REKLAMA

FRST.txt

Jak zablokować uporczywe reklamy na Allegro mimo użycia Adblocker?

Jestem pod wrażeniem. Wszystko znikło. Bardzo dziękuję za rozwiązanie problemu. Doprowadzało mnie to już do furii. Dodano po 3 : I jeszcze log.


Pobierz plik - link do postu

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-07-2014
Ran by ewa (administrator) on EWA-KOMPUTER on 10-07-2014 20:05:06
Running from G:\frst
Platform: Windows 7 Ultimate (X64) OS Language: Polski (Polska)
Internet Explorer Version 9
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avpui.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SoundMan] = & gt; SOUNDMAN.EXE
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk
ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk - & gt; C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe ()

==================== Internet (Whitelisted) ====================

StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Hosts: 127.0.0.1 validation.sls.microsoft.com
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\ewa\AppData\Roaming\Mozilla\Firefox\Profiles\59u2rcz0.default
FF Homepage: www.google.pl
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_168.dll ()
FF Plugin: @java.com/DTPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_168.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Extension: Adblock Plus - C:\Users\ewa\AppData\Roaming\Mozilla\Firefox\Profiles\59u2rcz0.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-13]
FF HKLM-x32\...\Firefox\Extensions: [url_advisor@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\url_advisor@kaspersky.com
FF Extension: 卡巴斯基網址顧問 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\url_advisor@kaspersky.com [2014-06-15]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: 虛擬鍵盤 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-06-15]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\content_blocker@kaspersky.com
FF Extension: 惡意網站攔截器 - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\FFExt\content_blocker@kaspersky.com [2014-06-15]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird

Chrome:
=======
CHR HomePage:
CHR Extension: (Dokumenty Google) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-25]
CHR Extension: (Dysk Google) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-25]
CHR Extension: (YouTube) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-25]
CHR Extension: (Szukaj w Google) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-25]
CHR Extension: (Pocket formerly Read It Later) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2014-06-14]
CHR Extension: (Google Wallet) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-25]
CHR Extension: (Gmail) - C:\Users\ewa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-25]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\urladvisor.crx [2013-08-29]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\content_blocker_chrome.crx [2013-08-29]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\ChromeExt\virtkbd.crx [2013-08-29]

==================== Services (Whitelisted) =================

R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 14.0.0\avp.exe [214512 2014-06-15] (Kaspersky Lab ZAO)
S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2013-09-19] (Creative Labs) [File not signed]
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2008-11-18] (Creative Technology Ltd) [File not signed]
R2 HPSLPSVC; C:\Users\ewa\AppData\Local\Temp\7zS038B\hpslpsvc64.dll [1039360 2013-07-19] (Hewlett-Packard Co.) [File not signed]

==================== Drivers (Whitelisted) ====================

R3 ALCXWDM; C:\Windows\System32\drivers\RTKVAC64.SYS [3491616 2009-06-19] (Realtek Semiconductor Corp.)
S3 cleanhlp; C:\EEK\Run\cleanhlp64.sys [57024 2014-05-12] (Emsisoft GmbH)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2014-06-15] (Kaspersky Lab ZAO)
S4 klflt; C:\Windows\System32\DRIVERS\klflt.sys [115296 2014-06-15] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [625248 2014-06-15] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2014-06-15] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2014-06-15] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2014-06-15] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2013-05-14] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178272 2014-06-15] (Kaspersky Lab ZAO)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-05-14] ()
R1 netfilter64; C:\Windows\System32\drivers\netfilter64.sys [61736 2014-02-28] (NetFilterSDK.com)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-10 19:51 - 2014-07-10 19:51 - 00029383 _____ () C:\Users\ewa\Desktop\FRST.txt
2014-07-10 19:23 - 2014-07-10 19:24 - 00448512 _____ (OldTimer Tools) C:\Users\ewa\Desktop\TFC(1).exe
2014-07-10 19:16 - 2014-07-10 19:16 - 00448512 _____ (OldTimer Tools) C:\Users\ewa\Desktop\TFC.exe
2014-07-10 19:16 - 2014-07-10 19:16 - 00030183 _____ () C:\Users\ewa\Desktop\Shortcut.txt
2014-07-10 19:15 - 2014-07-10 19:52 - 00022397 _____ () C:\Users\ewa\Desktop\Addition.txt
2014-07-10 18:33 - 2014-07-10 18:34 - 01348263 _____ () C:\Users\ewa\Desktop\adwcleaner_3.215.exe
2014-07-10 18:13 - 2014-07-10 19:12 - 00000000 ____D () C:\Users\ewa\Desktop\FRST-OlderVersion
2014-07-09 23:25 - 2014-07-10 00:19 - 00001780 _____ () C:\Users\ewa\Desktop\syrop ze stokrotek.txt
2014-07-06 22:13 - 2014-07-06 22:13 - 00000000 ____D () C:\Users\ewa\Desktop\Skany
2014-07-06 21:38 - 2014-07-06 21:38 - 00087428 _____ () C:\Users\ewa\Desktop\OTL.Txt
2014-07-06 21:22 - 2014-07-06 21:22 - 01921576 _____ () C:\Windows\SysWOW64\setup.exe
2014-07-04 13:14 - 2014-07-04 13:14 - 00000000 ____D () C:\Users\ewa\Desktop\2014-07-04 mm
2014-07-04 01:44 - 2014-07-06 21:09 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Foxit Software
2014-07-04 01:44 - 2014-07-04 01:44 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-07-04 01:43 - 2014-07-04 01:43 - 00001358 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-07-04 01:43 - 2014-07-04 01:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-07-04 01:43 - 2014-07-04 01:43 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-07-04 01:43 - 2014-07-04 01:37 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-04 01:42 - 2014-07-04 01:37 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-04 01:42 - 2014-07-04 01:37 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-04 01:42 - 2014-07-04 01:37 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-04 01:37 - 2014-07-04 01:37 - 00000000 ____D () C:\Program Files\Java
2014-07-04 01:36 - 2014-07-04 01:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-04 01:36 - 2014-07-04 01:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-07-04 01:36 - 2014-07-04 01:30 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-07-04 01:36 - 2014-07-04 01:30 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-07-04 01:36 - 2014-07-04 01:30 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-07-04 01:34 - 2014-07-04 01:34 - 00602112 _____ (OldTimer Tools) C:\Users\ewa\Desktop\OTL.exe
2014-07-04 01:30 - 2014-07-04 01:30 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-04 01:27 - 2014-07-04 01:27 - 00265752 _____ (Secure By Design Inc.) C:\Users\ewa\Desktop\Ninite Foxit Reader Java Installer.exe
2014-07-04 01:20 - 2014-07-04 01:20 - 01346519 _____ () C:\Users\ewa\Desktop\AdwCleaner.exe
2014-07-04 01:12 - 2014-07-10 20:05 - 00000000 ____D () C:\FRST
2014-06-22 21:27 - 2014-06-22 21:27 - 00262144 _____ () C:\Windows\system32\config\elam
2014-06-15 22:50 - 2014-06-15 22:51 - 03034943 _____ () C:\Users\ewa\Desktop\rodzaje_seksu__1___zodiak_z_humorem_jt__1_.zip
2014-06-15 00:05 - 2014-06-15 00:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus
2014-06-15 00:05 - 2014-06-15 00:04 - 00001089 _____ () C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk
2014-06-15 00:04 - 2014-07-10 19:57 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-06-15 00:04 - 2014-06-15 00:04 - 00000000 ____D () C:\Windows\ELAMBKUP
2014-06-15 00:04 - 2014-06-15 00:04 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-06-15 00:04 - 2013-05-06 09:13 - 00110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2014-06-15 00:03 - 2014-06-15 00:51 - 00625248 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-06-15 00:03 - 2014-06-15 00:51 - 00115296 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-06-15 00:00 - 2014-06-15 00:00 - 246185648 _____ (Kaspersky Lab) C:\Users\ewa\Downloads\kav14.0.0.4651pl-pl.exe
2014-06-14 22:15 - 2014-07-10 19:57 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-06-12 17:25 - 2014-06-12 22:40 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-06-12 17:25 - 2014-06-12 17:26 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\DropboxMaster
2014-06-12 17:22 - 2014-06-12 17:26 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Dropbox
2014-06-12 16:59 - 2014-06-12 17:01 - 94714880 _____ (AVAST Software) C:\Users\ewa\Desktop\avast_free_antivirus_setup.exe
2014-06-11 02:46 - 2014-06-11 02:46 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-10 16:21 - 2014-06-10 16:21 - 00000000 ____D () C:\Users\ewa\AppData\Local\Ashampoo

==================== One Month Modified Files and Folders =======

2014-07-10 20:05 - 2014-07-04 01:12 - 00000000 ____D () C:\FRST
2014-07-10 20:04 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-10 20:04 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-10 20:01 - 2009-07-14 19:55 - 00737242 _____ () C:\Windows\system32\perfh015.dat
2014-07-10 20:01 - 2009-07-14 19:55 - 00153930 _____ () C:\Windows\system32\perfc015.dat
2014-07-10 20:01 - 2009-07-14 07:13 - 01661232 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-10 19:57 - 2014-06-15 00:04 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-10 19:57 - 2014-06-14 22:15 - 00000008 __RSH () C:\ProgramData\ntuser.pol
2014-07-10 19:57 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-10 19:57 - 2009-07-14 06:51 - 00048145 _____ () C:\Windows\setupact.log
2014-07-10 19:56 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-07-10 19:56 - 2006-01-01 00:34 - 01315781 _____ () C:\Windows\WindowsUpdate.log
2014-07-10 19:52 - 2014-07-10 19:15 - 00022397 _____ () C:\Users\ewa\Desktop\Addition.txt
2014-07-10 19:51 - 2014-07-10 19:51 - 00029383 _____ () C:\Users\ewa\Desktop\FRST.txt
2014-07-10 19:24 - 2014-07-10 19:23 - 00448512 _____ (OldTimer Tools) C:\Users\ewa\Desktop\TFC(1).exe
2014-07-10 19:23 - 2013-09-19 18:33 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-10 19:16 - 2014-07-10 19:16 - 00448512 _____ (OldTimer Tools) C:\Users\ewa\Desktop\TFC.exe
2014-07-10 19:16 - 2014-07-10 19:16 - 00030183 _____ () C:\Users\ewa\Desktop\Shortcut.txt
2014-07-10 19:12 - 2014-07-10 18:13 - 00000000 ____D () C:\Users\ewa\Desktop\FRST-OlderVersion
2014-07-10 18:46 - 2013-09-19 19:19 - 00022594 _____ () C:\Windows\PFRO.log
2014-07-10 18:34 - 2014-07-10 18:33 - 01348263 _____ () C:\Users\ewa\Desktop\adwcleaner_3.215.exe
2014-07-10 00:19 - 2014-07-09 23:25 - 00001780 _____ () C:\Users\ewa\Desktop\syrop ze stokrotek.txt
2014-07-08 21:16 - 2014-02-18 11:32 - 00000000 ____D () C:\Users\ewa\Desktop\gify
2014-07-08 21:13 - 2013-09-19 19:29 - 00000000 ____D () C:\Users\ewa\Desktop\jpg
2014-07-07 15:51 - 2013-12-13 19:03 - 00033100 _____ () C:\Users\ewa\Desktop\SCHAB SUSZONY.txt
2014-07-06 22:13 - 2014-07-06 22:13 - 00000000 ____D () C:\Users\ewa\Desktop\Skany
2014-07-06 22:03 - 2013-09-25 03:03 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\vlc
2014-07-06 21:38 - 2014-07-06 21:38 - 00087428 _____ () C:\Users\ewa\Desktop\OTL.Txt
2014-07-06 21:22 - 2014-07-06 21:22 - 01921576 _____ () C:\Windows\SysWOW64\setup.exe
2014-07-06 21:09 - 2014-07-04 01:44 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Foxit Software
2014-07-04 13:14 - 2014-07-04 13:14 - 00000000 ____D () C:\Users\ewa\Desktop\2014-07-04 mm
2014-07-04 01:44 - 2014-07-04 01:44 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-07-04 01:43 - 2014-07-04 01:43 - 00001358 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-07-04 01:43 - 2014-07-04 01:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-07-04 01:43 - 2014-07-04 01:43 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-07-04 01:37 - 2014-07-04 01:43 - 00313256 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2014-07-04 01:37 - 2014-07-04 01:42 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2014-07-04 01:37 - 2014-07-04 01:42 - 00189352 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2014-07-04 01:37 - 2014-07-04 01:42 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2014-07-04 01:37 - 2014-07-04 01:37 - 00000000 ____D () C:\Program Files\Java
2014-07-04 01:36 - 2014-07-04 01:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-07-04 01:34 - 2014-07-04 01:34 - 00602112 _____ (OldTimer Tools) C:\Users\ewa\Desktop\OTL.exe
2014-07-04 01:31 - 2014-07-04 01:36 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-07-04 01:30 - 2014-07-04 01:36 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-07-04 01:30 - 2014-07-04 01:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-07-04 01:30 - 2014-07-04 01:36 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-07-04 01:30 - 2014-07-04 01:30 - 00000000 ____D () C:\Program Files (x86)\Java
2014-07-04 01:27 - 2014-07-04 01:27 - 00265752 _____ (Secure By Design Inc.) C:\Users\ewa\Desktop\Ninite Foxit Reader Java Installer.exe
2014-07-04 01:26 - 2013-09-19 21:40 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-04 01:20 - 2014-07-04 01:20 - 01346519 _____ () C:\Users\ewa\Desktop\AdwCleaner.exe
2014-07-01 22:23 - 2013-09-19 19:30 - 00000000 ___RD () C:\Users\ewa\Desktop\Moje dokumenty
2014-07-01 22:17 - 2014-02-06 19:06 - 00001458 _____ () C:\Users\ewa\Desktop\Nowy dokument tekstowy.txt
2014-06-24 22:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-06-22 21:27 - 2014-06-22 21:27 - 00262144 _____ () C:\Windows\system32\config\elam
2014-06-16 11:32 - 2013-09-19 19:47 - 00000000 ____D () C:\Users\ewa\Desktop\mp3
2014-06-15 22:51 - 2014-06-15 22:50 - 03034943 _____ () C:\Users\ewa\Desktop\rodzaje_seksu__1___zodiak_z_humorem_jt__1_.zip
2014-06-15 00:51 - 2014-06-15 00:03 - 00625248 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2014-06-15 00:51 - 2014-06-15 00:03 - 00115296 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2014-06-15 00:51 - 2013-06-10 12:27 - 00029792 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klim6.sys
2014-06-15 00:51 - 2013-06-06 17:38 - 00178272 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys
2014-06-15 00:51 - 2013-05-06 09:22 - 00458336 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kl1.sys
2014-06-15 00:51 - 2013-05-05 22:42 - 00029280 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klmouflt.sys
2014-06-15 00:51 - 2013-05-05 22:42 - 00029280 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klkbdflt.sys
2014-06-15 00:05 - 2014-06-15 00:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Anti-Virus
2014-06-15 00:04 - 2014-06-15 00:05 - 00001089 _____ () C:\Users\Public\Desktop\Kaspersky Anti-Virus.lnk
2014-06-15 00:04 - 2014-06-15 00:04 - 00000000 ____D () C:\Windows\ELAMBKUP
2014-06-15 00:04 - 2014-06-15 00:04 - 00000000 ____D () C:\Program Files (x86)\Kaspersky Lab
2014-06-15 00:00 - 2014-06-15 00:00 - 246185648 _____ (Kaspersky Lab) C:\Users\ewa\Downloads\kav14.0.0.4651pl-pl.exe
2014-06-14 22:40 - 2013-11-25 02:50 - 00000000 ____D () C:\Program Files (x86)\Google
2014-06-14 22:38 - 2013-10-21 22:35 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-06-14 22:13 - 2014-05-09 01:02 - 00000000 ____D () C:\ProgramData\InstallMate
2014-06-12 22:40 - 2014-06-12 17:25 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-06-12 22:40 - 2009-07-14 20:09 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-06-12 22:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-06-12 21:42 - 2006-01-01 01:15 - 00000000 ____D () C:\Users\ewa
2014-06-12 17:26 - 2014-06-12 17:25 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\DropboxMaster
2014-06-12 17:26 - 2014-06-12 17:22 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\Dropbox
2014-06-12 17:01 - 2014-06-12 16:59 - 94714880 _____ (AVAST Software) C:\Users\ewa\Desktop\avast_free_antivirus_setup.exe
2014-06-11 19:03 - 2013-09-19 21:16 - 00000000 ____D () C:\Users\ewa\AppData\Roaming\uTorrent
2014-06-11 19:02 - 2013-09-19 18:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-06-11 02:46 - 2014-06-11 02:46 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-06-10 16:21 - 2014-06-10 16:21 - 00000000 ____D () C:\Users\ewa\AppData\Local\Ashampoo

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe = & gt; File is digitally signed
C:\Windows\System32\wininit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\System32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\System32\services.exe = & gt; File is digitally signed
C:\Windows\System32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\System32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\System32\rpcss.dll = & gt; File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys = & gt; File is digitally signed


LastRegBack: 2014-07-08 11:15

==================== End Of Log ============================