log frst w zalączniku
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-07-2014
Ran by Dawid (administrator) on TERMINATOR on 24-07-2014 00:22:07
Running from C:\Users\Dawid\Desktop
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Polski (Polska)
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Ralink Technology, Corp.) C:\Program Files (x86)\Ralink\Common\RaRegistry.exe
(Ralink Technology, Corp.) C:\Program Files (x86)\Ralink\Common\RaRegistry64.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(VIA Technologies, Inc.) C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe
(Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe
(Disc Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(Ralink Technology, Corp.) C:\Program Files (x86)\Ralink\Common\RaUI.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [VIAxHCUtl] = & gt; C:\Program Files\VIA XHCI UASP Utility\usb3Monitor
HKLM\...\Run: [XboxStat] = & gt; C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] = & gt; C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-06] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-696922354-1036089585-1235050084-1000\...\Run: [DAEMON Tools Lite] = & gt; C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-696922354-1036089585-1235050084-1000\...\Run: [Skype] = & gt; C:\Program Files (x86)\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Ralink Wireless Utility.lnk
ShortcutTarget: Ralink Wireless Utility.lnk - & gt; C:\Program Files (x86)\Ralink\Common\RaUI.exe (Ralink Technology, Corp.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie & ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: SteadyVideoBHO Class - & gt; {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - & gt; C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO: Windows Live ID Sign-in Helper - & gt; {9030D464-4C02-4ABF-8ECC-5164760863C6} - & gt; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: SteadyVideoBHO Class - & gt; {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - & gt; C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: CIESpeechBHO Class - & gt; {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - & gt; C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Pomocnik logowania za pomocą konta Microsoft - & gt; {9030D464-4C02-4ABF-8ECC-5164760863C6} - & gt; C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @canon.com/EPPEX - C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll (CANON INC.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @real.com/nppl3260;version=6.0.11.2571 - C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.1739 - C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
Chrome:
=======
CHR HomePage: hxxp://search.conduit.com/?ctid=CT3324774 & octid=EB_ORIGINAL_CTID & SearchSource=55 & CUI= & UM=4 & UP=SP64DEAC82-8B3C-46FD-BFD2-E481DE138F4D & SSPV=
CHR StartupUrls: " hxxp://www.google.pl/ " , " hxxp://start.mysearchdial.com/?f=1 & a=ir_14_11_ch & cd=2XzuyEtN2Y1L1QzutDtDtDtByBtB0B0B0B0BtByDyEyByEtAtN0D0Tzu0SzztDtBtN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StD0ByC0A0CtD0DyCtG0F0EyC0FtGtD0CyCyCtG0FzytBtAtGtD0CtCtA0B0F0F0Czy0Ezzzy2QtN1M1F1B2Z1V1N2Y1L1Qzu2StBtDzz0F0FyD0A0BtG0C0D0A0FtGyEyCtA0EtG0C0BzztAtGtCyD0A0B0C0CtDtC0D0BtB0E2Q & cr=1203948743 & ir= "
CHR Extension: (Dysk Google) - C:\Users\Dawid\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-14]
CHR Extension: (YouTube) - C:\Users\Dawid\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-14]
CHR Extension: (Szukaj w Google) - C:\Users\Dawid\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-14]
CHR Extension: (Google Wallet) - C:\Users\Dawid\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-14]
CHR Extension: (Gmail) - C:\Users\Dawid\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-14]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-06] (Advanced Micro Devices, Inc.) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [75936 2011-03-31] (Atheros Commnucations) [File not signed]
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [625184 2009-04-19] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-05-16] (Nero AG)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [207904 2009-04-19] ()
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-06-14] (VIA Technologies, Inc.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-31] (Disc Soft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-07-23] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
R3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [223744 2013-03-19] (VIA Technologies, Inc.)
R3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [295424 2013-03-19] (VIA Technologies, Inc.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S2 CDRPDACC; \??\C:\Program Files (x86)\Quintessential Player\cdrpdacc.sys [X]
S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-07-24 00:22 - 2014-07-24 00:22 - 00011731 _____ () C:\Users\Dawid\Desktop\FRST.txt
2014-07-24 00:22 - 2014-07-24 00:22 - 00000000 ____D () C:\FRST
2014-07-24 00:20 - 2014-07-24 00:21 - 02093568 _____ (Farbar) C:\Users\Dawid\Desktop\FRST64.exe
2014-07-24 00:09 - 2014-07-24 00:09 - 00000000 ____D () C:\_OTL
2014-07-23 23:54 - 2014-07-23 23:54 - 00000000 _____ () C:\Users\Dawid\Desktop\Nowy dokument tekstowy.txt
2014-07-23 23:46 - 2014-07-23 23:46 - 00085604 _____ () C:\Users\Dawid\Desktop\Extras.Txt
2014-07-23 23:45 - 2014-07-23 23:45 - 00083328 _____ () C:\Users\Dawid\Desktop\OTL.Txt
2014-07-23 23:35 - 2014-07-23 23:36 - 00602112 _____ (OldTimer Tools) C:\Users\Dawid\Desktop\OTL.exe
2014-07-23 22:46 - 2014-07-23 22:52 - 05562024 ____R (Swearware) C:\Users\Dawid\Downloads\ComboFix.exe
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Ralink Driver
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Ralink
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless
2014-07-23 22:39 - 2010-02-05 20:09 - 00311072 _____ (Ralink Technology, Inc.) C:\Windows\system32\RaCoInstx.dll
2014-07-23 22:39 - 2010-02-05 20:09 - 00013931 _____ () C:\Windows\SysWOW64\RaCoInst.dat
2014-07-23 22:39 - 2010-02-05 20:09 - 00013931 _____ () C:\Windows\system32\RaCoInst.dat
2014-07-23 22:38 - 2014-07-23 22:39 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Windows\system32\RaLanguages
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\InstallShield
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Program Files (x86)\Ralink
2014-07-23 22:38 - 2010-01-27 12:47 - 00000451 _____ () C:\Windows\system32\DiagFunc.ini
2014-07-23 22:38 - 2010-01-27 11:54 - 00000451 _____ () C:\Windows\SysWOW64\DiagFunc.ini
2014-07-23 22:38 - 2010-01-06 21:45 - 02059552 _____ (Ralink Technology, Corp.) C:\Windows\system32\RaCertMgr.dll
2014-07-23 22:38 - 2010-01-06 21:45 - 01594656 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RaCertMgr.dll
2014-07-23 22:38 - 2010-01-06 13:18 - 00107808 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RAEXTUI.dll
2014-07-23 22:38 - 2010-01-06 13:18 - 00107808 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAEXTUI.dll
2014-07-23 22:38 - 2010-01-05 22:54 - 01119008 _____ (Ralink Technology, Corp.) C:\Windows\SysWOW64\RAIHV.dll
2014-07-23 22:38 - 2010-01-05 22:54 - 01119008 _____ (Ralink Technology, Corp.) C:\Windows\system32\RAIHV.dll
2014-07-23 22:38 - 2009-09-03 21:59 - 00000072 _____ () C:\Windows\SysWOW64\RaCertMgr.ini
2014-07-23 22:38 - 2009-09-03 21:59 - 00000072 _____ () C:\Windows\system32\RaCertMgr.ini
2014-07-23 22:38 - 2009-05-11 11:45 - 00147456 _____ () C:\Windows\SysWOW64\DiagFunc.dll
2014-07-23 22:38 - 2009-05-11 11:45 - 00147456 _____ () C:\Windows\system32\DiagFunc.dll
2014-07-23 21:54 - 2014-07-23 21:54 - 00000000 ____D () C:\Users\Dawid\AppData\Local\Adobe
2014-07-23 21:38 - 2014-07-23 21:38 - 00000000 ___RD () C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-07-23 13:08 - 2014-07-23 13:22 - 00000000 ____D () C:\Users\Dawid\Desktop\Nowy folder
2014-07-21 18:35 - 2014-07-21 18:35 - 00000000 ____D () C:\Users\Dawid\Desktop\thumbs
2014-07-21 00:21 - 2014-07-21 00:21 - 528130313 _____ () C:\Windows\MEMORY.DMP
2014-07-21 00:21 - 2014-07-21 00:21 - 00274568 _____ () C:\Windows\Minidump\072114-45093-01.dmp
2014-07-20 22:57 - 2014-07-23 23:30 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-20 22:57 - 2014-07-20 22:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-20 22:57 - 2014-07-20 22:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-20 22:57 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-07-20 22:57 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-07-20 22:56 - 2014-07-20 22:57 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-18 09:06 - 2014-07-21 18:35 - 00000665 _____ () C:\Windows\system32\phonebook.pbs
2014-07-15 18:10 - 2014-07-15 19:43 - 00000000 ____D () C:\Users\Dawid\Desktop\Zoo Nurnberg)
2014-07-10 17:59 - 2014-07-10 17:59 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\Windows Live Writer
2014-07-10 17:59 - 2014-07-10 17:59 - 00000000 ____D () C:\Users\Dawid\AppData\Local\Windows Live Writer
2014-07-10 09:38 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-07-10 09:38 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-07-10 09:38 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-10 09:38 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe
2014-07-10 09:38 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-10 09:37 - 2014-06-20 22:14 - 00266424 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-10 09:37 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-10 09:37 - 2014-06-19 03:39 - 23464448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-10 09:37 - 2014-06-19 03:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-10 09:37 - 2014-06-19 03:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-10 09:37 - 2014-06-19 02:48 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-10 09:37 - 2014-06-19 02:42 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-10 09:37 - 2014-06-19 02:42 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-10 09:37 - 2014-06-19 02:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-10 09:37 - 2014-06-19 02:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-10 09:37 - 2014-06-19 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-10 09:37 - 2014-06-19 02:31 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-10 09:37 - 2014-06-19 02:26 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-10 09:37 - 2014-06-19 02:24 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-10 09:37 - 2014-06-19 02:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-10 09:37 - 2014-06-19 02:23 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-10 09:37 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-10 09:37 - 2014-06-19 02:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-10 09:37 - 2014-06-19 02:09 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-10 09:37 - 2014-06-19 01:59 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-10 09:37 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-10 09:37 - 2014-06-19 01:53 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-10 09:37 - 2014-06-19 01:51 - 05721088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-10 09:37 - 2014-06-19 01:50 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-10 09:37 - 2014-06-19 01:48 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-10 09:37 - 2014-06-19 01:39 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-10 09:37 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-07-10 09:37 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-10 09:37 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-07-10 09:37 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-07-10 09:37 - 2014-06-19 01:33 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-10 09:37 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-10 09:37 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-10 09:37 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-10 09:37 - 2014-06-19 01:27 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-10 09:37 - 2014-06-19 01:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-10 09:37 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-07-10 09:37 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-07-10 09:37 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-07-10 09:37 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-10 09:37 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-10 09:37 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-10 09:37 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-10 09:37 - 2014-06-19 00:58 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-10 09:37 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-10 09:37 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-10 09:37 - 2014-06-19 00:51 - 13527040 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-10 09:37 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-10 09:37 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-07-10 09:37 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-10 09:37 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-10 09:37 - 2014-06-19 00:34 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-10 09:37 - 2014-06-19 00:15 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-10 09:37 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-10 09:37 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-10 09:37 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-07-10 09:37 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-10 09:37 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-10 09:37 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-07-10 09:37 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-07-10 09:37 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-10 09:36 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-10 09:36 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-07-10 09:36 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-07-07 12:48 - 2014-07-09 19:50 - 00000000 ____D () C:\Users\Dawid\Desktop\polska lipiec 2014
2014-07-02 22:56 - 2014-07-02 22:58 - 00001495 _____ () C:\Users\Dawid\pcmscan.cfg
2014-06-26 21:44 - 2014-07-20 23:46 - 00000000 ____D () C:\Users\Dawid\Desktop\mp3 do auta
2014-06-26 20:57 - 2014-06-26 21:42 - 203516186 _____ () C:\Users\Dawid\Desktop\Dora the Explorer - Dora poznaje swiat - Lody PL(2).avi
2014-06-26 20:57 - 2014-06-26 21:42 - 155360024 _____ () C:\Users\Dawid\Desktop\Dora poznaje swiat - dziś czytamy XVID-.avi
2014-06-24 12:23 - 2014-06-24 22:36 - 00000000 ____D () C:\Users\Dawid\Documents\FIFA 14
2014-06-24 12:08 - 2014-07-23 22:23 - 00000000 ____D () C:\Program Files (x86)\FIFA 14
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-07-24 00:22 - 2014-07-24 00:22 - 00011731 _____ () C:\Users\Dawid\Desktop\FRST.txt
2014-07-24 00:22 - 2014-07-24 00:22 - 00000000 ____D () C:\FRST
2014-07-24 00:21 - 2014-07-24 00:20 - 02093568 _____ (Farbar) C:\Users\Dawid\Desktop\FRST64.exe
2014-07-24 00:09 - 2014-07-24 00:09 - 00000000 ____D () C:\_OTL
2014-07-24 00:07 - 2014-02-14 14:39 - 00001046 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-24 00:02 - 2009-07-14 06:45 - 00014960 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-24 00:02 - 2009-07-14 06:45 - 00014960 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-23 23:59 - 2014-02-14 15:01 - 00000000 ____D () C:\Program Files (x86)\SpeedFan
2014-07-23 23:54 - 2014-07-23 23:54 - 00000000 _____ () C:\Users\Dawid\Desktop\Nowy dokument tekstowy.txt
2014-07-23 23:52 - 2013-11-04 00:26 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\Skype
2014-07-23 23:46 - 2014-07-23 23:46 - 00085604 _____ () C:\Users\Dawid\Desktop\Extras.Txt
2014-07-23 23:45 - 2014-07-23 23:45 - 00083328 _____ () C:\Users\Dawid\Desktop\OTL.Txt
2014-07-23 23:36 - 2014-07-23 23:35 - 00602112 _____ (OldTimer Tools) C:\Users\Dawid\Desktop\OTL.exe
2014-07-23 23:35 - 2013-11-04 00:11 - 00740520 _____ () C:\Windows\system32\perfh015.dat
2014-07-23 23:35 - 2013-11-04 00:11 - 00156070 _____ () C:\Windows\system32\perfc015.dat
2014-07-23 23:35 - 2009-07-14 19:58 - 00689200 _____ () C:\Windows\system32\perfh007.dat
2014-07-23 23:35 - 2009-07-14 19:58 - 00149172 _____ () C:\Windows\system32\perfc007.dat
2014-07-23 23:35 - 2009-07-14 07:13 - 02509152 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-23 23:33 - 2013-11-03 21:45 - 01980292 _____ () C:\Windows\WindowsUpdate.log
2014-07-23 23:31 - 2014-02-14 14:39 - 00001042 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-23 23:30 - 2014-07-20 22:57 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-23 23:30 - 2014-02-14 16:59 - 00029506 _____ () C:\Windows\PFRO.log
2014-07-23 23:30 - 2014-02-14 00:53 - 00036439 _____ () C:\Windows\setupact.log
2014-07-23 23:30 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-23 23:25 - 2014-01-01 14:28 - 00000930 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-23 23:07 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-07-23 23:02 - 2013-12-31 17:53 - 00000000 ____D () C:\Qoobox
2014-07-23 22:52 - 2014-07-23 22:46 - 05562024 ____R (Swearware) C:\Users\Dawid\Downloads\ComboFix.exe
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Ralink Driver
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Ralink
2014-07-23 22:39 - 2014-07-23 22:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ralink Wireless
2014-07-23 22:39 - 2014-07-23 22:38 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Windows\system32\RaLanguages
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\InstallShield
2014-07-23 22:38 - 2014-07-23 22:38 - 00000000 ____D () C:\Program Files (x86)\Ralink
2014-07-23 22:38 - 2013-11-03 21:54 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-07-23 22:27 - 2013-11-04 01:45 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-23 22:25 - 2013-11-04 00:24 - 00001912 _____ () C:\Windows\epplauncher.mif
2014-07-23 22:24 - 2013-11-04 20:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-07-23 22:23 - 2014-06-24 12:08 - 00000000 ____D () C:\Program Files (x86)\FIFA 14
2014-07-23 22:23 - 2013-11-04 21:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-07-23 22:23 - 2013-11-04 21:37 - 00000000 ____D () C:\Program Files\CPUID
2014-07-23 22:22 - 2013-11-03 21:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility
2014-07-23 22:22 - 2013-11-03 21:55 - 00000000 ____D () C:\Program Files\ASRock Utility
2014-07-23 22:06 - 2014-02-19 18:00 - 00000000 ____D () C:\Program Files (x86)\Windows Live
2014-07-23 22:02 - 2013-11-03 23:25 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-07-23 22:00 - 2014-05-31 11:02 - 00000000 ____D () C:\Program Files (x86)\Ubisoft
2014-07-23 21:56 - 2014-02-26 16:54 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-07-23 21:55 - 2014-02-26 17:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2014-07-23 21:54 - 2014-07-23 21:54 - 00000000 ____D () C:\Users\Dawid\AppData\Local\Adobe
2014-07-23 21:54 - 2013-11-03 21:57 - 00000000 ____D () C:\ProgramData\Adobe
2014-07-23 21:54 - 2013-11-03 21:57 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-07-23 21:38 - 2014-07-23 21:38 - 00000000 ___RD () C:\Users\Dawid\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-07-23 13:22 - 2014-07-23 13:08 - 00000000 ____D () C:\Users\Dawid\Desktop\Nowy folder
2014-07-21 22:02 - 2013-12-31 14:49 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\vlc
2014-07-21 18:35 - 2014-07-21 18:35 - 00000000 ____D () C:\Users\Dawid\Desktop\thumbs
2014-07-21 18:35 - 2014-07-18 09:06 - 00000665 _____ () C:\Windows\system32\phonebook.pbs
2014-07-21 13:50 - 2013-12-01 21:30 - 00000000 ____D () C:\Users\Dawid\AppData\Local\CrashDumps
2014-07-21 00:21 - 2014-07-21 00:21 - 528130313 _____ () C:\Windows\MEMORY.DMP
2014-07-21 00:21 - 2014-07-21 00:21 - 00274568 _____ () C:\Windows\Minidump\072114-45093-01.dmp
2014-07-21 00:21 - 2013-12-25 20:28 - 00000000 ____D () C:\Windows\Minidump
2014-07-20 23:46 - 2014-06-26 21:44 - 00000000 ____D () C:\Users\Dawid\Desktop\mp3 do auta
2014-07-20 23:46 - 2014-02-15 18:55 - 00000000 ____D () C:\Users\Dawid\Desktop\Prezentacja
2014-07-20 23:17 - 2013-12-31 00:15 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\Systweak
2014-07-20 23:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Globalization
2014-07-20 23:00 - 2014-01-01 14:28 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-07-20 23:00 - 2014-01-01 14:28 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-07-20 23:00 - 2014-01-01 14:28 - 00003868 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-07-20 22:57 - 2014-07-20 22:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-07-20 22:57 - 2014-07-20 22:57 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-07-20 22:57 - 2014-07-20 22:56 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-07-20 22:57 - 2014-02-14 00:38 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\Malwarebytes
2014-07-20 22:57 - 2014-02-14 00:38 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-20 22:57 - 2014-02-14 00:38 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-07-19 15:15 - 2014-02-14 14:40 - 00002189 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-18 22:20 - 2014-06-22 11:54 - 00000000 ____D () C:\Users\Dawid\Desktop\filmy
2014-07-15 19:43 - 2014-07-15 18:10 - 00000000 ____D () C:\Users\Dawid\Desktop\Zoo Nurnberg)
2014-07-11 03:23 - 2009-07-14 06:45 - 00420000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-11 03:21 - 2014-05-07 03:01 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-07-11 03:21 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-11 03:21 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-07-11 03:21 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-07-11 03:05 - 2013-11-03 23:04 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-11 03:02 - 2013-11-04 20:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-07-11 03:02 - 2013-11-03 23:04 - 96441528 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-10 23:26 - 2014-04-16 13:24 - 00000000 ____D () C:\ProgramData\CanonIJPLM
2014-07-10 18:00 - 2014-02-19 17:55 - 00000000 ____D () C:\Users\Dawid\AppData\Local\Windows Live
2014-07-10 17:59 - 2014-07-10 17:59 - 00000000 ____D () C:\Users\Dawid\AppData\Roaming\Windows Live Writer
2014-07-10 17:59 - 2014-07-10 17:59 - 00000000 ____D () C:\Users\Dawid\AppData\Local\Windows Live Writer
2014-07-10 10:29 - 2014-05-24 13:49 - 00000000 ____D () C:\Users\Dawid\Desktop\dokumenty
2014-07-09 20:16 - 2013-12-23 12:55 - 00000000 ____D () C:\Users\Dawid\Desktop\kopia zdjec
2014-07-09 19:50 - 2014-07-07 12:48 - 00000000 ____D () C:\Users\Dawid\Desktop\polska lipiec 2014
2014-07-02 22:58 - 2014-07-02 22:56 - 00001495 _____ () C:\Users\Dawid\pcmscan.cfg
2014-07-02 22:56 - 2013-11-03 21:49 - 00000000 ____D () C:\Users\Dawid
2014-07-02 22:05 - 2014-01-01 16:45 - 00000157 _____ () C:\error.txt
2014-06-30 04:09 - 2014-07-10 09:38 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-30 04:04 - 2014-07-10 09:38 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-28 09:24 - 2009-07-14 07:08 - 00032608 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-26 21:42 - 2014-06-26 20:57 - 203516186 _____ () C:\Users\Dawid\Desktop\Dora the Explorer - Dora poznaje swiat - Lody PL(2).avi
2014-06-26 21:42 - 2014-06-26 20:57 - 155360024 _____ () C:\Users\Dawid\Desktop\Dora poznaje swiat - dziś czytamy XVID-.avi
2014-06-26 21:26 - 2014-02-11 16:38 - 00000000 ___RD () C:\Users\Dawid\Desktop\gry
2014-06-24 22:36 - 2014-06-24 12:23 - 00000000 ____D () C:\Users\Dawid\Documents\FIFA 14
2014-06-24 12:46 - 2014-02-11 14:50 - 00000000 ____D () C:\ProgramData\Origin
2014-06-24 12:45 - 2014-02-11 14:49 - 00000000 ____D () C:\Program Files (x86)\Origin
Some content of TEMP:
====================
C:\Users\Dawid\AppData\Local\Temp\sfamcc00001.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe = & gt; File is digitally signed
C:\Windows\System32\wininit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\wininit.exe = & gt; File is digitally signed
C:\Windows\explorer.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\explorer.exe = & gt; File is digitally signed
C:\Windows\System32\svchost.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\svchost.exe = & gt; File is digitally signed
C:\Windows\System32\services.exe = & gt; File is digitally signed
C:\Windows\System32\User32.dll = & gt; File is digitally signed
C:\Windows\SysWOW64\User32.dll = & gt; File is digitally signed
C:\Windows\System32\userinit.exe = & gt; File is digitally signed
C:\Windows\SysWOW64\userinit.exe = & gt; File is digitally signed
C:\Windows\System32\rpcss.dll = & gt; File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys = & gt; File is digitally signed
LastRegBack: 2014-07-18 12:46
==================== End Of Log ============================