKLM\..\Toolbar: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\Toolbar\WebBrowser: (IsoBuster Toolbar) - {266FCDCA-7BB3-4DA7-B3BF-F845DEA2EBD6} - C:\Program Files\IsoBuster\prxtbIso0.dll (Conduit Ltd.)
O3 - HKU\S-1-5-21-842925246-616249376-839522115-1003\..\Toolbar\WebBrowser: (Ask Toolbar) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [adiras] adiras.exe File not found
O4 - HKLM..\Run: [ApnUpdater] C:\Program Files\Ask.com\Updater\Updater.exe (Ask)
O4 - HKLM..\Run: [autoclk] autoclk.exe File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira GmbH)
O4 - HKLM..\Run: [BrStsMon00] C:\Program Files\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033 File not found
O4 - HKLM..\Run: [Name of App] C:\Program Files\SAMSUNG\FW LiveUpdate\FWManager.exe ( )
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [NvMediaCenter] C:\WINDOWS\System32\NvMcTray.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\Program Files\NVIDIA Corporation\nView\nwiz.exe ()
O4 - HKLM..\Run: [Onet.pl AutoUpdate] "C:\Program Files\Common Files\Onet.pl\NewAutoUpdate.exe" /updateexe File not found
O4 - HKLM..\Run: [Smart File Advisor] C:\Program Files\Smart File Advisor\sfa.exe (Filefacts.net)
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\soundman.exe (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - Startup: C:\Documents and Settings\All Users.WINDOWS\Menu Start\Programy\Autostart\DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe ()
O4 - Startup: C:\Documents and Settings\Rafal\Menu Start\Programy\Autostart\Skrót do AutoConnect.lnk = C:\Program Files\AutoConnect\AutoConnect.exe (http://autoconnect.prv.pl)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-842925246-616249376-839522115-1003\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-842925246-616249376-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0
O8 - Extra context menu item: &Download All using 4shared Desktop - I:\Kamila\4shared Desktop\down_all.htm File not found
O8 - Extra context menu item: Add to Google Photos Screensa&ver - C:\WINDOWS\System32\GPhotos.scr (Google Inc.)
O8 - Extra context menu item: Download all links using BitComet - E:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Download all videos using BitComet - E:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: Download link using &BitComet - E:\Program Files\BitComet\BitComet.exe (www.BitComet.com)
O8 - Extra context menu item: E&ksport do programu Microsoft Excel - E:\Programy\Microsoft Office\OFFICE11\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: Badanie - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\Programy\Microsoft Office\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O12 - Plugin for: .mov - C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll (Apple Computer, Inc.)
O12 - Plugin for: .spop - C:\Program Files\Internet Explorer\PLUGINS\NPDocBox.dll (InterTrust Technologies Corporation, Inc.)
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} http://downloads.ewido.net/ewidoOnlineScan.cab (ewidoOnlineScan Control)
O16 - DPF: {4B4513E2-4E57-43DF-9496-FCD37E9DFA64} http://download.gamedesire.com/g_bin/pl/navy_2_0_0_29.cab (GameDesire Sea Battle)
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} http://www.eset.eu/buxus/docs/OnlineScanner.cab (Reg Error: Key error.)
O16 - DPF: {631FF594-EC25-4CFF-B869-402DF294E1D6} http://slimak.onet.pl/_m/kamerzysta/OnetInstalator012s.ocx (Instalator oprogramowania Onet.pl)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {BFA1F11D-3121-AFE1-4112-894323212DAC} http://download.gamedesire.com/g_bin/pl/words_2_0_0_51.cab (GameDesire Word Games)
O16 - DPF: {CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA} http://java.sun.com/products/plugin/autodl/jinstall-1_4_0_03-win.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_05-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (Reg Error: Key error.)
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab (Java Plug-in 1.6.0_05)
O16 - DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab (Java Plug-in 1.6.0_31)
O16 - DPF: {CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_32-windows-i586.cab (Java Plug-in 1.6.0_32)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O16 - DPF: {E95CF138-A587-4C54-8175-3AD80997CB14} http://download.gamedesire.com/g_bin/pl/soccer_2_0_0_20.cab (GameDesire Soccer)
O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C5} http://download.gamedesire.com/g_bin/pl/snooker_2_0_0_35.cab (GameDesire Snooker)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{3980F47C-DED6-4F68-8178-5F1D94423FA7}: NameServer = 194.204.159.1 194.204.152.34
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2006-01-27 23:46:59 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011-04-21 02:56:51 | 000,042,686 | ---- | M] () - C:\AutoMapaSetupLog.txt -- [ NTFS ]
O33 - MountPoints2\N\Shell - "" = AutoRun
O33 - MountPoints2\N\Shell\AutoRun\command - "" = N:\autorun.exe
O33 - MountPoints2\O\Shell - "" = AutoRun
O33 - MountPoints2\O\Shell\AutoRun\command - "" = O:\Setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2012-05-30 12:27:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafal\Pulpit\SmitfraudFix
[2012-05-30 11:56:49 | 000,087,552 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\VACFix.exe
[2012-05-30 11:56:49 | 000,082,944 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\IEDFix.exe
[2012-05-30 11:56:49 | 000,082,944 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\IEDFix.C.exe
[2012-05-30 11:56:49 | 000,082,432 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\404Fix.exe
[2012-05-30 11:56:49 | 000,080,384 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\o4Patch.exe
[2012-05-30 11:56:49 | 000,078,336 | ---- | C] (S!Ri.URZ) -- C:\WINDOWS\System32\Agent.OMZ.Fix.exe
[2012-05-30 11:56:48 | 000,289,144 | ---- | C] (S!Ri) -- C:\WINDOWS\System32\VCCLSID.exe
[2012-05-30 11:56:48 | 000,288,417 | ---- | C] (S!Ri) -- C:\WINDOWS\System32\SrchSTS.exe
[2012-05-30 11:56:48 | 000,135,168 | ---- | C] (SteelWerX) -- C:\WINDOWS\System32\swreg.exe
[2012-05-30 11:56:48 | 000,079,360 | ---- | C] (SteelWerX) -- C:\WINDOWS\System32\swxcacls.exe
[2012-05-30 11:56:48 | 000,053,248 | ---- | C] (http://www.beyondlogic.org) -- C:\WINDOWS\System32\Process.exe
[2012-05-30 10:18:21 | 000,595,968 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Rafal\Pulpit\OTL.exe
[2012-05-30 10:12:00 | 000,675,896 | ---- | C] (Duplex Secure Ltd.) -- C:\Documents and Settings\Rafal\Pulpit\SPTDinst-v181-x86.exe
[2012-05-28 22:48:12 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\NtmsData
[2012-05-28 21:03:21 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Rafal\Recent
[2012-05-25 13:15:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Mozilla
[2012-05-25 13:15:04 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2012-05-20 13:22:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafal\Pulpit\WZOR_ORAZ_INSTRUKCJA_WYPEŁNIANIA_WNIOSKU_O_DOFINANSOWANIE1
[2012-05-20 13:12:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafal\Pulpit\ZALACZNIKI_DO_WNIOSKU_O_DOFINANSOWANIE7
[2012-05-19 21:29:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\529C5366000173E2000022860CDF108C
[2012-04-30 23:54:52 | 000,000,000 | ---D | C] -- C:\Program Files\Ask.com
[2012-04-30 23:54:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\AskToolbar
[2012-04-30 23:42:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Ask
[2012-04-30 23:37:33 | 000,157,472 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2012-04-30 23:37:33 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2012-04-30 23:37:32 | 000,149,280 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2012-04-30 22:58:21 | 000,476,960 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\npdeployJava1.dll
[2012-03-23 20:02:59 | 002,447,264 | ---- | C] (DownVision ) -- C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\setup.exe
[32 C:\Documents and Settings\Rafal\Pulpit\*.tmp files -> C:\Documents and Settings\Rafal\Pulpit\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2012-05-30 14:55:40 | 000,001,132 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-616249376-839522115-1003UA.job
[2012-05-30 14:54:01 | 000,000,234 | ---- | M] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012-05-30 14:43:58 | 000,001,030 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2012-05-30 14:43:49 | 000,243,457 | ---- | M] () -- C:\WINDOWS\System32\NvApps.xml
[2012-05-30 14:43:42 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2012-05-30 14:35:29 | 000,001,034 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2012-05-30 12:52:24 | 000,000,052 | ---- | M] () -- C:\Documents and Settings\Rafal\defogger_reenable
[2012-05-30 12:44:36 | 000,050,477 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\Defogger.exe
[2012-05-30 12:36:30 | 000,000,382 | ---- | M] () -- C:\Documents and Settings\Rafal\Dane aplikacji\SamsungLiveUpdateConfig.ini
[2012-05-30 12:27:27 | 000,004,354 | ---- | M] () -- C:\WINDOWS\System32\tmp.reg
[2012-05-30 10:33:57 | 000,675,896 | ---- | M] (Duplex Secure Ltd.) -- C:\Documents and Settings\Rafal\Pulpit\SPTDinst-v181-x86.exe
[2012-05-30 10:28:20 | 000,595,968 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rafal\Pulpit\OTL.exe
[2012-05-30 10:15:19 | 000,302,592 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\xgqwpdi0.exe
[2012-05-29 15:40:10 | 000,551,094 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat
[2012-05-29 15:40:10 | 000,494,480 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2012-05-29 15:40:10 | 000,114,652 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat
[2012-05-29 15:40:10 | 000,097,808 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2012-05-29 15:26:33 | 000,001,917 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2012-05-29 12:11:09 | 000,162,728 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2012-05-28 23:34:13 | 001,872,472 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\SmitfraudFix(dobreprogramy.pl).exe
[2012-05-28 20:22:26 | 000,536,576 | ---- | M] () -- C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\cefydhajr.exe
[2012-05-28 18:55:03 | 000,001,080 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-616249376-839522115-1003Core.job
[2012-05-28 17:21:57 | 000,033,769 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\Zarządzanie finansami (Ć) - Pytania na kolokwium_2.pdf
[2012-05-27 14:37:34 | 000,392,398 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\wnioseklukasza.pdf
[2012-05-27 14:15:29 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2012-05-25 01:18:58 | 000,002,302 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\Google Chrome.lnk
[2012-05-22 00:16:44 | 000,134,842 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\1_b97d23ad00020eba.jpg
[2012-05-15 17:00:34 | 000,000,104 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Dokumenty\Mój komputer.lnk
[2012-05-06 22:34:56 | 000,231,424 | ---- | M] () -- C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2012-05-02 13:19:59 | 003,828,787 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\mrozu- rollercoaster.mp3
[2012-05-01 16:56:18 | 000,004,071 | ---- | M] () -- C:\WINDOWS\bestplayer.bbt
[2012-05-01 16:56:18 | 000,002,277 | ---- | M] () -- C:\WINDOWS\bestplayer.ini
[2012-05-01 16:56:18 | 000,000,045 | ---- | M] () -- C:\WINDOWS\bestplayer.bpp
[2012-05-01 16:55:34 | 000,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2012-04-30 23:12:48 | 004,785,616 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\far east movement- live my life.mp3
[2012-04-30 23:11:03 | 003,942,256 | ---- | M] () -- C:\Documents and Settings\Rafal\Pulpit\chwytak- napijmy sie gorzoly.mp3
[2012-04-30 22:57:31 | 000,157,472 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2012-04-30 22:57:31 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2012-04-30 22:57:31 | 000,149,280 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2012-04-30 22:57:31 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2012-04-30 22:57:30 | 000,476,960 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\npdeployJava1.dll
[2012-04-30 22:57:29 | 000,472,864 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deployJava1.dll
[32 C:\Documents and Settings\Rafal\Pulpit\*.tmp files -> C:\Documents and Settings\Rafal\Pulpit\*.tmp -> ]
[1 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2012-05-30 12:51:38 | 000,000,052 | ---- | C] () -- C:\Documents and Settings\Rafal\defogger_reenable
[2012-05-30 12:44:22 | 000,050,477 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\Defogger.exe
[2012-05-30 11:56:49 | 000,075,776 | ---- | C] () -- C:\WINDOWS\System32\WS2Fix.exe
[2012-05-30 11:56:48 | 000,051,200 | ---- | C] () -- C:\WINDOWS\System32\dumphive.exe
[2012-05-30 11:56:48 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\swsc.exe
[2012-05-30 10:14:19 | 000,302,592 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\xgqwpdi0.exe
[2012-05-29 00:35:37 | 000,004,354 | ---- | C] () -- C:\WINDOWS\System32\tmp.reg
[2012-05-28 23:07:55 | 001,872,472 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\SmitfraudFix(dobreprogramy.pl).exe
[2012-05-28 22:14:25 | 000,001,917 | ---- | C] () -- C:\WINDOWS\imsins.BAK
[2012-05-28 20:22:25 | 000,536,576 | ---- | C] () -- C:\Documents and Settings\Rafal\Ustawienia lokalne\Dane aplikacji\cefydhajr.exe
[2012-05-28 17:21:46 | 000,033,769 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\Zarządzanie finansami (Ć) - Pytania na kolokwium_2.pdf
[2012-05-27 14:37:29 | 000,392,398 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\wnioseklukasza.pdf
[2012-05-22 00:20:10 | 000,134,842 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\1_b97d23ad00020eba.jpg
[2012-05-15 17:00:34 | 000,000,104 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Dokumenty\Mój komputer.lnk
[2012-05-02 13:18:50 | 003,828,787 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\mrozu- rollercoaster.mp3
[2012-04-30 23:55:11 | 000,000,234 | ---- | C] () -- C:\WINDOWS\tasks\Scheduled Update for Ask Toolbar.job
[2012-04-30 23:11:17 | 004,785,616 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\far east movement- live my life.mp3
[2012-04-30 23:10:25 | 003,942,256 | ---- | C] () -- C:\Documents and Settings\Rafal\Pulpit\chwytak- napijmy sie gorzoly.mp3
[2012-03-29 21:47:56 | 000,000,042 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\lscb.lc
[2012-02-15 11:39:44 | 000,003,072 | ---- | C] () -- C:\WINDOWS\System32\iacenc.dll
[2011-09-12 12:51:36 | 000,000,288 | ---- | C] () -- C:\Documents and Settings\Rafal\Dane aplikacji\.backup.dm
[2011-09-11 23:59:43 | 000,000,050 | ---- | C] () -- C:\WINDOWS\System32\BRIDF10A.DAT
[2011-04-16 19:32:23 | 000,002,528 | ---- | C] () -- C:\Documents and Settings\Rafal\Dane aplikacji\$_hpcst$.hpc
[2011-04-15 11:40:02 | 000,000,382 | ---- | C] () -- C:\Documents and Settings\Rafal\Dane aplikacji\SamsungLiveUpdateConfig.ini
[2011-04-02 21:34:36 | 000,004,557 | ---- | C] () -- C:\WINDOWS\Ascd_tmp.ini
[2011-04-02 21:34:35 | 000,010,288 | ---- | C] () -- C:\WINDOWS\System32\drivers\ASUSHWIO.SYS
[2011-04-02 21:25:37 | 000,000,164 | R--- | C] () -- C:\WINDOWS\avrack.ini
[2011-04-02 21:22:46 | 000,001,029 | ---- | C] () -- C:\WINDOWS\C6501.ini.cfg
[2011-04-02 21:22:44 | 000,000,274 | ---- | C] () -- C:\WINDOWS\c6501.ini
[2011-03-08 19:55:03 | 000,000,154 | ---- | C] () -- C:\WINDOWS\adidsl.ini
[2011-03-08 19:55:03 | 000,000,021 | ---- | C] () -- C:\WINDOWS\Fast800.ini
[2011-03-08 19:54:52 | 000,127,456 | ---- | C] () -- C:\WINDOWS\System32\ipdetect.exe
[2011-03-08 19:54:52 | 000,000,342 | ---- | C] () -- C:\WINDOWS\adiras.ini
[2011-03-08 19:54:47 | 000,126,976 | ---- | C] () -- C:\WINDOWS\System32\coclassfast.dll
[2011-03-08 19:54:47 | 000,046,892 | ---- | C] () -- C:\WINDOWS\System32\adadix16.dll
[2011-03-08 19:54:46 | 000,022,395 | ---- | C] () -- C:\WINDOWS\System32\drivers\fpga.bin
[2010-06-18 20:46:18 | 000,074,752 | ---- | C] () -- C:\WINDOWS\cadkasdeinst01e.exe
[color=#E56717]========== LOP Check ==========[/color]
[2009-01-17 16:36:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Football Manager 2009 Certificate
[2012-05-19 21:42:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\529C5366000173E2000022860CDF108C
[2012-02-05 16:11:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\AlawarWrapper
[2012-04-30 23:42:58 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Ask
[2011-03-30 20:51:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Autodesk
[2007-03-20 22:45:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Default
[2008-10-04 20:36:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Installations
[2012-01-29 03:52:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\ipla
[2011-12-28 17:55:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Mobile Master
[2010-04-09 22:50:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\OpenFM
[2008-10-04 20:38:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\PC Suite
[2009-02-04 18:09:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\ScanSoft
[2009-11-12 16:49:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Sports Interactive
[2008-07-16 23:13:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\Teleca
[2011-05-27 00:11:06 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP
[2012-03-24 17:23:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\tmp
[2006-08-07 23:55:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT.000\Dane aplikacji\Opera
[2009-02-24 10:24:46 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService.ZARZĄDZANIE NT.002\Dane aplikacji\MEGAUPLOADTOOLBAR
[2011-01-29 17:00:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\ArcaVirMicroScan
[2008-04-03 16:29:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Autodesk
[2008-01-11 23:50:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\AutoUpdate
[2007-02-27 17:02:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\COWON
[2010-06-15 15:48:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\EurekaLog
[2012-03-01 03:10:05 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\FakturaByMarcio
[2007-05-11 16:24:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Gadu-Gadu
[2009-05-29 21:32:37 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\GanymedeNet
[2009-06-16 15:46:43 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\InsERT GT
[2007-01-27 18:41:09 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\InterTrust
[2012-03-24 17:21:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\ipla
[2011-12-28 17:49:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Jumping Bytes
[2012-05-13 01:03:16 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Kamerzysta
[2008-10-17 19:41:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\LG Electronics
[2012-03-24 17:23:11 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\LimeWire
[2011-12-28 18:10:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Mobile Master
[2008-10-04 21:14:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Nokia
[2010-12-07 18:08:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Nowe Gadu-Gadu
[2010-03-31 16:13:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\OpenFM
[2006-09-27 16:34:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Opera
[2011-09-26 21:01:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\OwnRooms
[2008-10-04 20:38:21 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\PC Suite
[2006-12-10 21:55:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\PPLive
[2007-01-28 12:50:40 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\ppStream
[2012-05-13 01:00:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\PriceGong
[2008-07-07 15:49:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\SecondLife
[2012-03-24 17:23:10 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Simple Sudoku
[2011-02-04 16:28:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Sports Interactive
[2012-03-01 22:20:17 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\TeamViewer
[2007-11-28 22:49:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\Teleca
[2007-11-18 12:17:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rafal\Dane aplikacji\temp
[2012-05-30 14:54:01 | 000,000,234 | ---- | M] () -- C:\WINDOWS\Tasks\Scheduled Update for Ask Toolbar.job
[color=#E56717]========== Purity Check ==========[/color]
[color=#E56717]========== Files - Unicode (All) ==========[/color]
[2009-10-19 23:43:28 | 000,042,496 | ---- | M] ()(C:\Documents and Settings\Rafal\Pulpit\kawa?y.doc) -- C:\Documents and Settings\Rafal\Pulpit\kawa�y.doc
[2009-10-18 23:25:36 | 000,042,496 | ---- | C] ()(C:\Documents and Settings\Rafal\Pulpit\kawa?y.doc) -- C:\Documents and Settings\Rafal\Pulpit\kawa�y.doc
[2007-05-19 19:58:08 | 000,021,504 | ---- | M] ()(C:\Documents and Settings\Rafal\Moje dokumenty\o?wiadczenie do pracy lic..doc) -- C:\Documents and Settings\Rafal\Moje dokumenty\o�wiadczenie do pracy lic..doc
[2007-05-19 19:58:08 | 000,021,504 | ---- | C] ()(C:\Documents and Settings\Rafal\Moje dokumenty\o?wiadczenie do pracy lic..doc) -- C:\Documents and Settings\Rafal\Moje dokumenty\o�wiadczenie do pracy lic..doc
[color=#E56717]========== Alternate Data Streams ==========[/color]
@Alternate Data Stream - 125 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP:7E95B6FD
@Alternate Data Stream - 122 bytes -> C:\Documents and Settings\All Users.WINDOWS\Dane aplikacji\TEMP:F7F48F12
< End of report >
- Kod: Zaznacz wszystko
OTL Extras logfile created on: 2012-05-30 14:48:27 - Run 3
OTL by OldTimer - Version 3.2.44.0 Folder = C:\Documents and Settings\Rafal\Pulpit
Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
511,23 Mb Total Physical Memory | 177,57 Mb Available Physical Memory | 34,73% Memory free
1,22 Gb Paging File | 0,84 Gb Available in Paging File | 68,60% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 14,65 Gb Total Space | 0,92 Gb Free Space | 6,29% Space Free | Partition Type: NTFS
Drive E: | 33,61 Gb Total Space | 2,45 Gb Free Space | 7,28% Space Free | Partition Type: NTFS
Drive G: | 34,05 Gb Total Space | 0,75 Gb Free Space | 2,19% Space Free | Partition Type: NTFS
Drive H: | 32,69 Gb Total Space | 4,18 Gb Free Space | 12,79% Space Free | Partition Type: NTFS
Drive I: | 34,06 Gb Total Space | 1,27 Gb Free Space | 3,74% Space Free | Partition Type: NTFS
Drive J: | 3,00 Gb Total Space | 0,81 Gb Free Space | 26,81% Space Free | Partition Type: NTFS
Drive K: | 6,50 Gb Total Space | 1,01 Gb Free Space | 15,51% Space Free | Partition Type: NTFS
Computer Name: LECH | User Name: Rafal | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Extra Registry (SafeList) ==========[/color]
[color=#E56717]========== File Associations ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
.html [@ = Opera.HTML] -- C:\Program Files\Opera\Opera.exe (Opera Software)
[HKEY_USERS\S-1-5-21-842925246-616249376-839522115-1003\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
[color=#E56717]========== Shell Spawning ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
htmlfile [edit] -- Reg Error: Key error.
http [open] -- Reg Error: Key error.
https [open] -- "C:\Program Files\Opera\Opera.exe" (Opera Software)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- "C:\Program Files\Smart File Advisor\sfa.exe" /unknown "%1" (Filefacts.net)
Directory [CEWE-Podglad Zdjec] -- "E:\Program Files\Rossmann Fotoswiat\CEWE-Podglad Zdjec.exe" -d "%1" ()
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [Rossmann Fotoswiat] -- "E:\Program Files\Rossmann Fotoswiat\Rossmann Fotoswiat.exe" "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
[color=#E56717]========== Security Center Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"firewalldisablenotify" = 0x00000000
"firewalldisableoverride" = 1
"AntiVirusOverride" = 1
"FirewallOverride" = 0
"UpdatesDisableNotify" = 0x00000000
"AntiVirusDisableNotify" = 0x00000000
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[color=#E56717]========== System Restore Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2
[color=#E56717]========== Firewall Settings ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\domainprofile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\standardprofile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:*:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:*:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:*:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:*:Enabled:@xpsp2res.dll,-22002
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"139:TCP" = 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22004
"445:TCP" = 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll,-22005
"137:UDP" = 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22001
"138:UDP" = 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll,-22002
[color=#E56717]========== Authorized Applications List ==========[/color]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00D15456-F679-4AD4-8BD2-56450D4C3F72}" = WarRock
"{066D65EA-ED53-44E4-A96A-F81B6E409D2E}" = PC Connectivity Solution
"{074E292F-70CC-47AA-9351-ED8404602A6E}" = Mini-SE_1.5
"{0DC86BEC-5CE3-413A-BB61-C40A3D186B24}" = Scan
"{11F5D779-7BD9-465A-BBC4-10701386BCB9}" = FW LiveUpdate
"{1CB92574-96F2-467B-B793-5CEB35C40C29}" = Image Resizer Powertoy for Windows XP
"{1E460998-5C2C-4ACF-A9AA-3629BD9C06C2}" = Samsung PC Studio
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{236BB7C4-4419-42FD-0415-2E257A25E34D}" = Adobe Photoshop CS2
"{26A24AE4-039D-4CA4-87B4-2F83216031F0}" = Java(TM) 6 Update 31
"{26A24AE4-039D-4CA4-87B4-2F83216032FF}" = Java(TM) 6 Update 32
"{2934DCB0-F8EE-11E0-A4A5-B8AC6F97B88E}" = Google Earth Plug-in
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (INSERTGT)
"{2BC0C13D-8243-4C8C-93DD-56219B9A3034}" = myMousePainter
"{3248F0A8-6813-11D6-A77B-00B0D0150050}" = J2SE Runtime Environment 5.0 Update 5
"{3248F0A8-6813-11D6-A77B-00B0D0150060}" = J2SE Runtime Environment 5.0 Update 6
"{3248F0A8-6813-11D6-A77B-00B0D0150100}" = J2SE Runtime Environment 5.0 Update 10
"{3248F0A8-6813-11D6-A77B-00B0D0150110}" = J2SE Runtime Environment 5.0 Update 11
"{3248F0A8-6813-11D6-A77B-00B0D0160010}" = Java(TM) SE Runtime Environment 6 Update 1
"{3248F0A8-6813-11D6-A77B-00B0D0160020}" = Java(TM) 6 Update 2
"{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java(TM) 6 Update 3
"{3248F0A8-6813-11D6-A77B-00B0D0160050}" = Java(TM) 6 Update 5
"{325C0D0E-85D9-4841-A274-8D333C0F626E}" = OpenOffice.org 2.0.3
"{332CC6BF-E6C7-48EE-BA3D-435E576AD67F}" = PaperPort Image Printer
"{350C9415-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{38E0C491-5230-4373-B62E-F1A6E94B1045}" = Nero 7 Demo
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4AE3A0CB-87B0-4F51-BECD-3D1F8DFDD62F}" = SAGEM F@st 800-840
"{50120000-1105-0000-0000-0000000FF1CE}" = Microsoft Office 2007 Primary Interop Assemblies
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{610E8375-30D1-4093-827B-C2282FD25EDA}_is1" = BARRE 1.3.6.0
"{64CB2553-C109-4132-AA51-1F421B515FD1}" = Microsoft .NET Framework 1.1 Polish Language Pack
"{655CB07D-C944-40BE-B93F-55957CAC7625}" = AiO_Scan
"{65A732D0-7F4C-475E-86DA-C7D4E4C996F1}" = InsERT GT
"{6AFCA4E1-9B78-3640-8F72-A7BF33448200}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
"{6DEF11C0-35FF-4160-A543-FDD336C4DAE5}" = Microsoft SQL Server 2005 Express Edition (FAKTURABYMARCIO)
"{6E7DD182-9FC6-4651-0095-2E666CC6AF35}" = The Sims 2
"{7131646D-CD3C-40F4-97B9-CD9E4E6262EF}" = Microsoft .NET Framework 2.0
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7617FC2E-EA1B-4F07-A0F5-5D5F437CB32D}" = MioMore Desktop 2008
"{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client
"{786C5747-1437-443D-B06E-79A00FE45110}" = Adobe Stock Photos 1.0
"{7AC15160-A49B-4A89-B181-D4619C025FFF}" = Samsung Samples Installer
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{8777AC6D-89F9-4793-8266-DE406F343E89}" = QFolder
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8EDBA74D-0686-4C99-BFDD-F894678E5101}" = Adobe Common File Installer
"{90110415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{90120000-0020-0415-0000-0000000FF1CE}" = Pakiet zgodności dla systemu Office 2007
"{90260415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office XP Web Components
"{903B0415-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Project Professional 2003
"{99052DB7-9592-4522-A558-5417BBAD48EE}" = Microsoft ActiveSync
"{993960EE-CA4D-443F-8F88-E24260DD5FD2}" = LG PC Suite
"{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite
"{A43BF6A5-D5F0-4AAA-BF41-65995063EC44}" = MSXML 6.0 Parser
"{A4CC2A9B-499E-466E-B686-FBD8AF5835E7}" = Mobile Master
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AC1E4C93-C1E7-11D6-9D10-00010240CE95}" = Java 2 Runtime Environment, SE v1.4.0_03
"{AC76BA86-7AD7-1033-7B44-A81300000003}" = Adobe Reader 8.1.3
"{B6C89654-A6A2-477C-873B-724EC1C56407}" = ScanSoft PaperPort 11
"{B74D4E10-6884-0000-0000-000000000101}" = Adobe Bridge 1.0
"{C3ABE126-2BB2-4246-BFE1-6797679B3579}" = LG USB Modem driver
"{C6E3F362-AAF3-48CF-B8C4-B3EBC2F2E832}" = F1 Challenge 2007 Full version
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}" = PlayReady PC Runtime x86
"{CD6A498E-0FF5-49CE-A70C-2D342E68E709}" = MioMore Desktop
"{CED97F40-CAFC-4A59-94A7-B7726F863008}" = Sterowniki firmy InsERT
"{DF8195AF-8E6F-4487-A0EE-196F7E3F4B8A}" = jetAudio Basic
"{E4511CEC-2E60-4076-95B6-0E193269EB86}" = MicroMachines V4
"{E7084B89-69E0-46B3-A118-8F99D06988CD}" = Microsoft SQL Server VSS Writer
"{E9787678-119F-4D52-B551-6739B2B22101}" = Adobe Help Center 1.0
"{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6
"{F196AC50-7C95-42E1-9947-BDAB18BF3C8C}" = Microsoft .NET Framework 2.0 Language Pack - FRA
"{F5346614-B7C4-4E94-826A-E2363155233D}" = EasyCleaner
"{F9000000-0001-0000-0000-074957833700}" = ABBYY FineReader 9.0 Professional Edition
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"{FB83EAC4-E3F6-4666-B45B-44522F2344B6}" = Brother MFL-Pro Suite DCP-J125
"{FC906D5C-91F9-4DA4-A765-6DCBB669F317}" = Sony Ericsson PC Suite
"{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}" = Disc2Phone
"Adobe Acrobat 5.0" = Adobe Acrobat 5.0
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Adobe Photoshop 7.0 CE" = Adobe Photoshop 7.0 CE
"Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0415-2E257A25E34D}" = Adobe Photoshop CS2
"Adobe Shockwave Player" = Adobe Shockwave Player 11
"AQQ" = WapSter AQQ
"Autodesk DWF Viewer" = Autodesk DWF Viewer
"Avira AntiVir Desktop" = Avira AntiVir Personal - Free Antivirus
"BitComet" = BitComet 0.84
"Car Racing Deluxe_is1" = Car Racing Deluxe v.2.0
"CCleaner" = CCleaner
"Centrum Aktualizacji_is1" = Centrum Aktualizacji (usunięcie)
"Commerbusiness" = Commerbusiness
"Contra - Hard Corps_is1" = Contra - Hard Corps
"Diamond Club Poker" = PokerRoomSchool
"ECBarre" = ECBarre
"Enable S3 for USB Device" = Enable S3 for USB Device
"Eurobarre2.1.5" = Eurobarre
"faktury" = faktury
"FBDBServer_1_5_is1" = Firebird 1.5.2.4731
"ffdshow" = ffdshow
"Football Manager 2008" = Football Manager 2008
"GameDesire-Bingo" = GameDesire-Bingo
"GameDesire-Pool & Snooker" = GameDesire-Pool & Snooker
"Generic 6501 Sound" = C-Media 6501 Sound
"ie8" = Windows Internet Explorer 8
"InstallShield_{EBB794ED-D282-4334-92FB-254481EFF514}" = Pro Evolution Soccer 6
"ipla" = ipla 2.2
"IsoBuster Toolbar" = IsoBuster Toolbar
"IsoBuster_is1" = IsoBuster 2.8.5
"Java Web Start" = Java Web Start
"Język polski i matematyka 2005" = Język polski i matematyka. Uniwersalny leksykon szkolny
"Kamerzysta" = Kamerzysta (deinstalacja)
"LHTTSENG" = L&H TTS3000 British English
"Mega Bomberman_is1" = Mega Bomberman
"Micro Machines 2 - Turbo Tournament_is1" = Micro Machines 2 - Turbo Tournament
"Micro Machines_is1" = Micro Machines
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 2.0" = Microsoft .NET Framework 2.0
"Microsoft .NET Framework 2.0 Language Pack - FRA" = Module de prise en charge linguistique de Microsoft .NET Framework 2.0 - FRA
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Mobile Master" = Mobile Master 7.9.12
"Mozilla Firefox 12.0 (x86 pl)" = Mozilla Firefox 12.0 (x86 pl)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"NapiProjekt_is1" = NapiProjekt 1.0.6.9
"Niemiecki w praktyce - ćwiczenia i testy 2_is1" = Niemiecki w praktyce - ćwiczenia i testy 2
"Nowe Gadu-Gadu" = Nowe Gadu-Gadu
"NVIDIA Drivers" = NVIDIA Drivers
"NVIDIA nView Desktop Manager" = NVIDIA nView Desktop Manager
"Picasa 3" = Picasa 3
"Profesor Henry 2001_is1" = Profesor Henry 2001
"Proste Faktury_is1" = Proste Faktury 1.9.2
"RealPlayer 6.0" = RealPlayer
"Rossmann Fotoswiat" = Rossmann Fotoswiat
"SAMSUNG Mobile USB Modem 1.0" = SAMSUNG Mobile USB Modem 1.0 Software
"SecondLife" = SecondLife (remove only)
"Smart File Advisor_is1" = Smart File Advisor 1.1.1
"SmartBarre_is1" = SmartBarre version 1.2.0.2 AntiPop v1.2
"Sony Ericsson Themes Creator" = Sony Ericsson Themes Creator 3.19
"SopCast" = SopCast 3.0.3
"Szybka powtorka. Geografia" = Szybka powtórka. Geografia
"TextMaker Viewer" = TextMaker Viewer
"TVAnts 1.0" = TVAnts 1.0
"TVUPlayer" = TVUPlayer 2.3.3.2
"V9Software" = V9 HomeTool
"VLC media player" = VideoLAN VLC media player 0.8.4
"Windows Media Format Runtime" = Windows Media Format Runtime
"Windows Media Player" = Windows Media Player 10
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinRAR archiver" = Archiwizator WinRAR
[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]
[HKEY_USERS\S-1-5-21-842925246-616249376-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater
"bf49a51268b6150a" = PackBarre
"Google Chrome" = Google Chrome
"SiemensJava.pl - Emulacja Gier" = SiemensJava.pl - Emulacja Gier
[color=#E56717]========== Last 10 Event Log Errors ==========[/color]
[ Application Events ]
Error - 2012-05-29 06:57:08 | Computer Name = LECH | Source = SQLVDI | ID = 1
Description = SQLVDI: Loc=TriggerAbort. Desc=invoked. ErrorCode=(0). Process=2032.
Thread=3496. Server. Instance=FAKTURABYMARCIO. VD=Global\{10C3090D-4CD2-45FB-BBC2-A51C0B015966}1_SQLVDIMemoryName_0.
Error - 2012-05-29 06:57:09 | Computer Name = LECH | Source = SQLWRITER | ID = 24583
Description = Sqllib error: OLEDB Error encountered calling ICommandText::Execute.
hr = 0x80040e14. SQLSTATE: 42000, Native Error: 3013 Error state: 1, Severity: 16
Source:
Microsoft SQL Native Client Error message: BACKUP DATABASE is terminating abnormally.
SQLSTATE:
42000, Native Error: 3271 Error state: 1, Severity: 16 Source: Microsoft SQL Native
Client Error message: A nonrecoverable I/O error occurred on file "{10C3090D-4CD2-45FB-BBC2-A51C0B015966}1:"
995(Operacja We/Wy została przerwana z powodu zakończenia wątku lub żądania aplikacji.).
Error - 2012-05-29 06:57:09 | Computer Name = LECH | Source = SQLWRITER | ID = 24583
Description = Sqllib error: OLEDB Error encountered calling ICommandText::Execute.
hr = 0x80040e14. SQLSTATE: 42000, Native Error: 3013 Error state: 1, Severity: 16
Source:
Microsoft SQL Native Client Error message: BACKUP DATABASE is terminating abnormally.
SQLSTATE:
42000, Native Error: 3271 Error state: 1, Severity: 16 Source: Microsoft SQL Native
Client Error message: A nonrecoverable I/O error occurred on file "{10C3090D-4CD2-45FB-BBC2-A51C0B015966}3:"
995(Operacja We/Wy została przerwana z powodu zakończenia wątku lub żądania aplikacji.).
Error - 2012-05-29 06:57:09 | Computer Name = LECH | Source = SQLWRITER | ID = 24583
Description = Sqllib error: OLEDB Error encountered calling ICommandText::Execute.
hr = 0x80040e14. SQLSTATE: 42000, Native Error: 3013 Error state: 1, Severity: 16
Source:
Microsoft SQL Native Client Error message: BACKUP DATABASE is terminating abnormally.
SQLSTATE:
42000, Native Error: 3271 Error state: 1, Severity: 16 Source: Microsoft SQL Native
Client Error message: A nonrecoverable I/O error occurred on file "{10C3090D-4CD2-45FB-BBC2-A51C0B015966}2:"
995(Operacja We/Wy została przerwana z powodu zakończenia wątku lub żądania aplikacji.).
Error - 2012-05-29 08:21:25 | Computer Name = LECH | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca AutoConnect.exe, wersja 0.1.3.1, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2012-05-30 06:23:06 | Computer Name = LECH | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca mmc.exe, wersja 5.2.3790.4136, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2012-05-30 06:23:06 | Computer Name = LECH | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca mmc.exe, wersja 5.2.3790.4136, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2012-05-30 06:26:33 | Computer Name = LECH | Source = Application Hang | ID = 1002
Description = Aplikacja zawieszająca mmc.exe, wersja 5.2.3790.4136, moduł zawieszenia
hungapp, wersja 0.0.0.0, adres zawieszenia 0x00000000.
Error - 2012-05-30 06:36:19 | Computer Name = LECH | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej.
Error - 2012-05-30 06:36:19 | Computer Name = LECH | Source = crypt32 | ID = 131083
Description = Nie można wyodrębnić głównej listy innych firm z pliku cab automatycznej
aktualizacji z: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>,
wystąpił błąd: Wymagany certyfikat jest poza okresem ważności, co wynika z weryfikacji
bieżącego zegara systemowego lub sygnatury czasowej.
[ System Events ]
Error - 2012-05-30 06:57:24 | Computer Name = LECH | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (adildr.sys)
z powodu następującego błędu: %%1058
Error - 2012-05-30 06:57:24 | Computer Name = LECH | Source = Service Control Manager | ID = 7001
Description = Usługa Klient DHCP zależy od usługi NetBios przez TCP/IP, której nie
można uruchomić z powodu następującego błędu: %%1058
Error - 2012-05-30 06:57:24 | Computer Name = LECH | Source = Service Control Manager | ID = 7001
Description = Usługa Pomoc TCP/IP NetBIOS zależy od usługi NetBios przez TCP/IP,
której nie można uruchomić z powodu następującego błędu: %%1058
Error - 2012-05-30 06:57:24 | Computer Name = LECH | Source = Service Control Manager | ID = 7023
Description = Usługa Przeglądarka komputera zakończyła działanie; wystąpił następujący
błąd: %%1060
Error - 2012-05-30 08:44:03 | Computer Name = LECH | Source = Ntfs | ID = 262199
Description = Struktura systemu plików na dysku jest uszkodzona i nie do użytku.
Uruchom
narzędzie chkdsk na woluminie E:.
Error - 2012-05-30 08:44:03 | Computer Name = LECH | Source = Ntfs | ID = 262199
Description = Struktura systemu plików na dysku jest uszkodzona i nie do użytku.
Uruchom
narzędzie chkdsk na woluminie E:.
Error - 2012-05-30 08:45:51 | Computer Name = LECH | Source = Service Control Manager | ID = 7000
Description = Nie można uruchomić usługi General Purpose USB Driver (adildr.sys)
z powodu następującego błędu: %%1058
Error - 2012-05-30 08:45:51 | Computer Name = LECH | Source = Service Control Manager | ID = 7001
Description = Usługa Klient DHCP zależy od usługi NetBios przez TCP/IP, której nie
można uruchomić z powodu następującego błędu: %%1058
Error - 2012-05-30 08:45:51 | Computer Name = LECH | Source = Service Control Manager | ID = 7001
Description = Usługa Pomoc TCP/IP NetBIOS zależy od usługi NetBios przez TCP/IP,
której nie można uruchomić z powodu następującego błędu: %%1058
Error - 2012-05-30 08:45:51 | Computer Name = LECH | Source = Service Control Manager | ID = 7023
Description = Usługa Przeglądarka komputera zakończyła działanie; wystąpił następujący
błąd: %%1060
< End of report >