OTL logfile created on: 2010-03-31 19:49:27 - Run 3 OTL by OldTimer - Version 3.1.37.3 Folder = C:\Documents and Settings\Tomek & Ania\Pulpit Windows XP Professional Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 7.0.5730.13) Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd 503,00 Mb Total Physical Memory | 265,00 Mb Available Physical Memory | 53,00% Memory free 1,00 Gb Paging File | 1,00 Gb Available in Paging File | 55,00% Paging File free Paging file location(s): C:\pagefile.sys 756 1512 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 16,75 Gb Total Space | 3,25 Gb Free Space | 19,39% Space Free | Partition Type: NTFS Drive D: | 44,76 Gb Total Space | 27,15 Gb Free Space | 60,65% Space Free | Partition Type: NTFS Drive E: | 28,94 Gb Total Space | 28,38 Gb Free Space | 98,08% Space Free | Partition Type: NTFS Drive F: | 58,59 Gb Total Space | 56,60 Gb Free Space | 96,59% Space Free | Partition Type: NTFS G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: TOMEK Current User Name: Tomek & Ania Logged in as Administrator. Current Boot Mode: Normal Scan Mode: All users Company Name Whitelist: Off Skip Microsoft Files: Off File Age = 30 Days Output = Standard [color=#E56717]========== Processes (SafeList) ==========[/color] PRC - [2010-03-30 15:57:56 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tomek & Ania\Pulpit\OTL.exe PRC - [2010-03-18 09:55:33 | 000,136,176 | ---- | M] (Google Inc.) -- C:\Documents and Settings\Tomek & Ania\Ustawienia lokalne\Dane aplikacji\Google\Update\1.2.183.23\GoogleCrashHandler.exe PRC - [2009-10-20 20:34:38 | 000,207,376 | ---- | M] (Kaspersky Lab) -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtblfs.exe PRC - [2009-02-04 20:59:51 | 000,949,376 | ---- | M] (Eset ) -- C:\Program Files\Eset\nod32kui.exe PRC - [2009-02-04 20:59:51 | 000,552,064 | ---- | M] (Eset ) -- C:\Program Files\Eset\nod32krn.exe PRC - [2008-12-09 12:12:30 | 000,234,856 | ---- | M] (TomTom) -- C:\Program Files\TomTom HOME 2\HOMERunner.exe PRC - [2008-10-25 09:18:50 | 000,098,696 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE PRC - [2008-04-14 23:51:18 | 001,035,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe PRC - [2008-01-23 22:40:41 | 001,251,720 | ---- | M] () -- C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe PRC - [2007-08-23 22:35:30 | 000,243,064 | ---- | M] (Symantec Corporation) -- C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe PRC - [2007-05-15 00:22:22 | 000,035,328 | ---- | M] () -- C:\Program Files\Winamp\winampa.exe PRC - [2007-03-13 00:30:14 | 000,517,768 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe PRC - [2006-07-25 09:01:00 | 000,114,688 | ---- | M] (Sonic Solutions) -- C:\Program Files\Common Files\Sonic Shared\CineTray.exe PRC - [2004-07-06 04:05:48 | 002,550,272 | ---- | M] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE PRC - [2004-07-01 21:58:14 | 000,073,728 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE PRC - [2004-03-11 23:18:54 | 000,135,168 | ---- | M] (Alcor Micro, Corp.) -- C:\Program Files\Digital Media Reader\shwiconEM.exe PRC - [2003-08-05 16:16:27 | 000,278,528 | ---- | M] (ABBYY (BIT Software)) -- C:\Program Files\ABBYY FineReader 7.0 Professional Edition\AbbyyNewsReader.exe PRC - [2001-09-21 14:04:28 | 002,564,096 | ---- | M] (ACD Systems, Ltd.) -- C:\Program Files\ACD Systems\ACDSee\ACDSee.exe [color=#E56717]========== Modules (SafeList) ==========[/color] MOD - [2010-03-30 15:57:56 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tomek & Ania\Pulpit\OTL.exe [color=#E56717]========== Win32 Services (SafeList) ==========[/color] SRV - [2009-10-20 20:39:28 | 000,340,456 | ---- | M] (Kaspersky Lab) [Auto | Stopped] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe -- (AVP) SRV - [2009-02-04 20:59:51 | 000,552,064 | ---- | M] (Eset ) [Auto | Running] -- C:\Program Files\Eset\nod32krn.exe -- (NOD32krn) SRV - [2008-01-23 22:40:41 | 001,251,720 | ---- | M] () [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe -- (Symantec Core LC) SRV - [2007-08-23 22:35:30 | 000,243,064 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe -- (Automatic LiveUpdate Scheduler) SRV - [2007-08-23 22:35:22 | 003,192,184 | ---- | M] (Symantec Corporation) [On_Demand | Stopped] -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE -- (LiveUpdate) SRV - [2007-03-13 00:30:14 | 000,517,768 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifSvc.exe -- (LiveUpdate Notice Service) SRV - [2004-01-05 09:27:32 | 000,065,795 | R--- | M] (HP) [On_Demand | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12) [color=#E56717]========== Driver Services (SafeList) ==========[/color] DRV - [2010-03-25 01:21:18 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF) DRV - [2009-10-14 21:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\klbg.sys -- (klbg) DRV - [2009-10-02 19:39:44 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt) DRV - [2009-09-14 14:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5) DRV - [2009-09-01 15:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1) DRV - [2009-02-04 20:59:51 | 000,512,096 | ---- | M] (Eset ) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\amon.sys -- (AMON) DRV - [2009-02-04 20:59:51 | 000,015,424 | ---- | M] () [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\nod32drv.sys -- (nod32drv) DRV - [2008-09-02 10:00:00 | 000,371,248 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl) DRV - [2008-04-14 01:15:30 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum) DRV - [2008-04-14 01:15:14 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\usbaudio.sys -- (usbaudio) Sterownik audio USB (WDM) DRV - [2008-04-13 23:06:06 | 000,144,384 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\hdaudbus.sys -- (HDAudBus) DRV - [2006-12-30 19:41:46 | 000,010,344 | ---- | M] (Symantec Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\symlcbrd.sys -- (symlcbrd) DRV - [2006-02-05 04:47:21 | 000,043,672 | ---- | M] (Oak Technology Inc.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AFS2K.SYS -- (AFS2K) DRV - [2005-03-17 16:51:16 | 001,033,600 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_DPV.sys -- (HSF_DPV) DRV - [2005-03-17 16:50:36 | 000,221,440 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSFHWBS2.sys -- (HSFHWBS2) DRV - [2005-03-17 16:50:32 | 000,705,280 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys -- (winachsf) DRV - [2004-07-07 02:59:44 | 002,185,408 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\RtkHDAud.sys -- (IntcAzAudAddService) Service for Realtek HD Audio (WDM) DRV - [2004-03-22 19:27:20 | 000,042,936 | ---- | M] (Alcor Micro Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sunkfilt39.sys -- (SunkFilt39) DRV - [2004-03-22 19:01:38 | 000,040,564 | ---- | M] (Alcor Micro Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Sunkfilt.sys -- (SunkFilt) DRV - [2004-03-17 23:10:40 | 000,113,664 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Hdaudio.sys -- (HdAudAddService) DRV - [2003-11-14 04:17:00 | 001,042,816 | ---- | M] (Conexant Systems, Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\HSF_DP.sys -- (HSF_DP) DRV - [2002-11-29 13:38:16 | 000,016,320 | ---- | M] (Elaborate Bytes AG) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ElbyCDIO.sys -- (ElbyCDIO) DRV - [2002-11-28 16:18:04 | 000,015,360 | ---- | M] (Elaborate Bytes AG) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ElbyCDFL.sys -- (ElbyCDFL) DRV - [2002-11-28 12:43:49 | 000,022,016 | ---- | M] (Elaborate Bytes AG) [Kernel | Boot | Running] -- C:\WINDOWS\System32\DRIVERS\ElbyVCD.sys -- (ElbyVCD) DRV - [2002-07-17 16:53:02 | 000,016,877 | ---- | M] (Adaptec) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\ASPI32.SYS -- (Aspi32) [color=#E56717]========== Standard Registry (SafeList) ==========[/color] [color=#E56717]========== Internet Explorer ==========[/color] IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultName = Google IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.onet.pl/ IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie IE - HKU\S-1-5-21-789336058-1292428093-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 [color=#E56717]========== FireFox ==========[/color] FF - prefs.js..browser.startup.homepage: "http://www.onet.pl/" FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0 [2010-02-25 20:33:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Mozilla\Extensions [2008-06-05 02:11:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Mozilla\Extensions\home2@tomtom.com [2010-03-23 23:02:03 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Mozilla\Firefox\Profiles\kcz4du23.default\extensions [2010-02-21 00:16:09 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Mozilla\Firefox\Profiles\kcz4du23.default\extensions\{20a82645-c095-46ed-80e3-08825760534b} [2009-03-19 17:00:30 | 000,000,000 | ---D | M] (Adblock Plus) -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Mozilla\Firefox\Profiles\kcz4du23.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} O1 HOSTS File: ([2009-03-18 15:44:37 | 000,000,789 | RHS- | M]) - C:\WINDOWS\system32\drivers\etc\hosts O1 - Hosts: 127.0.0.1 localhost O1 - Hosts: 127.0.0.1 mpa.one.microsoft.com O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\ievkbd.dll (Kaspersky Lab) O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.) O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll (Google Inc.) O2 - BHO: (no name) - {D34F5D71-99E4-4D96-91CA-F4104F69B8AE} - No CLSID value found. O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O3 - HKU\S-1-5-21-789336058-1292428093-839522115-1003\..\Toolbar\ShellBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-21-789336058-1292428093-839522115-1003\..\Toolbar\WebBrowser: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No CLSID value found. O3 - HKU\S-1-5-21-789336058-1292428093-839522115-1003\..\Toolbar\WebBrowser: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No CLSID value found. O4 - HKLM..\Run: [Alcmtr] C:\WINDOWS\ALCMTR.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\ALCWZRD.EXE (RealTek Semicoductor Corp.) O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\avp.exe (Kaspersky Lab) O4 - HKLM..\Run: [FineReader7NewsReaderPro] C:\Program Files\ABBYY FineReader 7.0 Professional Edition\AbbyyNewsReader.exe (ABBYY (BIT Software)) O4 - HKLM..\Run: [nod32kui] C:\Program Files\Eset\nod32kui.exe (Eset ) O4 - HKLM..\Run: [ShowWnd] C:\WINDOWS\ShowWnd.exe () O4 - HKLM..\Run: [Skrót do strony właściwości High Definition Audio] C:\WINDOWS\System32\Hdaudpropshortcut.exe (Windows (R) Server 2003 DDK provider) O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.) O4 - HKLM..\Run: [SunKistEM] C:\Program Files\Digital Media Reader\shwiconEM.exe (Alcor Micro, Corp.) O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifSvc.exe (Symantec Corporation) O4 - HKLM..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe () O4 - HKU\S-1-5-21-789336058-1292428093-839522115-1003..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe File not found O4 - HKU\S-1-5-21-789336058-1292428093-839522115-1003..\Run: [eMuleAutoStart] C:\Program Files\eMule\emule.exe File not found O4 - HKU\S-1-5-21-789336058-1292428093-839522115-1003..\Run: [TomTomHOME.exe] C:\Program Files\TomTom HOME 2\HOMERunner.exe (TomTom) O4 - HKU\S-1-5-21-789336058-1292428093-839522115-1003..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe (Adobe Systems Incorporated) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated) O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Sonic CinePlayer Quick Launch.lnk = C:\Program Files\Common Files\Sonic Shared\CineTray.exe (Sonic Solutions) O4 - Startup: C:\Documents and Settings\Tomek & Ania\Menu Start\Programy\Autostart\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 28 O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145 O7 - HKU\S-1-5-21-789336058-1292428093-839522115-1003\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 0 O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) O9 - Extra Button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: &Wirtualna klawiatura - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O9 - Extra Button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk File not found O9 - Extra 'Tools' menuitem : Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks\Norton Cleanup\WCQuick.lnk File not found O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation) O9 - Extra Button: &Sprawdzanie adresów - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\klwtbbho.dll (Kaspersky Lab) O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\System32\imon.dll (Eset ) O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\WINDOWS\System32\imon.dll (Eset ) O16 - DPF: {00000055-9980-0010-8000-00AA00389B71} http://codecs.microsoft.com/codecs/i386/fhg.CAB (Reg Error: Key error.) O16 - DPF: {00000161-0000-0010-8000-00AA00389B71} http://codecs.microsoft.com/codecs/i386/msaudio.cab (Reg Error: Key error.) O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://www.apple.com/qtactivex/qtplugin.cab (QuickTime Object) O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control) O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab (Windows Genuine Advantage Validation Tool) O16 - DPF: {3334504D-9980-0010-8000-00AA00389B71} http://download.microsoft.com/download/0/C/8/0C8EDFAB-30BC-4792-898E-2DABE27B2C4D/mp43dmo.CAB (Reg Error: Key error.) O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6087.cab (Windows Live Safety Center Base Module) O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Utility Class) O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab (Reg Error: Key error.) O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} http://ax.emsisoft.com/asquared.cab (a-squared Scanner) O16 - DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} http://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab (Java Plug-in 1.5.0) O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab (Java Plug-in 1.6.0_01) O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07) O16 - DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab (Java Plug-in 1.6.0_11) O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} http://h30043.www3.hp.com/aio/en/check/qdiagh.cab?326 (QDiagHUpdateObj Class) O16 - DPF: {FDDBE2B8-6602-4AD8-946D-94C5A32FA6C1} http://67.15.101.3/g_bin/pl/billard8_2_0_0_23.cab (GameDesire Pool 8) O16 - DPF: DirectAnimation Java Classes file://C:\WINDOWS\Java\classes\dajava.cab (Reg Error: Key error.) O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 83.242.92.2 O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.114.109 85.255.112.153 O18 - Protocol\Handler\cetihpz {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll (Hewlett-Packard Company) O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation) O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation) O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation) O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2010\mzvkbd3.dll (Kaspersky Lab) O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation) O20 - Winlogon\Notify\igfxcui: DllName - igfxsrvc.dll - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation) O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab) O22 - SharedTaskScheduler: {4233ac08-a2c4-4742-a0b4-83719613d62c} - grassily - Reg Error: Key error. File not found O24 - Desktop Components:0 () - http://poczta.onet.pl/_d/lazur/more.gif O24 - Desktop Components:1 (Moja bieżąca strona główna) - About:Home O24 - Desktop WallPaper: C:\Documents and Settings\Tomek & Ania\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O24 - Desktop BackupWallPaper: C:\Documents and Settings\Tomek & Ania\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2005-05-21 02:56:32 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ] O33 - MountPoints2\{3192c05b-119f-11dd-ac32-0011117f3ba6}\Shell\AutoRun\command - "" = J:\InstallTomTomHOME.exe -- File not found O34 - HKLM BootExecute: (autocheck autochk *) - File not found O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* [color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color] [2010-03-31 19:45:31 | 000,000,000 | ---D | C] -- C:\rsit [2010-03-30 15:57:42 | 000,555,520 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Tomek & Ania\Pulpit\OTL.exe [2010-03-29 22:01:55 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro [2010-03-29 21:27:53 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software [2010-03-29 21:27:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2010-03-29 20:39:29 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Tomek & Ania\Recent [2010-03-26 13:56:42 | 000,006,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\apmbatt.sys [2010-03-26 13:56:40 | 000,036,224 | ---- | C] (ADMtek Incorporated.) -- C:\WINDOWS\System32\dllcache\an983.sys [2010-03-26 13:56:39 | 000,012,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\amsint.sys [2010-03-26 13:56:36 | 000,005,248 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\aliide.sys [2010-03-26 13:56:35 | 000,026,624 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\alifir.sys [2010-03-26 13:56:34 | 000,027,678 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\ali5261.sys [2010-03-26 13:56:33 | 000,056,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aic78xx.sys [2010-03-26 13:56:33 | 000,055,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aic78u2.sys [2010-03-26 13:56:31 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aha154x.sys [2010-03-26 13:56:26 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agcgauge.ax [2010-03-26 13:56:18 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adpu160m.sys [2010-03-26 13:56:17 | 000,046,112 | ---- | C] (Adaptec, Inc ) -- C:\WINDOWS\System32\dllcache\adptsf50.sys [2010-03-26 13:56:07 | 000,010,880 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\admjoy.sys [2010-03-26 13:56:05 | 000,747,392 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8830.sys [2010-03-26 13:56:04 | 000,553,984 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8820.sys [2010-03-26 13:56:02 | 000,584,448 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8810.sys [2010-03-26 13:56:01 | 000,020,160 | ---- | C] (ADMtek Incorporated) -- C:\WINDOWS\System32\dllcache\adm8511.sys [2010-03-26 13:56:00 | 000,007,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adicvls.sys [2010-03-26 13:55:58 | 000,061,440 | ---- | C] (Kolorowy skaner płaski) -- C:\WINDOWS\System32\dllcache\acerscad.dll [2010-03-26 13:55:56 | 000,084,480 | ---- | C] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\dllcache\ac97via.sys [2010-03-26 13:55:55 | 000,297,728 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\WINDOWS\System32\dllcache\ac97sis.sys [2010-03-26 13:55:54 | 000,231,552 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\ac97ali.sys [2010-03-26 13:55:54 | 000,096,256 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\ac97intc.sys [2010-03-26 13:55:52 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\abp480n5.sys [2010-03-26 13:55:51 | 000,462,848 | ---- | C] (Aureal Inc.) -- C:\WINDOWS\System32\dllcache\a3dapi.dll [2010-03-26 13:55:50 | 000,098,304 | ---- | C] (Aureal Semiconductor) -- C:\WINDOWS\System32\dllcache\a3d.dll [2010-03-26 13:55:50 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\8514a.dll [2010-03-26 13:55:48 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\61883.sys [2010-03-26 13:55:47 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\4mmdat.sys [2010-03-26 13:55:45 | 000,689,216 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvs.dll [2010-03-26 13:55:45 | 000,148,352 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvsm.sys [2010-03-26 13:55:44 | 000,762,780 | ---- | C] (3Com, Inc.) -- C:\WINDOWS\System32\dllcache\3cwmcru.sys [2010-03-26 13:55:44 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\1394vdbg.sys [2010-03-26 13:55:00 | 000,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\s3legacy.dll [2010-03-25 22:53:42 | 000,000,000 | ---D | C] -- C:\Program Files\Panda Security [2010-03-25 01:08:19 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab [2010-03-25 01:08:19 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab [2010-03-24 23:10:13 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live Safety Center [2010-03-24 22:53:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Tomek & Ania\Moje dokumenty\Symantec [2010-03-24 22:14:30 | 000,000,000 | ---D | C] -- C:\Program Files\SkanerOnline [2010-03-24 22:08:57 | 000,315,408 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys [2010-03-24 22:07:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab Setup Files [2010-03-17 21:59:47 | 000,000,000 | ---D | C] -- C:\Program Files\InterActual [2010-03-10 10:07:59 | 003,558,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe [2009-05-02 11:07:51 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Microsoft [2009-03-31 19:46:15 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Microsoft [2009-03-16 21:52:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Google [2009-03-07 20:50:28 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Ustawienia lokalne\Dane aplikacji\Google [2007-12-08 17:23:01 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Apple [2007-07-14 02:55:11 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Dane aplikacji\Microsoft [2007-04-03 18:16:56 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Dane aplikacji\Microsoft [2006-10-03 01:15:06 | 000,774,144 | ---- | C] (RealNetworks, Inc.) -- C:\Program Files\RngInterstitial.dll [2006-09-15 02:54:26 | 021,290,704 | ---- | C] ( ) -- C:\Program Files\AdbeRdr708_en_US.exe [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files - Modified Within 30 Days ==========[/color] [2010-03-31 19:01:15 | 000,001,036 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [2010-03-31 19:01:00 | 000,001,032 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [2010-03-31 19:00:03 | 000,001,160 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-1292428093-839522115-1003UA.job [2010-03-31 12:45:32 | 001,124,078 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI [2010-03-31 12:45:32 | 000,503,518 | ---- | M] () -- C:\WINDOWS\System32\perfh015.dat [2010-03-31 12:45:32 | 000,444,164 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat [2010-03-31 12:45:32 | 000,090,094 | ---- | M] () -- C:\WINDOWS\System32\perfc015.dat [2010-03-31 12:45:32 | 000,072,040 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat [2010-03-31 12:44:16 | 000,000,972 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job [2010-03-31 12:44:06 | 000,000,260 | ---- | M] () -- C:\WINDOWS\tasks\WGASetup.job [2010-03-31 12:43:53 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT [2010-03-31 12:43:52 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl [2010-03-31 12:43:49 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2010-03-31 12:42:50 | 008,388,608 | -H-- | M] () -- C:\Documents and Settings\Tomek & Ania\NTUSER.DAT [2010-03-31 12:42:50 | 000,000,292 | -HS- | M] () -- C:\Documents and Settings\Tomek & Ania\ntuser.ini [2010-03-31 09:00:00 | 000,001,108 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-789336058-1292428093-839522115-1003Core.job [2010-03-31 03:00:00 | 000,000,502 | ---- | M] () -- C:\WINDOWS\tasks\SpywareBot Scheduled Scan.job [2010-03-30 22:14:46 | 002,359,350 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\zrzut1.bmp [2010-03-30 22:12:01 | 002,359,350 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\Clip.bmp [2010-03-30 22:09:10 | 002,359,350 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\zrzut.bmp [2010-03-30 19:09:34 | 000,001,515 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\Paint.lnk [2010-03-30 15:57:56 | 000,555,520 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Tomek & Ania\Pulpit\OTL.exe [2010-03-29 22:01:56 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\HijackThis.lnk [2010-03-29 21:46:01 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT [2010-03-29 21:19:40 | 000,060,416 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\ALCFDRTM.VER [2010-03-26 23:16:04 | 000,000,284 | ---- | M] () -- C:\WINDOWS\tasks\AppleSoftwareUpdate.job [2010-03-25 14:44:29 | 000,001,166 | ---- | M] () -- C:\WINDOWS\bestplayer.ini [2010-03-25 14:44:29 | 000,000,333 | ---- | M] () -- C:\WINDOWS\bestplayer.bbt [2010-03-25 14:44:29 | 000,000,000 | ---- | M] () -- C:\WINDOWS\bestplayer.bpp [2010-03-25 14:25:17 | 000,054,156 | -H-- | M] () -- C:\WINDOWS\QTFont.qfn [2010-03-25 03:19:52 | 000,002,355 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\Google Chrome.lnk [2010-03-25 01:21:18 | 000,315,408 | ---- | M] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys [2010-03-25 01:10:19 | 000,108,059 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat [2010-03-25 01:10:19 | 000,095,259 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat [2010-03-25 00:59:57 | 000,013,824 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\RemoveWGA.exe [2010-03-23 21:16:10 | 000,011,584 | ---- | M] () -- C:\Documents and Settings\Tomek & Ania\Moje dokumenty\Hello Mr.docx [2010-03-17 22:06:36 | 000,000,000 | ---- | M] () -- C:\WINDOWS\iPlayer.INI [2010-03-11 14:35:47 | 001,168,384 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\urlmon.dll [2010-03-11 14:35:47 | 000,832,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wininet.dll [2010-03-11 14:35:47 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\webcheck.dll [2010-03-11 14:35:46 | 000,671,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mstime.dll [2010-03-11 14:35:46 | 000,671,232 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstime.dll [2010-03-11 14:35:46 | 000,193,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msrating.dll [2010-03-11 14:35:46 | 000,193,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msrating.dll [2010-03-11 14:35:46 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\url.dll [2010-03-11 14:35:46 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\url.dll [2010-03-11 14:35:46 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\occache.dll [2010-03-11 14:35:46 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\pngfilt.dll [2010-03-11 14:35:46 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pngfilt.dll [2010-03-11 14:35:45 | 003,599,872 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll [2010-03-11 14:35:45 | 000,477,696 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtmled.dll [2010-03-11 14:35:44 | 000,459,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeeds.dll [2010-03-11 14:35:44 | 000,459,264 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll [2010-03-11 14:35:44 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\msfeedsbs.dll [2010-03-11 14:35:44 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll [2010-03-11 14:35:44 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\jsproxy.dll [2010-03-11 14:35:44 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jsproxy.dll [2010-03-11 14:35:43 | 006,067,200 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieframe.dll [2010-03-11 14:35:43 | 001,830,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcpl.cpl [2010-03-11 14:35:43 | 001,830,912 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcpl.cpl [2010-03-11 14:35:43 | 000,268,288 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll [2010-03-11 14:35:43 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iepeers.dll [2010-03-11 14:35:43 | 000,192,512 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iepeers.dll [2010-03-11 14:35:43 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iernonce.dll [2010-03-11 14:35:43 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iernonce.dll [2010-03-11 14:35:41 | 000,385,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll [2010-03-11 14:35:41 | 000,385,024 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedkcs32.dll [2010-03-11 14:35:41 | 000,380,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieapfltr.dll [2010-03-11 14:35:41 | 000,380,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieapfltr.dll [2010-03-11 14:35:41 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieaksie.dll [2010-03-11 14:35:41 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieaksie.dll [2010-03-11 14:35:41 | 000,153,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieakeng.dll [2010-03-11 14:35:41 | 000,153,088 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieakeng.dll [2010-03-11 14:35:41 | 000,078,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieencode.dll [2010-03-11 14:35:41 | 000,078,336 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieencode.dll [2010-03-11 14:35:40 | 000,347,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dxtmsft.dll [2010-03-11 14:35:40 | 000,347,136 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtmsft.dll [2010-03-11 14:35:40 | 000,214,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dxtrans.dll [2010-03-11 14:35:40 | 000,214,528 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dxtrans.dll [2010-03-11 14:35:40 | 000,133,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\extmgr.dll [2010-03-11 14:35:40 | 000,124,928 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\advpack.dll [2010-03-11 14:35:40 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icardie.dll [2010-03-11 14:35:40 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\corpol.dll [2010-03-11 14:35:40 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\corpol.dll [2010-03-10 21:17:51 | 000,000,004 | ---- | M] () -- C:\Program Files\is.dat [2010-03-10 20:15:16 | 000,016,384 | ---- | M] () -- C:\Program Files\uik.dat [2010-03-10 15:21:37 | 000,389,120 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\html.iec [2010-03-10 15:21:22 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe [2010-03-10 15:21:22 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ie4uinit.exe [2010-03-10 15:21:22 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\ieudinit.exe [2010-03-10 15:21:22 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieudinit.exe [5 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ] [3 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ] [color=#E56717]========== Files Created - No Company Name ==========[/color] [2010-03-30 22:14:45 | 002,359,350 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\zrzut1.bmp [2010-03-30 22:09:10 | 002,359,350 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\zrzut.bmp [2010-03-30 22:08:04 | 002,359,350 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\Clip.bmp [2010-03-29 22:01:56 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Pulpit\HijackThis.lnk [2010-03-25 01:10:19 | 000,108,059 | ---- | C] () -- C:\WINDOWS\System32\drivers\klin.dat [2010-03-25 01:10:19 | 000,095,259 | ---- | C] () -- C:\WINDOWS\System32\drivers\klick.dat [2010-03-17 22:06:36 | 000,000,000 | ---- | C] () -- C:\WINDOWS\iPlayer.INI [2010-03-11 23:04:01 | 000,011,584 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Moje dokumenty\Hello Mr.docx [2010-03-10 20:15:16 | 000,016,384 | ---- | C] () -- C:\Program Files\uik.dat [2010-03-10 20:14:56 | 000,000,004 | ---- | C] () -- C:\Program Files\is.dat [2009-02-04 21:00:43 | 000,015,424 | ---- | C] () -- C:\WINDOWS\System32\drivers\nod32drv.sys [2008-05-23 00:19:46 | 000,000,416 | ---- | C] () -- C:\WINDOWS\System32\dtu100.dll.manifest [2008-05-23 00:19:46 | 000,000,416 | ---- | C] () -- C:\WINDOWS\System32\dpl100.dll.manifest [2008-05-23 00:18:54 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\DivXWMPExtType.dll [2008-01-02 03:54:52 | 000,006,748 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\LUUnInstall.LiveUpdate [2007-11-18 22:16:35 | 000,000,059 | ---- | C] () -- C:\WINDOWS\WININIT.INI [2007-10-20 02:56:16 | 003,596,288 | ---- | C] () -- C:\WINDOWS\System32\qt-dx331.dll [2007-09-27 21:27:56 | 000,000,000 | ---- | C] () -- C:\WINDOWS\pcfriend.INI [2007-05-16 03:06:55 | 000,000,413 | ---- | C] () -- C:\WINDOWS\cdplayer.ini [2007-05-09 09:01:07 | 000,000,467 | ---- | C] () -- C:\WINDOWS\System32\MRT.INI [2007-05-04 04:23:30 | 000,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini [2007-05-02 03:28:26 | 000,000,768 | ---- | C] () -- C:\WINDOWS\VPlayer.INI [2006-11-28 01:15:37 | 000,000,976 | ---- | C] () -- C:\WINDOWS\yahtzee.ini [2006-10-23 01:49:15 | 000,160,768 | ---- | C] () -- C:\WINDOWS\System32\midas11.dll [2006-09-13 01:07:46 | 000,001,062 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\AdobeDLM.log [2006-09-13 01:07:46 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\dm.ini [2006-02-05 00:42:24 | 000,565,248 | R--- | C] () -- C:\WINDOWS\System32\hpotscl.dll [2006-01-26 20:15:19 | 000,056,320 | ---- | C] () -- C:\WINDOWS\System32\iyvu9_32.dll [2006-01-12 23:09:14 | 000,090,112 | ---- | C] () -- C:\WINDOWS\System32\DXFLib.dll [2006-01-12 23:08:06 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\opcode.dll [2005-05-31 01:34:58 | 000,000,137 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Ustawienia lokalne\Dane aplikacji\fusioncache.dat [2005-05-31 01:28:11 | 000,363,520 | ---- | C] () -- C:\WINDOWS\System32\psisdecd.dll [2005-05-21 05:12:11 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini [2005-05-21 05:03:50 | 000,299,008 | ---- | C] () -- C:\Program Files\MPLAYER.EXE [2005-05-21 04:49:47 | 000,001,166 | ---- | C] () -- C:\WINDOWS\bestplayer.ini [2005-05-21 04:37:03 | 000,029,303 | ---- | C] () -- C:\Documents and Settings\All Users\Dane aplikacji\hpzinstall.log [2005-05-21 04:21:13 | 000,000,421 | ---- | C] () -- C:\WINDOWS\ODBC.INI [2005-05-21 03:46:02 | 000,001,065 | ---- | C] () -- C:\WINDOWS\winamp.ini [2005-05-21 03:38:16 | 000,532,544 | ---- | C] () -- C:\WINDOWS\PIC.dll [2005-05-21 03:38:16 | 000,024,576 | ---- | C] () -- C:\WINDOWS\HKNTDLL.dll [2005-05-21 03:23:12 | 000,110,592 | ---- | C] () -- C:\Documents and Settings\Tomek & Ania\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [2005-02-14 02:55:03 | 000,156,160 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll [2005-02-14 02:54:55 | 000,012,288 | ---- | C] () -- C:\WINDOWS\System32\e100bmsg.dll [2002-12-10 23:18:34 | 000,094,274 | ---- | C] () -- C:\WINDOWS\System32\HPBHEALR.DLL [2001-09-21 14:00:38 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\InTouchViewer.dll [2001-09-21 13:59:38 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\InTouchCOMClient.dll [2001-09-17 17:49:22 | 000,421,888 | R--- | C] () -- C:\WINDOWS\System32\XMLParser.dll [2001-09-17 17:49:22 | 000,073,728 | R--- | C] () -- C:\WINDOWS\System32\UNACEV2.DLL [2001-09-17 17:49:20 | 000,573,440 | R--- | C] () -- C:\WINDOWS\System32\dbsock.dll [2001-09-17 17:49:20 | 000,118,784 | R--- | C] () -- C:\WINDOWS\System32\Transport.dll [2001-09-17 17:48:54 | 000,503,808 | R--- | C] () -- C:\WINDOWS\System32\lt_xtrans.dll [2001-09-17 17:48:54 | 000,286,720 | R--- | C] () -- C:\WINDOWS\System32\MrSIDD.dll [2001-09-17 17:48:54 | 000,163,840 | R--- | C] () -- C:\WINDOWS\System32\lt_common.dll [2001-09-17 17:48:54 | 000,126,976 | R--- | C] () -- C:\WINDOWS\System32\lt_trans.dll [2001-09-17 17:48:54 | 000,069,632 | R--- | C] () -- C:\WINDOWS\System32\lt_meta.dll [2001-09-17 17:48:54 | 000,053,248 | R--- | C] () -- C:\WINDOWS\System32\lt_encrypt.dll [2001-09-17 17:48:54 | 000,020,480 | R--- | C] () -- C:\WINDOWS\System32\lt_messagetext.dll [2001-09-17 17:48:52 | 000,006,688 | R--- | C] () -- C:\WINDOWS\System32\Digita.sys [2001-09-17 17:48:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportUSB.dll [2001-09-17 17:48:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportSerial.dll [2001-09-17 17:48:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportIrDA.dll [2001-09-17 17:48:48 | 000,049,152 | R--- | C] () -- C:\WINDOWS\System32\TransportIrCOMM.dll [color=#E56717]========== LOP Check ==========[/color] [2005-05-21 03:49:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ACD Systems [2010-03-29 21:27:53 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Alwil Software [2006-12-01 01:53:39 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\HipSoft [2009-12-29 14:13:23 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\ipla [2006-10-14 00:50:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\MumboJumbo [2006-12-03 00:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\PlayFirst [2006-12-31 23:29:31 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\Sandlot Games [2007-01-11 01:32:27 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\SugarGames [2008-04-24 03:47:56 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Dane aplikacji\TomTom [2006-10-06 01:08:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\7Wonders [2005-05-31 03:24:12 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\ACD Systems [2006-11-04 17:51:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Alawar [2006-11-09 22:30:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Beep Industries [2007-12-28 05:10:08 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Canon [2007-04-28 18:14:14 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Gadu-Gadu [2007-01-04 01:37:20 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Gaijin Ent [2007-02-04 17:08:18 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\ImageFox [2009-03-19 11:38:48 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\IObit [2010-02-17 01:54:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\ipla [2006-09-14 23:22:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\Leadertech [2006-12-03 00:03:50 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\PlayFirst [2007-04-27 19:15:32 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\SpywareBot [2008-04-24 03:47:34 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Tomek & Ania\Dane aplikacji\TomTom [2010-03-31 03:00:00 | 000,000,502 | ---- | M] () -- C:\WINDOWS\Tasks\SpywareBot Scheduled Scan.job [2010-03-31 12:44:06 | 000,000,260 | ---- | M] () -- C:\WINDOWS\Tasks\WGASetup.job [color=#E56717]========== Purity Check ==========[/color] < End of report >