OTL.Txt

Re: prosze o sprawdzenie logow

nic nie mogę pobrać z kompa zassałem juz na tablet a teraz przerzucam na kompa zacząłem skanowanie gmer ale to strasznie długo trwa na tablecie net działa normalnie na kompie juz nie dodatkowo system strasznie powoli dziala a ma do przeskanowania 2 terabajty dysku wiec proszę nie dziw sie ze to tak wolno idzie najłatwiej było by zrobić format ale mam za dużo plików do stracenia OTL juz jest


OTL logfile created on: 2011-08-01 23:47:44 - Run 2
OTL by OldTimer - Version 3.2.26.1 Folder = C:\Documents and Settings\Pawel\Pulpit
Windows XP Home Edition Dodatek Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd

1023,48 Mb Total Physical Memory | 486,00 Mb Available Physical Memory | 47,49% Memory free
2,40 Gb Paging File | 2,02 Gb Available in Paging File | 84,38% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 34,18 Gb Total Space | 3,65 Gb Free Space | 10,67% Space Free | Partition Type: NTFS
Drive D: | 465,72 Gb Total Space | 80,41 Gb Free Space | 17,26% Space Free | Partition Type: NTFS
Drive E: | 114,86 Gb Total Space | 81,27 Gb Free Space | 70,76% Space Free | Partition Type: NTFS

Computer Name: PRIV | User Name: Pawel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2011-08-01 23:38:19 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pawel\Pulpit\OTL.exe
PRC - [2011-06-23 17:07:33 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2008-04-14 19:21:16 | 000,977,408 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007-04-23 05:00:00 | 000,692,224 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\SetPoint\SetPoint.exe
PRC - [2007-04-11 16:32:22 | 000,056,080 | ---- | M] (Logitech Inc.) -- C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.exe
PRC - [2007-03-19 00:05:02 | 000,630,784 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
PRC - [2004-12-22 11:09:44 | 000,077,824 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE


[color=#E56717]========== Modules (SafeList) ==========[/color]

MOD - [2011-08-01 23:38:19 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pawel\Pulpit\OTL.exe
MOD - [2011-05-14 01:17:40 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcr80.dll
MOD - [2011-05-14 01:12:34 | 000,554,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.6195_x-ww_44262b86\msvcp80.dll
MOD - [2010-08-23 18:12:53 | 001,054,208 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MOD - [2007-04-23 05:00:00 | 000,045,568 | ---- | M] (Logitech Inc.) -- C:\Program Files\Logitech\SetPoint\lgscroll.dll
MOD - [2007-03-19 00:04:22 | 000,069,632 | ---- | M] () -- C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.dll


[color=#E56717]========== Win32 Services (SafeList) ==========[/color]

SRV - File not found [Disabled | Stopped] -- -- (HidServ)
SRV - File not found [On_Demand | Stopped] -- -- (AppMgmt)
SRV - [2011-05-22 21:48:34 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2010-11-02 22:06:06 | 000,365,336 | ---- | M] (Kaspersky Lab ZAO) [Auto | Stopped] -- C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe -- (AVP)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV - [2011-07-30 15:40:15 | 000,475,736 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF)
DRV - [2011-07-19 18:46:11 | 000,024,416 | ---- | M] (Greatis Software) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\regguard.sys -- (RegGuard)
DRV - [2010-11-06 23:24:30 | 000,019,056 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Program Files\PeerBlock\pbfilter.sys -- (pbfilter)
DRV - [2010-06-09 16:43:52 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2)
DRV - [2010-06-09 16:43:50 | 000,132,184 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\kl1.sys -- (KL1)
DRV - [2010-05-07 11:06:26 | 000,032,856 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2009-11-02 19:27:24 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2007-07-11 16:51:48 | 000,019,840 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbdiag.sys -- (UsbDiag)
DRV - [2007-07-11 11:45:00 | 000,021,632 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbmodem.sys -- (USBModem)
DRV - [2007-07-11 11:40:18 | 000,012,416 | ---- | M] (LG Electronics Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\lgusbbus.sys -- (usbbus)
DRV - [2007-04-11 16:33:06 | 000,079,376 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\LMouKE.Sys -- (LMouKE)
DRV - [2007-04-11 16:32:38 | 000,063,248 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\L8042mou.Sys -- (L8042mou)
DRV - [2007-04-11 16:32:30 | 000,020,496 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\L8042Kbd.sys -- (L8042Kbd)
DRV - [2005-05-17 11:45:08 | 000,092,800 | R--- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\nvatabus.sys -- (nvatabus)
DRV - [2005-04-05 21:22:30 | 000,012,928 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\nvnetbus.sys -- (nvnetbus)
DRV - [2005-04-05 21:22:28 | 000,033,536 | R--- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\NVENETFD.sys -- (NVENETFD)
DRV - [2005-03-09 16:53:00 | 000,043,008 | ---- | M] (Advanced Micro Devices) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\AmdK8.sys -- (AmdK8)
DRV - [2004-12-22 11:07:12 | 002,304,320 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS -- (ALCXWDM) Service for Realtek AC97 Audio (WDM)
DRV - [2004-05-02 10:47:08 | 000,023,040 | R--- | M] () [Kernel | On_Demand | Running] -- C:\WINDOWS\System32\drivers\GVCplDrv.sys -- (GVCplDrv)
DRV - [2001-08-17 23:51:32 | 000,018,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\irsir.sys -- (irsir)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://google.com/
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyOverride " = *.local

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.startup.homepage: " http://www.google.pl/ig?hl=pl & source=iglk "
FF - prefs.js..extensions.enabledItems: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8}:1.1.2
FF - prefs.js..extensions.enabledItems: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}:1.3.6
FF - prefs.js..extensions.enabledItems: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}:6.0.23
FF - prefs.js..extensions.enabledItems: jqs@sun.com:1.0
FF - prefs.js..network.proxy.type: 0

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\WINDOWS\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@google.com/npPicasa3,version=3.0.0: C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.69: C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\virtualKeyboard@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\FFExt\virtualKeyboard@kaspersky.ru [2011-07-30 15:52:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\linkfilter@kaspersky.ru: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\FFExt\linkfilter@kaspersky.ru [2011-07-30 15:52:12 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011-06-23 17:07:34 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 5.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2011-06-21 20:13:01 | 000,000,000 | ---D | M]

[2010-11-13 10:20:28 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pawel\Dane aplikacji\Mozilla\Extensions
[2011-07-02 13:14:44 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\Pawel\Dane aplikacji\Mozilla\Firefox\Profiles\80uxcdov.default\extensions
[2011-07-25 23:42:44 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011-01-09 15:02:10 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
File not found (No name found) --
() (No name found) -- C:\DOCUMENTS AND SETTINGS\PAWEL\DANE APLIKACJI\MOZILLA\FIREFOX\PROFILES\80UXCDOV.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI
[2011-01-09 15:01:56 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2010-11-23 15:28:16 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011-06-23 17:07:33 | 000,142,296 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011-01-09 15:01:56 | 000,472,808 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\mozilla firefox\plugins\npdeployJava1.dll
[2011-05-11 21:54:04 | 000,002,767 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\allegro-pl.xml
[2011-05-11 21:54:04 | 000,001,406 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\fbc-pl.xml
[2011-05-11 21:54:04 | 000,000,917 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\merlin-pl.xml
[2011-05-11 21:54:04 | 000,000,858 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\pwn-pl.xml
[2011-05-11 21:54:04 | 000,001,183 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipedia-pl.xml
[2011-05-11 21:54:04 | 000,001,683 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wp-pl.xml

O1 HOSTS File: ([2006-03-02 14:00:00 | 000,000,742 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (IplexToALLPlayer) - {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} - C:\Program Files\ALLPlayer\Iplex\IplexToALLPlayer.dll (ALLCinema Ltd.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [NVRTCLK] C:\WINDOWS\system32\NVRTClk\NVRTClk.exe ()
O4 - HKLM..\Run: [PathNvidiaTV] File not found
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKCU..\Run: [RocketDock] C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe ()
O4 - HKLM..\RunOnceEx: [Flags] Reg Error: Invalid data type. File not found
O4 - Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe (Logitech Inc.)
O4 - Startup: C:\Documents and Settings\Pawel\Menu Start\Programy\Autostart\RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 255
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: = " DisableTaskMgr " =dword:00000000
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: " **del.DisableTaskMgr " = " " = " **del.DisableTaskMgr " = " "
O9 - Extra Button: & Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O9 - Extra Button: URLs c & heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll (Kaspersky Lab ZAO)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Computer, Inc.)
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab (Symantec AntiVirus scanner)
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab (Symantec RuFSI Utility Class)
O16 - DPF: {68282C51-9459-467B-95BF-3C0E89627E55} http://www.mks.com.pl/skaner/SkanerOnline.cab (MksSkanerOnline Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} http://ax.emsisoft.com/asquared.cab (a-squared Scanner)
O16 - DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab (Java Plug-in 1.6.0_07)
O16 - DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab (Java Plug-in 1.6.0_23)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 194.63.133.4 194.63.132.4
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO)
O24 - Desktop Components:0 (Moja bieżąca strona główna) - About:Home
O24 - Desktop WallPaper: C:\Documents and Settings\Pawel\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Pawel\Ustawienia lokalne\Dane aplikacji\Microsoft\Wallpaper1.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2010-11-13 09:47:48 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011-07-31 19:00:39 | 000,000,000 | -H-D | M] - C:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2010-03-30 20:52:20 | 000,000,000 | ---- | M] () - D:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2011-07-31 19:00:39 | 000,000,000 | -H-D | M] - D:\Autorun.inf -- [ NTFS ]
O32 - AutoRun File - [2011-07-31 19:00:40 | 000,000,000 | -H-D | M] - E:\Autorun.inf -- [ NTFS ]
O33 - MountPoints2\{1929fda9-ef00-11df-a9b7-806d6172696f}\Shell - " " = AutoRun
O33 - MountPoints2\{1929fda9-ef00-11df-a9b7-806d6172696f}\Shell\AutoRun\command - " " = F:\SETUP.EXE
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O34 - HKLM BootExecute: (MACHINE BootExecut) - File not found
O35 - HKLM\..comfile [open] -- " %1 " %*
O35 - HKLM\..exefile [open] -- " %1 " %*
O37 - HKLM\...com [@ = comfile] -- " %1 " %*
O37 - HKLM\...exe [@ = exefile] -- " %1 " %*

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2011-08-01 23:47:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\elekroda
[2011-08-01 23:38:19 | 000,579,584 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Pawel\Pulpit\OTL.exe
[2011-08-01 23:09:29 | 000,000,000 | ---D | C] -- C:\Program Files\Trend Micro
[2011-08-01 23:09:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Menu Start\Programy\HiJackThis
[2011-07-31 20:55:49 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\Nowy folder (2)
[2011-07-31 19:00:39 | 000,000,000 | -H-D | C] -- C:\Autorun.inf
[2011-07-31 18:59:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\WormBlaster Software (TM)
[2011-07-31 18:59:09 | 000,608,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\COMCTL32.OCX
[2011-07-31 18:59:09 | 000,294,912 | ---- | C] (Virtos GmbH) -- C:\WINDOWS\System32\Axis.ocx
[2011-07-31 18:59:09 | 000,152,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\COMDLG32.OCX
[2011-07-31 18:59:09 | 000,132,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSINET.OCX
[2011-07-31 18:59:07 | 000,000,000 | ---D | C] -- C:\Program Files\WormBlaster Software (TM)
[2011-07-31 18:44:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\worm blask 2
[2011-07-31 18:42:58 | 016,409,960 | ---- | C] (Safer Networking Limited ) -- C:\Documents and Settings\Pawel\Pulpit\spybotsd162_(shp.net.pl).exe
[2011-07-31 18:28:58 | 006,943,040 | ---- | C] (McAfee Inc.) -- C:\Documents and Settings\Pawel\Pulpit\stinger10.2.0.210.exe
[2011-07-30 15:41:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Kaspersky Anti-Virus 2011
[2011-07-30 15:41:52 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\AVP11
[2011-07-30 15:40:36 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab
[2011-07-30 15:40:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab
[2011-07-30 15:40:15 | 000,475,736 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011-07-30 15:33:10 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Pawel\Moje dokumenty\Passwords Database
[2011-07-27 22:16:44 | 115,842,960 | ---- | C] (Kaspersky Lab) -- C:\Documents and Settings\Pawel\Pulpit\kav11.0.2.556en.exe
[2011-07-26 21:03:32 | 000,032,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys
[2011-07-26 20:12:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\teledyski
[2011-07-25 23:42:44 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\AVP9
[2011-07-25 23:42:13 | 000,039,352 | ---- | C] (Infowatch) -- C:\WINDOWS\System32\drivers\CSVirtualDiskDrv.sys
[2011-07-25 23:41:38 | 000,088,632 | ---- | C] (Infowatch) -- C:\WINDOWS\System32\drivers\CSCrySec.sys
[2011-07-25 23:34:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\Kaspersky Lab Setup Files
[2011-07-25 23:21:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Dane aplikacji\ESET
[2011-07-25 23:18:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Dane aplikacji\ESET
[2011-07-25 23:14:38 | 000,000,000 | ---D | C] -- C:\Program Files\a-squared Free
[2011-07-25 22:37:44 | 000,019,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2011-07-25 22:37:33 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2
[2011-07-25 19:58:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\mapy igo
[2011-07-24 19:52:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\android
[2011-07-24 13:29:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Pulpit\Nowy folder
[2011-07-18 21:43:28 | 000,000,000 | ---D | C] -- C:\WINDOWS\RestoreSafeDeleted
[2011-07-18 21:13:46 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Pawel\Menu Start\Programy\Disabled Startup Items
[2011-07-18 21:13:46 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Menu Start\Programy\Disabled Startup Items
[2011-07-18 21:13:46 | 000,000,000 | ---D | C] -- C:\backreg
[2011-07-18 21:12:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Dane aplikacji\Regrun
[2011-07-10 09:12:19 | 000,000,000 | ---D | C] -- C:\Program Files\Ubisoft
[2011-07-08 20:37:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Pawel\Moje dokumenty\my games
[2011-07-08 08:21:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe AIR
[2011-07-08 08:11:58 | 000,000,000 | ---D | C] -- C:\Program Files\1C
[2010-11-13 10:41:19 | 001,093,632 | ---- | C] (Karol Winnicki) -- C:\Program Files\BESTplayer.exe
[6 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[5 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2011-08-01 23:45:38 | 000,000,462 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{5FE85D6A-DC3F-41E3-882A-E63AB35B7EF6}.job
[2011-08-01 23:42:23 | 000,002,449 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\HiJackThis.lnk
[2011-08-01 23:38:19 | 000,579,584 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Pawel\Pulpit\OTL.exe
[2011-08-01 23:20:50 | 000,002,426 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Nowy Dokument tekstowy.rar
[2011-08-01 23:09:07 | 001,402,880 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\HijackThis(1).msi
[2011-08-01 23:08:41 | 000,130,804 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\HijackThis.msi
[2011-08-01 23:04:27 | 028,853,158 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\krolowa tanca na rurze.flv
[2011-08-01 23:03:05 | 000,000,211 | -HS- | M] () -- C:\boot.ini
[2011-08-01 22:54:43 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011-08-01 20:38:45 | 000,000,069 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2011-07-31 20:11:38 | 000,000,017 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\stinger10.2.0.210.opt
[2011-07-31 18:59:12 | 000,000,840 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Sality Virus Remover.lnk
[2011-07-31 18:59:12 | 000,000,833 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Virut Virus Remover.lnk
[2011-07-31 18:59:12 | 000,000,804 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\Update Virus Database.lnk
[2011-07-31 18:59:12 | 000,000,785 | ---- | M] () -- C:\Documents and Settings\All Users\Pulpit\WormBlaster Software (TM).lnk
[2011-07-31 18:43:47 | 016,409,960 | ---- | M] (Safer Networking Limited ) -- C:\Documents and Settings\Pawel\Pulpit\spybotsd162_(shp.net.pl).exe
[2011-07-31 18:30:29 | 000,000,017 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\stinger10101243.opt
[2011-07-31 18:29:05 | 006,943,040 | ---- | M] (McAfee Inc.) -- C:\Documents and Settings\Pawel\Pulpit\stinger10.2.0.210.exe
[2011-07-31 12:12:11 | 052,008,236 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\01 - Thunderstruck.wav
[2011-07-30 17:12:48 | 022,984,814 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Jenyne Butterfly at Miss Pole Dance SA 2010 [zapiska.pl].mp4
[2011-07-30 17:10:09 | 008,748,503 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\US Pole Dance Championchip 2009 [zapiska.pl].mp4
[2011-07-30 16:53:49 | 016,611,325 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Pole Art - First pole dance video - pole art practice (Original) [zapiska.pl].mp4
[2011-07-30 16:48:36 | 015,093,913 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Doa - Bring On The Competition [zapiska.pl].mp4
[2011-07-30 16:44:33 | 032,675,440 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Kicia - Verba [zapiska.pl].mp4
[2011-07-30 16:21:06 | 047,483,959 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Joey Negro - Make a Move On Me [zapiska.pl].mp4
[2011-07-30 16:15:41 | 097,554,627 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Monopol - Zodiak Na Melanzu ( Official Clip ) [zapiska.pl].mp4
[2011-07-30 16:08:33 | 016,591,283 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\David Guetta Feat Akon - Sexy Bitch (Uncensored version) [zapiska.pl].mp4
[2011-07-30 15:52:10 | 000,115,369 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011-07-30 15:52:10 | 000,097,859 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011-07-30 15:40:15 | 000,475,736 | ---- | M] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011-07-29 17:02:45 | 000,013,682 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011-07-27 22:23:23 | 115,842,960 | ---- | M] (Kaspersky Lab) -- C:\Documents and Settings\Pawel\Pulpit\kav11.0.2.556en.exe
[2011-07-27 22:18:07 | 000,194,048 | ---- | M] () -- C:\Documents and Settings\Pawel\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011-07-27 20:44:17 | 017,275,964 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Arash Feat. Blestyashchie~ Vostochnye Skazki [zapiska.pl].mp4
[2011-07-27 20:40:02 | 054,735,215 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Sasha Dith - Hot Russian Girls [zapiska.pl].mp4
[2011-07-27 20:33:08 | 006,068,411 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Pachanga -Loco [Original Video] [zapiska.pl].mp4
[2011-07-27 20:24:16 | 016,701,085 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Pachanga - Calienta (Official HQ) [zapiska.pl].mp4
[2011-07-27 20:16:57 | 075,987,498 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Dr Dre Feat Snoop Dogg - .mp4
[2011-07-27 20:13:16 | 057,560,992 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Robert M .mp4
[2011-07-27 20:11:16 | 053,051,995 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Kalwi .mp4
[2011-07-27 20:05:10 | 052,322,221 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\3R - Shine On ( Official Clip ) [zapiska.pl].mp4
[2011-07-27 19:53:19 | 036,043,554 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\INNA - Sun is UP (New clip HD) official music video (sexy version) [zapiska.pl].mp4
[2011-07-27 19:47:56 | 040,006,920 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Eric Prydz - Call On Me (Girls Only) (HD) (Uncut) [zapiska.pl].mp4
[2011-07-25 22:37:40 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2011-07-20 20:09:28 | 065,519,117 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\SPC.wmv
[2011-07-19 18:46:11 | 000,024,416 | ---- | M] (Greatis Software) -- C:\WINDOWS\System32\drivers\regguard.sys
[2011-07-19 15:15:34 | 000,000,078 | ---- | M] () -- C:\WINDOWS\lsoon.ini
[2011-07-18 21:14:13 | 000,000,002 | RHS- | M] () -- C:\WINDOWS\winstart.bat
[2011-07-18 21:14:12 | 000,002,596 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011-07-18 21:14:12 | 000,001,734 | ---- | M] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2011-07-14 19:20:18 | 000,076,509 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\aga.jpg
[2011-07-14 19:08:10 | 000,069,073 | ---- | M] () -- C:\Documents and Settings\Pawel\Pulpit\Bez tytułu.jpg
[2011-07-13 10:45:09 | 001,561,152 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[6 C:\WINDOWS\*.tmp files - & gt; C:\WINDOWS\*.tmp - & gt; ]
[5 C:\WINDOWS\System32\*.tmp files - & gt; C:\WINDOWS\System32\*.tmp - & gt; ]

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2011-08-01 23:20:50 | 000,002,426 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Nowy Dokument tekstowy.rar
[2011-08-01 23:09:29 | 000,002,449 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\HiJackThis.lnk
[2011-08-01 23:09:07 | 001,402,880 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\HijackThis(1).msi
[2011-08-01 23:08:41 | 000,130,804 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\HijackThis.msi
[2011-08-01 19:15:04 | 028,853,158 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\krolowa tanca na rurze.flv
[2011-07-31 20:11:38 | 000,000,017 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\stinger10.2.0.210.opt
[2011-07-31 18:59:12 | 000,000,840 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Sality Virus Remover.lnk
[2011-07-31 18:59:12 | 000,000,833 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Virut Virus Remover.lnk
[2011-07-31 18:59:12 | 000,000,804 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\Update Virus Database.lnk
[2011-07-31 18:59:12 | 000,000,785 | ---- | C] () -- C:\Documents and Settings\All Users\Pulpit\WormBlaster Software (TM).lnk
[2011-07-31 18:30:29 | 000,000,017 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\stinger10101243.opt
[2011-07-31 12:10:34 | 052,008,236 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\01 - Thunderstruck.wav
[2011-07-30 17:11:35 | 022,984,814 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Jenyne Butterfly at Miss Pole Dance SA 2010 [zapiska.pl].mp4
[2011-07-30 17:09:53 | 008,748,503 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\US Pole Dance Championchip 2009 [zapiska.pl].mp4
[2011-07-30 16:53:09 | 016,611,325 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Pole Art - First pole dance video - pole art practice (Original) [zapiska.pl].mp4
[2011-07-30 16:47:48 | 015,093,913 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Doa - Bring On The Competition [zapiska.pl].mp4
[2011-07-30 16:43:06 | 032,675,440 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Kicia - Verba [zapiska.pl].mp4
[2011-07-30 16:19:07 | 047,483,959 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Joey Negro - Make a Move On Me [zapiska.pl].mp4
[2011-07-30 16:12:00 | 097,554,627 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Monopol - Zodiak Na Melanzu ( Official Clip ) [zapiska.pl].mp4
[2011-07-30 16:07:50 | 016,591,283 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\David Guetta Feat Akon - Sexy Bitch (Uncensored version) [zapiska.pl].mp4
[2011-07-30 15:41:42 | 000,115,369 | ---- | C] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011-07-30 15:41:42 | 000,097,859 | ---- | C] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011-07-27 20:42:00 | 017,275,964 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Arash Feat. Blestyashchie~ Vostochnye Skazki [zapiska.pl].mp4
[2011-07-27 20:36:07 | 054,735,215 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Sasha Dith - Hot Russian Girls [zapiska.pl].mp4
[2011-07-27 20:32:33 | 006,068,411 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Pachanga -Loco [Original Video] [zapiska.pl].mp4
[2011-07-27 20:21:56 | 016,701,085 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Pachanga - Calienta (Official HQ) [zapiska.pl].mp4
[2011-07-27 20:13:26 | 075,987,498 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Dr Dre Feat Snoop Dogg - .mp4
[2011-07-27 20:09:23 | 057,560,992 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Robert M .mp4
[2011-07-27 20:07:54 | 053,051,995 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Kalwi .mp4
[2011-07-27 20:02:47 | 052,322,221 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\3R - Shine On ( Official Clip ) [zapiska.pl].mp4
[2011-07-27 19:51:14 | 036,043,554 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\INNA - Sun is UP (New clip HD) official music video (sexy version) [zapiska.pl].mp4
[2011-07-27 19:46:13 | 040,006,920 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Eric Prydz - Call On Me (Girls Only) (HD) (Uncut) [zapiska.pl].mp4
[2011-07-20 20:01:47 | 065,519,117 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\SPC.wmv
[2011-07-18 21:35:41 | 000,000,078 | ---- | C] () -- C:\WINDOWS\lsoon.ini
[2011-07-18 21:11:04 | 000,057,556 | ---- | C] () -- C:\WINDOWS\guard.bmp
[2011-07-15 18:37:40 | 000,021,541 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Bez tytułu 1.ods
[2011-07-14 19:20:14 | 000,076,509 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\aga.jpg
[2011-07-14 19:09:29 | 000,069,073 | ---- | C] () -- C:\Documents and Settings\Pawel\Pulpit\Bez tytułu.jpg
[2011-07-08 08:21:39 | 000,000,742 | ---- | C] () -- C:\Documents and Settings\All Users\Menu Start\Programy\Acrobat.com.lnk
[2011-05-28 23:40:20 | 000,207,360 | ---- | C] () -- C:\WINDOWS\System32\evrprop.dll
[2011-05-28 23:40:02 | 000,080,384 | ---- | C] () -- C:\WINDOWS\System32\mkzlib.dll
[2011-05-28 23:40:00 | 000,024,576 | ---- | C] () -- C:\WINDOWS\System32\mkunicode.dll
[2011-05-28 20:03:15 | 000,252,316 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb0.bin
[2011-05-28 20:01:36 | 000,252,316 | ---- | C] () -- C:\WINDOWS\System32\nvdrsdb1.bin
[2011-05-28 20:01:36 | 000,000,001 | ---- | C] () -- C:\WINDOWS\System32\nvdrssel.bin
[2011-03-07 13:20:07 | 000,006,604 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011-02-23 02:57:00 | 002,292,678 | ---- | C] () -- C:\WINDOWS\System32\nvdata.bin
[2010-11-20 20:55:12 | 000,000,069 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2010-11-14 11:49:06 | 000,165,376 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2010-11-14 11:49:05 | 000,000,038 | ---- | C] () -- C:\WINDOWS\avisplitter.ini
[2010-11-14 11:49:04 | 000,134,144 | ---- | C] () -- C:\WINDOWS\System32\xvidvfw.dll
[2010-11-14 11:49:04 | 000,108,032 | ---- | C] () -- C:\WINDOWS\System32\ff_vfw.dll
[2010-11-14 10:15:48 | 000,198,144 | ---- | C] () -- C:\WINDOWS\System32\_psisdecd.dll
[2010-11-13 10:49:09 | 000,810,496 | ---- | C] () -- C:\WINDOWS\System32\xvidcore.dll
[2010-11-13 10:49:09 | 000,258,048 | ---- | C] () -- C:\WINDOWS\System32\libFLAC.dll
[2010-11-13 10:44:49 | 000,194,048 | ---- | C] () -- C:\Documents and Settings\Pawel\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010-11-13 10:38:01 | 000,004,293 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2010-11-13 10:37:00 | 001,561,152 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010-11-13 10:20:22 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010-11-13 10:17:39 | 000,000,760 | ---- | C] () -- C:\Documents and Settings\Pawel\Dane aplikacji\setup_ldm.iss
[2010-11-13 09:58:55 | 000,024,576 | R--- | C] () -- C:\WINDOWS\System32\NVRTClk.exe
[2010-11-13 09:58:49 | 000,023,040 | R--- | C] () -- C:\WINDOWS\System32\drivers\GVCplDrv.sys
[2010-11-13 09:55:45 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2010-11-13 09:55:41 | 000,156,672 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2010-11-13 09:55:41 | 000,040,960 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2010-11-13 09:49:39 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2010-11-13 09:45:34 | 000,021,856 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2010-01-23 00:04:16 | 000,000,650 | ---- | C] () -- C:\WINDOWS\m3jpeg.ini
[2009-09-09 18:01:40 | 000,027,675 | ---- | C] () -- C:\WINDOWS\System32\drivers\klopp.dat
[2006-03-02 14:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2006-03-02 14:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2006-03-02 14:00:00 | 000,493,976 | ---- | C] () -- C:\WINDOWS\System32\perfh015.dat
[2006-03-02 14:00:00 | 000,435,396 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2006-03-02 14:00:00 | 000,313,828 | ---- | C] () -- C:\WINDOWS\System32\perfi015.dat
[2006-03-02 14:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2006-03-02 14:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2006-03-02 14:00:00 | 000,085,136 | ---- | C] () -- C:\WINDOWS\System32\perfc015.dat
[2006-03-02 14:00:00 | 000,068,292 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2006-03-02 14:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2006-03-02 14:00:00 | 000,034,990 | ---- | C] () -- C:\WINDOWS\System32\perfd015.dat
[2006-03-02 14:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2006-03-02 14:00:00 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2006-03-02 14:00:00 | 000,004,461 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2006-03-02 14:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2006-03-02 14:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005-06-15 11:20:00 | 000,540,672 | ---- | C] () -- C:\WINDOWS\System32\nvhwvid.dll
[2005-06-15 11:20:00 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\nvnt4cpl.dll

[color=#E56717]========== Alternate Data Streams ==========[/color]

@Alternate Data Stream - 156 bytes - & gt; C:\Documents and Settings\All Users\Dane aplikacji\TEMP:CB0AACC9

& lt; End of report & gt;


Pobierz plik - link do postu