Z otl po skanie miałem tylko 1 plik tekstowy chyba że coś źle zrobiłem ale wkleję też to co wyskoczyło mi po użyciu adwcleanera przepraszam za nieogar ale jestem w tych sprawach zielony.
OTL logfile created on: 2013-10-25 22:25:35 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\komp1\Desktop
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16721)
Locale: 00000415 | Country: Polska | Language: PLK | Date Format: yyyy-MM-dd
7,96 Gb Total Physical Memory | 5,76 Gb Available Physical Memory | 72,27% Memory free
15,93 Gb Paging File | 13,15 Gb Available in Paging File | 82,58% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,32 Gb Total Space | 80,12 Gb Free Space | 41,02% Space Free | Partition Type: NTFS
Drive D: | 296,07 Gb Total Space | 117,48 Gb Free Space | 39,68% Space Free | Partition Type: NTFS
Drive E: | 440,02 Gb Total Space | 194,38 Gb Free Space | 44,18% Space Free | Partition Type: NTFS
Drive H: | 563,87 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive O: | 3,03 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF
Computer Name: KOMP1-KOMPUTER | User Name: komp1 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
[color=#E56717]========== Processes (SafeList) ==========[/color]
PRC - [2013-10-25 22:18:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\komp1\Desktop\OTL.exe
PRC - [2013-10-14 22:21:44 | 000,237,960 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
PRC - [2013-10-07 19:54:20 | 004,908,592 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgui.exe
PRC - [2013-10-03 22:00:24 | 003,538,480 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
PRC - [2013-10-01 15:51:14 | 002,345,296 | ---- | M] (LogMeIn Inc.) -- D:\lalalala\hamachi\hamachi-2-ui.exe
PRC - [2013-09-25 21:55:10 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
PRC - [2013-09-25 21:47:22 | 000,301,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
PRC - [2013-09-17 16:47:37 | 000,274,840 | ---- | M] (Mozilla Corporation) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe
PRC - [2013-05-07 19:03:16 | 000,075,064 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2013-04-04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2013-04-04 14:50:32 | 000,532,040 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2013-04-04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013-02-21 20:06:00 | 000,407,384 | ---- | M] (Samsung Electronics) -- E:\AllShare Play\utils\AllShare Play Launcher.exe
PRC - [2012-10-23 08:34:36 | 000,757,368 | ---- | M] (Samsung) -- C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkDMS.exe
PRC - [2012-02-21 13:29:38 | 000,161,560 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2011-08-23 11:48:44 | 000,655,712 | ---- | M] () -- C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
PRC - [2011-03-14 17:27:28 | 000,236,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe
PRC - [2010-11-21 05:25:10 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
PRC - [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2009-07-20 11:51:52 | 000,935,208 | ---- | M] (Nero AG) -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
PRC - [2009-02-23 05:43:56 | 000,307,200 | ---- | M] (Creative Technology Ltd) -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
[color=#E56717]========== Modules (No Company Name) ==========[/color]
MOD - [2013-09-17 16:47:37 | 003,279,768 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
[color=#E56717]========== Services (SafeList) ==========[/color]
SRV:[b]64bit:[/b] - [2013-05-27 07:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MpSvc.dll -- (WinDefend)
SRV:[b]64bit:[/b] - [2012-10-23 09:15:52 | 000,408,184 | ---- | M] (Samsung) [Auto | Running] -- C:\Program Files\Samsung\AllShare Framework DMS\1.3.06\AllShareFrameworkManagerDMS.exe -- (AllShare Framework DMS)
SRV:[b]64bit:[/b] - [2012-09-28 03:38:16 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:[b]64bit:[/b] - [2012-02-09 17:26:48 | 000,133,632 | ---- | M] () [Auto | Running] -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe -- (ISCTAgent)
SRV:[b]64bit:[/b] - [2012-02-02 23:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2009-07-14 03:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2013-10-10 16:27:35 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013-10-03 22:00:24 | 003,538,480 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013-10-01 15:51:14 | 002,746,704 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- D:\lalalala\hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2013-09-25 21:55:10 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgfws.exe -- (avgfws)
SRV - [2013-09-25 21:47:22 | 000,301,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
SRV - [2013-09-21 20:35:00 | 000,565,672 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013-09-17 16:47:37 | 000,118,680 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013-09-05 10:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013-06-24 17:07:42 | 000,754,584 | ---- | M] (Tunngle.net GmbH) [On_Demand | Stopped] -- D:\lalalala\Tunngle\TnglCtrl.exe -- (TunngleService)
SRV - [2013-05-07 19:03:16 | 000,075,064 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2013-04-04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013-04-04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013-02-21 20:06:18 | 000,662,600 | ---- | M] (Copyright 2013 SAMSUNG) [Auto | Running] -- E:\AllShare Play\AllShare Play Service.exe -- (AllShare Play Service)
SRV - [2013-02-16 20:28:24 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2013-01-22 05:00:02 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe -- (Creative ALchemy AL6 Licensing Service)
SRV - [2013-01-22 04:59:36 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2013-01-22 04:59:06 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe -- (Sound Blaster X-Fi MB Licensing Service)
SRV - [2012-12-26 18:34:00 | 004,814,568 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GameMon.des -- (npggsvc)
SRV - [2012-07-09 00:40:10 | 000,104,912 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2012-02-21 13:29:38 | 000,161,560 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2012-01-05 17:42:34 | 000,075,624 | ---- | M] (Alcohol Soft Development Team) [Auto | Stopped] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe -- (AxAutoMntSrv)
SRV - [2011-08-23 11:48:44 | 000,655,712 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe -- (Mobile Partner. RunOuc)
SRV - [2011-03-14 17:27:34 | 000,346,976 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\HWDeviceService64.exe -- (HWDeviceService64.exe)
SRV - [2009-12-23 23:34:20 | 000,370,688 | ---- | M] (StarWind Software) [Auto | Running] -- C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2009-07-20 11:51:52 | 000,935,208 | ---- | M] (Nero AG) [Auto | Running] -- C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe -- (Nero BackItUp Scheduler 4.0)
SRV - [2009-06-10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2009-02-23 05:43:56 | 000,307,200 | ---- | M] (Creative Technology Ltd) [Auto | Running] -- C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe -- (CTAudSvcService)
SRV - [2007-05-31 18:11:54 | 000,443,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\wcescomm.dll -- (WcesComm)
SRV - [2007-05-31 18:11:46 | 000,225,672 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\WindowsMobile\rapimgr.dll -- (RapiMgr)
[color=#E56717]========== Driver Services (SafeList) ==========[/color]
DRV:[b]64bit:[/b] - [2013-10-25 22:22:54 | 000,034,752 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys -- (WPRO_41_2001)
DRV:[b]64bit:[/b] - [2013-10-02 15:43:11 | 000,046,368 | ---- | M] (AVG Technologies) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtpx64.sys -- (avgtp)
DRV:[b]64bit:[/b] - [2013-09-26 09:44:54 | 000,057,144 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:[b]64bit:[/b] - [2013-09-25 21:07:30 | 000,148,792 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgdiska.sys -- (Avgdiska)
DRV:[b]64bit:[/b] - [2013-09-08 22:11:42 | 000,031,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:[b]64bit:[/b] - [2013-09-02 10:59:14 | 000,212,280 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:[b]64bit:[/b] - [2013-09-02 10:29:18 | 000,294,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgloga.sys -- (Avgloga)
DRV:[b]64bit:[/b] - [2013-09-02 10:26:50 | 000,192,824 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
DRV:[b]64bit:[/b] - [2013-09-02 10:26:42 | 000,241,464 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:[b]64bit:[/b] - [2013-08-20 22:53:58 | 000,123,704 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:[b]64bit:[/b] - [2013-08-01 16:07:06 | 000,251,192 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:[b]64bit:[/b] - [2013-06-08 23:02:29 | 000,027,760 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggsemc.sys -- (ggsemc)
DRV:[b]64bit:[/b] - [2013-06-08 23:02:29 | 000,014,448 | ---- | M] (Sony Ericsson Mobile Communications) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ggflt.sys -- (ggflt)
DRV:[b]64bit:[/b] - [2013-04-04 14:50:32 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2013-02-12 06:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usb8023x.sys -- (usb_rndisx)
DRV:[b]64bit:[/b] - [2013-02-08 17:09:13 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:[b]64bit:[/b] - [2013-01-28 20:32:35 | 000,032,320 | ---- | M] (FNet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\FNETTBOH_305.SYS -- (FNETTBOH_305)
DRV:[b]64bit:[/b] - [2013-01-23 18:15:57 | 000,303,616 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\atksgt.sys -- (atksgt)
DRV:[b]64bit:[/b] - [2013-01-23 18:15:57 | 000,035,328 | ---- | M] () [Kernel | Auto | Stopped] -- C:\Windows\SysNative\drivers\lirsgt.sys -- (lirsgt)
DRV:[b]64bit:[/b] - [2013-01-23 00:09:40 | 000,564,824 | ---- | M] (Duplex Secure Ltd.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\sptd.sys -- (sptd)
DRV:[b]64bit:[/b] - [2013-01-22 04:57:21 | 000,015,936 | ---- | M] (FNet Co., Ltd.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\FNETURPX.SYS -- (FNETURPX)
DRV:[b]64bit:[/b] - [2012-12-13 13:50:36 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2012-09-28 04:21:20 | 010,697,216 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:[b]64bit:[/b] - [2012-09-28 03:12:52 | 000,460,288 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:[b]64bit:[/b] - [2012-08-21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:[b]64bit:[/b] - [2012-05-14 08:12:30 | 000,096,896 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:[b]64bit:[/b] - [2012-03-01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2012-02-09 17:24:16 | 000,044,992 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ISCTD64.sys -- (ISCT)
DRV:[b]64bit:[/b] - [2012-02-09 17:24:16 | 000,025,536 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\imsevent.sys -- (imsevent)
DRV:[b]64bit:[/b] - [2012-02-09 17:24:14 | 000,025,536 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ikbevent.sys -- (ikbevent)
DRV:[b]64bit:[/b] - [2011-12-02 08:23:22 | 000,223,744 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_juwwanecm.sys -- (huawei_wwanecm)
DRV:[b]64bit:[/b] - [2011-11-10 02:04:14 | 000,060,184 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:[b]64bit:[/b] - [2011-09-09 05:51:02 | 000,028,672 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_juextctrl.sys -- (huawei_ext_ctrl)
DRV:[b]64bit:[/b] - [2011-09-09 05:51:01 | 000,087,040 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV:[b]64bit:[/b] - [2011-09-09 05:51:00 | 000,098,304 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_jucdcacm.sys -- (huawei_cdcacm)
DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2011-03-11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2011-02-08 07:30:52 | 000,064,512 | ---- | M] (Etron Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\EtronXHCI.sys -- (EtronXHCI)
DRV:[b]64bit:[/b] - [2011-02-08 07:30:52 | 000,039,936 | ---- | M] (Etron Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\EtronHub3.sys -- (EtronHub3)
DRV:[b]64bit:[/b] - [2010-11-21 05:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2010-11-21 05:24:15 | 000,146,432 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\rmcast.sys -- (RMCAST)
DRV:[b]64bit:[/b] - [2010-11-21 05:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2010-11-21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2010-11-21 05:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2010-07-27 03:52:16 | 000,117,248 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV:[b]64bit:[/b] - [2010-06-23 11:10:56 | 000,344,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:[b]64bit:[/b] - [2010-06-11 15:37:14 | 000,015,368 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\AsrAppCharger.sys -- (AsrAppCharger)
DRV:[b]64bit:[/b] - [2010-03-20 06:06:58 | 000,013,952 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ew_usbenumfilter.sys -- (ew_usbenumfilter)
DRV:[b]64bit:[/b] - [2009-09-16 07:02:42 | 000,031,232 | ---- | M] (Tunngle.net) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tap0901t.sys -- (tap0901t)
DRV:[b]64bit:[/b] - [2009-07-14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2009-07-14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2009-07-14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2009-06-10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:[b]64bit:[/b] - [2009-06-10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:[b]64bit:[/b] - [2009-03-18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:[b]64bit:[/b] - [2008-01-29 17:29:42 | 000,037,392 | ---- | M] (Kaspersky Lab) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\klbg.sys -- (KLBG)
DRV:[b]64bit:[/b] - [2005-09-23 23:18:34 | 000,261,120 | ---- | M] (Pinnacle Systems GmbH) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\MarvinBus64.sys -- (MarvinBus)
DRV - [2009-07-14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2005-01-04 11:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2)
[color=#E56717]========== Standard Registry (SafeList) ==========[/color]
[color=#E56717]========== Internet Explorer ==========[/color]
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE:[b]64bit:[/b] - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://www.bing.com/search?q={searchTerms} & FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://www.bing.com/search?q={searchTerms} & FORM=IE8SRC
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyOverride " = *.local
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: " URL " = http://www.bing.com/search?FORM=UP22DF & PC=UP22 & dt=012313 & q={searchTerms} & src=IE-SearchBox
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\..\SearchScopes\{4A029F60-A314-4654-9CDD-001353115C82}: " URL " = http://www.google.com/custom?client=pub-3794288947762788 & forid=1 & channel=5480255188 & ie=UTF-8 & oe=UTF-8 & safe=active & cof=GALT%3A%23008000%3BGL%3A1%3BDIV%3A%23336699%3BVLC%3A663399%3BAH%3Acenter%3BBGC%3AFFFFFF%3BLBGC%3A336699%3BALC%3A0000FF%3BLC%3A0000FF%3BT%3A000000%3BGFNT%3A0000FF%3BGIMP%3A0000FF%3BFORID%3A1 & hl=pl & q={searchTerms}
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\..\SearchScopes\{AF42F08F-E21C-444F-90C6-2F900ECD1B6D}: " URL " = http://uk.search.yahoo.com/search?p={searchTerms} & fr=chr-devicevm & type=ASRK
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyEnable " = 0
IE - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: " ProxyOverride " = *.local
[color=#E56717]========== FireFox ==========[/color]
FF - prefs.js..browser.search.order.3: " Bing "
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: " https://www.google.pl/ "
FF - prefs.js..extensions.enabledAddons: %7BDDC359D1-844A-42a7-9AA1-88A850A938A8%7D:2.0.16
FF - prefs.js..extensions.enabledAddons: netvideohunter%40netvideohunter.com:1.9.5
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:24.0
FF - prefs.js..keyword.URL: " "
FF - user.js - File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_117.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@idsoftware.com/QuakeLive: C:\ProgramData\id Software\QuakeLive\npquakezero.dll (id Software Inc.)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.25.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=16.4.3508.0205: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\samsung.com/AllSharePlayPCPlugin: E:\AllShare Play\utils\npAllSharePlayPCPlugin.dll (Samsung)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-09-17 16:47:33 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 24.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2013-09-17 16:47:33 | 000,000,000 | ---D | M]
[2013-01-21 22:59:41 | 000,000,000 | ---D | M] (No name found) -- C:\Users\komp1\AppData\Roaming\mozilla\Extensions
[2013-10-17 19:58:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\komp1\AppData\Roaming\mozilla\Firefox\Profiles\7vs9rj5l.default\extensions
[2013-08-07 22:46:49 | 000,000,000 | ---D | M] ( " NetVideoHunter " ) -- C:\Users\komp1\AppData\Roaming\mozilla\Firefox\Profiles\7vs9rj5l.default\extensions\netvideohunter@netvideohunter.com
[2013-10-17 19:58:58 | 000,289,598 | ---- | M] () (No name found) -- C:\Users\komp1\AppData\Roaming\mozilla\firefox\profiles\7vs9rj5l.default\extensions\jid0-GaZOxvWNYcafEsmayJDIG3XXVi8@jetpack.xpi
[2013-10-12 11:49:57 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\komp1\AppData\Roaming\mozilla\firefox\profiles\7vs9rj5l.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013-04-12 19:12:41 | 000,714,654 | ---- | M] () (No name found) -- C:\Users\komp1\AppData\Roaming\mozilla\firefox\profiles\7vs9rj5l.default\extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi
[2013-10-01 22:10:26 | 000,001,701 | ---- | M] () -- C:\Users\komp1\AppData\Roaming\mozilla\firefox\profiles\7vs9rj5l.default\searchplugins\nation-secure-search.xml
[2013-09-17 16:47:33 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\Extensions
[2013-09-17 16:47:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions
[2013-09-17 16:47:38 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013-04-09 18:10:38 | 000,013,312 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll
[color=#E56717]========== Chrome ==========[/color]
CHR - default_search_provider: ()
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - homepage: null
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms} & {google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:searchFieldtrialParameter}sourceid=chrome & ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome & q={searchTerms} & {google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: http://www.google.com/
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - plugin: Intel\u00AE Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
CHR - plugin: Intel\u00AE Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
CHR - plugin: Java(TM) Platform SE 7 U13 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: QUAKE LIVE (Enabled) = C:\ProgramData\id Software\QuakeLive\npquakezero.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll
CHR - plugin: Java Deployment Toolkit 7.0.130.20 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms} & {google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome & q={searchTerms} & {google:cursorPosition}sugkey={google:suggestAPIKeyParameter}
CHR - homepage: null
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\pdf.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
CHR - plugin: Intel\u00AE Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
CHR - plugin: Intel\u00AE Identity Protection Technology (Enabled) = C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
CHR - plugin: Java(TM) Platform SE 7 U13 (Enabled) = C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
CHR - plugin: QUAKE LIVE (Enabled) = C:\ProgramData\id Software\QuakeLive\npquakezero.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_149.dll
CHR - plugin: Java Deployment Toolkit 7.0.130.20 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - Extension: Dokumenty Google = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Dysk Google = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Szukaj w Google = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.10_0\
CHR - Extension: No name found = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.4.11_0\
CHR - Extension: Gmail = C:\Users\komp1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2009-06-10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (no name) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - No CLSID value found.
O2:[b]64bit:[/b] - BHO: (IVONA Reader) - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2_x64.dll (IVONA Software Sp. z o.o.)
O2 - BHO: (no name) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - No CLSID value found.
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (IVONA Reader) - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2.dll (IVONA Software Sp. z o.o.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (IVONA Reader) - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2_x64.dll (IVONA Software Sp. z o.o.)
O3 - HKLM\..\Toolbar: (IVONA Reader) - {8664889D-ED18-4713-918F-E2BB69D8452B} - C:\Program Files (x86)\IVONA\IVONA Reader\integr\IR_iexplorer2.dll (IVONA Software Sp. z o.o.)
O3 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\..\Toolbar\WebBrowser: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [AllShare Play] E:\AllShare Play\utils\AllShare Play Launcher.exe (Samsung Electronics)
O4:[b]64bit:[/b] - HKLM..\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4:[b]64bit:[/b] - HKLM..\Run: [RunDLLEntry] C:\Windows\SysNative\AmbRunE.DLL (Creative Technology Ltd.)
O4:[b]64bit:[/b] - HKLM..\Run: [Windows Mobile Device Center] C:\Windows\WindowsMobile\wmdc.exe (Microsoft Corporation)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] D:\lalalala\hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000..\Run: [AVG-Secure-Search-Update_0913b] C:\Users\komp1\AppData\Roaming\AVG 0913b Campaign\AVG-Secure-Search-Update-0913b.exe /PROMPT --mid 5c6dc97accd74f60a262bbdfc120f328-ad1491be2ce6c122f6b66faa90e70c2decf7d34c --CMPID 0913b File not found
O4 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000..\Run: [Bloody2] C:\Program Files (x86)\Bloody2\Bloody2\Bloody2.exe Minimum File not found
O4 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000..\Run: [Clownfish] File not found
O4 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKU\S-1-5-21-2142520865-4002819626-2415985433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O9 - Extra Button: @C:\Windows\WindowsMobile\INetRepl.dll,-222 - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : @C:\Windows\WindowsMobile\INetRepl.dll,-223 - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll (Microsoft Corporation)
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0D220972-9081-4DE0-94D9-44B73E637E5F}: NameServer = 193.41.112.14 193.41.112.18
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{760AB048-AF73-4671-B6B3-F5EFED53B756}: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7FE44BE6-98E1-4F67-8D99-48974748C066}: NameServer = 193.41.112.14 193.41.112.18
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{905D9E96-F48E-41B6-BD29-A4C0585BB870}: NameServer = 193.41.112.14 193.41.112.18
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{EA33C003-959C-44FC-9D4A-CBED0B03235D}: NameServer = 193.41.112.14 193.41.112.18
O18:[b]64bit:[/b] - Protocol\Handler\skype4com - No CLSID value found
O18:[b]64bit:[/b] - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2002-07-12 02:33:30 | 000,000,033 | R--- | M] () - H:\Autorun.inf -- [ CDFS ]
O33 - MountPoints2\{6a4ce9e6-6443-11e2-beb3-bc5ff464d351}\Shell - " " = AutoRun
O33 - MountPoints2\{6a4ce9e6-6443-11e2-beb3-bc5ff464d351}\Shell\AutoRun\command - " " = E:\AutoRun.exe
O33 - MountPoints2\{6a4ce9e6-6443-11e2-beb3-bc5ff464d351}\Shell\install\command - " " = E:\setup-top_netinfo.EXE
O33 - MountPoints2\{6a4ce9e6-6443-11e2-beb3-bc5ff464d351}\Shell\readme\command - " " = notepad info.txt
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- " %1 " %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- " %1 " %*
O35 - HKLM\..comfile [open] -- " %1 " %*
O35 - HKLM\..exefile [open] -- " %1 " %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- " %1 " %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- " %1 " %*
O37 - HKLM\...com [@ = comfile] -- " %1 " %*
O37 - HKLM\...exe [@ = exefile] -- " %1 " %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]
[2013-10-25 22:18:51 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\komp1\Desktop\OTL.exe
[2013-10-25 22:17:54 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2013-10-25 22:02:18 | 000,000,000 | ---D | C] -- C:\Users\komp1\AppData\Roaming\Malwarebytes
[2013-10-25 22:02:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2013-10-25 22:02:07 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2013-10-25 22:02:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2013-10-25 22:02:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2013-10-25 21:59:38 | 010,284,816 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\komp1\Desktop\mbam-setup.exe
[2013-10-18 12:58:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperTux
[2013-10-18 12:58:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SuperTux
[2013-10-18 12:56:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SuperTux 0.3.0
[2013-10-18 12:56:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SuperTux 0.3.0
[2013-10-14 19:43:45 | 000,139,264 | ---- | C] (Creative Technology Ltd) -- C:\Windows\SysWow64\eax.dll
[2013-10-14 19:43:44 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\embedded
[2013-10-14 18:56:28 | 000,000,000 | ---D | C] -- C:\Users\komp1\Documents\Battlefield 3
[2013-10-14 01:20:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3
[2013-10-14 00:11:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bing Bar Installer
[2013-10-13 21:12:38 | 000,000,000 | ---D | C] -- C:\Users\komp1\Desktop\qweqwe
[2013-10-12 11:59:59 | 000,000,000 | ---D | C] -- C:\Users\komp1\AppData\Roaming\AVG2014
[2013-10-12 11:57:15 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014
[2013-10-12 11:53:32 | 000,000,000 | ---D | C] -- C:\Users\komp1\AppData\Local\Avg2014
[2013-10-10 21:26:41 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013-10-10 21:26:41 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013-10-10 21:26:40 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013-10-10 21:26:39 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013-10-10 21:26:39 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013-10-10 21:26:39 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013-10-10 21:26:39 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013-10-10 21:26:39 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013-10-10 21:26:39 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013-10-10 21:26:39 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013-10-10 21:26:39 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013-10-10 21:26:38 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013-10-10 21:26:37 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013-10-10 21:26:37 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013-10-10 21:26:36 | 003,959,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013-10-10 15:43:18 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2013-10-10 15:43:18 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2013-10-10 15:43:18 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2013-10-10 15:43:17 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2013-10-10 15:43:17 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2013-10-10 15:43:17 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2013-10-10 15:43:17 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2013-10-10 15:43:17 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2013-10-10 15:43:17 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2013-10-10 15:43:16 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2013-10-10 15:43:16 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2013-10-10 15:43:15 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2013-10-10 15:43:12 | 005,549,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2013-10-10 15:43:11 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2013-10-10 15:43:11 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2013-10-10 15:43:10 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2013-10-10 15:43:10 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2013-10-10 15:43:10 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2013-10-10 15:43:10 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2013-10-10 15:43:10 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2013-10-10 15:43:10 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2013-10-10 15:43:10 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2013-10-10 15:43:10 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2013-10-10 15:43:10 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2013-10-10 15:43:09 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2013-10-10 15:43:04 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2013-10-10 15:43:04 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2013-10-10 15:43:03 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2013-10-02 17:08:08 | 000,000,000 | ---D | C] -- C:\Users\komp1\AppData\Local\LogMeIn
[2013-10-02 17:08:08 | 000,000,000 | ---D | C] -- C:\ProgramData\LogMeIn
[2013-10-02 15:43:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2013-09-28 20:02:13 | 000,046,368 | ---- | C] (AVG Technologies) -- C:\Windows\SysNative\drivers\avgtpx64.sys
[2013-09-26 15:40:37 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Wat
[2013-09-26 15:40:37 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Wat
[2013-09-26 14:24:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nero
[2013-09-26 14:24:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Nero
[2013-09-26 14:24:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Nero
[2013-09-26 09:44:54 | 000,057,144 | ---- | C] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgfwd6a.sys
[2013-02-21 23:20:16 | 000,005,120 | ---- | C] (myN) -- C:\Users\komp1\AppData\Roaming\patcher02.patUpdater.exe
[6 C:\Windows\SysWow64\*.tmp files - & gt; C:\Windows\SysWow64\*.tmp - & gt; ]
[3 C:\Windows\*.tmp files - & gt; C:\Windows\*.tmp - & gt; ]
[1 C:\Windows\SysNative\*.tmp files - & gt; C:\Windows\SysNative\*.tmp - & gt; ]
[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]
[2013-10-25 22:27:00 | 000,000,930 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2013-10-25 22:26:00 | 000,001,046 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2013-10-25 22:26:00 | 000,001,042 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2013-10-25 22:22:54 | 000,034,752 | ---- | M] () -- C:\Windows\SysNative\drivers\WPRO_41_2001.sys
[2013-10-25 22:22:43 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013-10-25 22:22:42 | 2118,979,583 | -HS- | M] () -- C:\hiberfil.sys
[2013-10-25 22:20:51 | 000,001,250 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2013-10-25 22:20:51 | 000,001,013 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013-10-25 22:18:44 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\komp1\Desktop\OTL.exe
[2013-10-25 22:16:57 | 001,060,070 | ---- | M] () -- C:\Users\komp1\Desktop\AdwCleaner.exe
[2013-10-25 22:13:15 | 000,548,046 | ---- | M] () -- C:\Users\komp1\Desktop\123123123123123labendzkiwpierdol.png
[2013-10-25 22:02:08 | 000,001,073 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013-10-25 22:00:05 | 010,284,816 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\komp1\Desktop\mbam-setup.exe
[2013-10-25 20:17:52 | 000,214,169 | ---- | M] () -- C:\Users\komp1\Desktop\1266469_590423557681011_2037877048_o.jpg
[2013-10-25 10:21:15 | 000,031,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013-10-25 10:21:15 | 000,031,504 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013-10-24 22:06:40 | 000,224,998 | ---- | M] () -- C:\Users\komp1\Desktop\322636_105693986213334_2138833593_o.jpg
[2013-10-24 22:04:12 | 000,035,232 | ---- | M] () -- C:\Users\komp1\Desktop\090aa1b72685.jpg
[2013-10-24 22:03:13 | 000,014,708 | ---- | M] () -- C:\Users\komp1\Desktop\fakeagent_sorry_i_spunked_over_your_glasses.jpg
[2013-10-24 21:55:08 | 000,150,730 | ---- | M] () -- C:\Users\komp1\Desktop\asdasdasd.jpg
[2013-10-23 22:38:16 | 000,339,785 | ---- | M] () -- C:\Users\komp1\Desktop\Obraz 040.jpg
[2013-10-23 22:27:07 | 000,106,303 | ---- | M] () -- C:\Users\komp1\Desktop\afghan-kush-special-feminizowane-nasiona-marihuany-world-of-seeds-.jpg
[2013-10-23 22:19:27 | 000,004,722 | ---- | M] () -- C:\Users\komp1\Desktop\indeks.jpg
[2013-10-23 22:11:27 | 000,441,451 | ---- | M] () -- C:\Users\komp1\Desktop\Potleaf.jpg
[2013-10-23 22:00:42 | 000,045,659 | ---- | M] () -- C:\Users\komp1\Desktop\20070318193516-marihuana.jpg
[2013-10-23 21:58:21 | 000,110,831 | ---- | M] () -- C:\Users\komp1\Desktop\3082014-marihuana.jpg
[2013-10-23 21:19:25 | 000,164,687 | ---- | M] () -- C:\Users\komp1\Desktop\95709_laka_niebo_chmury_windows.jpg
[2013-10-23 20:58:47 | 000,094,514 | ---- | M] () -- C:\Users\komp1\Desktop\47479_149290585105009_3298418_n.jpg
[2013-10-23 20:53:37 | 000,210,373 | ---- | M] () -- C:\Users\komp1\Desktop\296020_424391297596002_1879194387_n.jpg
[2013-10-23 20:45:10 | 000,150,730 | ---- | M] () -- C:\Users\komp1\Desktop\564720_463404803717036_802638278_n.jpg
[2013-10-22 17:41:27 | 000,000,603 | ---- | M] () -- C:\Users\Public\Desktop\Minecraft DELBOX.lnk
[2013-10-20 19:51:20 | 000,042,146 | ---- | M] () -- C:\Users\komp1\Desktop\1381646_472654012850661_1596004204_n.jpg
[2013-10-20 01:53:32 | 001,650,548 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013-10-20 01:53:32 | 000,740,438 | ---- | M] () -- C:\Windows\SysNative\perfh015.dat
[2013-10-20 01:53:32 | 000,662,416 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013-10-20 01:53:32 | 000,156,012 | ---- | M] () -- C:\Windows\SysNative\perfc015.dat
[2013-10-20 01:53:32 | 000,122,284 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013-10-20 01:53:17 | 001,650,548 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013-10-18 18:00:19 | 723,898,736 | ---- | M] () -- C:\Users\komp1\Desktop\123.rar
[2013-10-18 15:43:52 | 000,000,520 | ---- | M] () -- C:\Users\komp1\Desktop\Battlefield 3 Spolszczenie.rar
[2013-10-12 12:15:34 | 000,000,667 | ---- | M] () -- C:\Users\Public\Desktop\Gameforge Live.lnk
[2013-10-12 11:57:52 | 000,000,955 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2013-10-10 21:32:58 | 002,224,408 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013-10-10 16:27:35 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2013-10-10 16:27:35 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2013-10-02 15:43:41 | 000,001,702 | ---- | M] () -- C:\Program Files (x86)\Mozilla Firefoxnation-secure-search.xml
[2013-10-02 15:43:11 | 000,046,368 | ---- | M] (AVG Technologies) -- C:\Windows\SysNative\drivers\avgtpx64.sys
[2013-10-02 15:43:04 | 000,000,623 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2013-09-27 23:25:16 | 000,033,096 | ---- | M] () -- C:\Users\komp1\Desktop\z13673597Q,Rozmowy-w-toku.jpg
[2013-09-27 22:22:01 | 000,021,362 | ---- | M] () -- C:\Users\komp1\Desktop\269.jpg
[2013-09-26 14:24:35 | 000,001,523 | ---- | M] () -- C:\Users\Public\Desktop\Nero StartSmart Essentials.lnk
[2013-09-26 14:17:11 | 000,586,928 | ---- | M] () -- C:\Users\komp1\Desktop\Nero Free 9.4.12.3d_isdmgr.exe
[2013-09-26 09:44:54 | 000,057,144 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Windows\SysNative\drivers\avgfwd6a.sys
[6 C:\Windows\SysWow64\*.tmp files - & gt; C:\Windows\SysWow64\*.tmp - & gt; ]
[3 C:\Windows\*.tmp files - & gt; C:\Windows\*.tmp - & gt; ]
[1 C:\Windows\SysNative\*.tmp files - & gt; C:\Windows\SysNative\*.tmp - & gt; ]
[color=#E56717]========== Files Created - No Company Name ==========[/color]
[2013-10-25 22:16:53 | 001,060,070 | ---- | C] () -- C:\Users\komp1\Desktop\AdwCleaner.exe
[2013-10-25 22:13:15 | 000,548,046 | ---- | C] () -- C:\Users\komp1\Desktop\123123123123123labendzkiwpierdol.png
[2013-10-25 22:02:08 | 000,001,073 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2013-10-25 20:17:51 | 000,214,169 | ---- | C] () -- C:\Users\komp1\Desktop\1266469_590423557681011_2037877048_o.jpg
[2013-10-24 22:06:40 | 000,224,998 | ---- | C] () -- C:\Users\komp1\Desktop\322636_105693986213334_2138833593_o.jpg
[2013-10-24 22:03:12 | 000,014,708 | ---- | C] () -- C:\Users\komp1\Desktop\fakeagent_sorry_i_spunked_over_your_glasses.jpg
[2013-10-24 21:55:07 | 000,150,730 | ---- | C] () -- C:\Users\komp1\Desktop\asdasdasd.jpg
[2013-10-24 21:54:58 | 000,035,232 | ---- | C] () -- C:\Users\komp1\Desktop\090aa1b72685.jpg
[2013-10-23 22:27:06 | 000,106,303 | ---- | C] () -- C:\Users\komp1\Desktop\afghan-kush-special-feminizowane-nasiona-marihuany-world-of-seeds-.jpg
[2013-10-23 22:19:27 | 000,004,722 | ---- | C] () -- C:\Users\komp1\Desktop\indeks.jpg
[2013-10-23 22:11:26 | 000,441,451 | ---- | C] () -- C:\Users\komp1\Desktop\Potleaf.jpg
[2013-10-23 22:00:41 | 000,045,659 | ---- | C] () -- C:\Users\komp1\Desktop\20070318193516-marihuana.jpg
[2013-10-23 21:58:20 | 000,110,831 | ---- | C] () -- C:\Users\komp1\Desktop\3082014-marihuana.jpg
[2013-10-23 21:36:08 | 000,339,785 | ---- | C] () -- C:\Users\komp1\Desktop\Obraz 040.jpg
[2013-10-23 21:11:36 | 000,164,687 | ---- | C] () -- C:\Users\komp1\Desktop\95709_laka_niebo_chmury_windows.jpg
[2013-10-23 20:58:46 | 000,094,514 | ---- | C] () -- C:\Users\komp1\Desktop\47479_149290585105009_3298418_n.jpg
[2013-10-23 20:53:37 | 000,210,373 | ---- | C] () -- C:\Users\komp1\Desktop\296020_424391297596002_1879194387_n.jpg
[2013-10-23 20:45:10 | 000,150,730 | ---- | C] () -- C:\Users\komp1\Desktop\564720_463404803717036_802638278_n.jpg
[2013-10-22 17:41:27 | 000,000,603 | ---- | C] () -- C:\Users\Public\Desktop\Minecraft DELBOX.lnk
[2013-10-20 19:51:20 | 000,042,146 | ---- | C] () -- C:\Users\komp1\Desktop\1381646_472654012850661_1596004204_n.jpg
[2013-10-18 15:58:26 | 723,898,736 | ---- | C] () -- C:\Users\komp1\Desktop\123.rar
[2013-10-18 15:43:58 | 000,000,520 | ---- | C] () -- C:\Users\komp1\Desktop\Battlefield 3 Spolszczenie.rar
[2013-10-12 11:57:52 | 000,000,955 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2013-10-02 15:43:04 | 000,000,623 | ---- | C] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2013-09-28 20:02:06 | 000,001,702 | ---- | C] () -- C:\Program Files (x86)\Mozilla Firefoxnation-secure-search.xml
[2013-09-27 22:50:22 | 000,033,096 | ---- | C] () -- C:\Users\komp1\Desktop\z13673597Q,Rozmowy-w-toku.jpg
[2013-09-27 22:13:03 | 000,021,362 | ---- | C] () -- C:\Users\komp1\Desktop\269.jpg
[2013-09-26 14:24:35 | 000,001,523 | ---- | C] () -- C:\Users\Public\Desktop\Nero StartSmart Essentials.lnk
[2013-09-26 14:17:13 | 000,586,928 | ---- | C] () -- C:\Users\komp1\Desktop\Nero Free 9.4.12.3d_isdmgr.exe
[2013-08-07 23:17:01 | 000,018,944 | ---- | C] () -- C:\Users\komp1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2013-08-06 00:55:53 | 001,650,548 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013-05-24 23:16:43 | 000,007,606 | ---- | C] () -- C:\Users\komp1\AppData\Local\Resmon.ResmonCfg
[2013-05-07 19:03:17 | 000,111,928 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.exe
[2013-05-07 19:03:16 | 000,794,408 | ---- | C] () -- C:\Windows\SysWow64\pbsvc.exe
[2013-05-07 19:03:16 | 000,075,064 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrA.exe
[2013-04-27 09:38:11 | 000,122,884 | ---- | C] () -- C:\Windows\UnGins.exe
[2013-04-26 16:17:45 | 000,015,987 | ---- | C] () -- C:\Windows\DIIUnin.dat
[2013-04-16 22:44:48 | 000,000,640 | RHS- | C] () -- C:\Users\komp1\ntuser.pol
[2013-04-13 22:55:11 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2013-01-24 01:51:30 | 000,006,080 | ---- | C] () -- C:\ProgramData\NanoRepository.bin.bak
[2013-01-24 01:51:30 | 000,006,080 | ---- | C] () -- C:\ProgramData\NanoRepository.bin
[2013-01-23 19:15:20 | 000,009,728 | ---- | C] () -- C:\Windows\SysWow64\UnInstall Lost Souls.exe
[2013-01-22 05:15:43 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013-01-22 05:12:00 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013-01-22 05:12:00 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013-01-22 05:12:00 | 000,003,917 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2013-01-22 05:00:16 | 000,002,265 | ---- | C] () -- C:\Windows\FF08_Render_Spk_Hp.ini
[2013-01-22 05:00:16 | 000,001,650 | ---- | C] () -- C:\Windows\FF08_Capture.ini
[2013-01-22 05:00:16 | 000,001,540 | ---- | C] () -- C:\Windows\FF08_Render.ini
[2013-01-22 05:00:05 | 000,148,480 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2013-01-22 05:00:05 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2013-01-22 04:57:27 | 000,000,003 | ---- | C] () -- C:\Users\komp1\AppData\Local\user_data.ini
[2012-10-05 17:27:16 | 000,704,000 | ---- | C] () -- C:\Windows\SysWow64\ContentDirectoryPresenter.dll
[2012-08-21 11:26:16 | 000,046,592 | ---- | C] () -- C:\Windows\SysWow64\boost_thread-vc90-mt-1_47.dll
[2012-08-21 11:26:04 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\boost_date_time-vc90-mt-1_47.dll
[2012-08-21 11:25:52 | 000,704,000 | ---- | C] () -- C:\Windows\SysWow64\boost_regex-vc90-mt-1_47.dll
[2012-08-21 11:25:52 | 000,227,840 | ---- | C] () -- C:\Windows\SysWow64\boost_serialization-vc90-mt-1_47.dll
[2012-08-21 11:25:50 | 000,012,800 | ---- | C] () -- C:\Windows\SysWow64\boost_system-vc90-mt-1_47.dll
[2012-08-21 11:25:48 | 000,130,048 | ---- | C] () -- C:\Windows\SysWow64\boost_filesystem-vc90-mt-1_47.dll
[2012-08-14 11:42:22 | 000,025,600 | ---- | C] () -- C:\Windows\SysWow64\MediaDB.dll
[2012-05-02 15:58:10 | 000,029,184 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
[2012-02-02 23:08:26 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
[color=#E56717]========== ZeroAccess Check ==========[/color]
[2009-07-14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
" " = C:\Windows\SysNative\shell32.dll -- [2013-07-26 04:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
" " = %SystemRoot%\system32\shell32.dll -- [2013-07-26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
" " = C:\Windows\SysNative\wbem\fastprox.dll -- [2009-07-14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
" " = %systemroot%\system32\wbem\fastprox.dll -- [2010-11-21 05:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
" " = C:\Windows\SysNative\wbem\wbemess.dll -- [2009-07-14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
" ThreadingModel " = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
[color=#E56717]========== LOP Check ==========[/color]
[2013-06-24 10:57:05 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\.minecraft
[2013-07-08 18:58:40 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\0D1F1S1C1P0P1C1F1N1C1T1H2UtF1E1I
[2013-09-22 17:08:56 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\AVG
[2013-10-13 16:34:29 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\AVG2014
[2013-04-13 18:15:57 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\DAEMON Tools Lite
[2013-08-22 19:45:30 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\DownLite
[2013-08-01 11:27:36 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\GG
[2013-08-22 17:40:25 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\Moje pliki Bitwy o Śródziemie™ II
[2013-05-03 11:31:18 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\Moje pliki gry Władca Pierścieni, Król Nazguli
[2013-07-12 23:14:47 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\NapiProjekt
[2013-04-12 00:20:14 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\Panda Security
[2013-07-01 23:38:56 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\PhotoScape
[2013-08-15 12:01:12 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\TuneUp Software
[2013-04-12 00:14:07 | 000,000,000 | ---D | M] -- C:\Users\blanka\AppData\Roaming\uTorrent
[2013-08-15 11:55:20 | 000,000,000 | ---D | M] -- C:\Users\Default\AppData\Roaming\TuneUp Software
[2013-08-15 11:55:20 | 000,000,000 | ---D | M] -- C:\Users\Default User\AppData\Roaming\TuneUp Software
[2013-10-25 20:13:54 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\.minecraft
[2013-09-26 16:33:39 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\.minecraftzyczu
[2013-08-17 12:53:59 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\.spoutcraft
[2013-09-20 07:47:33 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\AVG
[2013-10-12 14:36:09 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\AVG2014
[2013-05-05 19:29:01 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\DAEMON Tools Lite
[2013-06-22 15:08:22 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\DarknessII
[2013-06-15 15:27:39 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\NapiProjekt
[2013-05-21 19:58:17 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\runic games
[2013-06-06 18:24:55 | 000,000,000 | ---D | M] -- C:\Users\dzieci\AppData\Roaming\TuneUp Software
[2013-06-24 10:53:23 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\.minecraft
[2013-09-19 20:01:16 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\AVG
[2013-10-12 11:59:59 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\AVG2014
[2013-04-26 16:39:26 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\Awesomium
[2013-02-08 17:10:34 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\DAEMON Tools Lite
[2013-06-27 23:09:03 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\DarknessII
[2013-04-12 17:53:25 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\GameRanger
[2013-10-19 22:04:29 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\GG
[2013-08-07 22:58:07 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\IVONA ControlCenter
[2013-08-08 00:07:27 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\IVONA Reader
[2013-09-03 22:45:53 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\LolClient
[2013-04-20 11:29:19 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\Moje pliki Bitwy o Śródziemie™ II
[2013-05-04 23:05:40 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\Moje pliki gry Władca Pierścieni, Król Nazguli
[2013-05-06 15:09:48 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\NapiProjekt
[2013-01-21 23:26:44 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\Panda Security
[2013-03-18 18:11:51 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\runic games
[2013-05-31 14:21:32 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\The Path
[2013-04-25 00:28:48 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\TS3Client
[2013-04-13 01:28:38 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\TuneUp Software
[2013-06-29 18:52:42 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\Tunngle
[2013-10-14 13:29:53 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\uTorrent
[2013-09-10 17:41:54 | 000,000,000 | ---D | M] -- C:\Users\komp1\AppData\Roaming\XnView
[color=#E56717]========== Purity Check ==========[/color]
& lt; End of report & gt;